UV SharePoint AI Assistant documentation
Overview
Context-aware, tool-based SharePoint AI. Citations required. Inaccessible documents are never returned. Prompt injection is stripped. Not a generic chatbot.
For: Employees asking questions about tenant content.
Features
Tools
Search, document, people, governance — each authorizes first.
Citations
Answers grounded in sources the user can open.
Untrusted content
Document text cannot grant permissions.
Requirements
- SharePoint Online (Microsoft 365)
- Tenant app catalog
- SPFx 1.18+
- Node 18 LTS / 22 LTS for custom builds
- License key from Account → License keys
Installation
- After purchase or trial, download the signed uv-ai-assistant.sppkg package from Account → Files / UV Apps catalog.
- Upload the package to the tenant app catalog (SharePoint admin → More features → Apps).
- Enable the app for the whole tenant or selected site collections.
- If Entra asks for consent, approve only the permissions listed on the product page.
- Open a site and add the web part (or open the full-page app). The app checks for a purchased license or an active trial for this tenant.
- Sites.Read.All, Files.Read.All. Azure OpenAI is an admin choice.
How to use
- Open the page signed in with a work account from this Microsoft 365 tenant.
- The app asks the license server whether this tenant has a purchase or an active trial — no key is required.
- If nothing is found, paid features stay locked. Clock, Banner, Quick Links and Profile Card still run in Free mode.
- A product key from Account → License keys is only a fallback when silent activation fails.
- Ask a question.
- Open citations. If a tool returns Restricted, the model must not invent the answer.
Configuration
- Enabled tools
- Retention of prompts
Troubleshooting
- Insufficient: the user cannot open the source. That is correct.
Licensing
The app checks this tenant for a purchased license or an active trial and unlocks automatically. Sign in with a work mailbox on a verified domain of the Microsoft 365 tenant. See the licensing guide.
Microsoft Graph
- Sites.Read.All (Delegated) — Read only content the current user can already open.
- Files.Read.All (Delegated) — Read documents the user is already allowed to open.