Check provider logo

Meetings global (Org-wide default) policy has meeting recording disabled by default

teams_meeting_recording_disabled

Severitymedium
Serviceteams
by Prowler

Microsoft 365 Teams Global meeting policy has cloud meeting recording disabled by default (AllowCloudRecording=false).

Risk

Recording allowed by default enables uncontrolled capture of meetings, threatening confidentiality. Files and transcripts persist in collaboration stores and can be broadly shared, leading to insider exfiltration, accidental leakage, and long-lived exposure of sensitive discussions.

Run this check with Prowler CLI

prowler m365 --checks teams_meeting_recording_disabled

Recommendation

Adopt a stance of no default recording and grant recording only to specific roles or groups per least privilege. Require explicit consent, restrict sharing to need-to-know, and apply retention and access controls. Periodically review policies as part of defense in depth to minimize data exposure.

Remediation

CLI

Set-CsTeamsMeetingPolicy -Identity Global -AllowCloudRecording $false

Other
  1. Sign in to Microsoft Teams admin center: https://admin.teams.microsoft.com
  2. Go to Meetings > Meeting policies
  3. Select Global (Org-wide default)
  4. Under Recording & transcription, set Cloud recording to Off
  5. Click Save

Source Code

Resource Type

NotDefined

References