Microsoft Teams: Meeting recap app
🚨 The Signal: Microsoft Teams now centralises meeting recaps, including audio, for 30 days. This increases the persistence and accessibility of potentially sensitive meeting content, requiring review of data retention and access policies.
The Impact
All Teams users are affected by increased data persistence, raising the risk of unauthorised access to sensitive meeting information.
- End Users: Increased exposure of sensitive discussions if access controls are not robust.
- Security Team: New data surface to monitor for inappropriate sharing or retention.
- Compliance Team: Potential non-compliance with data retention policies for meeting transcripts and audio.
- Administrators: Need to review and enforce Teams meeting policies for recording and transcription.
The Action
- Review and update Microsoft Teams meeting policies for recording, transcription, and recap availability.
- Configure sensitivity labels for Teams meetings to automatically protect sensitive content.
- Educate users on the implications of meeting recaps and responsible information handling.
- Audit existing Teams meeting settings for guest access and external sharing permissions.
- Implement Microsoft Purview data retention policies for Teams meeting content.
Domain: Teams · Impact: medium · Workload: Teams