← Back to tools

Microsoft 365 Copilot

Microsoft · Assistant

Approved Cleared up to Confidential

Microsoft's Copilot embedded across Microsoft 365 (Teams, Word, Excel, PowerPoint, Outlook). Approved up to Confidential under the existing M365 tenant agreement; data stays inside the OneMain tenant boundary.

Policy note: Roster + per-surface usage sync from the Microsoft Graph Copilot usage report. Requires an Entra ID app registration (Reports.Read.All + User.Read.All) and report-name concealment turned OFF.

Platforms

1 of 1 approved

Where Microsoft 365 Copilot can be accessed from — each route reviewed independently.

Azure
Approved

Connectivity map

Approved Conditional Under review Denied

How Microsoft 365 Copilot operates and what it can reach — each path approved independently.

WORK MODESTOOLCONNECTIONSMicrosoft 365 CopilotMicrosoft · AssistantChatIn-app CopilotCopilot AgentsMicrosoft GraphBUILT-INSharePoint / OneDriveBUILT-INWeb groundingBUILT-IN

Work modes

2 of 3 approved

Each way of operating Microsoft 365 Copilot is reviewed independently.

Chat

Microsoft 365 Copilot Chat over tenant data.

Approved
In-app Copilot

Drafting + summarizing inside Word, Excel, PowerPoint, Outlook, Teams.

Approved
Copilot Agents

Custom agents built in Copilot Studio.

Each agent reviewed per data scope before publish.

Conditional

Connections

2 of 3 approved

MCP servers and integrations Microsoft 365 Copilot can reach, each reviewed independently.

Microsoft Graph Built-in

Grounds responses in tenant mail, files, and chats.

Approved
SharePoint / OneDrive Built-in

Reads tenant documents for grounding.

Approved
Web grounding Built-in

Optional Bing web grounding.

Enabled only where the prompt carries no Confidential data.

Conditional

Please confirm

Are you sure?