Skip to Content
Getting StartedConnect Microsoft

Connect Microsoft

Patchly connects to your Microsoft environment with read-only API access. Setup takes about 2 minutes using our onboarding portal.

Get Started

Visit connect.patchly.ai  to authorize Patchly for your organization. You’ll need a Global Administrator or Privileged Role Administrator account.

The portal will:

  1. Collect your contact details
  2. Redirect you to Microsoft’s admin consent screen
  3. Automatically capture your tenant ID after you approve

No manual steps required — everything is handled in one flow.

What Permissions Does Patchly Request?

All permissions are read-only and application-level (no user impersonation). Patchly never modifies data in your environment.

Microsoft Graph

PermissionWhat it reads
User.Read.AllUser directory for identity context
Device.Read.AllRegistered device inventory
Group.Read.AllSecurity group membership
AuditLog.Read.AllSign-in activity
Directory.Read.AllDirectory data

Microsoft Defender for Endpoint

PermissionWhat it reads
Machine.Read.AllDevice inventory
Vulnerability.Read.AllVulnerability data
Software.Read.AllSoftware inventory
Alert.Read.AllSecurity alerts
SecurityRecommendation.Read.AllSecurity recommendations

What Happens Next?

StepWhatWhen
You grant consentPatchly gets read-only access to your security dataImmediately
First sync startsVulnerability, device, and user data are pulledWithin minutes of consent
Data refreshes nightlyUpdated data is pulled on a daily schedule02:00 UTC each day
Dashboard readyYour Patchly contact sends you the linkAfter first sync completes

Your first data sync starts automatically after you grant consent — no manual configuration needed on our side.

See Data Security for how your data is stored and protected, or Data Freshness to understand sync timing.

Last updated on