Posted on: February 20, 2015
After recently acquiring the Acompli mobile application, Microsoft rebranded it as Microsoft Outlook app for iOS and Android and released it on January 29th, 2015. It was quickly identified to not be compliant with the Freedom of Information and Protection of Privacy Act (FIPPA) as well as TRU information security policies and standards prompting IT Services to take action by preventing the app from access to TRU’s Outlook email server.
The main privacy concerns that were identified include:
• The app stores a copy of the user’s credentials on servers outside of Canada
• Email message content is stored on servers located outside of Canada (FIPPA violation)
• After an account is deleted, Microsoft’s servers continue to attempt to retrieve email
• The app does not enforce ActiveSync security policies (e.g. device passcode requirements, ability to wipe remotely, etc.)
If you try to access your TRU Outlook email account through the Microsoft Outlook App you will not be able to sign in and you will see: “Unable to Login, please check your email and password and try again”. IT Services has applied a policy that does not allow a connection to our mail server from the Microsoft Outlook app.
/* Style Definitions */
mso-padding-alt:0in 5.4pt 0in 5.4pt;