The instant report for Microsoft 365

Find your exposure
before someone else does.

One read-only connection. Four minutes. The money you're wasting, the risk you're carrying and how ready you are for AI, as one report, in English.

Start your free assessment Read-only · Nothing to install · Aggregated numbers only · Revoke in one click
Sixty seconds
Four minutes from consent

Three numbers nobody had.
Until now.

Prism read one mid-market tenant, read-only, and wrote these into the first report before the coffee was cold.

£32,734

A year in licences nobody was using. Prepaid seats minus consumed, at verified UK list prices, by SKU. Auditable, not modelled.

62%

Secure Score, with its direction of travel. Read weekly, so the board sees whether it is getting better, not a screenshot from the last audit.

9.1×

Return on every Copilot pound, and the seats being paid for and never opened.

Illustrative figures from a real tenant profile. Your report shows your numbers.

Who it's for

Made for the person
who signs it off.

Every tool in this category was built for the admin console. Prism was built for the three people who never open it.

The owner, no IT department
Are we safe? Would our cyber insurance actually pay out?

A safety score, the three things to fix this week, and the evidence your broker asks for. In plain English, on one page.

The CFO
What is the Microsoft line, and how much of it is waste?

One number, in pounds, with the seat-by-seat breakdown behind it. Prism usually pays for itself out of what it finds in month one.

The CISO
What exactly can this see, and is my posture defensible tomorrow?

Fourteen read-only permissions, listed by name. Secure Score, MFA coverage and the risk register, current and trending. Nothing it could leak.

Six lenses. One report.

Everything that matters in your tenant,
read like an auditor.

Modules marked live report from your first connection. The rest come online as your history builds, and we never list a stub as live.

How it works

Consent. Read. Report.

01

Connect, read-only

A Global Administrator grants Prism read-only access in one click. No agents, no installs, nothing changes in your tenant.

02

Prism reads the signals

Aggregated counts, scores and policy states across every module. Never a file, an email or a chat.

03

Your report lands

The waste, the risk, the readiness, as one instant report, refreshed weekly, written for the people who sign things off.

What it can see, and what it can't

It reads your tenant.
It cannot read your content.

By design, not by policy. The data model has nowhere to put a file, a message or a name. If Prism were breached tomorrow there is nothing of yours to leak, because it was never pulled.

  • Read-only. Prism never changes anything in your tenant.
  • Aggregated metrics only. Counts, scores, policy states.
  • Nothing to install. No agents, no endpoints, no network changes.
  • Revoke in one click from your Microsoft Entra admin centre. Access ends immediately.
  • UK data residency. Everything Prism stores lives in Azure UK South. No keys in the platform, only managed identities.
  • Retention you can quote. Snapshots for 90 days, reports for 30.
  • Never file contents, email bodies, chat messages, or personal data beyond the contacts you give us.
The fourteen permissions, by name
  1. Directory.Read.All
  2. Reports.Read.All
  3. SecurityEvents.Read.All
  4. AuditLog.Read.All
  5. Policy.Read.All
  6. Application.Read.All
  7. IdentityRiskyUser.Read.All
  8. UserAuthenticationMethod.Read.All
  9. PrivilegedAccess.Read.AzureAD
  10. Sites.Read.All
  11. Files.Read.All
  12. Team.ReadBasic.All
  13. TeamSettings.Read.All
  14. ChannelSettings.Read.All

Every one is a read permission. There is no write scope in the application, and the consent screen shows you exactly this list.

Compare

Not another admin console.

The alternatives are built for the people who run the tenant. Prism is built for the people who own the outcome.

PrismMicrosoft's own toolsGovernance platformsA consultant's audit
Built forThe person who signs it offThe administratorThe admin and governance teamThe board, once
What arrivesOne report, weekly, in EnglishDashboards you assemble yourselfA hundred reports and a console to learnA PDF, point in time
First answer inFour minutesHours of your own timeWeeks of onboardingWeeks, and an invoice
Sees your content?Never, by designYes, it is your tenantOften read and write across the estateUsually full access for the engagement
Trend over timeFrom the first weekSecure Score onlyYes, for the adminNo
CostFrom £450 a month, flat per tenantIncluded, plus your timeTypically five figures a yearTypically five figures per audit

Governance platforms: CoreView, Syskit Point, AvePoint, Quest Nova, Rencore. Cost figures from published and reseller price lists, August 2026, and they are good tools for the job they were built for. That job is not this one.

Why I built it

Twenty-five years inside other people's Microsoft estates.

Consolidations, migrations, security assessments, the audits nobody wanted to commission until after the incident. The same three things are true in almost every tenant I open: a five-figure sum on licences nobody uses, a security posture the board only hears about after something goes wrong, and a Copilot bill nobody can defend.

None of it is hidden. It's all in Microsoft 365, in plain sight. Nobody's reading it. Prism is the thing I always wished I could hand a CEO on day one.

Allan Harding · Founder, FX Technologies (Wessex) Ltd
Pricing

Flat per tenant.
It pays for itself out of what it finds.

Assessment

Free
Any tenant, once

Your first instant report, covering waste, posture and readiness, from a read-only connection. Keep it whether or not you buy.

Start free

Growth

£450/ month
Up to 150 seats

Weekly report, all live modules, no setup fee.

Enterprise

£1,200/ month
150 to 750 seats

Weekly report, alerts, an executive onboarding workshop if you want one.

Institutional

£2,750/ month
750 to 2,000 seats

Copilot ROI and AI-readiness depth, bespoke onboarding.

Annual prepay: two months free. MSPs and IT partners: a wholesale per-tenant list is available. Ask at info@prismreport.co.uk.

Questions a CISO asks first

Straight answers.

Why not just use Secure Score and the admin centre?

You should, and Prism reads them. What Microsoft doesn't give you is the translation: money and risk across every workload, over time, in one report an executive will read. Nobody hands a Secure Score screenshot to a CFO and gets a decision.

What exactly can Prism see?

Aggregated numbers only: counts, scores, policy states. It cannot read a file, an email or a chat message. The data model has nowhere to put them. That is an architectural guarantee, not a setting, and the fourteen permissions above are the whole list.

What happens if you are breached?

Nothing you would care about. Prism never pulled your content, so there is no content of yours to leak. The connection is read-only and you can revoke it from your own admin centre in one click.

Is anything installed in our tenant?

No. A Global Administrator grants a read-only, admin-consented connection. No agents, no endpoints, no network changes.

We already have a governance platform or an MSP.

Those are operator tools, built for the admin team. Prism is for the person who signs the cheque, the weekly executive report, and it is priced for a mid-market budget, not an enterprise procurement cycle. Many MSPs resell it as their own reporting layer.

Where is our data held?

Azure UK South, and only the aggregated metrics described above, on a rolling retention: snapshots for 90 days, reports for 30.

What does "coming soon" mean?

Prism is in a closed early-access run with the first ten UK tenants, free, in exchange for feedback. Start the free assessment and you're in the queue.

Every gap · Every seat · Every week

Find your exposure
before someone else does.

Start your free assessmentThe first ten UK tenants get it free