{"repo":"malcolmmcdonald1982/M365-Assessment-Toolkit","free":true,"listed":false,"github":"https://github.com/malcolmmcdonald1982/M365-Assessment-Toolkit","clone":"git clone https://github.com/malcolmmcdonald1982/M365-Assessment-Toolkit.git","description":"Free, open-source Microsoft 365 security assessment tool. Evaluates 54 findings across identity, CA, Exchange, Teams, SharePoint and Intune. Auto-remediates with rollback, generates professional reports, and simulates attack chains. Windows, local, no data leaves your machine.","language":"Python","stars":67,"topics":["conditional-access","entra-id","intune","m365","microsoft-365","open-source","powershell","remediation","security-assessment","windows"],"license":"MIT","category":"cli-tools","readme_excerpt":"M365 Assessment Toolkit A free, open-source Microsoft 365 security assessment tool for IT consultants and administrators. Runs locally on Windows — no data leaves your machine. This tool is not intended to replace enterprise security platforms. It fills a gap for IT professionals who need practical assessments without enterprise licensing costs. What it does - Runs a security assessment against any M365 tenant across 6 workloads - Evaluates 54 findings covering identity, AD sync, guest & B2B, conditional access, Exchange, Teams, SharePoint and Intune - Scores the tenant based on real attack paths — not just Microsoft Secure Score - Remediates findings with one click, with full rollback capability - Produces professional Word reports (Assessment Report, Remediation Report, Comparison Report) - Simulates attack chains to show which findings enable which attacks - Compares two assessments to track improvement over time What it looks like Assessment Dashboard The dashboard shows a live risk score, colour-coded findings by severity, and module run status. Findings with Investigation Scripts Each finding card includes an inline PowerShell investigation script you can run directly to dig into the detail behind the finding. Generated Reports One click produces a professionally formatted Word document ready to hand to a client. Attack Simulation Maps your open findings to real attack chains — showing exactly which combination of misconfigurations an attacker would exploit, in sequence","default_branch":null,"files":null,"tree":[],"storefront":"/r/malcolmmcdonald1982","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/malcolmmcdonald1982/M365-Assessment-Toolkit/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}