Microsoft 365 security auditing for K-12 IT administrators. Seven skills covering threat detection, MFA compliance, admin role hygiene, Conditional Access, OAuth app permissions, guest accounts, and inactive accounts — all via the Microsoft Graph API with no extra tooling required.
Audit all privileged administrator roles in Microsoft 365 / Entra ID. Use this skill whenever any IT admin wants to see who has admin access, check for overprivileged accounts, find old vendor or contractor admin accounts that should be removed, verify that the principle of least privilege is being followed, run a…
Audit Conditional Access policies in Microsoft 365 / Entra ID for gaps, misconfigurations, and coverage holes. Use this skill whenever any IT admin wants to review Conditional Access policy coverage, find users or apps excluded from MFA requirements, check if legacy authentication protocols are still allowed, verify…
Find stale, dormant, or inactive Microsoft 365 accounts — users who haven't signed in for 30, 60, or 90+ days. Use this skill whenever any IT admin wants to audit inactive staff accounts, clean up dormant accounts before a compliance review, find accounts that should be disabled after employee departures, reduce the…
Run a Microsoft 365 MFA compliance audit against any Entra ID / Azure AD security group. Use this skill whenever any IT admin wants to check MFA registration status, find users missing MFA, run a monthly or quarterly compliance check, enforce MFA via Conditional Access, protect shared accounts from lockout, or export…
Audit all third-party apps and OAuth permissions granted access to your Microsoft 365 tenant. Use this skill whenever any IT admin wants to see which apps have been granted access to organizational data, find apps with overly broad permissions like Mail.Read or Files.ReadWrite.All, identify apps that staff approved…
Scan a Microsoft 365 tenant for active security threats, compromised accounts, and suspicious sign-in activity using Entra Identity Protection. Use this skill whenever any IT admin wants to check for hacked accounts, run a security threat check, investigate suspicious login activity, see if any staff accounts are at…
Generates a 30-day Zendesk support intelligence report covering FCR, time to resolution, ticket trends by infrastructure category, recurring issues, and prioritized improvement recommendations.
This skill should be used when computing Zendesk support metrics, when calculating FCR (First Contact Resolution) or TTR (Time to Resolution), when generating a 30-day support trends report, when analyzing ticket volume by infrastructure category, when identifying recurring issues or systemic problems, when someone…
This skill should be used when analyzing support tickets to identify documentation gaps, when clustering Zendesk tickets by theme, when suggesting Help Center or wiki articles, when someone asks "what should we add to our knowledge base", or when performing a content gap analysis between support volume and existing…