Social Squared Microsoft Graph permissions

This is a list of the Microsoft Graph permissions requested by the Social Squared SPFx web part for SharePoint Online.

INTRODUCTION

Following is a list of all of the Microsoft Graph permissions requested by the current version of Social Squared (5.1.0.0). You may decide not to approve any for which you do not need the functionality provided by that permission. Note that many of these permissions are necessary for Social Squared to function correctly within Microsoft Teams. Some of these permissions will have already been approved by Microsoft.

These are all "Delegated" permissions, which a Global or Application Admin can approve on the API Access page in the SharePoint Admin Center. They will then be listed as API Permissions under the SharePoint Online Client Extensibility Web Application Principal application in Azure AD in your tenant. The reason that Social Squared requests Delegated permissions as opposed to Application permissions is that Social Squared is not a registered Azure application, but rather a SharePoint Framework app. As such, it uses the context of the current user (i.e. delegated permissions) for performing requests.

 

Microsoft Graph Permissions 

Calendars

  • Calendars.ReadWrite: Read and write calendars in all mailboxes. This allows Social Squared to add a Teams meeting to users' calendars. If you do not wish to allow this, you should disable the "Enable Online Meeting in Teams" option in the Social Squared settings panel.

Channels

  • ChannelMember.Read.All: Determine members of the current Teams channel.
  • ChannelMessage.Send (new in v4.0.0.0): Replaces Group.ReadWrite.All (in previous Social Squared versions) to allow Social Squared to post a card-like notification in the Posts tab of a Teams channel when a new post is made in Social Squared in that channel.
  • ChannelMessage.Read.All (new in v5.1.0.0): Reads Teams channel messages to which the user has access, for Copilot Chat grounding. Only required if you wish to use the Copilot features in version 5.1.0.0+.

Chat

  • Chat.Create: Send a 1:1 chat message in Teams. This is to notify users of new posts in forums/topics to which they have subscribed.
  • Chat.ReadWrite: Read your Teams chat messages and send new ones.
  • Chat.Read (new in v5.1.0.0): Reads the user's Teams chat messages for Copilot Chat grounding. Only required if you wish to use the Copilot features in version 5.1.0.0+.

External Items

  • ExternalItem.Read.All (new in v5.1.0.0): Reads external connector content to which the user has access, for Copilot Chat grounding. Only required if you wish to use the Copilot features in version 5.1.0.0+.

Files

  • Files.ReadWrite.All: Access to all OneDrive files the current user can access. This is used to save/access Lightning Tools Global configurations (in v3.9.0.0+) and Lightning Tools Social Squared Properties (in v4.0.0.0+).

Groups

  • Group.Read.All (new in v4.0.0.0): Replaces Group.ReadWrite.All in previous Social Squared versions. Used to get M365 Group members for the presence indicator, M365 Group subscriptions and notifications, and Teams chat notifications.

Mail

  • Mail.Send (new in v4.5.0.0): Sends email notifications for subscriptions and moderation.
  • Mail.Read (new in v5.1.0.0): Reads the user's email for Copilot Chat grounding. Only required if you wish to use the Copilot features in version 5.1.0.0+.

Online Meetings

  • OnlineMeetings.ReadWrite: Create/display Teams meetings. This allows Social Squared to provide the online meeting functionality when used within Teams.
  • OnlineMeetingTranscript.Read.All (new in v5.1.0.0): Reads meeting transcripts to which the user has access, for Copilot Chat grounding. Only required if you wish to use the Copilot features in version 5.1.0.0+.

People

  • Presence.Read.All: Gets user presence after getting the user from the Group.
  • User.ReadBasic.All: Gets basic user profile information and photos for profile cards.
  • People.Read.All (new in v5.1.0.0): Reads people profiles for Copilot Chat grounding. Only required if you wish to use the Copilot features in version 5.1.0.0+.

SharePoint Sites

  • Sites.Read.All (new in v5.1.0.0): Reads SharePoint sites to which the user has access, for Copilot Chat grounding. Only required if you wish to use the Copilot features in version 5.1.0.0+.

Teams Tabs

  • TeamsTab.Read.All (new in v5.0.0.0): Reads Teams channel tab metadata in order to build correct notification links and determine which tab hosts the Social Squared forum when running as a Teams tab.

Was this article helpful?

Can’t find what you’re looking for?

Our world-class Customer Success team is here for you.

Contact Support