MicrosoftPurview
About
Live scorecard · Updates as you answer

What is your Data Access Posture Score?

Oversharing is the single biggest cause of data exposure, and the thing Copilot inherits first. Set each control to how it really runs today and watch your score move.

5/ 100At risk
Your score50
Governed benchmark78

You are 28 points below the posture we see in well-governed estates.

Quick set:

External sharing controls

All sites

Sharing outside the organization is restricted and reviewed, not open by default.

Anonymous link audit

Public sites

"Anyone with the link" URLs are discovered, audited and expired.

Guest expiry

Confidential content

Guest accounts expire automatically (typically 30 days) rather than lingering forever.

Overprivileged identity review

Files and folders

Users with excessive file and folder permissions are identified and cut back to least privilege.

Stale access cleanup

All repositories

Non-compliant and unused sharing links are deleted automatically on a rule-based schedule.

Inactive user and guest removal

Directory

Dormant users and guests lose access automatically instead of retaining standing permissions.

Data owner access reviews

Business units

Data owners periodically recertify who should have access, with a full audit trail.

Sensitivity labels driving access

Sensitive data

Purview labels are applied and actually enforce protection, not just tag content.

AI and agent access restriction

Sensitive data

AI agents and Copilot are monitored and restricted from sensitive data types.

Find the oversharing you can’t see from a questionnaire

This scorecard reflects what you know. A real assessment surfaces the anonymous links, overprivileged identities and AI agents already touching sensitive data across M365, Azure, AWS and on-premises file shares.