TenantIQ feature roadmap — what's shipped, what's in progress, and what's coming next.
Shipped
13
In Progress
2
Planned
9
Future
7
Multi-Tenant Management
ShippedConnect and manage multiple M365 tenants from a single dashboard with GDAP and temp-admin auth modes.
Automated Assessment Engine
ShippedOne-click assessment that captures snapshots of Users, Groups, Licenses, Security, Exchange, Teams, and SharePoint.
TenantIQ SaaS Branding
In ProgressDedicated product identity, logo, and color system to position TenantIQ as a standalone SaaS offering.
GitHub Sync & CI/CD
In ProgressAutomated code sync to DapangoTech/TenantIQ repository with changelog generation.
Scheduled Assessments
PlannedConfigure automatic weekly or monthly assessments per tenant with email notification on completion.
Secret Expiry Alerts
PlannedProactive notifications when client credentials are approaching expiration (30/7/1 day warnings).
Customer Portal (Self-Service)
FutureRead-only portal for end customers to view their own assessment results and report history.
API Access for Integrations
FutureREST API for integrating TenantIQ data into PSA tools (ConnectWise, Autotask) and SIEM platforms.
Secure Score Integration
ShippedMicrosoft Secure Score fetched and displayed with current vs. max score and control-level breakdown.
MFA Status & Admin Roles
ShippedPer-user MFA registration status, methods registered, and full admin role membership table.
Conditional Access Policy Audit
ShippedList all CA policies with enabled/disabled status and enforcement mode.
OAuth Consent Inventory
ShippedList all third-party app consents with risk scoring based on permission scope and publisher verification status.
Inbox Rule & Forwarding Audit
ShippedBEC persistence check: scans all mailboxes for external forwarding rules, message deletion rules, and mailbox-level SMTP forwarding.
Password Age & Expiry Risk Flags
PlannedHighlight users with passwords older than 90 days or with no-expiry policy in amber/red on the Users page.
Privileged Identity Management Audit
PlannedReview PIM role assignments, eligible vs. active roles, and activation history.
Guest User Audit
PlannedList all external/guest accounts, their last sign-in, group memberships, and access review status.
Defender for M365 Integration
PlannedPull Defender alerts, threat policies, and Safe Links/Attachments configuration status.
Azure AD Identity Protection
FutureRisky users, risky sign-ins, and risk detections from Identity Protection.
Exchange Mailbox Audit
ShippedMailbox usage, shared mailboxes, transport rules, connectors, anti-spam and anti-phishing policy review.
Teams User Activity
ShippedPer-user Teams activity: chat messages, calls, meetings organized/attended, audio/video/screen-share minutes.
SharePoint Site Usage
ShippedPer-site storage, active files, page views, and last activity date from Microsoft usage reports.
OneDrive Usage Analytics
ShippedPer-user OneDrive storage, file counts, and activity metrics.
Teams per-User Detail Table in Usage Analytics
PlannedSortable per-user Teams activity table in the Usage Analytics section with export to CSV.
License Advisor
ShippedAI-powered license optimization recommendations based on actual usage patterns.
Billing & Subscription Management
FutureTrack M365 subscription costs, renewal dates, and optimization opportunities across tenants.
AI-Generated Executive Report
ShippedLLM-powered PDF reports with findings, risk ratings, and recommendations tailored to each tenant's actual data.
Assessment Comparison (Diff View)
PlannedCompare two assessments side-by-side to show what changed between runs — new users, removed policies, score changes.
Report Branding Customization
PlannedAllow per-tenant logo and color overrides in PDF reports for white-label delivery.
Multi-Tenant Comparison Dashboard
FutureSide-by-side security posture comparison across all managed tenants in a single view.
Compliance Framework Mapping
FutureMap findings to CIS, NIST, ISO 27001, and SOC 2 controls for compliance reporting.
Intune Device Compliance Audit
FutureDevice compliance policies, non-compliant devices, and enrollment status from Intune.