Microsoft Entra: Web categorization changes for Entra Global Secure Access

🚨 The Signal: Microsoft Entra Global Secure Access is updating web categorization, introducing an 'AI Agents' category and reclassifying some AI-related sites. This refines web filtering for AI services, potentially altering existing policy enforcement.

The Impact

Security teams and Entra administrators are affected, with a moderate risk of unintended access or blocking of AI services due to policy reclassification.

  • Security Teams: Risk of misconfigured AI access policies.
  • Entra Administrators: Potential for unexpected web filtering behavior.
  • Users: May experience temporary disruption to AI service access.

The Action

  1. Review existing Global Secure Access web filtering policies that target 'ArtificialIntelligence' categories.
  2. Identify critical AI services currently allowed or blocked by policy.
  3. Monitor policy enforcement during the rollout period (mid-late June 2026) for unexpected behavior.
  4. Adjust web filtering policies to explicitly allow or block the new 'AI Agents' category as required by organizational policy.
  5. Communicate potential temporary access changes to users of AI services.

Domain: Entra · Impact: medium · Workload: Entra ID