You’ve been asked to authorize IT Partner. Here’s what that means — and what it doesn’t.
Someone at your organization is onboarding with us, and the next step is authorizing IT Partner as your Microsoft 365 partner (CSP). Authorization by itself grants no access to anything inside your tenant — admin access is a separate, scoped grant you approve explicitly. This page answers the three questions you should ask anyone sending a request like this: who are you, why do you need it, and what exactly can — and can’t — you do with it.
The company behind the request.
Check our public facts register
Every claim above — registration, partner status, tenure, customer count — published with evidence and a note on what we can’t prove.
Open /verify →Or outsource the skepticismAsk your AI to background-check us
A ready-made prompt your assistant can run against public records.
Open /ai-check →Authorization connects us. Access is granted separately — and scoped.
The button below establishes a CSP partner relationship — Microsoft’s mechanism for saying IT Partner may sell and support Microsoft 365 for your organization. By itself it opens no door: no mail, no files, no settings. To actually fix things, we separately request GDAP — granular delegated admin privileges — in plain English, a scoped, expiring set of admin roles that you approve explicitly. Without that second grant, every fix means asking you for screenshots and passwords nobody should ever share.
What the delegated roles are for
- →Microsoft support tickets — we open and run them on your behalf, with Microsoft seeing us as your delegated admin.
- →Configuration fixes — mail flow, sharing policies, device enrollment; changed at the source instead of over your shoulder.
- →License management — assigning and right-sizing what you already buy.
- →Security monitoring — alerts, sign-in anomalies, patch posture; the boring vigilance you’re paying for.
What you’ll see when you accept
The real screens, so nothing feels unexpected.
The authorize button below
It leads to a Microsoft page — check the address bar: microsoft.com, not ours.
Microsoft’s own consent screen
It shows exactly what’s being authorized — the partner relationship and, when delegated roles are requested, the exact roles and their expiration. Read it — it should match our published policy.
Confirmation in your admin center
The relationship appears under Settings → Partner relationships, where you can inspect — or end — it anytime.
The exact shape of the access.
Authorization alone gives us no access inside your tenant. When you also grant delegated roles (GDAP) so we can support you, this is their exact shape.
What this access does
What it doesn’t do
You can revoke our permissions yourself, in one click, anytime. No phone call, no notice period. And if you leave us entirely, we contractually guarantee approval of the CSP transfer to your next partner.
Microsoft 365 Admin Center → Settings → Partner relationships → Remove rolesThis page persuades; the policy specifies. Read the exact roles, in writing, at /gdap-access →
Ready? Authorize IT Partner in your tenant.
This opens Microsoft’s own consent flow on microsoft.com — you’ll see exactly what’s being authorized before anything takes effect. Authorization alone grants no access inside your tenant; delegated roles are requested — and approved by you — separately.
Questions before you click accept?
Thirty minutes with Mike — the founder, not a sales rep — before anything is granted. Skeptical in-house IT especially welcome; bring hard questions.