Run your first Lens scan.
Install Lens, configure secure Microsoft 365 access, and run your first SharePoint storage analysis.
Install Lens from the Microsoft Store
Install CBITS Lens from the Microsoft Store on the Windows workstation you’ll use to run the analysis.
Go to the download page →Create the Lens app registration
In Microsoft Entra ID, create an application registration for Lens. This application is controlled by your organization and is used by Lens to access the SharePoint metadata required for analysis. When prompted for supported account types, select Accounts in this organizational directory only (Single tenant).
Configure certificate authentication
Create the Lens certificate pair using your approved process. Once created, upload the public certificate in your Lens app registration:
Protect the corresponding private key. Do not upload or distribute the private key with public documentation.
Add Microsoft Graph permissions
In your Lens app registration, navigate to:
Select the two permissions below, then grant administrator consent:
Launch Lens and run the scan
Open Lens, enter the tenant and application details requested by the application, verify connectivity, and begin the SharePoint analysis. Large tenants can take substantially longer to inventory than smaller environments.
When the scan completes, review the Lens dashboard for storage totals, inactive content, version storage, savings estimates, and site-level opportunities.