Event details
"Analyze with Copilot" option in Intune Endpoint Privilege Management (EPM) is not functioning as expected
When reviewing Support Approved elevation requests in EPM, there is an option to Analyze with Copilot, which is intended to analyze the elevated binary and provide relevant insights about the file. such as whether the file is safe to approve or if it contains any potentially malicious content. However, this feature is not working as intended. Instead of delivering detailed information about the binary, it consistently returns the same generic output for every elevation request.
For example, here I tried to elevate a very common App, when I check for Analyze with Copilot, it initially prompts like,
Get reputation for indicators of compromise 9742689A50E96DDC04D80CEFF046B28DA2BEEFD617BE18166F8C5E715EC60C59
But getting the output mentioned below.
There was no reputation data available for the queried indicators: 9742689A50E96DDC04D80CEFF046B28DA2BEEFD617BE18166F8C5E715EC60C59
Feedback submitted: https://feedbackportal.microsoft.com/feedback/idea/da951a10-c663-f011-95f2-7c1e52a55eeb