Note: Below is a list of the permissions you are consenting for Evoko Naso to access. Along with the list, there is a description of the permissions, as well as the reason they are needed.
Sign in and read the user profile
Allows users to sign in to the app, and allows the app to read the profile of signed-in users. It also allows the app to read basic company information of signed-in users.
Why is this needed? It allows Naso Services to read the logged-in users' basic information such as their names and email address.
Read all users' full profiles
Allows the app to read user profiles without a signed-in user.
Why is this needed?This is used to sync users into Naso Services.
Read Organization Information
Why is this needed?This is used to identify the user's organization and direct them to the correct environment.
Read all group memberships
Allows the app to read memberships and basic group properties for all groups without a signed-in user.
Why is this needed?This is used to sync users into Naso Services and apply the permissions depending on which group they are in.
Read and Write the User's App Management data
Allows the Application to read and write the user's data pertaining to itself in the Intune Mobile Application Management service.
Why is this needed?This is used for intune Mobile application management to read and write the logged-in user's data
Desks
Sign in and read the user profile
Allows users to sign in to the app, and allows the app to read the profile of signed-in users. It also allows the app to read basic company information of signed-in users.
Why is this needed?Read the logged-in users' basic information such as name and email address.
Read all users' full profiles
Allows the app to read user profiles without a signed-in user.
Why is this needed?This is used to sync users into Naso Services.
Read directory data
Allows the app to read data in your organization's directory, such as users, groups and apps, without a signed-in user.
Why is this needed?This is used to sync users into Naso Services and apply the permissions depending on which group they are in.
(Mobile App) Desk Only Users
Maintain Access to Data you have given access to
Allows the app to see and update the data you gave it access to, even when you are not currently using the app. This does not give the app any additional permissions.
Why is this needed?These replicated permissions are needed to identify users and perform booking tasks.
View Users' basic profile
Allows the app to see your basic profile (name, picture, user name).
Why is this needed?Read the logged-in user's basic information such as name and email address.
Connect Legacy (Desks + Rooms)
Access mailboxes as the signed-in user via Exchange Web Services
Allows the app to have the same access to mailboxes as the signed-in user via Exchange Web Services.
Why is this needed?Access the logged-in user's mailbox via Exchange Web services to collect appointments/bookings.
Read and write calendars in all mailboxes
Allows the app to create, read, update, and delete events of all calendars without a signed-in user.
Why is this needed?Allows the Naso Services Platform to read and create meetings on the user's behalf of the signed-in user's organisation on office365.
Use Exchange Web Services with full access to all mailboxes
Allows the app to have full access via Exchange Web Services to all mailboxes without a signed-in user.
Why is this needed?This permission enables Naso Services to access all users' and room calendars (not emails) to check availability, and book and edit meetings using EWS APIs for On-Premise accounts.
Sign in and read the user profile
Allows users to sign in to the app, and allows the app to read the profile of signed-in users. It also allows the app to read basic company information of signed-in users.
Why is this needed?Read the logged-in user's basic information such as name and email address.
Read all usage reports
Allows an app to read all service usage reports without a signed-in user. Services that provide usage reports include Office 365 and Azure Active Directory.
Why is this needed?Used for creating and displaying Microsoft Powerbi reports.
Read and write mail in all mailboxes
Allows the app to create, read, update, and delete mail in all mailboxes without a signed-in user. Does not include permission to send mail.
Why is this needed?Allows Naso Services to create, read, update, and delete calendar data without a signed-in user.
Read directory data
Allows the app to read data in your organization's directory, such as users, groups and apps, without a signed-in user.
Why is this needed?This is used to sync users into Naso Services and apply the permissions depending on which group they are in.
Read and create online meetings
Allows the app to read and create online meetings as an application in your organization.
Why is this needed?Allows Naso Services to read and create online meetings as an application in your organisation.
Read and Write the User's App Management data
Allows the Application to read and write the user's data pertaining to itself in the Intune Mobile Application Management service.
Why is this needed?This is used for intune Mobile application management to read and write the logged-in user's data.
(Mobile App) Desks + Room Users
Access Naso Services
Allow the application to access Naso Services on behalf of the signed-in user.
Why is this needed?Access the Naso Services Platform on the user's behalf.
Read user's online meetings
Allows the app to read online meeting details on behalf of the signed-in user.
Why is this needed?Read the user's meetings from office365.
Read and create user's online meetings
Allows the app to read and create online meetings on behalf of the signed-in user.
Why is this needed?Create meetings in office 365 via the Naso Services platform on behalf of the user.
Read and create online meetings
Allows the app to read and create online meetings as an application in your organization.
Why is this needed?Create meetings in office 365 via the Naso Services platform for all users via the Naso Services Platform.
Sign in and read the user profile
Allows users to sign in to the app, and allows the app to read the profile of signed-in users. It also allows the app to read basic company information of signed-in users.
Why is this needed?Read the logged-in user's basic information such as name and email address.
Access mailboxes as the signed-in user via Exchange Web Services
Allows the app to have the same access to mailboxes as the signed-in user via Exchange Web Services.
Why is this needed?Access the logged-in user's mailbox via Exchange Web services to collect appointments/bookings.
Read and Write the User's App Management data
Allows the Application to read and write the user's data pertaining to itself in the Intune Mobile Application Management service.
Why is this needed? This is used for Intune Mobile application management to read and write the logged-in user's data.
If you agree, this app will be granted the specified application permission(s) to resources belonging to all users in your organization and delegated permission(s) to resources belonging to the signed-in user.