How to Fix Microsoft Defender for Endpoint Power BI Integration Error 50131
Question details
Users need to resolve a Forbidden Error 50131 preventing the integration of Microsoft Defender for Endpoint with Power BI.

- Product
- Power BI
- Device & OS
- not provided
- Scenario
- Connecting Microsoft Defender for Endpoint data to Power BI for security reporting and analytics.
- Observed behavior
- The integration fails abruptly, returning a 'Forbidden' error and Error 50131, stating the application can only be accessed from an organization-registered device.
Ensure you have Conditional Access Administrator privileges in Microsoft Entra ID (formerly Azure AD) to review and modify device compliance policies.
Verify Device Registration and Conditional Access Policies
Check Microsoft Entra ID to ensure the device attempting the integration is properly registered and complies with your organization's Conditional Access rules.
Error 50131 typically triggers when the authentication token does not meet the security requirements set by the organization's Conditional Access policies. The device must be recognized as registered and compliant.
Log in to the Microsoft Entra admin center as an administrator.
Navigate to 'Devices' > 'All devices' and search for the machine experiencing the error. Confirm that its 'Join Type' is Registered or Joined, and that its compliance state is marked as 'Compliant'.
Go to 'Protection' > 'Conditional Access' > 'Policies'.
Look for policies targeting Power BI or Microsoft Defender APIs. Use the 'Sign-in logs' to identify exactly which Conditional Access policy is blocking the connection and adjust the policy or device state accordingly.

Request Specialist Assistance via Microsoft Communities
If standard Conditional Access checks do not resolve the issue, consult specialized support forums.
Need a Reliable Office Suite? Try WPS Office
While you troubleshoot enterprise IT and Conditional Access issues, you still need a fast and dependable suite for your daily document tasks. WPS Office provides a free, lightweight, and intuitive alternative to Microsoft Office, letting you handle documents, spreadsheets, and presentations with zero hassle.
- 1. Download the Installer: Visit the official WPS Office website and download the free installation file.
- 2. Install the Software: Run the installer and follow the quick on-screen instructions to set up the suite.
- 3. Open Your Files: Launch WPS Office and instantly open your existing Microsoft Office files without losing any formatting.

Frequently Asked Questions
What does Error 50131 mean in Power BI?
Error 50131 indicates a Conditional Access policy failure. It means the system blocked access because the device or network attempting to run the integration does not meet the organization's security requirements (e.g., the device is unregistered or non-compliant).
Can I fix Error 50131 without admin privileges?
Generally, no. Resolving Error 50131 requires reviewing and potentially modifying Conditional Access policies or device compliance states in Microsoft Entra ID, which requires administrator rights.
Why did my Power BI integration suddenly start returning a Forbidden error?
This commonly occurs if an IT administrator updates network security policies, a Conditional Access policy is modified, the device falls out of compliance, or the authentication token expires.




