Tests
One entry per check, with results rolled up across every tenant and tracked over time.
Tests tracked
12
across all tenants
Failing somewhere
7
need attention
Regressed
4
pass → fail
Unassigned
3
no owner yet
| Test | Tenant results | Runs in | Severity | Product | Trend | Owner | Last seen | |
|---|---|---|---|---|---|---|---|---|
| CISA.AAD.2.1 Legacy authentication SHALL be blocked | 7/9 · 2 fail | Critical | En Entra | Pass → fail | DS Dev Sharma | 4h ago | open → | |
| CISA.EXO.4.1 SPF records SHALL be configured for all domains | 7/9 · 2 fail | High | Ex Exchange | Pass → fail | SR Sam Rivera | 4h ago | open → | |
| EIDSCA.PR06 Require multifactor authentication for admin roles | 6/9 · 3 fail | High | En Entra | Pass → fail | MK Mona Kane | 4h ago | open → | |
| MT.1066 Devices must be compliant to access corporate resources | 7/9 · 2 fail | High | In Intune | Pass → fail | YT Yuki Tanaka | 4h ago | open → | |
| MT.1052 Mailbox auto-forwarding to external domains is blocked | 8/9 · 1 fail | High | Ex Exchange | Changed | LF Lena Fischer | 4h ago | open → | |
| EIDSCA.AM10 Authentication methods policy blocks SMS for privileged users | 8/9 · 1 fail | Medium | En Entra | Changed | unassigned | 4h ago | open → | |
| EIDSCA.CR01 Security defaults are enabled or replaced by Conditional Access | 9/9 | Medium | En Entra | Recovered | AP Aria Patel | 4h ago | open → | |
| MT.1120 Purview audit log retention is at least one year | 9/9 | Medium | Pv Purview | Recovered | NB Noah Bauer | 4h ago | open → | |
| MT.1037 At least one Conditional Access policy targets all cloud apps | 9/9 | High | En Entra | Stable | unassigned | 4h ago | open → | |
| CIS.M365.3.4 Microsoft Defender for Office 365 Safe Links is enabled | 9/9 | Medium | Do Defender O365 | Stable | unassigned | 4h ago | open → | |
| ORCA.114 Mailbox auditing is enabled for all users | 8/9 · 1 fail | Medium | Ex Exchange | Stable | SR Sam Rivera | 4h ago | open → | |
| MT.1089 Guest access in Microsoft Teams is restricted | 8/9 | Low | Te Teams | Stable | TO Tom Okafor | 4h ago | open → | |
| MT.1150 NEW · v1.6.0 Phishing-resistant MFA is required for all privileged roles | no results yet | High | En Entra | New | unassigned | 3 days ago | review → | |
| MT.1151 NEW · v1.6.0 Token protection is enforced for Exchange and SharePoint sessions | no results yet | Medium | En Entra | New | unassigned | 3 days ago | review → | |
| MT.1152 NEW · v1.6.0 External sharing links in SharePoint expire within 30 days | no results yet | Medium | Sp SharePoint | New | unassigned | 3 days ago | review → | |
| MT.1153 NEW · v1.6.0 Copilot Studio agents cannot publish to unauthenticated channels | no results yet | High | Co Copilot | New | unassigned | 3 days ago | review → | |
| MT.1154 NEW · v1.6.0 Defender for Endpoint tamper protection is on for all devices | no results yet | Critical | Df Defender | New | unassigned | 3 days ago | review → |
No tests match these filters.
Sorted by attention, with regressions and failures first.