See who has access to what in SharePoint
Binera SharePoint Explorer (BSE) gives IT, security and site owners a clearer way to review SharePoint permissions. Open one SharePoint site, browse the structure and see the actual users, groups and permissions directly from SharePoint.
When a folder structure is too large to review manually, BSE can configure a recursive scan from a selected tree node. The completed report opens in BSE Analyzer, where risky paths, external access, sharing links, object types and permission combinations are prioritized for review.
BSE shows the access. Analyzer helps you decide what to review first.
SharePoint access is often difficult to review because permissions can be inherited, broken, assigned directly, granted through groups or shared through links. BSE and Analyzer turn that complexity into a practical review workflow.
Browse SharePoint and see permissions
Use BSE to navigate one selected SharePoint site and see the permissions that apply to the selected site, library, folder, file or page.
Collect deeper permission data
When manual review is not enough, configure a recursive scan from a selected tree node to collect permission data from the structure below it.
Review the result in Analyzer
Open the completed report in BSE Analyzer to prioritize findings, risk paths, external access, sharing links, object types and permission combinations.
Customer value
The goal is not just to export permission data. The goal is to reduce manual work, make access deviations visible, prioritize what should be reviewed first and give a better basis for cleanup, audit and internal control.
One workflow for SharePoint insight, recursive scan and access analysis
BSE is the workspace where you select the SharePoint site and area to review. Analyzer is the analysis surface where the scan result becomes understandable and actionable.
Find the relevant site or folder
Open one SharePoint site at a time and navigate to the document library, folder or tree node that should be reviewed.
Review live permissions
See users, groups, roles and unique permissions retrieved directly from SharePoint for the selected item.
Create a recursive report
Configure a recursive scan from the selected tree node when the area needs a deeper permission review.
Run outside working hours
Scan jobs are scheduled after 17:00 to reduce performance impact during normal working hours.
Open the report in Analyzer
When a completed report exists, open it from the BSE right-click menu and review prioritized findings and risk areas in BSE Analyzer.
See the SharePoint structure and permissions as they actually are
BSE makes it easier to understand who has access to what inside a selected SharePoint site. You can see document libraries, folders, files, pages, users, groups and items with unique permissions without manually opening each level in Microsoft’s interface.
This gives you a faster overview of where permissions follow the structure, and where they break with the level above.
Where do you want to start?
SharePoint access problems can be approached from different angles. Use these pages to understand the control challenge, the permission model, the analysis layer and the demo flow.
SharePoint access control
See how BSE supports internal control, audits, cleanup and reduction of permission risk in SharePoint.
Read about access controlSharePoint permissions
Understand unique permissions, broken inheritance and why SharePoint access deviations can be difficult to detect.
Read about permissionsBSE Analyzer
See how scan results become prioritized findings, split KPI values, object types, external access and cleanup basis.
Read about AnalyzerBSE demo
Try BSE in a prepared demo environment and see how permission deviations become visible in practice.
Try the demoReview deeper structures without daytime load
A recursive scan collects permission data from the selected tree node and all items below it in the hierarchy. The scan is limited to the current SharePoint site and does not create a tenant-wide report.
Recursive scan actions are available from the right-click menu in BSE. Use Configure Scan of folder tree from this tree node to configure a scan for the selected site or folder.
If a completed report exists for the selected tree node, BSE shows Open BSE Analyzer report in the same right-click menu. If no report exists, this option is not shown.
The recursive scan dialog shows the selected tree node, explains the scan scope and lists any scheduled scan for the site. If a scheduled scan exists, it is shown with Site, Folder, Schedule and Last run. Use Delete scan for this site if the scheduled scan should be removed.
Scan jobs can generate large amounts of data and may take time because of Microsoft throttling limits. To reduce performance impact, jobs are scheduled after 17:00.
Use the right action for the selected tree node
Open BSE Analyzer report
Open the latest available analysis report from the right-click menu. This action is visible only when a completed report exists for the selected tree node.
Configure Scan of folder tree from this tree node
Configure a recursive scan from the selected tree node. The scan includes the selected node and all items below it in the hierarchy.
Scheduled scan and delete
The dialog shows scheduled scans with Site, Folder, Schedule and Last run. Use Delete scan for this site when a scheduled scan should be removed.
Important scope
A recursive scan is limited to the selected node inside the current SharePoint site. To review several SharePoint sites, open each site separately and configure separate scans where needed.
Turn scan results into concrete findings
A completed recursive scan can contain large amounts of permission data. BSE Analyzer makes the result easier to understand by collecting, grouping and prioritizing the findings.
When a completed report exists for the selected tree node, BSE shows Open BSE Analyzer report in the right-click menu. Opening the report in Analyzer gives a structured analysis of that selected scan result.
Analyzer v19.30 adds a clearer dashboard with split KPI values for External / guests and Critical / high paths, plus dashboard drilldowns for External and guest principals and Keyword rules.
It becomes easier to see risk, deviations, object types, external access, sharing links, users, groups, group access chains and permission combinations in one place.
From uncertainty to actionable access control
Better overview
See how SharePoint permissions are actually configured, not just how the structure was intended.
Less manual work
Use recursive reports for larger areas instead of checking each level manually.
Faster analysis
Move from scan result to prioritized findings in BSE Analyzer.
Clearer scope
Review one selected SharePoint site at a time and keep each report tied to the site or node it was created from.
Stronger security foundation
Find external access, sharing links, groups, object types, group access chains and special permissions that should be reviewed.
Easier audits
Get a more practical basis for documentation, internal control, cleanup and dialogue with content owners.
SharePoint permissions quickly become hard to understand
SharePoint gives you a lot of flexibility, but over time the permission structure can become difficult to understand.
Folders get unique permissions. Files are shared directly. Inheritance is broken without always being followed up. When access is granted through groups, group membership and actual access often have to be checked separately.
The result is that it becomes unclear who actually has access to what, which exceptions are still needed, and which areas should be prioritized for cleanup.
Typical SharePoint access challenges
- folders and files with unique permissions
- broken inheritance in the structure
- manual sharing with individual users
- external users and guest access
- sharing links that are difficult to follow up
- groups where membership must be checked separately
- old exceptions that remain in place
- no consolidated basis for analysis
BSE and Analyzer each have their own role
BSE is where you navigate SharePoint, inspect permissions, configure recursive scans and open completed reports. Analyzer is where you understand and prioritize the scan result.
Together, they provide a connected workflow from SharePoint insight to recursive report, analysis and follow-up.
BSE
- Explore one SharePoint site at a time
- Browse document libraries, folders, files and pages
- See permissions retrieved from SharePoint
- Find objects with unique permissions
- Configure recursive scans from the right-click menu
- Open BSE Analyzer when a completed report exists
BSE Analyzer
- Open the completed report for the selected tree node
- Analyze paths, users, groups and object types
- Surface external access and sharing links
- Show split KPI values and dashboard drilldowns
- Prioritize findings and risk areas for cleanup, control and audit
Would you like to see the full workflow in practice?
Book a short walkthrough of BSE and BSE Analyzer, or try the demo to see how BSE shows SharePoint structure and unique permissions.
