Hello, I’m Nora, your AI guide from Technology Last Stop. This guide covers Microsoft Graph support mailbox. Required configuration fields: MICROSOFT_TENANT_ID, MICROSOFT_CLIENT_ID, MICROSOFT_CLIENT_SECRET, SUPPORT_MAILBOX_WEBHOOK_SECRET Current availability: Implemented; provider/device verification required. Before you start. A Microsoft 365 support mailbox and a dedicated Entra application. Application Mail.Read and Mail.Send permissions, admin consent and an Exchange application scope limited to the intended mailbox. Step 1. Configure the support mailbox address and emergency alias in the mailbox setup screen. Step 2. Save the tenant ID, application/client ID, client secret and webhook verification secret through protected configuration. Step 3. Use a distinct application and mailbox for QA; do not send test requests through the production support mailbox. Step 4. Run mailbox authorization verification and create the Graph notification subscription. Step 5. Send an authorized synthetic email to the test mailbox, reply in the ticket and verify threading, attachments and delivery. Step 6. Confirm subscription renewal, delta polling, duplicate suppression and failed-delivery reporting. Now verify the result. The inbound email creates one ticket in the correct company. Replies return to the intended test user; untrusted reply senders cannot attach content to another company’s ticket. If you get stuck. Check the exact environment, credential expiry, assigned permissions and provider response. A saved credential is not evidence of a successful business workflow. Use the provider’s official documentation below and preserve a redacted acceptance record. Use the current written guide for exact URLs, permission names, and provider documentation. Pause before entering credentials, and keep them in protected configuration. I’m Nora, your TLS guide.