Connecting SharePoint
1
Authorize access
Click Authorize on the SharePoint data source page. You’ll be redirected
to Microsoft’s OAuth consent screen. It asks to read SharePoint sites,
files available to the connecting account, directory data, and accessible
OneNote notebooks, as well as basic profile information and ongoing access
so scheduled syncs can continue. Review the permissions and click
Accept. This does not start syncing any data yet.
2
Select sites and drives
After accepting, you’ll be redirected back to Realm. Select which SharePoint sites and OneDrive drives to sync.
Reconnecting expired access
If Microsoft access expires from inactivity or an admin revokes consent in Microsoft Entra, Realm marks the SharePoint connection as disconnected and notifies organization admins. Click Reconnect on the SharePoint data source page to authorize access again. This also restores syncing for OneNote notebooks and OneDrive drives selected through the SharePoint connection. By default, Realm can only access files that the connecting user has access to (delegated scope). To let Realm index all files in SharePoint, you have two options:- Grant admin consent in Microsoft Entra (see below)
- Connect with app scopes using the alternative connect button on the data source page
Granting admin consent
To allow Realm to access all SharePoint content (not just what the connecting user can see), grant admin consent in Microsoft Entra:- Go to Microsoft Entra admin center > Applications > Enterprise applications
- Find Realm in the list
- Go to Permissions and click Grant admin consent for [your organization]
What gets synced
Realm syncs non-hidden Microsoft Lists from selected SharePoint sites as searchable list items. Document libraries continue to sync through the normal SharePoint files path.
File size limits
Realm skips files larger than these limits during sync:Selecting sites and drives
After connecting, choose which SharePoint sites and OneDrive drives to sync. The data source page shows connected sites and drives, and you can add or remove them at any time. Realm only syncs content from the sites and drives you select.Permissions
Realm enforces SharePoint’s native permission model. Users can only see documents they have access to in SharePoint. You can override this by switching to “Everyone in this organization” on the data source settings page, which makes all synced SharePoint data visible to all Realm users.Restricting API access
To limit what Realm can access:- Create a Microsoft service account that only has access to specific sites
- Ensure the account can consent to applications
- Use that account when connecting SharePoint
Required scopes
The SharePoint integration requires:Sites.Read.AllFiles.Read.AllDirectory.Read.AllNotes.Read.All

