Microsoft Teams Apps
Some of the available Apps are provided by Microsoft, however, most Teams Apps are developed by third-party, external vendors (not Microsoft) and may not conform to Office 365 and University of Iowa data storage security, regulatory, and/or compliance controls and policies.
All users should use discretion before adding any App to Teams per the following guidelines:
Important: Healthcare and HIPAA data should not be stored on, or connected to, any unapproved third-party platforms, Apps or Add-ins. (see advice here)
Teams App Vendor:
- Microsoft: Generally safe to use
- Third-party: Will require Technology Review - see below
- Custom: Blocked - see below
Considerations for third-party Teams Apps
Data security, Legal Agreements, Compliance:
- Be aware that Apps require various permissions be granted to them in order to function within Teams and O365.
- To avoid any potential risk to security and data integrity, all third-party Apps are required to undergo a Technology Review. Information about the Technology Review process is at: https://its.uiowa.edu/campus-software-program/technology-reviews
- Some Apps may require purchase for continued use, or for accessing enhanced features. Apps that require purchase should be reviewed.
- Some Apps use a freemium model which is common in subscription technology. While useful for quick evaluation, the true cost of that technology can be difficult to determine without additional review.
Technical support, Updates, and Quality:
- Technical support is provided by the third-party vendors at varying levels which is often related to a purchase. ITS does not provide technical support for third-party Teams Apps.
- Teams Apps often have information available in the Microsoft Appsource website. Items to consider such as
- Latest update release date. Apps that are not current, or updated regularly by the vendor, should be avoided.
- Reputation and rating of the vendor
- Usage and rating from users
- Quality of the vendor's documentation and support model
- Use of an App may be subject to the IT Accessibility Policy
- Information and Guidance at: https://itsecurity.uiowa.edu/itaccessibility
- Custom Apps are those that are developed by users for distribution to other users or Teams. Custom Apps are not currently supported.
Related links for Teams Apps:
- Technology Review FAQ: https://itsecurity.uiowa.edu/security-review-frequently-asked-questions
- Technology Review Process - https://its.uiowa.edu/campus-software-program/technology-reviews
- Security Review Form - https://workflow.uiowa.edu/form/security-review
- Data Classification Guide to IT Services: https://its.uiowa.edu/support/110901