Feedback by UserVoice

Office 365 Security & Compliance

We have partnered with UserVoice, a third-party service and your use of the portal and your submission is subject to the UserVoice Terms of Service & Privacy Policy. Please do not send any novel or patentable ideas, copyrighted materials, samples or demos for which you do not want to grant a license to Microsoft.

Welcome to the Security (Protection) & Compliance UserVoice forum. We’re happy you’re here! If you have suggestions or ideas on how to improve Security or Compliance related features in O365, we’d love to hear them!

How it works
◾Check out the ideas others have suggested and vote on your favorites
◾If you have a suggestion that’s not listed yet, submit your own — 25 words or less, please
◾Include one suggestion per post

Thanks for joining our community and helping improve these features in Office 365!

Need Tech Support? Please see the O365 Community for the product or feature you are having issues with, or open a support ticket through your Office 365 administrator portal.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Deploy a high availability architecture in order to ensure the service for Outlook

    Recently an issue with one of your Exchange server impact users of many tenants with mail service interruption during several hours.
    With a high availability architecture you would have a secondary server to ensure the SLA for the Outlook users.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  2. OneDrive Security Validation Adjustment / Allow Long File Uploads

    Currently, it is not supported for OneDrive customers to upload (via O365 Web Portal) for more than 30 minutes at a time. This makes large file transfers to OneDrive impossible. A security validation error occurs at 30 minutes and that validation setting (making it larger than 30) cannot be changed for O365 online. This setting can be changed with an on premise installation.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  3. select recipient policy

    Possible bug? When creating a new spam policy and adding a condition, not all recipients appear, therefore cannot be added to "If recipient is".
    This works perfectly under the older Exchange Admin Centre

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  4. Quarantine Notification include all type/flaggs

    Hi,
    Can you escalate this information because our customers need to receive notifications from quarantine@messaging.microsoft.com including standard / flagged mails:
    • Mail quarantined because it is a match set by a mail flow rule (also known as a transport rule)
    • Mail identified as bulk mail
    • Mail identified as phishing mail
    Mail quarantined because it contains malware
    • Mail identified as spam

    Is this request already in progress?
    Will modifications be made?
    Thank you in advance for your feedback.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  5. User managed personal content filtering

    The junk email folder should be used by O365 to provide user-level filtering. I learned recently during a support case with O365 that the cloud Exchange service does not "learn" from items that people move into their junk email folder what content an individual user considers spam or phishing or malware. It appears that moving things to junk is the same as moving it to the deleted items folder. This is a serious omission. The junk folder should be used to analyze content or other factors that a user considers spam and filter accordingly. Using the tenant wide spam and…

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  6. I would very much appreciate that we include litigation hold in Office 365 Business premium

    I would very much appreciate that we include litigation hold in Office 365 Business premium

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  7. We need to disable the NDR mesages to sent back to sender if the e-mail address does not exists in environment.

    We need to disable the NDR message sent back to sender , if the recipient address does not exist.

    E.g: If mail@abc.com sends an e-mails to smtp@xyz.com recipient, and smtp@xyz.com is not a correct address or recipient has left the organization and e-mail address is not present. Our we do not want the NDR message sent to sender.

    Most of time spam tries to send mails and NDR helps them to know about the recipient status.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  8. spam filter should be high priority than End user Safe and Blocked senders

    End user Safe and Blocked senders is ovride company spam filter and will be out off control

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  9. Data Loss Prevention Policy - allow user notification to be either an email or a policy tip.

    Currently, you can only choose both and you can not choose one or the other.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  DLP & Transport Rules  ·  Flag idea as inappropriate…  ·  Admin →
  10. Do Not agree with many Office 365 ATP Safe Attachments decisions. Fix criteria!

    Do Not agree with many Office 365 ATP Safe Attachments decisions. Fix criteria

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  11. How do you override a blocked link I sent to myself?

    There is nothing wrong with this Smartsheets link I was just using on another laptop 3 seconds ago, I cant work now.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  12. Remove the Asterisk on the new eDiscovery Content Search page for Keyword Parameter

    The new eDiscovery Content Search page on Security & Compliance center includes an asterisk next to "Keywords" saying it's a required field. It is NOT a required field and is confusing. Also - the SAVE button on the accounts page is below the bottom of the page, you should move it to next to the X at the top. I can't tell you how many times I've accidentally closed it when I meant to save it.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  eDiscovery  ·  Flag idea as inappropriate…  ·  Admin →
  13. When I detect ATP, I want to be able to set spam [add text to the head of the subject line as well as filter] setting

    I want to make it possible to add [text to the beginning of the subject line] in addition to [Monitor] etc. when the ATP is detected
    In a transport rule, there is a method of bypassing a file with a specific extension detected by ATP
    However, if you want to set [add text to the beginning of the subject line] for all detected ATPs

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  14. Allow admins to export the findings from all O365 Security Centre Dashboard Reports (including associated user names) so they can be tracked

    Currently, there is no ability to export the associated user names from ANY of the security dashboards on O365 Security Center.

    If your development team can take this feedback and add that feature, that will be very helpful.

    The reason is that unless I am able to export the names of users involved in any potential security finding (such as users having SMPT auth, users with malware detected, users targeted with fishing attacks etc.), it is difficult to track the remediation, follow up conversation etc. for those cases.

    Hence I request – ALL the dashboards on O365 should have the…

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Reports  ·  Flag idea as inappropriate…  ·  Admin →
  15. screen restrictions for iOS

    We have screen restrictions at intune mobile application management level for android, this is a good feature and should also be available for iOS.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Advanced Security Management  ·  Flag idea as inappropriate…  ·  Admin →
  16. Ability to easily delete a phishing email from all mailboxes

    Running a search & powershell is slow and tedious, when speed is of the essence.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Spam & Phishing  ·  Flag idea as inappropriate…  ·  Admin →
  17. Fix Supervision add-in (Supervisory Review v2) for Webmail

    The Supervisory add in within webmail is broken since the latest updates were done. The add-in was a really good feature that allowed compliance admins to perform supervision via webmail in case there are more then one supervision rules. The outlook version doesn't work better then the webmail version as it requires to create a new profile per supervision rule. Doesnt suit in case an organization has many supervision rules. Would really hope if this could be fixed soon.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Compliance Manager  ·  Flag idea as inappropriate…  ·  Admin →
  18. unusual external file activity

    Add the ability to whitelist certain SharePoint sites from the unusual external file activity alert. We have several sites that are designed to be shared externally, have no sensitive data, and that we do not need to be alerted about. We don't have any way of filtering those out of the alerts though, so we are regularly getting useless notifications and have a hard time filtering through to find the ones we actually do care about.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Compliance Manager  ·  Flag idea as inappropriate…  ·  Admin →
  19. How to Activate Office 2013? Office MS Office? | msofficekeyoffice

    Microsoft office is one of the most popular applications used these days. It is a suite which has many different programs to suit different needs. You will find everything which you need for your daily tasks in the application. The office has been used since decades. After that with changing time, it has been modified every single time to add new and attractive features. Office 2013 is also filled with many such new features. To activate office 2013, you just need to follow few simple steps.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  20. O365 Management API ability to subscribe to activities for a mailbox/activity type

    We have to subscribe for whole Exchange activities and filter out data after reading the activity. It will be really nice to have the option to subscribe to activities for only the mailbox and/or /activity type we are interested in.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base