IA nascosta · Profilo di rischio

Microsoft 365 Copilot.

di Microsoft · native suite · Verificato April 19, 2026

Sito del fornitore

Base risk

2.0/ 5

LowMediumHighCritical

Microsoft 365 Copilot runs inside your tenant under M365 commercial data protections — no training on prompts, EU Data Boundary support, full Entra ID and Purview integration. The risk is downstream: Copilot can now retrieve any document the requesting user can already access, so weak SharePoint permission hygiene becomes a much louder problem.

Tier comparison

Same logo. Very different risks.

  • Free

    low
    Trains on inputs
    No
    Retention
    0 days
    SSO
    No
    Admin controls
    No
  • Paid · consumer

    low
    Trains on inputs
    No
    Retention
    90 days
    SSO
    Yes
    Admin controls
    Yes
  • Enterprise · team

    low
    Trains on inputs
    No
    Retention
    90 days
    SSO
    Yes
    Admin controls
    Yes

Nessuna alternativa segnalata.

Domande frequenti

Domande su Microsoft 365 Copilot.

Does Copilot for M365 use my data to train OpenAI?

No. Microsoft contractually excludes training and operates Copilot inside the M365 commercial trust boundary.

What new risk does Copilot create that we did not have before?

Discovery. Copilot exposes every document a user already had permission to but had not actually opened, surfacing weak permission hygiene that previously went unnoticed.

Audita la IA nascosta

Microsoft 365 Copilot è attivo nella tua organizzazione
insieme a strumenti che l'IT non conosce?

Avvia un audit gratuito di 12 minuti e vai via con una lista di blocco importabile.

Buzzi.ai pubblica i profili a scopo informativo. Verifica sempre i termini con il fornitore.