table

MessagePostDeliveryEvents

MessagePostDeliveryEvents contains security events that occur after Microsoft Teams message delivery.

tablesCurrent

Relationships

Schema

FieldTypeDescriptionCopy
TimestampdatetimeDate and time when the event was recorded.
TeamsMessageIdstringUnique identifier for the Teams message.
ActionstringAction taken on the message.
ActionTypestringType of activity that triggered the event.
ActionTriggerstringIndicates whether the action was administrator-triggered or automated.
ActionResultstringResult of the action.
SenderEmailAddressstringEmail address of the sender.
RecipientDetailsdynamicArray of recipient details.
ThreatTypesstringVerdict from the filtering stack.
ConfidenceLeveldynamicList of confidence levels for each identified threat type.
DetectionMethodsstringMethods used to detect threats in the message.
LatestDeliveryLocationstringLast known location of the message.
ReportIdstringUnique identifier for the event.
IsExternalThreadbooleanIndicates whether the thread has external recipients.
SafetyTipstringSafety tip added to the message, if any.