Overview
Workspaces, reports and semantic models scanned; licences assigned and how many went unused in 30 days; the reports people actually open; how much of the estate is alive; and daily views with the distinct people behind them.
Who sees what
Pick a report to see everyone who can open it and how: a workspace role, a direct share, an organisation-wide link or publish to web. Entra groups open up to the people inside them, nested groups included. When a person has both a workspace role and a direct share, the workspace role is what counts.
People
Every person and group with access: how they get it, how many workspaces, reports and semantic models are in their reach, when they last opened anything, and their licence. Open a person for everything they can see and the path to each.
Activity
Who opened what and when, from the Power BI audit log, for the last 30 days (the log's own retention). Filter by workspace, person or report. Fabriscope keeps the log as it reads it, so each scan only fetches the new days.
Licences
Every Pro and Premium Per User seat, with the person's last activity. Seats you could reclaim lists the ones with no activity in 30 days. A seat is never called unused when there is no activity data to compare it with. Needs the optional Microsoft Graph permissions.
Workspaces and models
Workspaces lists each workspace's type (Fabric, Premium, PPU or Pro), models, reports, users, admins and last activity — and flags single-admin workspaces. Models & reports lists every semantic model with its owner, the reports built on it and when they were last viewed.
What it does not cover
- Row-level security roles and app audiences are not evaluated.
- The audit log goes back about 30 days; older activity is not available from Microsoft.