Skip to content

Consent Framework - Admin Consent Request - Policy to enable or disable admin consent request feature

Why This Matters

When admin consent request is disabled, users can silently grant permissions to third-party applications without organizational oversight. This creates a significant security risk as malicious or misconfigured apps may gain unauthorized access to sensitive data across your Microsoft 365 environment. Enabling admin consent requests ensures that all application permissions are reviewed and approved by authorized administrators.

What Aether365 Checks

Aether365 verifies whether the isEnabled property is set to true in the policies/adminConsentRequestPolicy resource. This check appears in the Aether365 dashboard under entra-id checks and confirms that the admin consent request feature is enabled.

How to Fix

To enable the admin consent request feature:

Microsoft references

Was this page helpful?