🛡️
Welcome to CredAware
Add a Microsoft Entra tenant to start monitoring credential expiration across your apps and service principals.
Expired
Critical
Warning
Upcoming
Total
Alert Configuration
Alerts enabled
Notify on expired credentials
Notify on critical (≤14 days)
Notify on warning (≤30 days)
Entra Cloud Connect
Not connected

Connect your Entra tenant to let CredAware collect credential data automatically — no script needed. Uses a read-only Application.Read.All app role. Nothing is ever written to your tenant.

How it works / what you need to approve

Permission requested: Application.Read.All (Application type, not Delegated)

What it reads: App registration metadata, service principal metadata, credential key IDs, start/expiry dates, certificate thumbprints

What it never reads: Secret values, private keys, certificate private keys, access tokens, passwords

Who must approve: A Global Administrator (or Privileged Role Administrator) of your Entra tenant

Opens an admin consent URL
Script Integration

Add -AutoUpload -UploadEndpoint -UploadToken to your PowerShell command. Each scan will automatically upload to this portal and trigger alerts.

Download Get-EntraCredentialExpirationInventory.ps1
••••••••••••••••••••••••

Full PowerShell command:


            
          
Report History
Uploaded Generated Expired Critical Warning Total