First Time Setup of DataMapper - connecting all M365 company accounts: Global Admin

DataMapper is a compliance and data-mapping product by Safe Online ApS.

What is this guide for?

This guide is for setting up DataMapper for the first time and connecting all your company's Outlook,  OneDrive or Sharepoint accounts to DataMapper in order to start scanning for documents with sensitive information. It requires a Global Administrator to explicitly approve the application before it can be used.

This is a one-time action. It takes less than 10 minutes.

Who must do this: A Microsoft Global Administrator (or an account that has been delegated Privileged Role Administrator) in your Azure / Microsoft 365.

Time required: Approximately 10 minutes. Safe Online will have sent you an invitation link beforehand.


1. Step: Confirm that you are a Microsoft Global Administrator or Privileged Role Administrator


Go to the Microsoft 365 Admin Center ➡ Show all ➡  Roles ➡  Role assignment.


❗️You should have a  Microsoft Global Administrator account and mailbox, where we will send you the invitation to join DataMapper. If you don't have a mailbox with the Global Administrator role, please inform your Customer Success Manager at Safe Online.

2. Step: Authorize Outlook/OneDrive/SharePoint Global

  • Log in to DataMapper by clicking on the invitation link you've received from us in your inbox. You will need to log in with the same email account the invitation was sent to. You might need to authorize it in the Microsoft 365 Admin Center for the first time.
  • During the login flow, you will be asked whether you would like to add another admin and select the countries where you operate, so that DataMapper scans for sensitive data specific to those countries.
  • Once logged in, click on Data Locations ➡  Choose Outlook Global, OneDrive Global, or SharePoint Global Authorize
  • When you click on Authorize, you will be asked to log in with the global admin account.

❗️You might have to log in a few times before it's authorized ❗️

  • When it's authorised, you will be able to click on "Settings" next to the location you've just auhorised and follow Scan status of all the accounts.

3. Step: Start scanning accounts, or grant admin rights to another stakeholder

  • Remain the administrator and follow the steps here on how to start scanning.
  • Grant admin rights to another stakeholder, who will take over the administration of the next steps by clicking on TeamInvite usersAdminsClick to add user emails ➡  Save

If a user has already been invited, you can simply update their role and give them Admin rights by clicking on Team ➡  ⚙️ ➡ EditAdmin


❗️If you do not see any results in the Global Outlook or OneDrive Scan, check that admin consent is granted by going to the Microsoft Entra admin center. 

Go to the Microsoft Entra admin center ➡ Applications ➡ Enterprise applications ➡ DataMapper ➡ Permissions

Select DataMapper and confirm that the permission is “Admin Consent”. 

If admin consent is not granted, please repeat the previous steps to ensure that the account you are using has the necessary administrative rights.


While you're in the Admin Center, check the amount of data you have in your company. 

  1. To see the usage for all devices in Outlook, click here.
  2. To see the usage for all devices in OneDrive/SharePoint, click here.

The reason you need this data is so we can confirm you're eligible to use the centralised/global Outlook scan. Otherwise, if your company has been approved, you can use it for your own internal statistics.

Do you have any questions? You can write to us via the chat in DataMapper, to our Customer Success team, or send us an email at support@safeonline.dk 😊

Still need help? Contact Us Contact Us