Where each conversation's record lives
| Conversation | Visible copy | Compliance copy |
|---|---|---|
| 1:1 / group chat | Chat service | Every participant's mailbox (leavers: inactive mailbox rules apply) |
| Standard channel | Chat service | Group mailbox |
| Private channel | Chat service | Group mailbox (post-2025/26 migration; formerly member mailboxes — old content may still sit there) |
| Meeting chat | Chat service | Participants' mailboxes (it is a group chat with a fancy name) |
| External/federated chat | Both tenants' services | Each side keeps records for its own users only |
Practical consequences:
- eDiscovery scoping follows the mailbox map — to find channel messages you scope the GROUP; scoping the user finds their chats, not their channel posts.
- Guests' chat records live in your tenant against their guest mailbox shadow — discoverable by you; federated users' messages are recorded in their tenant, and you only hold your side of the conversation.
- Deleting a user's mailbox deletes their chat compliance copies — inactive mailboxes / holds are how leavers' chats stay discoverable.
What to watch (proofs)
- The pipeline's existence: Purview eDiscovery search for a message you just sent — the minutes until it hits = compliance-copy + index latency.
- Where a hit came from: eDiscovery results show the source mailbox — group vs user — proving the table above against your own tenant.
- The service copy's independence: EXO outage advisories with chat unaffected (service health history) — the architectural claim, evidenced.
- Purge latency: delete via retention (short test policy on a test mailbox), watch the visible copy outlive the policy by the documented processing windows.