logo
search
SharePoint Document Issues

How to Create a SharePoint Online User Access Report

Maira MehtabMaira Mehtab Sep 28, 2026 869 views

Question details

The user needs to generate a comprehensive quarterly SharePoint access report detailing sites, named owners, members, visitors, permissions, custom groups, broken inheritance, and dates.

How to Create a SharePoint Online User Access Report
Product
SharePoint Online
Device & OS
not provided
Scenario
Generating an in-depth quarterly access and permissions report for auditing or compliance purposes.
Observed behavior
SharePoint Online lacks a built-in, out-of-the-box reporting feature that captures all of these specific site details and permission parameters in a single view.
Before you start

Ensure you have SharePoint Administrator or Global Administrator privileges and have the PnP PowerShell module installed on your system before attempting to extract permission data.

Solution 1Recommended

Generate a User Access Report Using PnP PowerShell

Since SharePoint does not offer a native comprehensive report, utilizing a PnP PowerShell script is the most effective way to extract complete permission details to a CSV file.

PowerShell allows administrators to iterate through site collections to pull precise data regarding named owners, members, visitors, custom groups, and files with broken inheritance.

1
Install PnP PowerShell

Open PowerShell as an Administrator and install the PnP module by running the command `Install-Module -Name PnP.PowerShell`.

2
Connect to SharePoint Admin Center

Authenticate and connect to your environment using the command `Connect-PnPOnline -Url https://yourdomain-admin.sharepoint.com -Interactive`.

3
Execute the Permissions Script

Run a customized SharePoint permissions script designed to iterate through your site collections, checking the `HasUniqueRoleAssignments` property to document user access and broken inheritance.

4
Export Results to CSV

Use the `Export-Csv` cmdlet at the end of your script to output the collected data into a CSV file format.

5
Combine Site Collection Reports

Because most scripts operate at the site-collection level, repeat this process for each site collection in your tenant, then combine the exported CSV files to create your final quarterly report.

Generate a User Access Report Using PnP PowerShell
Data Aggregation: Running extensive scripts across large tenants can be time-consuming. It is highly recommended to run these PowerShell scripts during off-peak hours to avoid throttling.
Free Microsoft Office alternative

Analyze Your SharePoint CSV Reports with WPS Office

After exporting your SharePoint user access data to a CSV file via PowerShell, you need a reliable spreadsheet tool to combine, format, and analyze the data. WPS Office offers a free, lightweight, and highly compatible alternative to Microsoft Office for managing all your reports.

Seamlessly open and edit CSV and XLSX files exported from SharePoint PowerShell scripts.Highly compatible with all Microsoft Office file formats.Lightweight design ensures fast loading and processing of large quarterly access reports.Familiar user interface that requires no learning curve for Excel users.
microsoft office alternative - wps office

Frequently Asked Questions

Can I generate a SharePoint access report without using PowerShell?

SharePoint Online does not currently provide a single out-of-the-box report that covers custom groups, broken inheritance, and complete site access all at once. You must rely on third-party SharePoint auditing tools or PowerShell scripts.

How do I find SharePoint sites or folders with broken permission inheritance?

You can identify broken inheritance by using PnP PowerShell scripts that evaluate the 'HasUniqueRoleAssignments' property. If this property returns 'True' for a list or site, it means the item does not inherit permissions from its parent.

What permissions do I need to run these PowerShell scripts?

You must have at least SharePoint Administrator credentials to connect via PnP PowerShell and retrieve complete site collection permission reports.

Can I schedule this SharePoint user access report to run automatically?

Yes. You can automate the execution of your PowerShell script using Azure Automation or Windows Task Scheduler to run the report on a quarterly basis and email the resulting CSV file.