# Connect Microsoft / Outlook

You connect Outlook and Microsoft 365 calendars via account sign-in (OAuth). Available on all plans. From **Basic**, sync runs **almost instantly** via real-time webhooks (Microsoft pushes changes to us directly); on **Free**, changes sync every 30 minutes. This works with personal accounts (outlook.com, hotmail.com, live.com) as well as work and school accounts (Microsoft 365 / Exchange Online).

## Step by step

1. In the dashboard, open **"Connect calendar"** and choose **"Microsoft Outlook"**.
2. Pick the right account in the Microsoft window and sign in.
3. Confirm access.
4. Back in Kalender Sync: in the **"Select Calendars"** dialog, tick the calendars you want to use. You can change the selection any time in the settings.

## "Need admin approval"?

With work accounts in strictly configured Microsoft 365 environments (common at law firms, consultancies and enterprises), IT blocks third-party app access. You'll recognise it by a message like **"Need admin approval"** right in the Microsoft sign-in — often with a field to send a justification to IT.

This is not a mistake on your side — and there are three ways out, from a 2-minute approval by IT to an iCal fallback that needs no IT at all: **[My organisation blocks the connection](https://docs.kalender-sync.de/en/connect-calendar/org-blocked/)**.

## Which permissions are requested — and why?

| Permission | What for |
| --- | --- |
| **Read & write** calendars (`Calendars.ReadWrite`) | Read source events, create and clean up blockers in the target |
| Basic profile (`User.Read`, email) | Match the account to your Kalender Sync account |
| Offline access (`offline_access`) | Sync keeps running in the background without you staying signed in |

No access to emails, files or other people's mailboxes. Details for IT and privacy teams: [Permissions in detail](https://docs.kalender-sync.de/en/privacy-it/permissions/).

## Known pitfalls

- **Several Microsoft accounts** — Microsoft likes to sign you in with the last used account automatically. Check the account picker or use a private browser window.
- **Wrong tenant** — with guest access to other organisations, make sure you land in your own tenant.
- **"Please reconnect"** — access expired or reset by org policy: [Connection expired](https://docs.kalender-sync.de/en/troubleshooting/reconnect/).

## Disconnecting

How to remove calendars and revoke access: [Remove calendars & revoke access](https://docs.kalender-sync.de/en/connect-calendar/disconnect/). You can additionally revoke access at Microsoft — personal accounts at [account.live.com/consent/Manage](https://account.live.com/consent/Manage), work accounts at [myapps.microsoft.com](https://myapps.microsoft.com/).