Managing organizational data requires strict administrative oversight, especially when employees transition out of a company or undergo an internal audit. If you need to recover essential files, requesting OneDrive Data Access and Confirm Tenant Status is a critical workflow for Microsoft 365 administrators. This process ensures you can secure proprietary documents before the system permanently deletes them based on your organization's retention policies.
Verifying Account and Tenant Health
To successfully retrieve files, you must first verify that your organization's Microsoft 365 subscription is active and that the target user's data is still within the designated retention window. By default, Microsoft retains OneDrive data for 30 days after a user account is deleted, though your administrators may have extended this up to 3650 days.
Follow these steps to check the system environment:
- Navigate to the Microsoft 365 Admin Center (admin.microsoft.com) and log in with Global Administrator or SharePoint Administrator credentials.
- Expand the left navigation menu and select Billing, then click Your products. Verify that your core subscription status reads Active. If the status is Expired or Disabled, the tenant is locked, and you cannot access individual drives until the subscription is renewed.
- Next, expand the Users dropdown in the left menu.
- Click Active users if the employee is still currently employed. If they have left the organization, click Deleted users.
- Locate the specific user in the list. If their name appears in the Deleted users list, check the Deleted on column. The current date must fall within your organization's retention timeframe (typically 30 days from the deletion date) to successfully pull their files.
Generating the Administrative Access Link

Once you have validated the account's availability, you can generate a direct administrative link to the user's personal SharePoint URL. This bypasses standard sharing rules and grants you full control over their directory.
Execute the following sequence in the Microsoft 365 Admin Center:
- From either the Active users or Deleted users list, click on the target user's display name. A properties pane will slide out on the right side of your screen.
- At the top of this pane, click the OneDrive tab.
- Scroll down to locate the section labeled Get access to files.
- Click the hypertext button that says Create link to files. The system will process the request for a few moments.
- A URL will appear directly below the button. Click this newly generated link.
- Your browser will open a new tab directed to the user's OneDrive root directory. You now have Site Collection Administrator rights to this specific drive, allowing you to view, download, or move any folders and files contained within it.
Alternative: Assigning Permissions via PowerShell
For administrators managing bulk offboarding or those who prefer command-line tools, SharePoint Online Management Shell provides a direct way to assign access without navigating the web portal. You must have the SharePoint Online PowerShell module installed.
Run these commands to apply the permissions:
- Open PowerShell as an Administrator and execute
Connect-SPOService -Url https://[YourDomain]-admin.sharepoint.com. Enter your administrator credentials when prompted. - Run the site administrator command:
Set-SPOUser -Site https://[YourDomain]-my.sharepoint.com/personal/[User_Email_Format] -LoginName [YourAdminEmail] -IsSiteCollectionAdmin $true. Ensure you replace the bracketed variables with the exact tenant domain, the target user's formatted OneDrive URL, and your own admin email. - Press Enter. Wait for the prompt to return without errors. You can now manually paste the target user's OneDrive URL into your browser to view their files immediately.
Reviewing Exported Files with WPS Office

After you secure the necessary administrative privileges and download the user's files to your local machine, you need to audit the contents. While WPS Office cannot alter Microsoft 365 administrator settings or cloud retention policies, it is highly effective for processing the gigabytes of downloaded DOCX, XLSX, PPTX, and PDF files. If the auditing team does not have active, premium Microsoft 365 desktop licenses, WPS Office provides a fully equipped, lightweight environment to handle the offline document workload.
To audit the downloaded data efficiently:
- Batch Review via Tabbed Interface: Open WPS Office and drag multiple downloaded files from your local File Explorer directly into the WPS workspace. The software uses a single-window, tabbed interface, allowing you to rapidly switch between a departed employee's spreadsheets, text documents, and presentations without cluttering your desktop with multiple application windows.
- Extracting Data from PDFs: Departed users often leave behind locked or finalized PDF contracts. Open the PDF in WPS Office, click the Tools tab, and select PDF to Word. This converts the static document into an editable format, allowing you to copy essential vendor details or contract clauses for the replacement employee.
- Summarizing Archives with WPS AI: If you downloaded lengthy transition reports or project manuals, open the document in WPS Writer and launch WPS AI from the top ribbon. Prompt the AI to "Summarize the key deliverables and pending tasks in this document." This reduces the time an IT admin or manager spends reading unfamiliar operational files.
Frequently Asked Questions
Why do I get an "Access Denied" error after clicking the generated link?
If you immediately click the access link and receive an Access Denied or 404 error, the SharePoint permissions have not fully propagated across the server nodes. Close the browser tab, wait approximately three to five minutes, and click the link in the Admin Center pane again. If the issue persists, clear your browser cache or open the link in an InPrivate/Incognito window to bypass conflicting cached credentials.
Can a standard manager request access to their former employee's data?
No, standard users and standard managers cannot generate access links or view another user's private drive. The manager must submit an IT ticket requesting the files. A Global Administrator or SharePoint Administrator must perform the workflow to generate the link, download the required folders, and then share the downloaded data securely with the manager via a shared SharePoint site or local network drive.
How can I preserve the data if the retention period is about to expire?
If the user was deleted 29 days ago and the automatic purge is imminent, generating an access link will not pause the deletion timer. You must either restore the deleted user account immediately in the Admin Center to stop the clock, or use the access link to manually download all critical files to your local storage before the retention window closes at the 30-day mark.
Are shared files impacted if the host user's account is deleted?
Yes. If the deleted user shared files from their personal OneDrive with other active team members, those shared links will break once the deleted user's drive is permanently purged. Administrators must request access to the drive, locate any files still actively used by the team, and migrate those specific files to a centralized SharePoint Team Site or Microsoft Team to ensure uninterrupted collaboration.




