Digital Check Family of Companies

The Hub

Five companies. One community. Everything you need, in one place.

What's New

Company Announcements

Bookmarked by you

My Saved Items

Frequently Used

Quick Access

Events Calendar Outlook

No more digging through folders

Important Documents

Watch & Learn

Featured Videos

From the team

Photos from the Field

Beyond the basics

Tools & Resources

Pulse Poll: What would make your week better?

One question. One click. We share results across all five companies on Friday.

Communications

All Announcements

Internal calendar

Events & Calendar

Local calendar — not connected to Outlook Configure →
Flat library · Search and filter

Document Library

Local library — connect SharePoint in Settings for permanent storage Configure →
Archive

All Newsletters

Bookmarked by you · Personal

My Saved Items

Moments & memories

Media

Recognition · Birthdays · Anniversaries

People & Recognition

🎂 Birthdays

⭐ Work Anniversaries

Kudos Wall

Who knows what · Self-tagged

Skills Directory

Find colleagues who know what you're looking for — a language, a technology, a domain. Tag your own skills so others can find you when they have a question.

Grow your skills · Stay compliant

Learning Center

External Platforms

Training Partners

Curated tracks

Learning Paths

In-House Training

Course Catalog

Tools & links

Resources

Welcome to the Family of Companies

You've joined a group of five businesses with a shared mission and a lot of shared history. This page is here to help you find your footing in the first few weeks — meet leadership, work through your onboarding checklist, and find the links you'll reach for often.

Your Company
Onboarding progress: 0%

A welcome from leadership

From all of us

People you should meet

First 30 days · Auto-curated

Your onboarding checklist

Tick items as you go

Links you'll want handy

First 30 days

Need a real person?

If you have a question that isn't covered here, or you want to talk to someone, your HR contact is happy to help. Use the button to send a quick note — they'll follow up directly.

Where we work

Offices & Facilities

Microsoft Entra ID · Company Directory

Employee Directory

Loading directory…
👤

Select someone from the list to see their full profile, manager, and team.

Microsoft Entra ID · Reporting hierarchy

Organizational Chart

🔍
Our Story

Sixty-plus years of innovation in imaging.

From an epiphany about microfilm in 1957 to a family of companies serving banks, libraries, archives, and enterprises worldwide — this is how Digital Check, Benchmark, nextScan, ST Imaging, and Avivatech got here.

60+
Years of innovation
5
Brand companies
Milestones tracked
Looking forward

The next chapter is being written now.

If you've contributed to a milestone, launched a product, signed a partnership, or hit a number worth marking — let leadership know. This page is a living record, not a closed book.

Ask anything · Leadership answers

Q&A Town Hall

Ask any question, upvote ones you want answered, and see what leadership has addressed. Anonymous asking is supported — pick the toggle in the form.

Good morning

📅 Today's schedule

✨ Since you were last here

🎬 New videos

📌 Your pending items

🌴 Holidays this week

🎉 Celebrations this week

📷 New photos

💬 Top unanswered questions

Preparedness · Company-wide & by location

Business Continuity

Our continuity plans keep the business running through disruptions — weather, outages, facility issues, or anything that interrupts normal operations. Start with the company-wide plan, then review the plan specific to your location.

By location

Site-specific plans
Everything in the Hub · Find what you didn't know was here

Tour the Hub

The Hub has grown a lot. This page is the catalog — every major feature with a short description and a one-click jump to try it. Or take the guided tour above to walk through the highlights step-by-step.

Wellness Corner

Take care of yourself.

Mental health, physical wellness, financial security, and time to recharge — these aren't perks, they're how we sustain great work over a long career. Explore your benefits, find support when you need it, and pick up something useful from the resource library.

🆘
Need to talk to someone right now? Crisis support is available 24/7 — through our EAP, the 988 Suicide & Crisis Lifeline, or your healthcare provider.
Call 988
Benefits & Programs

What's covered

Resource Library

Read, watch, practice

Configuration

Microsoft 365 Integration

📖 Hub Admin Guide

New to administering the Hub? The guide covers everything you need to know — granting SharePoint access, common gotchas, where each Settings section lives, and how to recover from typical problems. Worth bookmarking.

🎨 Theme

Pick a color palette for your view of the Hub. This is a personal setting — your choice doesn't affect what other people see. Changes apply instantly.

🔑 Hub Admins

Add or remove admins without editing the source code. Changes save to the Hub Admins SharePoint List and apply to everyone the next time they load the page. The MS_CONFIG.adminEmails array in the HTML is kept as an emergency-access fallback that always works even if this list becomes unreachable.

🚫 Directory Exclusions

Hide entries from the Staff Directory. The directory already excludes accounts that aren't real employees (disabled, no license, no employeeId set in Entra). Use this list for the rest — service accounts that look like real employees, contractors that shouldn't appear company-wide, or any other edge case. Each entry is either an exact email or a display-name substring (case-insensitive).
Example entries:
Acumatica — hides every account with "Acumatica" in the display name (Acumatica Sales, Acumatica Admin, etc.)
contractor@digitalcheck.com — hides only this specific email address
SharePoint — hides accounts with "SharePoint" in the display name

📰 Feature Articles

Magazine-style feature articles. The pinned (or most recent) published feature appears as the full-width cover at the top of the home page; clicking it opens the full-page article. Choose a layout per article — Classic Editorial, Split Cover, Photo Essay, or Bold Typographic — and add as many graphics as the piece needs, flowed inline between paragraphs or as a gallery. In the article text, start a paragraph with ! for a prominent lede paragraph or > for a pop-out pull quote (end a quote with — Name for attribution). Drafts are visible only to admins.

🚩 Feature Flags

Control which features are visible to which users. Each flag has three states: On (everyone sees it), Allowlist (only listed users see it — great for cohort testing), or Off (hidden from non-admins). Admins always see everything regardless of flag state, so you can preview features before rolling them out.
How allowlist works: enter one email per line. Only users with those exact email addresses (matching the address they sign in with) will see the feature. Useful for inviting a pilot group to test a new feature before opening it up to the rest of the company.

Defaults: any flag you haven't configured is treated as On for everyone — this matches the Hub's pre-flag behavior. Changes here take effect immediately for all users on their next page load (or on the current page if they navigate away and back).

🧭 Mission & Values

Defines what shows in the small italic strip near the top of the home page, and in the "Our Mission & Values" tile on the Resources page. Visible to everyone.
Heading shown above the mission text. Defaults to "Our Mission & Values" when core values are set, or "Our Mission" when only the mission is set.
One sentence shown on the home page strip. Keep it under ~150 characters so it fits on one line for most viewers. Italic serif typography.
Longer statement shown in the modal. Use blank lines to separate paragraphs.
Three to seven values typically read best. Each has a short name, an optional emoji to give it visual identity, and a description (one or two sentences). Reorder with the ↑↓ buttons. Leave blank to skip values entirely — the modal gracefully omits the section.

⚡ Quick Access Links

The shortcut tiles in the home page's Quick Access section. These are the fast links employees reach for most — time off, expenses, the company store, IT help, and so on. Each tile has an emoji, a label, a short subtitle, and a destination. Use a full https://… URL to open an external system in a new tab, or a Hub shortcut like #directory or #wellness to jump to a page inside the Hub. Reorder with the ↑↓ buttons. Employees can still star their own favorites on top of whatever you set here.

🧰 Tools & Resources Cards

The tile grid in the home page's Tools & Resources section. Edit each card's title and description, and set where it goes. For the link, use a Hub shortcut like #wellness, #learning, #offices, #newemployee, #history, #documents, or #resources to jump to a page inside the Hub, or a full https://… URL to open a document or external page in a new tab. Leave the link blank to keep the card's built-in destination. Reorder with the ↑↓ buttons.

🎓 Required Training Banner

The dark banner at the top of the Learning Center. Use it for the current required training and its deadline. Leave the title and body blank to hide the banner entirely. The View My Training Status - Not KnowBe4 Training button is always shown automatically.

🎓 Training Partners

The external-platform cards under Training Partners on the Learning Center (KnowBe4, Microsoft Learn, etc.). Pick a badge color, set the tag pill, and point each card at its training URL. Reorder with the \u2191\u2193 buttons.

🎓 Learning Paths

The curated track cards under Learning Paths. Clicking a path filters the course catalog to its categories, so the Categories field must match the categories on your courses (comma-separated, case-insensitive). The footer note is free text (e.g. "8 courses \u00B7 ~4 hours").

🎓 Course Catalog Categories

The filter chips above the in-house Course Catalog. All is always shown first automatically \u2014 list the rest here. A category should match the Category value on the courses you want it to filter; categories with no matching courses simply show an empty result.

💡 Feature Requests

Requests submitted through the footer's Request a Feature link. Set a status to track each one, or delete spam. Changes save to the Hub Feature Requests list in SharePoint.

👋 New Employee Tab

The New Employee nav tab shows automatically to people in their first stretch after hire, then hides itself. Use the toggle below to show it to everyone instead, or set how long the hire-date window lasts. Admins always see the tab regardless.

On for the Hub launch so everyone can find the welcome videos and onboarding hub. Turn it off later to show the tab only to recent hires (the window below).

🎉 New Employees on Home

The New Employees card on the home page (and the matching strip on the People page) shows anyone whose account was created within this many days, newest first. It hides itself when nobody qualifies. This is a separate window from the New Employee tab setting above.

🏠 Home Page Order

Use the ↑↓ buttons to set the order employees see top to bottom, and Hide / Show to switch a section off or back on. Hidden sections disappear from the home page entirely but stay in this list (greyed out) so you can re-enable or reposition them later. Changes apply immediately on save. Sections that hide themselves when empty (like Employee Spotlight) still appear here so you can position them for when they have content. The "Did you know?" strip stays pinned at the very top.

📢 Home Announcement Order

Use the ↑↓ buttons to arrange how announcements appear on the home page. The first one becomes the large feature card and the next seven fill out the grid (eight show in total). Anything you don't arrange here — including newly posted announcements — falls in afterward, newest first. Changes apply on save.

🧭 Navigation Tab Order

Set the left-to-right order of the top navigation tabs with the ↑↓ buttons — for example, move Events after People & Recognition. Changes apply immediately on save. The ⚙ Settings tab always stays pinned to the far right. Tabs hidden by a feature flag keep their place here and reappear in this order if you switch them back on.

🆘 Quick Help

The Quick Help column in the site footer. Add, reorder, or remove links — each is a label plus a destination. Use a full https://… URL for a website, or a mailto:name@digitalcheck.com address for an email link. Leave the URL blank for a placeholder that isn't live yet.

💬 Have Feedback?

The Have Feedback? column in the site footer. Each link is a label plus a target: use action:featureRequest to open the built-in feature / suggestion form, a mailto:name@digitalcheck.com address for email, or a full https://… URL for a website. Leave the target blank for a not-yet-live placeholder.

🏷️ Header & Footer

The site's masthead text and footer wording. Changes apply across every page (the header and footer show everywhere, including the sign-in screen). Leave a field blank to fall back to the built-in default.

Upload your brand logos — Digital Check, Benchmark, nextScan, ST Imaging, Avivatech. They appear in the footer to the left of the title, in the order below. Transparent PNG or SVG works best; logos are auto-lightened to read on the dark footer. Up to 8.

👋 New Employee Setup

Configure what new hires see on the New Employee page. Make changes across any of the sections below (leadership, presidents, checklist, links, ambassadors), then click the 💾 Save New Employee Setup button — there's one at the top of this section and one at the bottom, and either saves everything. Changes go live for everyone immediately.

Note: for per-user progress tracking to sync across devices, the NewEmployeeJson column must be added to the Hub UserPrefs SharePoint list (Note type). Without it, checkbox state is held in-memory only.
Saves leadership, presidents, checklist, links & ambassadors together.
Shared across all companies — typically the CEO and a few senior leaders. Each card needs a name and role; photo URL, video URL, and message are optional. Reorder with ↑↓. The display order on the page matches this list.
One per company. The user sees only the card matching their selected company. All five slots are always present — leave any blank you don't yet have content for.
Items are grouped on the page by the Category field — items with the same category appear together. Title is required; description and link URL are optional. Reorder with ↑↓. To remove a category entirely, delete all items in it.
First-30-days references. Grouped on the page by Category. Use a single emoji for Icon; both Title and URL are required for the tile to function (links with no URL show a "no destination" toast).
Linking to pages inside the Hub Use #pagename as the URL. Available pages:
#home #announcements #documents #newsletters #videos #people #directory #orgchart #learning #events #tradeshows #resources #newemployee #offices #wellness
For external sites, paste a full URL (https://…). Leave the URL blank to show a "no destination set" toast on click.
Senior leaders you want every new hire at a given company to meet in their first 30 days. These appear in the "People you should meet" grid on the New Employee page, alongside auto-derived people (manager, peers, etc.) from the org chart. Use email addresses — if the person is in the Staff Directory, their photo and title are pulled automatically; otherwise the row is shown with name + role you specify here.

🌳 Org Chart Leadership

Names shown in the Tree view of the Org Chart. The reporting structure among these people is preserved automatically from Microsoft Entra ID — you don't need to configure who reports to whom. Recenter mode is unaffected and continues to show the full org for anyone to explore.

Name matching is forgiving: case and punctuation don't matter, and nicknames like "Mike Donovan" will find "Michael Donovan". Names that don't match anyone in the directory show a warning in the browser console (open DevTools to see).
Order matters only as a tie-breaker — the actual tree layout comes from Entra's reporting structure. Use ↑↓ to reorder and × to remove.

🔗 Reporting Overrides

Fixes reporting lines that cross company domains, which Microsoft can't link automatically — for example a nextScan manager with a direct report in the Digital Check domain. Each row places an employee under a manager. Both people must already be in the directory; this just connects them. Overrides take priority over what Entra reports.

🌟 Employee Spotlights

Rotating featured-employee profile on the home page. One spotlight is active at a time — activating a new one automatically deactivates the previous. Drafts and archived spotlights stay in the list and can be reactivated later.
Requires the Hub Spotlights SharePoint list — see Admin Guide for column setup.

🛡️ Business Continuity

Configure the plans shown on the Business Continuity page (Resources → Business Continuity). Set the company-wide plan and a plan for each location. Each can link to a document already in your Hub library (pick it from the dropdown) or to an external URL (e.g. a SharePoint or intranet link). Leave both blank to show the card as a "not yet linked" placeholder.
Two ways to link a plan: if the plan is already uploaded to the Hub (on the Documents page), just pick it from the Plan document dropdown — it lists everything in your library by title. If the plan lives elsewhere (a SharePoint site, your intranet, a shared drive), paste its link into the external URL field instead. If you pick a document from the dropdown, that takes priority over the URL. Leave both empty to show the card as a "not yet linked" placeholder.

📖 Our Story Timeline

The milestones on the Our Story page (company history). Edit each entry's year, category badge, headline, and description — or add and remove milestones. Entries are arranged by year automatically. Photos are linked to a milestone by its year (managed in Our Story Photos, just below), so if you change a milestone's year, re-attach its photo there. The Highlight checkbox marks a milestone for the home-page Our Story teaser strip.

📷 Our Story Photos

Add a photo to any milestone on the Our Story timeline (the company history page). Pictures make the timeline more engaging — old product shots, team photos, office openings, press clippings. Uploaded photos are stored in your SharePoint Document Library under a /History folder. Photos are optional; milestones without one look exactly as they do now.

🌱 Wellness

Edit the Wellness page: the intro line, the EAP support contact, and the Benefits & Programs cards. The 988 crisis line stays fixed, and the resource-library articles are managed in code. Leave the benefits list empty to fall back to the built-in defaults.
Used by the "EAP Support" button in the crisis strip. Leave blank to use the built-in default.
Benefits & Programs cards

👟 Step Challenge Champions

Celebrate step-challenge winners on the Wellness page, grouped by location. Each winner shows their Microsoft Graph profile photo (enter their work email — initials show if blank or no photo is found), step count, and place. Leave the whole thing empty to hide the section entirely.
a Power Automate flow can fan out Teams or email notifications. The webhook URL is the only field. Detailed setup steps live in the Admin Guide (section 11). -->

🔔 Announcement Notifications

Configure a Microsoft Power Automate webhook to notify employees by Teams or email when announcements are published. The full step-by-step setup is in the Admin Guide under "Setting up notifications."
Paste the HTTP POST URL from your Power Automate "When an HTTP request is received" trigger. Must be HTTPS. Leave blank to disable notifications.

🎬 Vimeo Integration

Connect a Vimeo account so admins can import existing videos into the Learning Center as courses. Generate a personal access token at developer.vimeo.com/apps with the private and video_files scopes. The token is stored in the Hub Config SharePoint List. Leave blank to disable the importer.
Bearer token from your Vimeo developer app. Treated as a secret — visible only to admins viewing this page. Token is sent to api.vimeo.com over HTTPS, never logged.

⏱️ Performance Timing

Captures timing of the last sign-in/page-load. Useful for diagnosing slow loads or spotting one SharePoint list that's hogging time. Marks are recorded relative to the start of sign-in (T=0).

How to read this: t is the time elapsed from sign-in start to that mark. duration (where shown) is the time spent inside that specific operation. Per-list durations can overlap because list loads run in parallel — they're each measuring their own await chain.

🪪 Microsoft Entra ID Sign-In

Authenticates employees with their corporate Microsoft account so they don't need a separate Hub login.
Sign-in status
Not configured — running in demo mode
Demo
Tenant ID
Set in MS_CONFIG below — currently uses placeholder
not set
Client ID (App Registration)
From Azure portal → Entra ID → App registrations → your app
not set

How to configure

  1. Go to Azure portal → Microsoft Entra ID → App registrations → New registration
  2. Name: "The Hub". Supported account types: "Single tenant" (your org only).
  3. Redirect URI: "Single-page application (SPA)" → enter the URL where you'll host this file (e.g. https://hub.digitalcheck.com or http://localhost:8000 for testing).
  4. Copy the Application (client) ID and Directory (tenant) ID.
  5. Under API permissions, add: User.Read, Calendars.Read, Calendars.ReadWrite, Calendars.Read.Shared (delegated). Grant admin consent.
  6. Open this HTML file and edit the MS_CONFIG block at the top of the <script> section:
// At top of the script section, find and edit this block: const MS_CONFIG = { enabled: true, // flip to true clientId: 'paste-your-client-id-here', tenantId: 'paste-your-tenant-id-here', redirectUri: window.location.origin, eventsCalendar: { type: 'group', groupId: 'events-group-id' }, tradeshowsCalendar: { type: 'group', groupId: 'tradeshows-group-id' } };

After saving, reload the app. The "Sign in with Microsoft" button will activate. Authenticated employees see their real name, photo, and any calendars/documents they have permission to access.

📅 Outlook Calendar Sync

Connect the Hub's Events and Tradeshows calendars to real Outlook (Microsoft 365 Group) calendars. Events created here appear in Outlook, and vice versa.
Events Calendar
Local only — not connected to Outlook
Local
Tradeshows Calendar
Local only — not connected to Outlook
Local

How calendar sync works

Each calendar can be connected to either a user's personal calendar or a Microsoft 365 Group calendar (recommended for shared events). The Hub uses Microsoft Graph API to read events and create new ones.

Group calendars are best for company-wide events. Create a Microsoft 365 Group called "Hub Events" and a separate one called "Tradeshows", then paste their group IDs into MS_CONFIG above. Find the group ID in Azure portal → Entra ID → Groups → select group → Object ID.

Connected calendars sync on page load and whenever you click "Refresh". New events created in the Hub are pushed to Outlook immediately.

🗂️ Document Filters

The filter chips shown above the Document Library (Policies, Forms, Product Sheets, …). Each filter has a Label (what the chip reads) and a Tag (documents are shown when one of their tags contains this word, case-insensitive). Add a filter like "Other", remove one you don't use, rename it, or drag to reorder. The "All" chip is always shown first and isn't configurable.

📂 SharePoint Document Library

Store uploaded documents in a SharePoint library instead of in-browser. This is the recommended approach for production: files inherit SharePoint retention policies, version history, search indexing, and access controls. Supports files up to 250 GB via chunked upload.
Connection Status
Local only — files saved as data URLs in browser storage
Local
SharePoint Site ID
From Graph API: /sites/{hostname}:/sites/{site-name}
not set
Drive (Library) ID
The "Documents" library on that site, or any custom library you create
not set
Folder Path
Subfolder within the library where Hub uploads land
not set

How to set this up

  1. Pick a SharePoint site. Either an existing one (e.g. the All-Company site) or a new one created for this purpose. The Hub will store uploads in that site's Documents library by default.
  2. Find the site ID. In a browser logged into your tenant, visit:
    https://graph.microsoft.com/v1.0/sites/{your-tenant}.sharepoint.com:/sites/TheHub
    Copy the id value. Format looks like: {tenant}.sharepoint.com,{guid},{guid}
  3. Find the drive ID. Visit:
    https://graph.microsoft.com/v1.0/sites/{site-id}/drives
    Find the entry where name = "Documents" (or whatever library you want to use). Copy its id.
  4. Create a folder inside that library called "Hub Documents" (or whatever you set folderPath to in MS_CONFIG).
  5. Add custom columns to the library so Hub metadata persists in SharePoint. Library settings → Add column. Create:
    • HubTags (Single line of text)
    • HubOwner (Single line of text)
    • HubType (Choice: pdf, docx, xlsx, pptx)
    • HubPriority (Yes/No or Single line of text — accepts "true"/"false") — flag a document to surface it on the home page
    • HubIsCompanyBC (Yes/No or Single line of text) — flag a document as the company-wide Business Continuity plan that the Resources page tile opens
    These let you filter and search in SharePoint using the same metadata the Hub uses.
  6. Update MS_CONFIG.documentLibrary at the top of the script section with the IDs you collected.
  7. Save and reload. Sign in. Existing SharePoint files appear in the Documents library, and new uploads flow to SharePoint.

What you get: files are stored permanently in SharePoint (not browser cache), opened in Office Online or the SharePoint viewer, indexed for global search, versioned automatically, retention-policied per your IT governance, and accessible to anyone with permission to that library — including from within Office, OneDrive, Teams, and search.

Upload limits: files under 4 MB use a single PUT for speed. Files 4 MB and above use SharePoint's resumable upload session API, which streams in 5 MB chunks and supports files up to 250 GB.

SharePoint Lists (Hub Data Storage)

Announcements, events, kudos, holidays, photos, courses, and other Hub data are stored in SharePoint Lists on the same site as the document library. This is what makes Hub data durable across sessions and shared between users — without it, data only lives in the current browser tab.
List Setup
Click "Set up lists" to create the eight SharePoint Lists the Hub uses
Not configured

How list provisioning works

Clicking "Set up lists" calls Microsoft Graph to create eight lists on your SharePoint site, each with the columns the Hub needs. The lists are: Hub Announcements, Hub Events, Hub Tradeshows, Hub Celebrations, Hub Holidays, Hub Kudos, Hub Photos, and Hub Courses. Provisioning is idempotent — if a list already exists, it's reused, not recreated, so it's safe to click multiple times.

After provisioning, you can also click Import seed data below to copy the Hub's built-in demo content (announcements, holidays, etc.) into the lists as a starting point. Once your real data is flowing, you'd typically delete the seed entries from SharePoint directly.

You can also view and edit the lists directly in SharePoint by navigating to your site → Site contents. Edits made in SharePoint flow back into the Hub at the next sign-in.

⚠ Danger Zone

Wipe every item from every Hub SharePoint list. The lists themselves remain intact, so you can immediately start adding fresh content. Deleted items go to SharePoint's Recycle Bin and can be restored from there for 93 days. Use this when you're ready to move from seed/demo content to real production content.

AI Assistant

The "Ask the Hub" feature on the home page calls an Azure Function proxy that holds the API credentials server-side, retrieves relevant Hub content via Azure AI Search (RAG), and streams answers back to the user. No API keys live in the browser — authentication uses the signed-in user's Microsoft account.
ℹ Production Architecture

Requires the hub-ai-proxy Azure Function to be deployed first. See the azure-deploy-guide.md file shipped with this Hub for step-by-step instructions on provisioning Azure OpenAI, Azure AI Search, the Function App, and the indexing pipeline. Once deployed, paste the Function URL below.

Azure Function URL
The full HTTPS URL of the deployed hub-ai-proxy Function (e.g. https://hub-ai-proxy.azurewebsites.net/api/chat). Admin-only field; persisted to SharePoint Hub Config so it applies for all users.
Not configured
API scope (required for auth)
The OAuth scope the proxy validates against — created when you "Expose an API" on the Hub app registration in Entra. Format: api://<CLIENT_ID>/access. Without this, the AI request sends a Microsoft Graph token the proxy rejects with a 401.

Usage limits

Each user is capped at 100 messages per day (resets at midnight, local time). The cap is enforced both client-side (fast UX) and server-side (source of truth) by the proxy. This protects against runaway costs and accidental loops. To change the cap, edit HubAI.dailyCap in the HTML AND update the matching value in the Function's environment configuration — they must agree.

What content does the assistant know about?

The Azure AI Search index is populated from these SharePoint sources by the indexing pipeline (see deploy guide for scheduling):

  • Hub Announcements — title + body of every announcement
  • Hub Documents library — extracted text from PDFs, Word docs, etc.
  • Hub Config — mission, values, leadership names, other admin-set content
  • Hub Newsletters — full body text of published newsletters
  • Courses — title + description of every course
  • Events — upcoming events with title, date, location, audience

Explicitly NOT indexed: photos (no text), kudos (private recognition), celebrations (privacy), org chart (better answered via Directory). Each answer cites the sources it drew from — citations appear as clickable pills beneath the response.

Privacy & data flow

Questions and answers leave your tenant only to the extent that the Azure OpenAI service receives them — they do NOT go to OpenAI's consumer service or train any model. Azure OpenAI runs in your subscription with your data residency settings. The proxy logs (question text, user email, response token count) are written to the Hub Analytics SharePoint list for usage tracking; conversation bodies are NOT persisted by the proxy.

Permissions Granted

The Hub requests these Microsoft Graph permissions when employees sign in.
User.Read
Read the signed-in user's basic profile (name, email, photo)
Required
User.ReadBasic.All
Read coworkers' basic profile info and photos (used to show real photos for birthdays, anniversaries, etc.)
Recommended
User.Read.All
Read full directory profiles (title, phone, office, manager chain, hire date) — required for the Employee Directory page. Needs admin consent.
Recommended
Calendars.Read
Read events from the connected Outlook calendar(s)
Required
Calendars.ReadWrite
Create new events in the connected calendar(s) when added in the Hub
Required
Calendars.Read.Shared
Read free/busy availability for other users to show 🟢/🟡 indicators in the directory (v1.132). Respects normal Outlook calendar-sharing rules — never reveals meeting subjects or attendees.
Optional · degrades gracefully if missing
Group.Read.All
Read events from Microsoft 365 Group calendars (only needed if using group calendars)
Optional
Files.ReadWrite.All
Upload and download documents in the configured SharePoint library
Required for SharePoint
Sites.ReadWrite.All
Read SharePoint sites and update list-item metadata (HubTags, HubOwner)
Required for SharePoint
Loading video…
Digital Check Family of Companies The Hub
--:--