How to find the Tenant ID:
portal.azure.com → Microsoft Entra ID (Azure Active Directory)xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx)⚠️ The client's Azure admin must grant admin consent to the Drevni app registration for Secure Score and Defender data to appear.
Auto-detects accounts in each connected service that match this client's name. Click Use to fill an ID, or pick manually from the dropdown.
How this works:
You register the app once in Drevni's tenant as a multi-tenant app. Then each client's admin grants consent for their tenant. Drevni's single app + secret can then query any consented client tenant.
portal.azure.com with your Drevni Global Admin accountDrevni Solutions PortalAZURE_CLIENT_ID✓ Key point: This app lives in Drevni's tenant only. You never create apps in client tenants. The “Multitenant” setting allows client admins to consent to it.
SecurityEvents.Read.All
SecurityActions.Read.All
Reports.Read.All
Directory.Read.All
DeviceManagementManagedDevices.Read.All
SecurityAlert.Read.All
Drevni Portal Key, Expiration: 24 monthsAll three values come from Drevni’s app registration:
All three are from Drevni’s tenant. Client tenant IDs are stored per-client below.
⚠ Requires the client’s Global Administrator to complete.
For each client, send their admin this link (fill in both values):
✓ Once consented, the Drevni app can pull Secure Score, Defender alerts, and security data from the client’s tenant using the same app credentials.
No need to re-create the app — just change the setting: