Agent 365 GA — May 2026
Microsoft's native control plane for AI agents is live in every tenant. Most organizations haven't configured it — or inventoried what's already running.
Purview AI Hub now shipping
Microsoft built a dedicated AI data security layer because the exposure risk from unmanaged agents is real and growing with every seat that activates Copilot.
Agents bundled into Copilot Wave 3
Agent creation ships with standard E3 and E5 licenses — no separate procurement, no IT gate, no friction between an employee and a running autonomous agent.
The compounding risk is structural. Agents created by end users inherit the data access of the user who built them. There is no separate permissions layer by default. An agent built by a finance analyst can access everything that analyst can access — and act on their behalf, autonomously, without an IT ticket. In regulated environments, that's not an edge case. It's an audit finding waiting to happen.