Commands › Exchange Online

Preview-QuarantineMessage

Exchange Online ExchangeOnlineManagement Preview-*

Preview the contents of quarantined messages in your cloud-based organization. This cmdlet doesn't work on files that were quarantined by Safe Attachments for SharePoint, OneDrive, and Microsoft Teams.

Quick start script

# Preview-QuarantineMessage — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Run and inspect
Preview-QuarantineMessage -Identity <QuarantineMessageIdentity> | Format-List

# 3. Export for evidence / drift tracking
Preview-QuarantineMessage | Export-Clixml .\QuarantineMessage-$(Get-Date -Format yyyyMMdd).xml

Syntax

Preview-QuarantineMessage -Identity <QuarantineMessageIdentity>
 [-EntityType <Microsoft.Exchange.Management.FfoQuarantine.EntityType>]
 [-RecipientAddress <String>]
 [<CommonParameters>]

Parameters (3)

ParameterTypeRequiredWhat it controls
-Identity QuarantineMessageIdentity yes The Identity parameter specifies the quarantined message that you want to preview. The value is a unique quarantined message identifier in the format `GUID1\GUID2` (for example...
-EntityType EntityType The EntityType parameter filters the results by EntityType. Valid values are:
-RecipientAddress String The RecipientAddress parameter filters the results by the recipient's email address. You can specify multiple values separated by commas.

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.