FAQ
Frequently asked questions
Direct answers about access, freshness, sign-in, isolation, and scale, with links to the pages that go deeper.
Questions and answers
Access and security
Does it modify my directory?
No. The Graph permissions are read-only: Group.Read.All, User.Read.All, and Organization.Read.All. Simulations run entirely inside VisualizerEngine.
More detail: Security and architecture
How do users sign in?
Entra ID single sign-on only. There are no VisualizerEngine passwords.
More detail: Roles in the documentation
Can other tenants see my data?
No. Isolation is enforced at the database row level and covered by automated tests that prove one tenant's administrators cannot read another tenant's rows.
More detail: tenant isolation on the Security page
Data, freshness, and scale
How fresh is the data?
A full crawl establishes the baseline. Microsoft Graph delta queries keep the mirror current on a per-tenant schedule, including deletions.
More detail: sync behaviour in the documentation
How big a tenant can it handle?
The read path is performance-verified at 50,000 groups and 250,000 memberships, with keyset pagination that does not degrade with depth.
More detail: verified scale on the Features page
See your directory's real shape
VisualizerEngine is pre-launch. Onboarding is a read-only admin-consent link: no agents, nothing installed, nothing modified.