Capabilities
Structure Sync
AccessOwl periodically syncs the permissions schema of an application.
User Sync
AccessOwl periodically syncs a list of users along with their assigned permissions.
Provisioning
AccessOwl creates or removes user accounts with the specified permissions during access requests or revocations.Note: Distribution Groups cannot be automatically provisioned or deprovisioned due to API limitations at Microsoft. Only Roles, Licenses, and Security Groups can be managed.
Directory Sync
AccessOwl syncs (creates, removes, or deactivates) users from directories like Slack, Microsoft365, Okta, or Google into the AccessOwl users database.
FAQ
Does AccessOwl set default mailbox or calendar permissions when provisioning a Microsoft 365 user?
Does AccessOwl set default mailbox or calendar permissions when provisioning a Microsoft 365 user?
No. Microsoft 365 provisioning only creates the account and assigns licenses, Entra directory roles, and group memberships. AccessOwl never sets or changes Exchange mailbox or calendar folder permissions.A newly created mailbox keeps Microsoft’s own default: the calendar’s Default permission is set to AvailabilityOnly (free/busy). If your organization prefers a different org-wide calendar sharing level, apply it on the Microsoft side, as Exchange does not automatically push an org-wide default onto new mailboxes.

