Information
Disable external sharing of Sway items such as reports, newsletters, presentations etc that could contain sensitive information.
Rationale:
Disable external sharing of Sway documents that can contain sensitive information to prevent accidental or arbitrary data leak.
Impact:
Interactive reports, presentations, newsletters and other items created in Sway will not be shared outside the organization by users.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.
Solution
To ensure Sways cannot be viewed outside of your organization use the Microsoft 365 Admin Center:
Expand Settings then select Org settings.
Under Services select Sway.
Under Sharing uncheck the following
Let people in your organization share their sways with people outside your organization
Click Save
Default Value:
Let people in your organization share their sways with people outside your organization - Enabled