Feedback by UserVoice

Office 365 Security & Compliance

We have partnered with UserVoice, a third-party service and your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy. Please do not send any novel or patentable ideas, copyrighted materials, samples or demos for which you do not want to grant a license to Microsoft.

Welcome to the Security (Protection) & Compliance UserVoice forum. We’re happy you’re here! If you have suggestions or ideas on how to improve Security or Compliance related features in O365, we’d love to hear them!

How it works
◾Check out the ideas others have suggested and vote on your favorites
◾If you have a suggestion that’s not listed yet, submit your own — 25 words or less, please
◾Include one suggestion per post

Thanks for joining our community and helping improve these features in Office 365!

Need Tech Support? Please see the O365 Community for the product or feature you are having issues with, or open a support ticket through your Office 365 administrator portal.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Option to extract the "sent and received email reports"

    Option to extract the "sent and received email report" like we can in many other report types.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Reports  ·  Flag idea as inappropriate…  ·  Admin →
  2. ATP Safelinks for sway

    We're receiving some mails with links to "legal" Sway presentations where there are links to malicious sites (phishing), and these links inside the Sway presentation are not rewrited nor analyzed.

    Although MS should analyze that before, it could be great to have the option to stop users to navigate to these sites when they do click on them.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  3. Make the default spam alerts not apply to a rule that deletes all outgoing mail

    We have rules for students that take all external e-mail that is sent and deletes it automatically. If they do get compromised or just are goofing off and generate a lot of outbound spam even though all of these are automatically deleted it still triggers a spam alert from the default rule

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  4. Default retention does not appear.

    DEFAULT retention tags that appeared in Exchange Online do not appear in Security and Compliance.

    We pay for the product for Microsoft to show DEFAULT information and not hide from customers.

    Please correct that.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  eDiscovery  ·  Flag idea as inappropriate…  ·  Admin →
  5. Make Security and Compliance exports compatible with newest Microsoft Edge browser

    The current content search export utility is not compatible with the newest Microsoft Edge browser built on Chromium. When attempting to download search results the notification states to use Internet Explorer or Edge yet the utility is not compatible with the Chromium version of MS Edge.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  eDiscovery  ·  Flag idea as inappropriate…  ·  Admin →
  6. Edit custom sensitive information dictionaries without Power Shell

    Editing custom sensitive information dictionaries using Power Shell commands is cumbersome and it would be great to be able to edit them in the GUI.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Compliance Manager  ·  Flag idea as inappropriate…  ·  Admin →
  7. Allow to share eternally while blocking internally

    Allow to share only with specific people externaly but prevent sharing internally. This is to preserve security inheritance in document library from the internal view but still be able to share documents with external people.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  8. Quarantine Preview with no interaction

    We are looking at letting our end users begin managing their own quarantined messages. One thing we noticed, that we like much better about management in the Exchange Online Portal, is that when you click to preview the quarantined message in HTML format, you get a warning. This is no longer available in the S&C portal, as well as the message now opens in HTML format rather than text format by default. Could we get that warning back?

    To take things one step further, how much trouble would it be to have the message open in a true preview mode,…

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  9. Add ability to download content search reports and exports using PowerShell

    Currently, we can create new content searches using the Create-ComplianceSearch commandlet, start the search with Start-ComplianceSearch, and view the search status with Get-ComplianceSearch. We can start exports with New-ComplianceSearchAction, and view the status with Get-ComplianceSearchAction, but we still need a way to download exports using PowerShell instead of the Security & Compliance.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  eDiscovery  ·  Flag idea as inappropriate…  ·  Admin →
  10. Approval button for DLP/Transport rules on Outlook mobile (iOS/Android)

    This is requieres for corporate users who have supported their information protection policies on Azure DLP, AIP, and Intune.

    As a subscriber my company is investing a lot of money on Microsoft security products and solutions and all the strategy is failing because of the lack of an approval button on Outlook mobile app.

    VIP users on the company are the ones willing to use this feature on their cellphones and if they’re not happy with the solution then they will cut founds or pressure IT to move to other technologies.

    PLEASE, we need an agile solution for this PROBLEM!

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  DLP & Transport Rules  ·  Flag idea as inappropriate…  ·  Admin →
  11. Allow downloading malicious attachments in a password protected archive

    When attachments are detected as malware, upon downloading from O365 Security&Compliance for further investigation Defender immediately recognizes malware and deletes files. To allow further manual investigation or submission to e.g. sandbox there should be option to download (malicious) attachments in form of password protected archive. Something similar is already available in MS Defender ATP.

    2 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Malware  ·  Flag idea as inappropriate…  ·  Admin →
  12. Keep search-mailbox

    Microsoft announced its intention to retire legacy eDiscovery tools on 4/1/2020. We would like to see search-mailbox kept in service at least until all functionality has transitioned to other cmdlets. Search-mailbox is great for determining where a message is in a mailbox. It’s also the fastest tool for retrieving a message from a mailbox for analysis. Granting mailbox access or using content search is not as efficient.

    Please help us keep this cmdlet alive!
    https://docs.microsoft.com/en-us/microsoft-365/compliance/legacy-ediscovery-retirement

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  13. Shared mailbox audit

    Shared Mailbox Audit

    When an phishing email comes into a shared mailbox. We should be able to tell which users have opened the email in the Shared Mailbox, which users have clicked on a phishing URL via the Shared Mailbox and also search via the Sender to fasten the investigation.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Auditing  ·  Flag idea as inappropriate…  ·  Admin →
  14. eDiscovery export tool should be supported under other browser (not only IE)

    eDiscovery export tool should be supported under other browser (not only IE), it should be more user friendly.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  eDiscovery  ·  Flag idea as inappropriate…  ·  Admin →
  15. Create a way to filter out drafts/draft messages in O365 eDiscovery portal/Compliance Center

    Currently, there is no way to filter out drafts/draft messages in O365, with the exception of excluding Drafts folder from the search and export. However, many times, drafts can be found in Deleted Items as well as other folders within the mailbox. It would be great if we are able to exclude drafts from the search, so that we don't have to export them from eDiscovery and therefore have less data to review.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  eDiscovery  ·  Flag idea as inappropriate…  ·  Admin →
  16. Need more details in Spam detections report

    You can check the number of Spam IP block or Spam DBEB filter in Spam detections report, but their details are not provided. So, we would like to check their details in the report.

    14 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Reports  ·  Flag idea as inappropriate…  ·  Admin →
  17. Send a notification when a Global Admin changed the specific Company resources, such as mailbox or account in Office 365 Security & Complian

    Please add a feature to send a notification to monitor if Global Admin changes the certain tenant information to avoid the unexpected change on users or mailboxes.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  18. Log Audit Log Searches and Exports in Audit Log

    Every global Admin can access the audit log - there is no way to control the usage of the Audit log !
    Audit Log can contain sensible user data and every global Admin can access this information without any documentation.
    So please log every search in Audit Log - who has searched what.

    54 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    1 comment  ·  Auditing  ·  Flag idea as inappropriate…  ·  Admin →
  19. Secure Score real time update functionality

    To improve secure score real time update. It much more better once they comply all the requirement needed score should be updated in real time.

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  20. DCR for User Defined Labels : Need the ability for users to use user defined labels for documents opened in Office web apps

    DCR for User Defined Labels : Need the ability for users to use user defined labels for documents opened in Office web apps as the they can in Office local client apps.
    we do not want to create many Labels for each variant our users need. User Defined Labels is the best way to allow user to use Labels

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1 3 4 5 108 109
  • Don't see your idea?

Feedback and Knowledge Base