Skip to content

OneDrive

The OneDrive integration detects a variety of data loss prevention, account misconfiguration, and user security risks in an integrated Microsoft 365 account that could leave you and your organization vulnerable.

Integration prerequisites

  • A Microsoft 365 account with an active Microsoft Business Basic, Microsoft Business Standard, Microsoft 365 E3, Microsoft 365 E5, or Microsoft 365 F3 subscription
  • Global admin role or equivalent permissions in Microsoft 365

Integration permissions

Refer to Microsoft 365 integration permissions for information on which API permissions to enable.

Security findings

The OneDrive integration currently scans for the following findings, or security risks. Findings are grouped by category and then ordered by severity level.

To stay up-to-date with new CASB findings as they are added, bookmark this page or subscribe to its RSS feed.

File sharing

Get alerted when files in your Microsoft 365 account have their permissions changed to a less secure setting.

Finding typeFindingTypeIDSeverity
Microsoft: File publicly accessible with edit access85241e6b-205f-4de6-a1d1-325656130995Critical
Microsoft: Folder publicly accessible with edit accessc9662c5c-c3d6-453b-9367-281e024f7e7aCritical
Microsoft: File publicly accessible with view accessa2b40dc9-b96a-4ace-b8f8-739c2be37dbdHigh
Microsoft: Folder publicly accessible with view access7c673785-8b70-41bc-b7d4-d0f346487ff6High
Microsoft: File shared company-wide with edit accessa81a79c8-a0bf-4c60-aa46-7547b4d34266Medium
Microsoft: File shared company-wide with view access364c9c0e-684b-4a83-bf28-fdbb1430bb59Medium
Microsoft: Folder shared company-wide with edit access80f73d47-7dcf-4997-8ed3-6564c8388bd1Medium
Microsoft: Folder shared company-wide with view accessf3fc8ae6-815e-4d5f-a57e-b00d5413f98cMedium

Data Loss Prevention (optional)

These findings will only appear if you added DLP profiles to your CASB integration.

Finding typeFindingTypeIDSeverity
Microsoft: File publicly accessible with edit access with DLP Profile match7b6ecb52-852f-4184-bf19-175fe59202b7Critical
Microsoft: File publicly accessible with view access with DLP Profile match8150f237-576d-4b48-8839-0c257f612171High
Microsoft: File shared company-wide with edit access with DLP Profile matchf838ec6b-7d7a-4c1c-9c61-958ac24c27faMedium
Microsoft: File shared company-wide with view access with DLP Profile match0b882cf3-7e33-4c58-b425-0202206a2c10Medium