Microsoft has started rolling out Workplace Check-in for Microsoft Teams, a Microsoft 365 feature that can mark employees as present in a specific office building by using corporate Wi-Fi data and, on some devices, location permissions. The capability is tied to organizations using Microsoft Places, remains disabled by default at the tenant level, and must first be enabled by enterprise administrators before users are prompted to participate.
Microsoft says the feature is optional and designed as an office-presence signal rather than continuous location tracking, noting it is not meant to follow employees between floors or buildings throughout the day. Even so, the rollout has renewed privacy concerns because administrators can configure prompts that encourage location sharing and employers could use the resulting attendance data to monitor return-to-office compliance; deployment may also be gradual because organizations must configure details such as office locations and Wi-Fi BSSID mappings.

See the reporting duties and controls this puts on the clock.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft began rolling out the Workplace Check-in feature for Microsoft Teams, which can use corporate Wi-Fi and device location permissions to indicate whether a user is at a specific office building. Microsoft says the feature is disabled by default and requires administrator enablement and user consent.
Microsoft delayed the initial release of the Microsoft 365 Workplace Check-in feature after backlash in September 2025 over privacy and workplace surveillance concerns.
See what this changes for your reporting obligations and which controls it puts on the clock.
4 references tracked. Mallory keeps watching after this page renders.
zdnet.fr
Open sourcecybersecuritynews.com
Open sourcesecurityonline.info
Open sourcewindowslatest.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.