APP-08: Restrict User Application Consent
Frequently asked questions about implementing and managing the APP-08 security control in Microsoft 365 and Entra ID.
QWhat is APP-08 (Restrict User Application Consent)?▼
APP-08 is a security control that oauth phishing attacks trick users into granting malicious apps access to their data. by blocking user consent, you force all app permission requests through admin review, stopping this attack vector. It requires that users cannot consent to applications requesting permissions and admin consent workflow is the only path for new app permissions, pre-approved apps are allowlisted if needed.
QWhy is Restrict User Application Consent important for Microsoft 365 security?▼
OAuth phishing attacks trick users into granting malicious apps access to their data. By blocking user consent, you force all app permission requests through admin review, stopping this attack vector.
QHow do I implement APP-08 in my tenant?▼
TrueConfig provides one-click remediation for APP-08. Configures user consent to "Do not allow user consent" in Entra ID
QWhat license do I need for APP-08?▼
This control can be implemented with any Microsoft 365 subscription, including free Azure AD.
QWhich security baseline includes APP-08?▼
APP-08 is included in the TrueConfig Recommended Secure baseline (Level 1). This is the foundation level suitable for most organizations.
5
Questions
1
Related Controls
—
Categorized
Related Resources
Still have questions?
Our security experts are here to help. Start a free trial and get personalized guidance for your Microsoft 365 environment.
Start Free Trial