Microsoft Copilot security directory
MyHub for AOS-US
Published by AvePoint, inc.
High risk
Easily manage and organize Microsoft Teams, Groups, SharePoint, and Viva Engage (for AOS-US)
Security assessment
Plutonium assessed this plugin for permissions, capabilities, and security-relevant behavior.
- Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
- Can change or update your information: This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.
- Can permanently delete data: This connector can erase records, files, or accounts. Once deleted the data may be unrecoverable - even an accidental request can cause permanent loss.
- Can send messages as you: This connector can post messages, emails, or chat replies on your behalf. Recipients will believe the message came from you, which makes phishing or social-engineering risks higher.
Available capabilities
This add-on exposes 10 tools or capabilities.
- Directory.Read.All
- Group.Read.All
- Group.ReadWrite.All
- GroupMember.ReadWrite.All
- Mail.Send
- Reports.Read.All
- Sites.FullControl.All
- Sites.Read.All
- Sites.ReadWrite.All
- User.Read.All
The interactive security report will load automatically.