What is the Historical Scan & Report for M365?

A Blackpoint ITDR capability that scans up to 180 days of Microsoft 365 activity at onboarding, checking logins, inbox rules, forwarding, app consent, and Teams activity for signs of past compromise. Findings arrive as a clear, customer-ready report.

Who is the Historical Scan & Report for M365 for?

MSPs onboarding new Microsoft 365 clients who want to open the engagement with documented proof of risk, not a sales pitch.

What does the Historical Scan & Report for M365 include?

  • Risk detection across logins, inbox rules, forwarding, app consent, and Teams activity
  • Findings mapped to MITRE ATT&CK tactics and techniques, explained in plain language
  • Prioritized next steps tied to specific users, IPs, and applications
  • Automatic Forensic Reports for confirmed malicious activity
  • Instant report delivery with no manual formatting

Why do MSPs choose the Historical Scan & Report for M365?

It proves value on day one. The scan hands them a documented report of real risk in their own environment, giving MSPs an immediate, tangible reason to expand the account right from onboarding.

Download the Solution Brief →