Is this a genuine feedback request/email from Microsoft?

Bruce, Tina 20 Reputation points
2026-06-17T13:42:09.6666667+00:00

Received an email a couple of days ago from Microsoft Feedback ******@email7.microsoft.com. Assumed it was potentially spam/scam/phishing and ignored - doesn't appear to relate to any contact I've had recently with MS, just a generic "what's working well, click your response", so ignored and deleted. I've now received a followup - is this a genuine contact from MS, or just a persistent scammer? Many thanks :-)

Outlook | Windows | Classic Outlook for Windows | For business
0 comments No comments

Answer accepted by question author
Marcin Policht 109.5K Reputation points MVP Volunteer Moderator
2026-06-17T13:49:35.7033333+00:00

Yep - ******@email7.microsoft.com does not appear to be a commonly used Microsoft support or survey domain, so you were right to treat it cautiously. Microsoft typically sends legitimate email from domains ending in microsoft.com, office.com, outlook.com, or trusted subdomains such as mail.microsoft.com. A sender address like email7.microsoft.com can sometimes be used through third-party bulk email services, but it is also the kind of naming pattern commonly seen in phishing campaigns.

A generic “how are we doing?” message with clickable feedback buttons is a very common phishing technique because it encourages quick interaction without making the recipient think carefully. The fact that it followed up after you ignored it does not make it more legitimate - many automated scam campaigns send reminders.

The safest approach is exactly what you already did - do not click links or buttons, delete the message, and verify independently if needed. If you want to check further, inspect the full message headers and look for whether the message passed SPF, DKIM, and DMARC validation for Microsoft-owned domains. Also hover over any links without clicking; phishing emails often redirect to unrelated domains.

If you have not entered credentials or downloaded anything, simply deleting the emails is sufficient. If you did click a link, monitor your Microsoft account activity at account.microsoft.com, change your password if anything looks suspicious, and ensure multi-factor authentication is enabled.


If the above response helps answer your question, remember to "Accept Answer" so that others in the community facing similar issues can easily find the solution. Your contribution is highly appreciated.

hth

Marcin

Was this answer helpful?

1 person found this answer helpful.

0 additional answers

Sort by: Oldest

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.