Upravit

What's new in Microsoft Graph

Microsoft Graph provides a unified programmability model that you can use to access data in Microsoft 365, Windows, and Enterprise Mobility + Security. This article provides information about what's new in Microsoft Graph APIs, documentation, SDKs, and more.

For more detailed API-level updates, see the Microsoft Graph API changelog.

For details about previous updates to Microsoft Graph, see Microsoft Graph what's new history.

Important

Features in preview status are subject to change without notice, and might not be promoted to generally available (GA) status. Don't use preview features in production apps.

September 2026: New and generally available

Change notifications

Promoted the unknownFutureValue member of the changeType enumeration from beta to v1.0. The enumeration is used by the changeNotification and commsNotification resources to identify notification change types.

Files

Groups

Added the onPremisesExtensionAttributes property to the group resource. Use it to access extension attributes 1-15 synchronized from on-premises Active Directory.

Identity and access | Directory management

  • Added the provision action to the device resource in v1.0 to enable approved Virtual Desktop Infrastructure (VDI) providers to provision devices in a customer's directory.

Identity and access | Governance

Identity and access | Identity and sign-in

Added the anonymousCalendarSharingFreeBusyDetail, anonymousCalendarSharingFreeBusyReviewer, and anonymousCalendarSharingFreeBusySimple resource types. Use these cross-tenant access policy capabilities to authorize anonymous external users to view calendar free/busy information at different levels of detail.

Security | Audit log query

  • Added the isRecordCountLimitExceeded, recordCountLimit, and approximateReturnedRecordCount properties to the auditLogQuery resource. Use these properties to determine whether a completed query exceeded the per-search record-count limit and to inspect the applicable limit and approximate returned record count.

Teamwork and communications | Messaging

Updated the getAllRetainedMessages method to support exporting retained versions of private-channel messages that were edited or deleted after the tenant completed private-channel storage migration.

September 2026: New in preview only

Agents

Added the isDisabled property to the agentIdentityBlueprint resource. Use it to deactivate an agent identity blueprint without deleting it.

Backup and recovery | Microsoft 365 backup and storage

  • Added the policyId property to the restoreSessionBase resource type to scope restore sessions to a protection policy.
  • Added the optional policyId parameter to the restorePoint: search method to validate protection-unit membership and improve policy-scoped routing. You can also filter the restore points collection by protectionUnit/policyId.

Backup storage

  • Added the getStatisticsByPolicy method to retrieve policy-level protection statistics for Microsoft 365 Backup Storage. Use the report to monitor protected and unprotected artifacts across completed, in-progress, and failed states, review offboarding activity, and determine when the metrics were last calculated.

Calendar | Places

  • Added the stringDictionary resource type to represent custom string key-value pairs.
  • Added the customProperties property to the place resource type to store customer-defined string key-value pairs.
  • Added the read-only lastUpdatedTime property to the place resource type to indicate when the place was last updated.

Change notifications

Added the unknownFutureValue member to the changeType enumeration used by the changeNotification resource to support forward-compatible notification change types.

Device and app management | Cloud PC

  • Added the isDisasterRecoveryActive property to the cloudPC resource to indicate whether the Cloud PC currently runs in its disaster recovery region after a failover event.
  • Use failoverInProgress and failbackInProgress as supported values for the status property on the cloudPC and cloudPcStatusSummary resources.

Files

  • Added the userObjectId parameter to the getByUser method on the fileStorageContainer resource to retrieve a list of file storage containers owned by a user by passing the user's Microsoft Entra ID object ID.
  • Added the isPatternToken property to the fileStorageContainerCustomPropertyValue resource to indicate whether a custom property value is a urlTemplate pattern that consumers must resolve before use, rather than a literal value.

Groups

  • Added the disableNesting property to the group resource. Use it to prevent other groups from being added as members of a security group.

Identity and access | Directory management

  • Added the provision action to the device resource to enable approved Virtual Desktop Infrastructure (VDI) providers to provision devices in a customer's directory.

Identity and access | Governance

Clarified that the Get accessPackageResourceEnvironment method returns SharePoint Online resource environments only when it's called with delegated permissions. A SharePoint Online resource environment corresponds to a SharePoint root site, so to retrieve root site information with application permissions, use the List sites method with the $filter=siteCollection/root ne null query option.

Identity and access | Monitoring & health

People and workplace intelligence | Analytics

Added the sensitivityLabel property to the searchHit resource type to provide sensitivity-label information for the search result resource.

Security | Audit log query

  • Added the isRecordCountLimitExceeded, recordCountLimit, and approximateReturnedRecordCount properties to the auditLogQuery resource. Use these properties to determine whether a completed query exceeded the per-search record-count limit and to inspect the applicable limit and approximate returned record count.

Security | Data security and compliance

Added the contentFiltering member to the userActivityTypes enumeration used by the compute protection scopes for a user and compute protection scopes for a tenant APIs, enabling applications to determine whether data loss prevention policies govern content filtering before evaluating content.

Added the policyConfiguration property to the policyScopeBase resource type. Enforcement planes can use the effective Secure by Default configuration returned by the protection scope APIs to determine whether to audit or block content when policy evaluation can't be completed.

Updated the contentActivity resource to support reporting Secure by Default policy evaluations that couldn't be completed. Enforcement planes can submit structured incomplete-inspection reasons through the existing content activity ingestion API

Teamwork and communications | Messaging

Updated the getAllRetainedMessages method to document support for retained private-channel message versions captured after the tenant's private-channel storage migration completed.

Contribute to Microsoft Graph

Are there scenarios you'd like Microsoft Graph to support?

  • Suggest and vote for new features by using the Microsoft Graph Feedback Portal. Some new features originate as popular requests from the developer community. The Microsoft Graph team regularly evaluates customer needs and releases new features to the beta (https://graph.microsoft.com/beta) and v1.0 (https://graph.microsoft.com/v1.0) endpoints.

  • Join the weekly Microsoft 365 platform community call and become an active member of the Microsoft Graph community. To discover the full calendar of developer calls, visit the Microsoft 365 and Power Platform community page.

  • Join our research panel to provide your input on our developer experiences.