Microsoft 365 admin center: Usage reports - Copilot Chat - Usage intensity and new app coverage

🚨 The Signal: New Copilot Chat usage reports provide tenant and user-level prompt counts, active days, and last activity dates across M365 apps. This enhances visibility into AI adoption and potential data exposure vectors, aiding governance.

The Impact

Security teams and AI governance teams are affected by new visibility into Copilot usage, which helps identify potential data leakage or over-reliance risks.

  • Security Teams: Risk of unmonitored data exposure via Copilot prompts.
  • AI Governance Teams: Risk of non-compliance with AI usage policies.
  • Data Protection Officers: Risk of sensitive information being processed by Copilot without oversight.

The Action

  1. Review Copilot Chat usage reports in Microsoft 365 admin center.
  2. Analyze prompt intensity and application coverage for unusual patterns.
  3. Cross-reference usage data with existing AI governance policies.
  4. Identify users or departments with high Copilot usage for targeted policy reinforcement.
  5. Export data for deeper analysis of potential data handling risks.

Domain: Agentic-AI · Impact: medium · Workload: M365 Apps