Data Privacy and Protection in Copilot
Unlock the complete study guide + 1,040 practice questions across 16 full exams.
Bundled into the existing Microsoft Certified: AI Business Professional premium course — no separate purchase.
14-day money-back guarantee — no questions asked.
Included in this chapter:
- What stays inside the boundary, and what never trains the model
- Copilot inherits your permissions, so oversharing leaks through it
- Sensitivity labels gate what enters an answer and ride along to what comes out
- Recognizing the exam pattern and mitigating sensitive-data risk
What protects Copilot data, and what each control is for
| Control | What it does | What it does NOT do | Who relies on it |
|---|---|---|---|
| Service boundary + no-training commitment | Keeps prompts, retrieved data, and responses inside Microsoft 365; excludes them from foundation-model training | Decide which items you may see | Every grounded Copilot interaction |
| Identity + permissions (inherited) | Limits Copilot to content the signed-in user has at least view access to | Fix sites that are already overshared | Each user's results, per request |
| Sensitivity labels + encryption rights | Honors usage rights (EXTRACT to copy) and carries the highest-priority label onto output | Restrict access if no label or encryption is applied | Labeled, encrypted documents |
| Restricted SharePoint Search | Temporarily narrows which SharePoint sites Copilot can read to an allowed list | Act as a security boundary or change site permissions | Admins remediating oversharing (short-term) |
Decision tree
Cheat sheet
Unlock with Premium — includes all practice exams and the complete study guide.