Introduction

I already wrote about blocking Otter.Ai and Read.Ai, a new AI note taking service has come to my attention, essentially, it works pretty similar to those, i, so you can open that other blog post in a new tab and read here to know the particularities of this “Fireflies.AI” service, the same procedures to try to block it apply.

Fireflies.AI Specifics

Upon signing-in, it requests the following Graph permissions

Those permissions translate to these Graph delegated permissions:

  • Calendars.Read (Read user calendars)
  • User.Read (Sign in and user user profile)
  • offline_access (Maintain access to data you have)
  • openid (Sign users in)
  • profile (view users’ basic profile)

On successful login, an Enterprise application app with guid 685d9120-feba-4cb0-934c-efcc69b85fc6 will be created in our tenant

How it looks in Teams

When you schedule or receive a Teams meeting, the read.ai will try to join the meeting

Limitations?

When joining another’s tenant meeting, I did notice that this bot was trying to join so if you don’t want it you cannot admit it from the lobby or kick it out.

Conclusion

The goal of this post isn’t to show the functionalities of this service, if a company allows it, it’ll probably do a good job, but if your company doesn’t allow third party recording, transcription or AI services, you can use this guide (complemented with the other linked at the beginning) to try to prevent it.

Leave a comment

tip of the week

When everything else fails, use SysInternals process monitor tool and you will be surprised

~ Me