check before: 2025-09-01

Product:

Defender, Defender for Office 365, Defender XDR, Entra, Microsoft 365 admin center, Microsoft 365 Apps, Teams, Windows

Platform:

Android, iOS, Mac, Online, Web, Windows Desktop, World tenant

Status:

Rolling out

Change type:

Admin impact, New feature, Updated message, User impact

Links:

501202

Details:

Summary:
Microsoft Teams will let users report messages incorrectly flagged as security threats, available with Microsoft Defender for Office 365 Plan 2 or Defender XDR. The feature launches in September 2025 (Targeted Release) and November 2025 (General Availability), requiring admin enablement in Teams and Defender portals.

Details:
Updated September 9, 2025: We have updated the content. Thank you for your patience.
Introduction
Microsoft Teams now enables users to report messages they believe were incorrectly flagged as security threats in chats and channels. This capability is available to organizations with Microsoft Defender for Office 365 Plan 2 or Microsoft Defender XDR. It empowers users to provide feedback on false positives, helping improve detection accuracy and strengthen organizational security.
This feature will be available across Microsoft Teams on Android, Desktop (Windows), iOS, Mac, and Web platforms, ensuring broad accessibility for users regardless of device.
This feature is associated with Microsoft 365 Roadmap ID 501202.
When this will happen
Targeted Release (Worldwide): Begins in early September 2025; expected completion by mid-September 2025.
General Availability (Worldwide): Begins in early November 2025; expected completion by mid-November 2025.

Change Category:
XXXXXXX ... free basic plan only

Scope:
XXXXXXX ... free basic plan only

Release Phase:
General Availability, Targeted Release

Created:
2025-09-05

updated:
2025-09-10

Task Type

XXXXXXX ... free basic plan only

Docu to Check

XXXXXXX ... free basic plan only

MS How does it affect me

XXXXXXX ... free basic plan only

MS Preperations

XXXXXXX ... free basic plan only

MS Urgency

XXXXXXX ... free basic plan only

MS workload name

XXXXXXX ... free basic plan only

linked item details

XXXXXXX ... free basic plan only

Pictures

XXXXXXX ... free basic plan only

summary for non-techies**

XXXXXXX ... free basic plan only

Direct effects for Operations**

User Experience Degradation
If the feature is enabled without proper preparation, users may experience confusion and frustration due to an influx of false positives, leading to decreased trust in the security system.
   - roles: End Users, IT Support Staff
   - references: https://learn.microsoft.com/microsoftteams/end-user-reporting-security, https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=501202

Increased Administrative Burden
Without prior preparation, IT administrators may face an overwhelming number of user reports to manage, leading to potential delays in addressing legitimate security concerns.
   - roles: IT Administrators, Security Analysts
   - references: https://learn.microsoft.com/microsoftteams/end-user-reporting-security, https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=501202

Configutation Options**

XXXXXXX ... paid membership only

IT Security**

XXXXXXX ... paid membership only

explanation for non-techies**

XXXXXXX ... free basic plan only

** AI generated content. This information must be reviewed before use.

a free basic plan is required to see more details. Sign up here


A cloudsocut.one plan is required to see all the changed details. If you are already a customer, choose login.
If you are new to cloudscout.one please choose a plan.



change history

DatePropertyoldnew
2025-09-10MC Feature StatusFeature Rollout Status Not Supported
2025-09-10MC MessageTagNamesNew feature, User impact, Admin impactUpdated message, New feature, User impact, Admin impact
2025-09-10MC SummaryMicrosoft Teams will let users report messages incorrectly flagged as security threats, available to organizations with Microsoft Defender for Office 365 Plan 2 or Defender XDR. The feature launches in September 2025 (Targeted Release) and November 2025 (General Availability), requiring admin enablement in Teams and Defender portals.Microsoft Teams will let users report messages incorrectly flagged as security threats, available with Microsoft Defender for Office 365 Plan 2 or Defender XDR. The feature launches in September 2025 (Targeted Release) and November 2025 (General Availability), requiring admin enablement in Teams and Defender portals.
2025-09-10MC Last Updated09/05/2025 01:12:582025-09-09T19:02:57Z
2025-09-10MC MessagesIntroduction
Microsoft Teams now enables users to report messages they believe were incorrectly flagged as security threats in chats and channels. This capability is available to organizations with Microsoft Defender for Office 365 Plan 2 or Microsoft Defender XDR. It empowers users to provide feedback on false positives, helping improve detection accuracy and strengthen organizational security.
This feature will be available across Microsoft Teams on Android, Desktop (Windows), iOS, Mac, and Web platforms, ensuring broad accessibility for users regardless of device.
This feature is associated with Microsoft 365 Roadmap ID 501202.
When this will happen
Targeted Release (Worldwide): Begins in early September 2025; expected completion by mid-September 2025.
General Availability (Worldwide): Begins in early November 2025; expected completion by mid-November 2025.
Updated September 9, 2025: We have updated the content. Thank you for your patience.
Introduction
Microsoft Teams now enables users to report messages they believe were incorrectly flagged as security threats in chats and channels. This capability is available to organizations with Microsoft Defender for Office 365 Plan 2 or Microsoft Defender XDR. It empowers users to provide feedback on false positives, helping improve detection accuracy and strengthen organizational security.
This feature will be available across Microsoft Teams on Android, Desktop (Windows), iOS, Mac, and Web platforms, ensuring broad accessibility for users regardless of device.
This feature is associated with Microsoft 365 Roadmap ID 501202.
When this will happen
Targeted Release (Worldwide): Begins in early September 2025; expected completion by mid-September 2025.
General Availability (Worldwide): Begins in early November 2025; expected completion by mid-November 2025.
2025-09-10MC preparehttps://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=501202https://learn.microsoft.com/microsoftteams/end-user-reporting-security
https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=501202
2025-09-10MC How AffectUsers will be able to report messages they believe contain URLs that were incorrectly flagged as malicious:

During Targeted Release, the feature is off by default in Teams.
At General Availability, the feature will be on by default in Teams. Admin settings saved during Targeted Release will remain unchanged.
In the Microsoft Defender portal, the setting is on by default for new tenants. Existing tenants must enable it manually.
What you can do to prepare
To enable this feature and ensure reported messages appear in the User reported tab in Submissions:
In the Teams admin center, go to Messaging settings > Messaging safety and turn on Report incorrect security detections.

In the Microsoft Defender portal, ensure the corresponding setting is enabled.

Both settings must be turned on for full functionality.
Learn more: [Updated documentation to be made available on Microsoft Learn in the second week of September 2025.]
Compliance considerations
Does the change store new customer data, and if so, where is it stored?Yes. When users report messages they believe were incorrectly flagged, those submissions are stored in the Microsoft Defender portal under the Submissions tab.
Does the change introduce or significantly modify AI/ML or agent capabilities that interact with or provide access to customer data?Yes. User feedback on incorrectly flagged messages is used to improve detection models, which modifies how AI/ML systems classify threats over time.
Does the change include an admin control, and can it be controlled through Entra ID group membership?Yes. Admins can enable or disable the feature in both the Teams admin center and the Microsoft Defender portal. Access to these controls can be managed through Entra ID group membership.
Users will be able to report messages they believe contain URLs that were incorrectly flagged as malicious:

During Targeted Release, the feature is off by default in Teams.
At General Availability, the feature will be on by default in Teams. Admin settings saved during Targeted Release will remain unchanged.
In the Microsoft Defender portal, the setting is on by default for new tenants. Existing tenants must enable it manually.
What you can do to prepare
To enable this feature and ensure reported messages appear in the User reported tab in Submissions:
In the Teams admin center, go to Messaging settings > Messaging safety and turn on Report incorrect security detections.

In the Microsoft Defender portal, ensure the corresponding setting is enabled.

Both settings must be turned on for full functionality.
Learn more: [Updated documentation to be made available on Microsoft Learn in the second week of September 2025.]
Compliance considerations
Does the change store new customer data, and if so, where is it stored?Yes. When users report messages they believe were incorrectly flagged, those submissions are stored in the Microsoft Defender portal under the Submissions tab.
Does the change introduce or significantly modify AI/ML or agent capabilities that interact with or provide access to customer data?Yes. User feedback on incorrectly flagged messages is used to improve detection models, which modifies how AI/ML systems classify threats over time.
Does the change include an admin control, and can it be controlled through Entra ID group membership?Yes. Admins can enable or disable the feature in both the Teams admin center and the Microsoft Defender portal. Access to these controls can be managed through Entra ID group membership.

Additional Resources: End user reporting for security - Microsoft Teams | Microsoft Learn
2025-09-10MC TitleMicrosoft Teams: User reporting for incorrectly identified security concerns(Updated) Microsoft Teams: User reporting for incorrectly identified security concerns
2025-09-10MC End Time12/15/2025 09:00:002025-12-29T09:00:00Z

Last updated 2 days ago ago

Leave a Reply

Share to MS Teams

Login to your account

Welcome Back, We Missed You!