Microsoft 365 Auditor
AD
⚙ Settings
Auditor preferences
🎨ThemeAzure Blue ›
About Auditorv1.0.0 ›
Keyboard shortcuts? ›
🔔 Notifications
Recent activity and alerts
AD
Signed in
🏢
Display name
🌐
Primary domain
🔑
Tenant ID
📅
Session started
🏠
Sign-in & Audit Examiner
Connect to your tenant and select a date range to begin forensic examination
Overview
Sign-in Logs
Audit Logs
Message Trace
Risk Detections
Risky Users
Date range:
No data loaded
🔍
No data loaded
Select a date range above and click Fetch Logs to retrieve sign-in and audit data from your tenant.
Tip: Start with 7 days — large date ranges may take several minutes to fetch.
No sign-in data loaded. Use the fetch bar above.
No audit data loaded. Use the fetch bar above.
No message trace data loaded. Select a date range and click "Fetch Trace". Uses Exchange Reporting Service — requires ReportingWebService.Read.All consent.
No risk detection data loaded. Requires Azure AD P2 licence. Click Fetch Logs.
No risky user data loaded. Requires Azure AD P2 licence. Click Fetch Logs.
🔐
Details