Outlook: Agents for Microsoft 365 Copilot available in Copilot Chat in Outlook for Mac
🚨 The Signal: Copilot Chat in Outlook for Mac now supports declarative agents. This introduces new AI capabilities and potential data interactions, requiring governance and security review for agent behaviour and data access.
The Impact
All users of Outlook for Mac are affected, introducing risks related to data exposure and uncontrolled AI agent actions.
- End users: Risk of unintended data sharing or actions by AI agents.
- Security teams: New attack surface for prompt injection and data exfiltration via agents.
- Admins: Need to define and enforce policies for AI agent usage and data access.
- Organisations: Potential for non-compliance with data handling policies if agents are not governed.
The Action
- Review Microsoft's guidance on governing Copilot agents and their data access.
- Define and implement policies for Copilot agent usage within your organisation.
- Monitor Copilot agent activity for anomalous behaviour or data access patterns.
- Educate users on responsible and secure interaction with AI agents in Outlook.
Domain: Agentic-AI · Impact: high · Workload: M365 Apps · Essential Eight: Application Control, User Application Hardening · ISM: ISM-0843, ISM-1412, ISM-1485, ISM-1486, ISM-1490, ISM-1542, ISM-1544, ISM-1582, ISM-1585, ISM-1656, ISM-1657, ISM-1658, ISM-1659, ISM-1660, ISM-1667, ISM-1668, ISM-1669, ISM-1670, ISM-1823, ISM-1824, ISM-1859, ISM-1860, ISM-1870, ISM-1871