Microsoft has put a new line on its public roadmap for Teams: support for synthetic audio and video detection supplied by certified outside providers. Roadmap item 573451 was published on Oct. 2, 2026, last revised on Oct. 7, and lists general availability for November 2026. The company is not building the detector itself. Companies will connect a vendor’s tool to Teams, and the vendor’s verdict will show up inside the meeting.
The plan arrived alongside a second roadmap item, 573157, that has Teams warn users about possible impersonation of meeting organizers and participants. Both are marked as in development, and Microsoft has not named a single participating security company.
Roadmap item 573451 and the certified-provider model
According to the roadmap entry for item 573451, certified third-party providers analyze meeting media for synthetic or manipulated audio and video and send detection signals to Teams. Teams then surfaces those signals in meetings. The entry states plainly that “synthetic media detection is performed by the third-party provider,” which places the accuracy of any verdict with the vendor rather than with Microsoft.
The listing covers the Teams desktop client, Mac and web, in the worldwide standard multi-tenant cloud, and its release phase is general availability with a targeted-release stage first. It has been revised six times since Oct. 2, and the latest version on Oct. 7 rewrote the entry’s name and description, so the wording was still being tightened days before the feature was widely reported.
BleepingComputer’s Sergiu Gatlan reported on Oct. 8 that Teams will use the signals from those providers to power in-meeting experiences and controls, and that Microsoft names no vendors. Windows Report, writing on Oct. 5, added that certified security providers will be able to integrate detection directly with Teams, and that Microsoft has not said whether administrators will deploy the tools through the Teams app store, through tenant-level controls or through another route.
Impersonation protection in roadmap item 573157
The companion feature has a different job. Roadmap item 573157 describes Impersonation Protection for Teams meetings as helping “users identify potentially deceptive participants and meeting organizers.” When Teams detects a possible impersonation attempt, it shows warnings and risk indicators, either before someone joins or while the meeting is under way.
This one runs on Microsoft’s own detection and covers more platforms: Android, iOS, desktop, Mac and web. It carries the same November 2026 general availability target and the same in-development status. Windows Report’s separate write-up quotes the roadmap wording and frames the feature as a way for attendees to decide whether to trust a person on screen before acting on anything that person says. The two items split the problem: Impersonation Protection looks at who is claiming to be the organizer or participant, while the third-party channel looks at whether the audio and video itself is machine-made.
Vendors already selling deepfake checks inside Teams
Detection vendors are not waiting for the certified program. Sensity’s documentation describes a Teams app in which an administrator installs it organization-wide and a meeting tab then marks each attendee Valid or Suspicious. Clicking Analyze sends a bot into the call to capture 30 seconds of audio and video. Video analysis runs whenever a face is visible, but audio analysis works only if the participant speaks during that 30-second window.
Resemble AI’s Resemble Detect takes a different approach. The company describes it as native, real-time detection that appears as a pinned app inside Teams, works without adding a separate attendee to the call unless an organization wants a visible bot, and matches enrolled people by face and voice so it can flag a name on screen that does not match the person on camera. Resemble says only audio and video from participants flagged as suspicious is retained for security review.
Neither company has said it will be among Microsoft’s certified providers, and Microsoft has not published the certification criteria. The roadmap entry establishes the architecture, with a vendor producing a signal and Teams displaying it, but the rollout details that decide how useful it is remain unpublished.
Teams security changes queued for November and January
The deepfake item is one of several Teams protections Microsoft has queued against social engineering. BleepingComputer’s report lists an admin option to lock out external users, starting in January and managed through the Defender portal, intended to counter cybercrime groups including ransomware gangs that abuse Teams. It also lists the blurring of QR codes sent by external senders (roadmap ID 570439) and a meeting protection policy, rolled out in August, that lets administrators block identified external bots automatically.
Suspicious guest invitations are covered too. Users will be able to report them from Teams starting in November under roadmap ID 571297, the same month both the deepfake and impersonation features are scheduled to reach general availability.
Delivery of the third-party channel on the November target depends on the certification program, which as of the Oct. 7 revision of item 573451 has no public list of providers.
This article was produced with the assistance of AI and reviewed by Morning Overview editors prior to publication.
More from Morning Overview
- Two passengers died at an Ohio toll plaza, and the NTSB now wants the cash lanes shut
- Long use of a common prostate pill is tied to a higher chance of glaucoma
- Ford is recalling 223,472 F-150 pickups because the fuel tank can leak or detach
- Hybrids have 15% fewer problems than gas cars, while EVs and plug-in hybrids have about 80% more, Consumer Reports finds