Azure AD
פעילזהות וגישהמחבר Azure AD — קריאה בלבד, ללא התקנה
Audits your Azure AD (Microsoft Entra ID) directory — MFA coverage and Conditional Access, legacy-auth blocking, privileged-role sprawl (Global Admins, admins without MFA, PIM), over-privileged app identities, guests and external collaboration, Identity Protection risk (at-risk / compromised users), group hygiene, and audit-log retention. Identity-infrastructure posture, read-only — distinct from the Microsoft 365 file/content scan.
מה אנחנו סורקים
- User, group, and role directory metadata — MFA-registration state, guest vs member, sign-in recency, and privileged-role assignments (never credentials)
- Conditional Access, external-collaboration and authorization policies, Identity Protection risk state, app (service-principal) role holdings, and audit-log configuration
ניטור בקריאה בלבד — שום דבר בנתונים שלכם ב-Azure AD לא משתנה אלא אם הפעלתם תיקון אוטומטי והענקתם גישת כתיבה בנפרד.
ממצאי אבטחה
22 חוקי זיהוי רצים בכל סריקת Azure AD. כל ממצא מגיע עם הסבר בשפה פשוטה, הראיות שמאחוריו וצעדי תיקון.
- CRITICALOver permission
Excessive number of Global Administrators
- CRITICALOver permission
Privileged admin account without MFA
- CRITICALMisconfig
User with a confirmed account compromise
- HIGHMisconfig
Users without multi-factor authentication registered
- HIGHMisconfig
User has MFA explicitly disabled
- HIGHMisconfig
Legacy (basic) authentication is still allowed
- HIGHMisconfig
No Conditional Access policy requires MFA for all users
- HIGHOver permission
Excessive number of Privileged Role Administrators
- HIGHAI agent
Service principal holds an owner-equivalent directory role
- HIGHExternal access
Guest (external) user holds a privileged role
- HIGHMisconfig
User flagged at-risk by Identity Protection
- MEDIUMMisconfig
No enforced Conditional Access policy exists
- MEDIUMMisconfig
Privileged Identity Management is not enabled
- MEDIUMExternal access
Guests are allowed to invite other guests
- MEDIUMExternal access
Dynamic group silently includes guest members
- MEDIUMMisconfig
Microsoft 365 group has public visibility
- MEDIUMMisconfig
Audit-log retention is shorter than 30 days
- MEDIUMMisconfig
Vendor AI-training data-contribution posture
- LOWStale access
Guest account inactive for over 90 days
- LOWMisconfig
Group has no owners
- LOWMisconfig
No diagnostic settings export the logs
- LOWMisconfig
Sign-in logs are unavailable
איך מחברים את Azure AD
שלב 1
נרשמים או מתחברים ל-8200.dev
שלב 2
עוברים אל מחברים ← Azure AD
שלב 3
לוחצים על חיבור ומאשרים במסך ההסכמה של Azure AD
שלב 4
8200.dev סורק אוטומטית — התוצאות מופיעות תוך דקות
חברו את המקור הראשון בתוך דקות — חינם, בקריאה בלבד, בלי שיחת מכירה.