Default Settings - Classification and M365 Groups - M365 groups - Allow Guests to have access to groups content
Why This Matters
Guest access to Microsoft 365 Group content is enabled by default, allowing external users to collaborate on group resources like SharePoint sites and Teams channels. Disabling this setting can inadvertently block legitimate cross-organization collaboration, while leaving it enabled without governance controls may expose sensitive data to unauthorized external parties. Admins should review this setting to balance security requirements with business collaboration needs.
What Aether365 Checks
Aether365 verifies that the "Allow Guests to have access to groups content" setting in Microsoft Entra ID is configured to True. This check appears in the Aether365 dashboard under the entra-id category, specifically within the EIDSCA.ST09 security control.