Skip to main content
This page is the top-level conceptual view. The configuration UI lives at Settings → Scheduled Reports.

The three things a Scheduled Report does

  1. Pull data from a Saved View at the scheduled moment.
  2. Render in your chosen format — CSV, JSON, or XLSX.
  3. Email to recipients — one or more addresses.
That’s the whole feature. Everything else is configuration around those three steps.

Pick the right cadence

Most tenants find a daily-weekly-monthly mix covers most needs. Quarterly is usually too infrequent to spot drift.

Pick the right format

For PDFs and richer visualisations, use Reporting instead — apps support PDF generation with custom branding.

Common patterns

Tabulated by use case:

Best practices

Match the recipient’s working pattern: Monday morning for operational teams, first-business-day for leadership. Avoid Friday evening — no one reads them.
A daily report to 30 people is a daily delete to 28 people. Right person, right cadence.
In the report’s name or description, identify the human who owns the underlying saved view. When metrics shift unexpectedly, recipients know who to ask.
Reports without ownership become wallpaper. If you’re emailing 12 broken devices weekly, you should also have a Continuous Action targeting the same query.
The PREVIOUSLY GENERATED REPORTS list in Protect is a convenience. For compliance retention, route reports to a shared mailbox that forwards to your audit retention system.
Click Run now on a new report to validate the email pipeline before waiting for the scheduled time.

Limits

Quick summary:
  • 100,000 rows per export
  • Mail-provider attachment caps (typically 25 MB)
  • Switch to CSV or split by tag for large outputs

See also

Settings → Scheduled Reports

The configuration UI

Reporting overview

Where scheduled reports fit

Saved Views

Prerequisite