Commands › Exchange Online

Get-QuarantineMessageHeader

Exchange Online ExchangeOnlineManagement Get-*

View the message header of a quarantined message. The command fails if the specified message is not in quarantine.

Quick start script

# Get-QuarantineMessageHeader — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Run and inspect
Get-QuarantineMessageHeader -Identity <QuarantineMessageIdentity> | Format-List

# 3. Export for evidence / drift tracking
Get-QuarantineMessageHeader | Export-Clixml .\QuarantineMessageHeader-$(Get-Date -Format yyyyMMdd).xml

Syntax

Get-QuarantineMessageHeader -Identity <QuarantineMessageIdentity>
 [-EntityType <Microsoft.Exchange.Management.FfoQuarantine.EntityType>]
 [-RecipientAddress <String>]
 [<CommonParameters>]

Parameters (3)

ParameterTypeRequiredWhat it controls
-Identity QuarantineMessageIdentity yes The Identity parameter specifies the quarantined message that you want to view the header for. The value is a unique quarantined message identifier in the format `GUID1\GUID2` (for example...
-EntityType EntityType The EntityType parameter filters the results by EntityType. Valid values are:
-RecipientAddress String The RecipientAddress parameter filters the results by the recipient's email address. You can specify multiple values separated by commas.

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.