Microsoft Copilot (Microsoft 365): Pronoun Awareness in Microsoft 365 Copilot

🚨 The Signal: Microsoft 365 Copilot will use user profile pronouns for personalized responses. This change enhances user experience but introduces a minor data privacy consideration regarding pronoun disclosure within AI interactions.

The Impact

All users interacting with Microsoft 365 Copilot are affected, with a low security risk related to the disclosure of personal pronouns.

  • End Users: Pronouns from profiles may be used by Copilot, impacting personal data privacy.
  • Security Teams: Minor awareness needed for data handling policies related to personal attributes.
  • Privacy Officers: Review data privacy statements regarding pronoun usage by AI services.

The Action

  1. Review existing privacy policies to ensure they cover the use of personal attributes like pronouns by AI services.
  2. Communicate to users that Copilot may use their profile pronouns for personalization.
  3. Verify user profile data hygiene, ensuring pronoun fields are accurate or intentionally left blank.

Domain: Agentic-AI · Impact: low · Workload: Other