Miscellaneous topics that do not fit into specific categories.
For your privacy and security, I have covered the personal information included in your post. Please avoid sharing any personal or sensitive information publicly, such as serial numbers, order details, email addresses, phone numbers, or case-related information.
Hi Barry Murphy,
I understand your concern, especially since the verification request appears to be invalidating password-reset and one-time-use tokens before the user can open them.
The “Verifying Link” screen is consistent with Microsoft Defender for Office 365 checking a URL at the time it is selected.
Please check the Safe Links policies in the Microsoft Defender portal to see whether the affected users are covered by a built-in, Standard, Strict, or custom policy. You could also open the same message in Outlook on the web and test the link there. This may help determine whether the behavior is specific to Outlook for iOS and Mac or is being applied at the tenant level.
Could you also confirm:
- Your Microsoft 365 and Defender for Office 365 licenses
- The Outlook versions installed on the iPhone and Mac
- Whether this happens with all links or mainly single-use verification and password-reset links
If no applicable policy explains the behavior, I recommend opening a service request through Microsoft 365 admin center > Support > Help & support. Microsoft Support can review the tenant configuration and help identify which service is issuing the HEAD request. Thank you so much for your understanding.
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.