Reference
Exchange
Rencore Governance inventories 22 object types for Exchange and ships 31 policies and 15 automations.
Inventories
| Object | Description | Properties |
|---|---|---|
| Accepted Domain | DNS domains the tenant accepts mail for, joined with DKIM signing status. | 15 |
| Calendar Permission | Permissions configured on Exchange mailbox calendars (sharing and delegation). | 15 |
| Distribution Group | Exchange-style distribution lists and dynamic distribution lists. Open DLs accepting external mail are a phishing relay risk. | 19 |
| Exchange Audit Event | Exchange administrative and mailbox audit events ingested from the Office 365 Management Activity API. | 17 |
| Exchange Organization Configuration | Tenant-wide Exchange Online configuration settings. | 19 |
| Exchange Role Assignment | Direct RBAC role assignments outside of role groups. Direct assignments bypass role-group governance — auditor blind spot. | 14 |
| Exchange Role Group | Exchange Online RBAC role groups (Org Management, Recipient Management, etc.). | 11 |
| Exchange Security Policy | Microsoft Defender for Office 365 / EOP security policies — anti-phish, anti-spam, Safe Links, Safe Attachments, malware filter, outbound spam, and quarantine policies. | 42 |
| Journal Rule | Exchange journal rules that capture copies of messages to a journal recipient (compliance / legal hold). | 12 |
| Mail Contact | External recipients in the GAL. Stale contacts pointing at compromised or expired domains are a quiet leak vector. | 10 |
| Mail Flow Connector | Inbound and outbound mail flow connectors. Misconfigured connectors are a common spoofing / smart-host hijack vector. | 20 |
| Mail User | Mail-enabled users that route to an external SMTP address. Common offboarding-leak signal. | 12 |
| Mailbox Audit Bypass | Accounts excluded from mailbox audit logging. Bypassed service accounts can read mail invisibly — high-signal finding most products miss. | 11 |
| Mailbox Delegate | Mailbox delegations: Full Access, Send-As, and Send-on-Behalf permissions on user mailboxes. | 17 |
| Mailbox Folder Permission | Per-folder ACLs on user mailboxes (Calendar, Inbox, Top of Information Store). Anonymous calendar sharing is a silent data leak no admin UI surfaces. | 18 |
| Redirect Rule | All registered Exchange mailbox redirect rules | 19 |
| Mobile Device | Exchange ActiveSync mobile device partnerships. | 20 |
| Mobile Device Policy | Exchange ActiveSync mailbox policies controlling device password, encryption, and feature access. | 17 |
| Remote Domain | Exchange remote domain entries that govern message handling for specific external domains. | 14 |
| Resource Mailbox | Room and equipment mailboxes with Place metadata and calendar booking policies. | 28 |
| Transport Rule | Exchange mail flow / transport rules. Top governance signal for BEC and data exfiltration patterns. | 21 |
| Mailbox | All Exchange mailboxes of your users, rooms & equipment | 54 |