Enterprise Microsoft 365 MCP Server
Server Configuration
Describes the environment variables required to run the server.
| Name | Required | Description | Default |
|---|---|---|---|
No arguments | |||
Instructions
Guidance the server publishes about itself, which clients place ahead of the tool catalog so the model reads it before choosing anything.
This server publishes no instructions, or was last inspected before Glama recorded them.
Capabilities
Features and capabilities supported by this server
Protocol revision2025-11-25
| Capability | Details |
|---|---|
| tools | {
"listChanged": false
} |
| prompts | {
"listChanged": false
} |
| resources | {
"subscribe": false,
"listChanged": false
} |
| experimental | {} |
Tools
Functions exposed to the LLM to take actions
| Name | Description |
|---|---|
| m365_get_vacation_statusB | Checks the scheduled automatic reply (OOF / Out-of-Office) and vacation forwarding rules for a mailbox. |
| m365_configure_vacationC | Configures scheduled out-of-office auto-reply with HTML formatting and optional forwarding/redirection. |
| m365_disable_vacationC | Immediately disables automatic out-of-office replies and clears temporary vacation redirect rules. |
| m365_audit_ex_employeesA | Audits disabled or terminated accounts for NDR 550 5.1.10 risks and license optimization opportunities. |
| m365_convert_ex_employee_to_sharedA | Converts a departing employee's mailbox to a free SharedMailbox, sets forwarding with copy, and hides from GAL. |
| m365_get_mailbox_infoC | Retrieves comprehensive mailbox properties (type, protocols, UPN, aliases, forwarding, quotas). |
| m365_list_mailboxesC | Lists mailboxes filtered by type (SharedMailbox, UserMailbox, RoomMailbox). |
| m365_configure_shared_mailboxC | Configures shared mailbox permissions (FullAccess, SendAs, automapping toggle, copy sent items). |
| m365_list_inbox_rulesB | Lists all client-side and server-side inbox rules configured on a specific mailbox. |
| m365_list_transport_rulesC | Lists tenant-wide mail flow and transport rules in Exchange Online. |
| m365_remove_inbox_ruleC | Removes a specific inbox rule from a mailbox by its RuleIdentity or Name. |
| graph_send_emailC | Sends corporate email with HTML formatting via Microsoft Graph API with application permissions. |
| graph_list_recent_messagesC | Fetches recent emails from a mailbox via Microsoft Graph API. |
| graph_send_teams_notificationC | Sends rich formatted card notifications to Microsoft Teams channels via Incoming Webhooks. |
| gal_search_directory_usersC | Searches directory accounts in Microsoft Entra ID by displayName, UPN, or email address. |
| gal_audit_external_mail_contactsB | Audits external MailContacts in Exchange Online directory, optionally filtered by target domain. |
| compliance_audit_domain_signaturesB | Audits tenant-wide email signatures and legal disclaimers configured via Exchange Transport Rules. |
| compliance_audit_retention_policiesA | Audits retention policies and MRM tags configured in Exchange Online for compliance/GDPR/LGPD. |
| compliance_audit_litigation_holdC | Audits mailboxes with Litigation Hold or Retention Hold enabled for legal preservation. |
| compliance_audit_recoverable_itemsC | Audits mailbox Recoverable Items and Deleted Items folder sizes and quotas for compliance and storage hygiene. |
| m365_message_traceC | Traces message delivery events in Exchange Online by sender, recipient, status, and time window. |
| m365_verify_dkim_statusB | Verifies DKIM signing status and active key configuration for tenant accepted domains. |
| m365_list_connectorsA | Lists inbound and outbound email connectors configured in Exchange Online. |
| m365_check_quarantineC | Checks quarantined messages in Microsoft Defender / EOP by recipient, sender, or hours back. |
| m365_list_tenant_allow_listB | Lists entries in the Microsoft Defender Tenant Allow/Block List (senders, domains, URLs). |
| m365_add_sender_to_allow_listC | Adds a sender email or domain to the Tenant Allow List with an expiration period. |
| m365_list_distribution_groupsC | Lists distribution groups in Exchange Online with authentication and external delivery settings. |
| m365_get_group_membersC | Retrieves the member list of a distribution group. |
| m365_manage_group_memberC | Adds or removes a user from a distribution group (action: 'add' or 'remove'). |
| m365_set_group_external_deliveryB | Configures whether a distribution group accepts messages from unauthenticated external senders. |
| m365_list_license_skusA | Lists all M365 license subscription SKUs showing enabled, consumed, and available seats. |
| m365_get_user_profileB | Retrieves a user's corporate profile (department, jobTitle, phone numbers, office, account status). |
| m365_update_user_profileC | Updates user directory attributes (department, job title, mobile phone, business phone). |
| graph_generate_daily_activity_summaryC | Analyzes mailbox messages and generates a categorized summary for daily operational reviews. |
Prompts
Interactive templates invoked by user choice
| Name | Description |
|---|---|
No prompts | |
Resources
Contextual data attached and managed by the client
| Name | Description |
|---|---|
No resources | |
TDQS
Scored across 34 tools
Most tools target distinct resources and actions, such as vacation status vs. configure vs. disable, or message trace vs. quarantine checks. However, several audit and directory tools have adjacent purposes (e.g., compliance audits, GAL search vs. user profile lookup, transport rules vs. domain signature audit), so occasional confusion is possible.
Tools generally use snake_case verb_noun phrasing, which is readable and mostly predictable. But the server mixes multiple prefix families (m365_, graph_, gal_, compliance_) and some names are long audit-style descriptions rather than consistent action-oriented patterns.
At 34 tools, the surface is heavy for an MCP server and risks overwhelming tool selection. While Microsoft 365 administration is broad, many tools are narrow audit or configuration variants that could be consolidated or grouped.
The set covers a wide range of Exchange Online, Entra ID, Defender, compliance, and Graph operations, including many read and audit capabilities. However, it lacks several core lifecycle operations such as mailbox/user/group creation and deletion, license assignment, and broader Teams or SharePoint management.