Command Center
The governance pulse of your Fabric tenant. Panels light up as scans run — or run everything at once.
Needs attention
Recent tenant activity
Workspace Inventory
View all →Workspaces
Explore, filter, and manage every workspace. Click one for items, access, and creation actions.
Items
Every Fabric item across your tenant — reports, semantic models, lakehouses, notebooks, pipelines and more. Search, filter by type or workspace, and jump straight to any workspace.
Access Review & Management
Scan workspace roles, explore your Entra ID people & groups, and visually assign access by dragging users onto workspaces.
Access graph
Interactive network: workspaces (green boxes) connected to principals. Guests red, groups orange squares, service principals purple. Thick dark edges = Admin.
Users
Click Load from Entra ID to populate.
Security Groups
Click a group to pin it — pinned groups appear in the Workspace Access tabLoad users first.
Drag a user bubble or group chip onto a workspace row to stage an assignment. Review staged changes before applying.
Workspaces
Drop users or groups here to stage assignmentsPeople
Pinned Groups
Best-practice templates
Common Fabric governance group patterns — click to create or use as naming guide.
Operations Health
Refresh failures, recent job runs, and schedule collisions across all workspaces.
Capacity Health & Utilization
Queries the Capacity Metrics app's Usage Summary tables: per-capacity health, CU utilization over time, throttling pressure, and overage — with an optimization advisor. Per-item CU detail is gated behind the app's internal parameters and can only be viewed inside the Metrics app (a deep link is offered). Requires the Capacity Metrics app installed and access to its workspace.
Connections
Every connection your account can see: duplicates, access models, owners, and cleanup candidates. The API doesn't expose live status or last-used dates (yet), so analysis focuses on inventory and access hygiene.
Accelerators
One-click deployment of linked, convention-named Fabric architectures. Pick a blueprint, a target workspace, and a project prefix — items are created wired together.
Items are created as you (Item.ReadWrite.All). The workspace must be on a Fabric capacity. Notebooks are pre-bound to their lakehouses by ID — open one after deploy and the default lakehouse is already attached.
Governance Scorecard
Per-workspace governance grade with the full reason for every penalty and one-click fixes. Built automatically from your sign-in scan.
History AUTOMATED
Tenant snapshots collected automatically by the service principal (no user sign-in needed). Compare any two days to see exactly what changed.
Audit ADMIN
Tenant activity log — every recorded action across Fabric. Requires the Fabric administrator role (the Tenant.Read.All permission is already on the app registration).
Global Search
Search all workspace and item names. First search runs a full scan.
OneLake Explorer
Browse the full OneLake file hierarchy — workspaces, lakehouses, tables, Delta files, and Delta logs. Expands on demand. Requires OneLake storage access (storage.azure.com/user_impersonation).
Cost / Chargeback
Estimated cost from per-item CU usage, rolled up by workspace, item type, and owner. Set your $/CU-hour rate for your region & SKU. Based on the most recent collected CU window.
Account
Your profile, organization details, subscription, and team.
Your profile
Organization & billing details
Subscription & billing
Alerts & notifications
Get a daily digest and warnings (failed refreshes, risky access) posted to Microsoft Teams or Slack. Paste an incoming-webhook URL from your channel.
Posts fire when the daily collector runs, plus on-demand via Send test. Teams: channel → Workflows / Incoming Webhook. Slack: Incoming Webhooks app.