Commercial tenants can meter SharePoint storage above included quota through an Azure-linked billing policy from mid-2026. Quota banners pause while enrolled, but sprawl still hits the Azure bill beside Extra File Storage and Archive options.
Switzerland is expanding an open-source workplace test to around 3,000 federal staff while Microsoft 365 stays in place. The useful lesson is the parallel pilot, not a sudden platform exit.
Microsoft ends classic SharePoint publishing creation in March 2027 and makes classic user pages read-only in October 2028. Admins should inventory high-traffic classic intranet pages and rebuild only those still in active use before escape routes close.
Microsoft CAE can cut Microsoft Graph access for high-risk, disabled, or deleted single-tenant service principals to minutes instead of 60–90 minute token life. Apps must request cp1; Conditional Access, licensing, and a disable-and-recover runbook must already align.
Attackers impersonate IT support in external Teams chats, persuade users to approve remote sessions, then deploy implants and use WinRM toward high-value systems. Unsolicited Teams support contact is an incident path, not a chat request, for Microsoft 365 tenants.
Microsoft will apply outbound external-message limits in Teams from mid-September 2026 for tenants that use only an onmicrosoft.com (MOERA) domain. External chat can pause when limits hit; internal chat stays up. Admins should inventory default-domain tenants and plan verified…
Microsoft moves the Teams web client to teams.cloud.microsoft by end of September 2026. Redirects keep old links working, but the tenant off-switch retires after 2026, so proxy allowlists and hard-coded teams.microsoft.com docs need a pass.
Microsoft retires the very small business Admin app inside Teams, Outlook, and Microsoft365.com by October 2026. Admins must use Microsoft Admin Center, Teams Admin Center, and Admin Agent instead of the in-client shortcut.
Microsoft 365 adopts one hero link per file or folder in SharePoint and OneDrive. The default grants no access until people are added; settings change without new URLs. Old links still work. Rollout mid-September through late October 2026.
Microsoft Graph PowerShell plans WAM for delegated sign-in with the default app. Pre-2.36.1 modules fail without it; admins should inventory interactive Connect-MgGraph scripts and test 2.37+ on multi-account workstations before live sign-in breaks.
Microsoft Purview raises SharePoint and OneDrive auto-labeling from 100,000 to 500,000 files per tenant per day. September 2026 preview, October GA. Same policies and UX; higher throughput clears labeling backlogs faster for Copilot and protection work.
Microsoft retires the Content Update flow in the SharePoint FAQ web part by late September 2026. Authors lose AI-suggested answer edits against grounding sources. Published FAQ content remains; generation, import, and manual editing continue. Training and author guides need a…
A PowerShell baseline-vs-current compare of Microsoft Graph application and delegated permissions surfaces new scopes, including granular user-authentication-method rights. Regular diffs plus non-production least-privilege tests stop tenants keeping broad consent after Microsoft…
A practitioner guide links a SharePoint home site to Viva Connections so intranet navigation, news, and tasks appear in Microsoft Teams. It cites a possible 30–50% audience gap without integration but offers no public measurement method. Use ownership, content rhythm, and…
Microsoft will enable default sensitivity labels on new SharePoint libraries toward late 2026. Small admin teams can classify content at creation, provided Purview licensing and external-sharing side effects are validated first.
Microsoft retired Set-FederatedConnectorToggle on August 25. Tenants that used the global switch must set Allowed agent types by October 20 to keep blocking federated Copilot connectors, shifting from one broad toggle to selective agent-type controls.
TerminalFix lures users with fake Cloudflare verification that asks them to paste a PowerShell command. Later stages add persistence, domain recon, and an encrypted reverse tunnel. Small IT teams should wire user reports to endpoint and identity signals using Microsoft’s…
SharePoint policy libraries often mix authoring and employee access in one place. Separating restricted working copies from a read-only published library makes the publishing boundary clear and simplifies access reviews.
Review SharePoint Sharing Links and Guests Before Copilot Rollout
SharePoint sharing reports flag links and guests but cannot confirm business need. This checklist guides admins through evidence collection, owner routing, decision records, and controlled next actions before Copilot rollout without premature revocation.
Members only
1 like·0 comments
Live 16th Sept 2026
Collab365 Team
Blocker·Last Update: 16th Sept 2026
I can't tell which SharePoint sharing links and guests are still safe
SharePoint admins in small M365 teams see sharing links, guests, and external access pile up but cannot tell which remain justified. Stale project links, contractor guests, and ownerless sites raise risk before Copilot. A defensible owner-review workflow is needed before…