Feedback by UserVoice

Office 365 Security & Compliance

We have partnered with UserVoice, a third-party service and your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy. Please do not send any novel or patentable ideas, copyrighted materials, samples or demos for which you do not want to grant a license to Microsoft.

Welcome to the Security (Protection) & Compliance UserVoice forum. We’re happy you’re here! If you have suggestions or ideas on how to improve Security or Compliance related features in O365, we’d love to hear them!

How it works
◾Check out the ideas others have suggested and vote on your favorites
◾If you have a suggestion that’s not listed yet, submit your own — 25 words or less, please
◾Include one suggestion per post

Thanks for joining our community and helping improve these features in Office 365!

Need Tech Support? Please see the O365 Community for the product or feature you are having issues with, or open a support ticket through your Office 365 administrator portal.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Preservation Lock enable and disable with special permission or at least with Microsoft Support.

    Preservation Lock can be set so easily that if you click on the policy on the right it will give you the option of on and Off resulting in a lock that even Support can not remove. Either provide a secure way of enabling disabling to the user or at least give it to Microsoft Support to do it on Client's behalf.

    312 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  2. Retention Compliance Rule - Exclude Item Classes

    Provide the capability to exclude item classes from a Retention Compliance Rule. This will allow for excluding Notes, Tasks, and Calendar items

    MS has published articles detailing how to do this for hold policies dating back to January of 2018, but the cmdlets still do not exist.

    https://support.office.com/en-us/article/overview-of-retention-policies-5e377752-700d-4870-9b6d-12bfc12d2423

    Set-RetentionComplianceRule [-ExcludedItemClasses <MultiValuedProperty>

    68 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  3. folder level default for compliance asset id

    A compliance asset id value can be applied to a folder and this should be 'inherited' as items are created or uploaded to the folder. However, there is no inheritance unlike the classification label. This means a user has to manually tag the asset id of any items they create or upload to the folder. They will not do it or make mistakes. Please can the compliance asset id inherit from the library or folder in the same way as the classification label.

    58 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  4. Record retention label - Disable "Record Status" toggling feature

    Based on Microsoft new feature release in Jan 2020, it allows user to toggle "Record status" to lock / unlock for a documents that are being applied with record retention labels. This feature is undesirable whereby it allows users with "members" rights to unlock and modify a record. We wish to have more control in terms of record handling and wish to disable this feature. Is there a way to hide this option from users and only allow site collection administrator to do so?

    52 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)

    The ability to mark a document as a record and restrict actions that can be performed on the record is an essential goal for any records management solution. However, collaboration might also be needed for people to create subsequent versions. This action creates a record in the Records folder in the Preservation Hold library, where it resides for the remainder of its retention period.

    While the document is unlocked, any user with standard edit permissions can edit the file. However, users can’t delete the file, because it’s still a record. When editing is complete, a user can then toggle the Record status from Unlocked to Locked, which prevents further edits while in this status.

    https://docs.microsoft.com/en-us/microsoft-365/compliance/record-versioning?view=o365-worldwide

    Alternatively, you can use the Regulatory Record Label which blocks versioning: https://docs.microsoft.com/en-us/microsoft-365/compliance/records-management?view=o365-worldwide#compare-restrictions-for-what-actions-are-allowed-or-blocked

  5. Get-RetentionCompliancePolicy Doesn't Return Values for SharepointLocation

    I have added sites to a Preservation Policy and need to continue adding sites to new policies. To do this I'm employing Powershell and the Compliance Center cmdlets to automate the provisioning of new policies as the current policy fills with sites.
    To do this I am running Get-RetentionCompliancePolicy and accessing the SharepointLocation property of the resultant objects. However, when I run the cmdlet without any arguments all the policies are returned, but the SharepointLocation property is empty. If I run the same cmdlet and pass in a policy name to the -Identity parameter then values are returned for the…

    18 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  6. OneDrive retention policy for terminated employee

    Currently, OneDrive retention policy only applies to when the OneDrive file was created or modified. I like to have the ability to set a retention policy for a Terminated employee's OneDrive contents over 30 days.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  7. File plan CitationUrl length too small

    The max length for the CitationUrl field is 64 chars. This is way too small for a URL that will be referring to specific page. For example: https://www.gov.uk/government/publications/guide-to-the-general-data-protection-regulation. Please increase to 254 chars.

    4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)

    thanks – the import file plan option is limited to 64 characters, but you should be able to edit file plan descriptors from the compliance center, from the create label wizard in the records management solution, and should be able to provide longer urls via that approach.

  • Don't see your idea?

Feedback and Knowledge Base