Draftable Office Add-in Deployment

Microsoft 365 Admin Center - Centralized Deployment

Staff

๐Ÿ“Š Deployment Status

Loading deployment status...

Add-in Manifest URLs

What you need to deploy each Draftable Office Add-in to your Microsoft 365 tenant via the Admin Center.

Where an add-in offers an app package, download it and use it. That is the only form the Admin Center can read permission requests from, so it is the only way an add-in that needs Microsoft Graph gets the access it needs. Everything else offers a manifest URL instead: click the copy button, then paste it into the Admin Center.

Where an add-in offers a latest manifest, prefer it over the pinned one: it follows updates within the same major version, so later releases reach your users without you re-pointing the URL.

Loading manifest URLs...

Deployment Instructions

Prerequisites: You must be a Microsoft 365 Global Administrator or have the appropriate admin permissions to deploy add-ins via Centralized Deployment. Granting an add-in's requested permissions (Step 4) requires Global Administrator specifically.

Step 1: Access Microsoft 365 Admin Center

  1. Navigate to the Microsoft 365 Admin Center
  2. Sign in with your administrator credentials

Step 2: Navigate to Integrated Apps

  1. In the left-hand navigation menu, expand Settings
  2. Click on Integrated apps

Step 3: Add the Add-in

  1. Click the Get apps button at the top of the page
  2. Click Upload custom apps (shown as Deploy Add-in in some versions of the admin portal)
  3. Choose the option matching what the add-in offered you above:
    • App package file — if you downloaded a .zip
    • I have a URL for the manifest file — if you copied a manifest URL
  4. Upload the .zip you downloaded, or paste the manifest URL you copied
  5. Click Validate or Next to check the manifest

Step 4: Grant Requested Permissions

  1. Review the add-in information and the permissions it requests
  2. Click Accept to grant them for your organization
About Draftable Clean's permissions: Draftable Clean asks to read the message being sent and its attachments. It uses this at the moment a user presses Send: it re-reads the attachments as your mail server holds them and confirms they are the cleaned files rather than the originals. This is what stops an uncleaned document leaving when something has gone wrong earlier in the process.

You grant consent once, here, on behalf of the whole organization. Individual users are never prompted.

If you decline, the add-in still installs and cleaning still works normally. Only the send-time verification is unavailable, and the task pane's status line reads Graph off.

This step appears only for add-ins deployed from an app package. A deployment made from a manifest URL is never asked, and so never granted — see Add-in works, but the send-time check is off under Troubleshooting.

Step 5: Configure Deployment Settings

  1. Click Next to proceed
  2. Choose who should have access to the add-in:
    • Everyone - Deploy to all users in your organization
    • Specific users/groups - Select particular users or security groups
    • Just me - Deploy only to your account (for testing)
  3. Select the deployment method:
    • Fixed - Add-in is automatically installed and users cannot remove it
    • Available - Add-in is available for users to install from their Office apps
    • Optional - Add-in is automatically installed but users can remove it

Step 6: Complete Deployment

  1. Review your configuration settings
  2. Click Deploy to finalize the deployment
  3. Wait for the deployment to complete (typically a few minutes)
Success! The add-in will be available to users within 24 hours. In most cases, it appears within minutes.

Step 7: Verify Deployment

  1. Open Word, Excel, PowerPoint, or Outlook (depending on which add-in you deployed)
  2. Go to the Home tab (or Insert tab in older Office versions)
  3. Look for the Draftable section in the ribbon
  4. The add-in buttons should appear in the ribbon or under My Add-ins
  5. For Draftable Clean, open the task pane and check the status line at the bottom. It should read Graph ok. If it reads Graph off, the send-time check is not running — see Troubleshooting
Note: If users don't see the add-in immediately, have them restart their Office application or wait a few minutes for the deployment to propagate across the tenant.

Troubleshooting

Add-in not appearing for users?

  • Wait up to 24 hours for deployment to fully propagate
  • Verify users are in the correct security group (if using group-based deployment)
  • Have users restart their Office applications
  • Check that users have active Microsoft 365 subscriptions with Office apps
  • Ensure users are signed in with their organizational account

Manifest validation failed?

  • Ensure you copied the complete URL without extra spaces or line breaks
  • Verify the URL is accessible from your network (not blocked by firewall or proxy)
  • Check that dl.draftable.com is not blocked by your organization's web filter
  • Try accessing the URL directly in a browser to confirm it's reachable

Need to update to a new version?

  • Deployments made from a latest manifest or an app package update themselves. Later releases within the same major version reach users with no admin action at all
  • To move a pinned deployment forward, return to Integrated apps, open the Draftable add-in, choose Update and supply the new pinned manifest URL
  • Re-uploading an app package is needed when the manifest itself changes — new or changed permissions, new commands or events, or a move to a different release channel. Unlike a manifest URL, an uploaded package is held by your tenant and is not re-fetched, so we will tell you when a re-upload is required. Ordinary version updates never need one
  • Users may need to restart Office apps to see the update

Add-in works, but the send-time check is off?

This one is silent by design: the add-in installs, opens, and cleans attachments normally. Only the server-side verification at send time is missing.

  • Confirm it: open the Draftable Clean task pane and read the status line at the bottom. Graph ok means the check is running; Graph off means it is not
  • Most likely cause: the add-in was deployed from a manifest URL rather than the app package. That route has no permissions step, so consent was never requested and never granted. Remove the deployment and redeploy from the app package
  • Otherwise: the permissions were declined at Step 4. Open the add-in under Integrated apps and grant them, or remove and redeploy
  • Users must be signed into Office with the organizational account the add-in was deployed to. A personal Microsoft account cannot receive the organization's grant

Remove or uninstall an add-in?

  • Go to Integrated apps in the Admin Center
  • Click on the Draftable add-in
  • Select Remove or Delete
  • Confirm the removal
  • The add-in will be removed from users' Office apps within 24 hours
URL copied to clipboard!
๐Ÿ” Staff: M365 Tenant Deployment Status

Shows what's actually deployed in our Microsoft 365 tenants vs. what's available on the CDN. This data is updated separately by running pnpm publish-tenant-status.

Loading tenant status...