Microsoft Copilot (Microsoft 365): JPG and PNG references in Copilot Notebooks

🚨 The Signal: Copilot Notebooks now processes JPG and PNG images, extracting text and visuals for grounding. This expands data input, increasing potential for sensitive information exposure if not properly governed.

The Impact

All users are affected, with increased risk of sensitive data exposure and potential for prompt injection via image content.

  • End users: Risk of inadvertently exposing sensitive data within images to Copilot.
  • Security teams: Increased surface area for data loss prevention (DLP) and prompt injection monitoring.
  • Data owners: New considerations for classifying and protecting visual data used with AI.
  • Compliance teams: New audit requirements for image-based data processed by Copilot.

The Action

  1. Review and update existing Microsoft Purview DLP policies to include image content analysis for Copilot interactions.
  2. Educate users on responsible use of images with Copilot, emphasizing not to upload sensitive or classified visual data.
  3. Implement Copilot data governance policies to restrict image input from unapproved sources or classifications.
  4. Monitor Copilot usage logs for unusual image-based data ingestion patterns or potential prompt injection attempts.

Domain: Agentic-AI · Impact: high · Workload: Other