Introduction
Microsoft Teams now enables users to report messages they believe were incorrectly flagged as security threats in chats and channels. This capability is available to organizations with Microsoft Defender for Office 365 Plan 2 or Microsoft Defender XDR. It empowers users to provide feedback on false positives, helping improve detection accuracy and strengthen organizational security.
This feature will be available across Microsoft Teams on Android, Desktop (Windows), iOS, Mac, and Web platforms, ensuring broad accessibility for users regardless of device.
This feature is associated with Microsoft 365 Roadmap ID 501202.
When this will happen
Targeted Release (Worldwide): Begins in early September 2025; expected completion by mid-September 2025.
General Availability (Worldwide): Begins in early November 2025; expected completion by mid-November 2025.
How this affects your organization
Users will be able to report messages they believe contain URLs that were incorrectly flagged as malicious:
![Microsoft Teams: User reporting for incorrectly identified security concerns [MC1147984] 6 user settings](https://cxcs.microsoft.net/static/public/messagecenter/neutral/e84533a1-b3b6-4b82-87a2-47334577b217/1a6645547c71b286d07bcf8afc3f28f4d46eb45e.png)
- During Targeted Release, the feature is off by default in Teams.
- At General Availability, the feature will be on by default in Teams. Admin settings saved during Targeted Release will remain unchanged.
- In the Microsoft Defender portal, the setting is on by default for new tenants. Existing tenants must enable it manually.
What you can do to prepare
To enable this feature and ensure reported messages appear in the User reported tab in Submissions:
- In the Teams admin center, go to Messaging settings > Messaging safety and turn on Report incorrect security detections.
- In the Microsoft Defender portal, ensure the corresponding setting is enabled.
![Microsoft Teams: User reporting for incorrectly identified security concerns [MC1147984] 7 admin settings](https://cxcs.microsoft.net/static/public/messagecenter/neutral/8bb6387a-295d-4b2a-bf02-9ce504f35a82/c123b6dd197b44a14fb521939a7450a64ad3bb2d.png)
![Microsoft Teams: User reporting for incorrectly identified security concerns [MC1147984] 8 admin settings](https://cxcs.microsoft.net/static/public/messagecenter/neutral/38d65f09-1fc1-4fb5-8484-31a490c60beb/1247545bdfba22ba807e5d8deec3aedac6d39d41.png)
Both settings must be turned on for full functionality.
Learn more: [Updated documentation to be made available on Microsoft Learn in the second week of September 2025.]
Compliance considerations
| Does the change store new customer data, and if so, where is it stored? | Yes. When users report messages they believe were incorrectly flagged, those submissions are stored in the Microsoft Defender portal under the Submissions tab. |
| Does the change introduce or significantly modify AI/ML or agent capabilities that interact with or provide access to customer data? | Yes. User feedback on incorrectly flagged messages is used to improve detection models, which modifies how AI/ML systems classify threats over time. |
| Does the change include an admin control, and can it be controlled through Entra ID group membership? | Yes. Admins can enable or disable the feature in both the Teams admin center and the Microsoft Defender portal. Access to these controls can be managed through Entra ID group membership. |
Source: Microsoft
Latest Posts
- Microsoft Teams: Teams Live Events is retiring [MC1226495]
![Microsoft Teams: Teams Live Events is retiring [MC1226495] 2 pexels pixabay 220769](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- New Teams Events setting to control registration [MC1226497]
![New Teams Events setting to control registration [MC1226497] 3 pexels fwstudio 33348 139319](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Retirement of the isBroadcast property for Teams Live Events in Microsoft Graph [MC1226498]
![Retirement of the isBroadcast property for Teams Live Events in Microsoft Graph [MC1226498] 4 pexels andre furtado 43594 1263985](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- AWS IAM Identity Center enables account access and application use in multiple AWS Regions

![Microsoft Teams: User reporting for incorrectly identified security concerns [MC1147984] 1 Microsoft Teams: User reporting for incorrectly identified security concerns [MC1147984]](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-pavel-danilyuk-8438918-1024x683.webp)
![Microsoft Teams: Teams Live Events is retiring [MC1226495] 2 pexels pixabay 220769](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-pixabay-220769-150x150.webp)
![New Teams Events setting to control registration [MC1226497] 3 pexels fwstudio 33348 139319](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-fwstudio-33348-139319-150x150.webp)
![Retirement of the isBroadcast property for Teams Live Events in Microsoft Graph [MC1226498] 4 pexels andre furtado 43594 1263985](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-andre-furtado-43594-1263985-150x150.webp)

![Power Apps - Header and navigation refresh [MC1147991] 10 Power Apps – Header and navigation refresh [MC1147991]](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-magda-ehlers-pexels-1599452-96x96.webp)