Bots in Microsft Teams are something which I found intresting in Microsft Teams. When I started exploring Bots, Polly is the only bot which impressed me all other bots are not really very useful. Security is another concern, when I add new bot it wants me to accept terms and conditions and I am not very sure how secure it is to allowing bots to access my information. I would like to know your experience with Bots, How Bots are helping you or your organization. Please share your experience.
It's a good question -- and I think there's a blog post in there about the security measures around bots. Without digging deeper into the topic, I have two immediate thoughts:
First, for bots that access outside (web-based) services, you most definitely need to reivew the security measures for that service, and have an understanding of how your data is used and whether it complies with your corporate standards. As was mentioned in another thread, for most bots (all?) security is at the individual user level.
Side note: as @David Rosenthal commented in that other thread, the current slate of bots are passive (not always listening), and only take action when invoked/activated, which, in my mind, decreases some of the risk.
Second, organizations need to establish guidelines for how bots can and cannot be used, and restrict the use of bots that do not meet those policies. Now, whether or not an O365 Global Admin can restrict bots at this level today? Not sure. I think I may do some digging on this topic...