Skip to content

RunaCheck for MSPs

Microsoft 365 security posture, under control.

RunaCheck helps MSPs find and fix Microsoft 365 security gaps, manage Conditional Access and keep client settings consistent. See what needs attention across your tenants, with the tools to act from one console.

RunaCheck · fleet posture
Block legacy authentication 32 accounts · 74 controls
AccountPostureTop gapControl
Whitcombe Legal78%Legacy auth enabledFailing
Kaimai Farms91%None outstandingEnforced
Tasman Freight64%Admin consent openFailing
Rāwhiti Trust88%Guest access broadNot licensed
Enforce block legacy authentication on 8 accounts: 61 identities, 0 break-glass.

What RunaCheck does

Find the gaps. Keep the fixes in place.

Security posture management

Continuously check Microsoft 365 settings against a shared security baseline. Prioritise the gaps that matter and preview changes before applying them.

Once you approve enforcement, RunaCheck restores settings that drift from your baseline.

Conditional Access management

Check policy coverage, enforce multi-factor authentication (MFA) and block legacy authentication across clients.

Preview who a change affects and use report-only mode before enforcement, with safeguards for emergency access accounts.

Coverage across Microsoft Entra ID, Exchange Online, SharePoint, OneDrive and Teams. Read-only until you approve enforcement.

Less repeat work. More consistent security.

One view across clients

Compare tenants and prioritise fixes without checking each Microsoft 365 admin portal.

Fewer settings to recheck

Keep approved settings in place between assessments, even when configurations change.

Clear evidence for clients

Export posture findings and change records to explain what needs work and what you have fixed.

Frequently asked questions

What is RunaCheck?

RunaCheck is a Microsoft 365 security posture management tool for MSPs. It continuously checks tenant settings against a shared security baseline, prioritises the gaps that matter and lets you manage Conditional Access across clients from one console.

Will RunaCheck change my clients' settings without asking?

No. RunaCheck is read-only until you approve enforcement, and you can preview changes before applying them. After you approve enforcement, it restores settings that drift from your baseline.

What can RunaCheck do with Conditional Access?

It checks policy coverage, enforces multi-factor authentication (MFA) and blocks legacy authentication across clients. You can preview who a change affects and use report-only mode before enforcement, with safeguards for emergency access accounts.

Which Microsoft 365 services does RunaCheck cover?

RunaCheck covers Microsoft Entra ID, Exchange Online, SharePoint, OneDrive and Teams.

Can I show clients what has changed?

Yes. You can export posture findings and change records to explain what needs work and what you have fixed.

Is RunaCheck available now?

RunaCheck is currently in private beta. Join the beta to assess the security posture of a Microsoft 365 tenant and see where to focus first. You stay in control of which changes are applied. It also works alongside RunaTrain.

Join the beta

Start with one Microsoft 365 tenant.

Join the RunaCheck beta to assess your security posture and see where to focus first. You stay in control of which changes are applied.

Work directly with the team building RunaCheck and help shape what comes next.

Having trouble with the form? Open it in a new tab.