Why we're building this
Every Dynamics environment starts with a clean security concept. Then reality happens: a project adds three roles because the existing ones “almost” fit. Someone gets elevated rights “just for the migration” — and keeps them. A team is copied, a business unit restructured, an admin leaves and their permissions live on. None of these steps is a mistake on its own. Together, after a few years, they add up to a system where nobody can say with confidence what a single user can actually see and change.
Most of the time, that's an invisible problem. Until it isn't: an auditor asks who can access customer data, and the honest answer would take days. A data protection officer wants to know why a departed contractor still shows up in the user list. A security review finds privileges nobody remembers granting. The information exists — scattered across roles, teams, business units and column-level settings. What's missing is a way to read it.
That's the gap the Security Suite closes: it turns the security model you already have into something you can actually see, question and clean up — the same way xRM Audit made your data changes readable and Data Guard made your data quality enforceable.
What we're planning
The feature set is taking shape — this is the direction. Early-access feedback will sharpen it.
The core question, answered per person: what can this user actually see, create, change and delete — as the sum of all roles, team memberships and business-unit inheritance. One view instead of an afternoon of matrix archaeology.
Which roles overlap? Which are unused? Which exist three times under different names because every project added its own? The Suite makes your role landscape readable — the first step to cleaning it up.
Users whose rights quietly grew far beyond their job. Privileges granted “temporarily” and never revoked. Admin rights held by people who left the team. Surfaced proactively — before an audit finds them.
Security is not a snapshot. See how access evolved: who got which role when, and what changed since the last review — the natural companion to what xRM Audit already does for your data.
When the auditor asks “who can access customer data?”, the answer should take minutes, not days. Readable reports for reviews, certifications and your own peace of mind.
Security analysis of your environment is itself highly sensitive data. Like every xRM product, the Suite runs Dataverse-native — no external services, nothing leaves your tenant.
We don't announce dates before we're sure we can keep them — that's a promise we make with every product. Leave your contact below and you'll get exactly one mail at launch, plus early access if you want a first look.
Yes. A small group of organizations will get the Suite before general availability — in exchange for honest feedback. If that's you, say so when you register your interest.
No. Like Audit, Data Guard and Translation Studio, the Security Suite is built Dataverse-native: a managed solution from AppSource, running entirely inside your tenant. Your security data — arguably your most sensitive data — never leaves your environment.
That's the plan. Audit answers “who changed what”, the Security Suite answers “who can do what” — two halves of the same governance story, side by side in your Dynamics 365.
One mail at launch, early access if you want it, zero spam. Tell us you're interested and we'll take it from there.
Get notified at launch →Already shipping
The Security Suite joins a family that already covers audit, data quality and translations — all Dataverse-native, all on Microsoft AppSource.