Microsoft OneDrive
Overview
The OneDrive integration lets a Microsoft 365 work or school user choose one existing folder for Bumblebee. Bumblebee can browse, read, and deliver files in that folder and its subfolders. Microsoft blocks the connector from the rest of the user's OneDrive and every other user's drive.
Use SharePoint instead when the workspace should be owned by a team or organization rather than one person's account.
Before you connect
You need:
- A Microsoft 365 administrator who can approve selected application access
- The work or school account that owns the folder
- A provisioned OneDrive for that account
The administrator and folder owner may be different people. Personal consumer Microsoft accounts are not supported in this version.
Connect a folder
- Open Integrations → Microsoft OneDrive in Bumblebee.
- Select Connect with Microsoft.
- Sign in as a Microsoft 365 administrator and approve selected access.
- Choose the work account that owns the folder.
- Review the temporary OneDrive setup permission.
- Browse the folder list and select Choose beside the folder to share.
The setup permission lets Bumblebee display the owner's folders and create the selected-folder grant. Bumblebee does not request a refresh token. The temporary access token is deleted after selection, and the saved connection contains only the tenant, owner, drive, and chosen folder IDs.
Permission model
| Permission | Type | Purpose |
|---|---|---|
Files.SelectedOperations.Selected | Application | Persistent access only where the chosen folder carries an explicit Bumblebee grant |
Files.ReadWrite | Delegated, setup only | Browse the signed-in user's folders and create the selected-folder grant |
The delegated scope is requested dynamically from the folder owner rather than
included in tenant-wide admin consent. Steady-state agent activity uses an
app-only token containing only Files.SelectedOperations.Selected.
What Bumblebee can do
Inside the chosen folder, Bumblebee agents can:
- Show the connected owner and folder
- List folders and files
- Search recursively by file or folder name
- Read small text, CSV, JSON, XML, and code files
- Return short-lived download links for Office documents and other binaries
- Upload or replace text files
- Create subfolders
Change or disconnect the folder
Version 1 supports one chosen OneDrive folder per Bumblebee organization. To use a different folder or account, disconnect and connect again.
Disconnecting removes Bumblebee's local binding. It does not remove the Microsoft-side folder grant; a folder owner or administrator can remove that grant separately during offboarding.
Troubleshooting
Microsoft says administrator approval is required
The selected application permission requires tenant administrator approval. Ask an authorized administrator to complete the first sign-in.
The folder list will not load
The setup session lasts ten minutes. Close the popup and reconnect if it expired. Tenant consent policy can also require an administrator to approve the temporary delegated setup scope.
The intended account has no OneDrive
Sign in to Microsoft 365 as that user and open OneDrive once to provision it, then retry.
The selected folder cannot be granted
Choose a folder owned by the signed-in account. Shared folders can appear in OneDrive even when that user cannot manage their application permissions.
App-only verification fails
Microsoft may still be propagating the folder grant. Retry the connection. If
the failure persists, confirm the folder owner completed the picker and the
tenant has consented to Files.SelectedOperations.Selected.