Forum Discussion
FooReady
Mar 13, 2024Copper Contributor
Restrict Copilot from accessing OneDrive Files.
A recent question I was asked about copilot for Microsoft 365 is: "Can I restrict Copilot from accessing or 'Analysing' certain documents on OneDrive/SharePoint or does it read everything by defau...
TerenceRabe1
Aug 22, 2024Brass Contributor
What is the risk/scenario you are trying to mitigate here?
Michel-Ehlert
Aug 27, 2024Brass Contributor
Can be any (business) reason, e.g.
* Highly confidential M&A information
* Privacy data, collected for a certain purpose, not allowed to be reasoned over with GenAI
* Highly confidential M&A information
* Privacy data, collected for a certain purpose, not allowed to be reasoned over with GenAI
- TerenceRabe1Sep 19, 2024Brass Contributor
FooReady - what additional risk does Copilot introduce to data that M365 search has already indexed? What does the customer think is happening when Copilot "reasons over" the data?
It's all security trimmed, so unauthorised users cannot force Copilot to access data to which permission is not granted?If the customer is really worried then they shouldn't be storing their <gollum>precious</gollum> in OneDrive but in a Team/SharePoint site with container level label that enforces encryption. See Considerations for deploying Microsoft Purview AI Hub and data security and compliance protections for Microsoft 365 Copilot and Microsoft Copilot | Microsoft Learn for more.
- Kazi_RahmanOct 11, 2024Copper Contributor
TerenceRabe1 use sensitivity labels that apply encryption without the EXTRACT usage right.