FixControl
Microsoft Teams integration

Governed approvals in Microsoft Teams

Post decision cards for plans, patches, replies, and deployments into the channels your team already watches. Ticket questions get answered in place, intake is routed, and each decision is attributed to a linked identity.

Cards in your channelsIdentity-linked decisionsHealth per capability
What it does

What the Teams bot handles

Governed intake

An @mention in a channel becomes a work item in the bound FixControl project, scoped to your tenant. The item then follows the normal triage and approval flow.

Ticket questions

Ask the bot what’s open or waiting for approval across FixControl, Jira, and Freshdesk. A pre-intake intent gate separates questions from new work, so asking about a ticket doesn’t file another one.

Approvals on decision cards

Plans, patches, replies, and deployments arrive as decision cards. Approve or request changes on the card; the decision is recorded with actor, role, and channel.

Cards stay in sync

A decision made in Teams updates the card and the operational timeline together. The channel and the app show the same state.

Verified identities

Teams users link a FixControl identity before they can decide. Verified and elevated tiers let policy demand stronger identity for riskier approvals.

Channel-aware replies

The bot replies in the channel where the request came from. In shared or public channels it withholds internal ticket detail, following the tenant’s visibility rules.

Capabilities & health

Intake, posting, and identity each report their own health

A Teams connection is several paths, not one: receiving messages, answering, posting cards, and binding identities can each be healthy or broken on their own. FixControl probes them separately, so a failing outbound path is visible instead of hidden behind a connected badge.

Receive channel messages & mentions
Supported

The bot ingests messages and mentions routed to it and turns them into governed work items in the bound project, inside your own organization.

Ticket-question answering
Supported

Answers questions about existing FixControl, Jira, and Freshdesk tickets, with a gate in front of intake so a question doesn’t create an issue.

Approval decision cards
Supported

Posts decision cards for plans, patches, replies, and deployment gates, and records each approve or request-changes decision with attribution.

Post replies & update cards
Configuration-dependent

Requires the bot to be installed in the team and reachable. Outbound posts are queued in the integration outbox instead of being fired directly at the Teams API.

Single-tenant bot configuration
Configuration-dependent

The bot can run single-tenant, matching how your Azure app is registered. In that mode it obtains tokens from the tenant where the app is registered, rather than from the multi-tenant Microsoft endpoint.

Verified / elevated identity link
Configuration-dependent

Available once a Teams user links their FixControl identity. Governance policy can require the elevated tier for higher-risk decisions.

One green ‘connected’ checkmark
Not available — by design

There isn’t one. Posting can fail while intake still works, so FixControl reports each capability separately.

Failure handling

Outbound Teams messages either land or get flagged

Queued, retried, recorded
Outbound Teams writes — replies, card updates, acknowledgements — go through the integration outbox. Transient failures retry; persistent ones dead-letter and show on the operational timeline. Approvals taken in Teams are stored in the decision ledger with actor, role, channel, evidence, and consequence.
FAQ

Teams-specific questions

Is Teams just a chatbot in FixControl?+
No. The bot is an interface to governed actions: answers, intake, and approvals are each scoped to a project, permission-checked, queued through the outbox, and audited.
Does the Teams bot run single-tenant or multi-tenant?+
It follows your Azure app registration. Registered single-tenant, the bot obtains tokens from that tenant rather than the multi-tenant endpoint — and capability health shows whether the outbound path is working.
What happens if a Teams post fails?+
It stays in the outbox and retries. When retries are exhausted it’s dead-lettered, and the timeline shows the failed post instead of assuming delivery.
Who can approve from Teams?+
Users whose Teams identity is linked to a FixControl identity with the required role. Policy can additionally require the elevated tier for higher-risk actions, and each decision records actor, role, and channel.
Are approvals from Teams audited?+
Yes. A Teams approval is recorded in the decision ledger exactly like an in-app one — same fields, same trail.
Can sensitive ticket detail leak into a shared channel?+
Replies follow tenant isolation and channel visibility. In shared or public channels the bot omits internal ticket detail from what it posts.

Put a decision card in a Teams channel

Book a demo, approve a change from Teams, and trace the decision in the ledger.