Skip to main content
Workplace Messaging

Microsoft Teams

Send Guard risk alerts at or above a chosen severity to a Microsoft Teams channel through a webhook.

Guard integrates with workplace messaging services to send push notifications for specified alerts. This guide walks you through setting up a Microsoft Teams webhook integration with Guard.

First, decide where in Teams you want to see your Guard alerts. Pick the channel where you want notifications to be sent:

  1. Open Microsoft Teams.
  2. Select the channel where you want to receive notifications.
  3. Click on the ellipsis (three dots) next to the channel name.
  4. Choose "Workflows" from the dropdown menu.

Now, you'll want to find the right Workflow.

  1. In the Workflows menu, search for "Post to a channel when a webhook request is received."
  2. Click on the Workflow to select it.

Once you've identified the right workflow, you can give it a name.

  1. Enter a name for the workflow. This name is only used to distinguish it from other workflows in your settings.
  2. Wait for Teams to confirm the connection is valid.
  3. Click the "Next" button.

Next, you can check your work and make sure what you have entered is correct.

  1. Ensure the correct channel is selected.
  2. Click the "Add Workflow" button.

With your Workflow created, you'll be presented with a URL that Guard will use to send alerts.

  1. Copy the webhook URL provided by Teams.
  2. Click the "Done" button to close the window.

Configuring Guard

  1. In Guard, go to Settings > Notifications.
  2. On the Chat Messaging card, click Add Integration, then select Microsoft Teams.
  3. Paste the webhook URL you copied from Teams into the Webhook URL field.
  4. In Severity, choose the minimum risk severity that triggers a notification. The default is Medium, which sends Medium, High, and Critical risks.
  5. Click Connect.

Guard then posts a message to the channel for each new risk at or above the selected severity. The connected webhook is listed on the Chat Messaging card, where you can view or disconnect it.

If you need help with this integration, contact support@praetorian.com.

Still need help? Ask the team