Skip to main content

Capabilities

Structure Sync

AccessOwl periodically syncs the permissions schema of an application.

User Sync

AccessOwl periodically syncs a list of users along with their assigned permissions.

Provisioning

AccessOwl creates or removes user accounts with the specified permissions during access requests or revocations.Note: Distribution Groups cannot be automatically provisioned or deprovisioned due to API limitations at Microsoft. Only Roles, Licenses, and Security Groups can be managed.

Directory Sync

AccessOwl syncs (creates, removes, or deactivates) users from directories like Slack, Microsoft365, Okta, or Google into the AccessOwl users database.

FAQ

No. Microsoft 365 provisioning only creates the account and assigns licenses, Entra directory roles, and group memberships. AccessOwl never sets or changes Exchange mailbox or calendar folder permissions.A newly created mailbox keeps Microsoft’s own default: the calendar’s Default permission is set to AvailabilityOnly (free/busy). If your organization prefers a different org-wide calendar sharing level, apply it on the Microsoft side, as Exchange does not automatically push an org-wide default onto new mailboxes.