CISO
Enterprise Architect
CTO
Compliance Officer
Industry relevance
Financial Services
Healthcare
Government
JUNE 2, 2026
Microsoft launched an always-on AI agent that operates with its own corporate identity. Organizations need a formal authorization process before deployment, not after.
Microsoft announced Scout at Build 2026 on June 2, 2026, as the first product in a new agent category called Autopilots. Scout is an always-on agent operating across Microsoft 365 apps including Teams, Outlook, OneDrive, and SharePoint, with its own governed Microsoft Entra identity. It is available in private preview for Frontier enterprise customers requiring a GitHub Copilot subscription, built on the OpenClaw open-source agent framework. The announcement was published on the Microsoft 365 Blog by Omar Shahine, Corporate Vice President, Microsoft 365.
GOVERNANCE IMPLICATION
Scout's governed Entra identity is a new class of governance artifact that most organizations have no process to authorize or review before provisioning. Attributability through a directory identity is not the same as authorization: the question is whether the identity scope was approved by a named human accountable for the consequences. Organizations that treat Scout provisioning as a product configuration rather than an authorization decision will have no answer when an examiner asks for the approval record. Purview DLP and sensitivity labels apply at action time, but those controls operate downstream of the identity scope decision that matters for audit.
SCENARIO
An enterprise architect at a financial services firm provisions Scout through the Frontier preview for a trading operations team. Scout is given an Entra identity with access to Teams, Outlook, and SharePoint. Three weeks after deployment, a regulatory examiner asks for the authorization record for the agent identity, the documented scope of data access, and the named approver. No such record exists because provisioning was treated as a product configuration, not an authorization decision. The organization must reconstruct the authorization chain retroactively.
THE GOVERNANCE QUESTION
When an Autopilot agent acts autonomously under its own Entra identity, who in the organization formally authorized the scope of that identity before it was provisioned?
CONTROL GAP
No standard authorization workflow is required for Autopilot identity provisioning in Agent 365 as of the June 2, 2026 launch. Scout's Entra identity scope is set during configuration with no mandated approval gate before production deployment.
REGULATORY RELEVANCE
NIST Ai RMF
SEC Cyber
PRIMARY SOURCE
Introducing Microsoft Scout: Your always-on personal agent
Omar Shahine
June 2, 2026
Read the primary source ->(opens in new tab)CONTINUE READING
JUNE 2, 2026
AgentsOn June 2, 2026, Microsoft announced the Agent Control Specification (ACS) and ASSERT at Build 2026, authored by Sarah Bird on the Microsoft Foundry Blog. ACS is an open industry specification, part of the Agent Governance Toolkit, that places deterministic safety and security controls at five validation checkpoints in an agent's lifecycle: input, LLM, state, tool execution, and output. Controls are expressed as portable, versionable, auditable policy and are designed to work across any agent framework. ASSERT, a separate open-source project, converts written policies into executable evaluation scenarios. ACS launched with customer and partner endorsement including KPMG, Zscaler, IBM, and Arize AI.
MAY 11, 2026
AgentsMicrosoft Copilot Studio published April 2026 feature updates on May 11, 2026, authored by Nitasha Chopra, VP and COO of Copilot Studio. Key releases include the Analytics Viewer role reaching GA providing read-only access to agent analytics separated from configuration rights; agent nodes embeddable directly into workflows to delegate AI reasoning within deterministic automation; MCP server-enabled tools in preview for external system connectivity within workflows; and a centralized admin-controlled DLP-enforced environment for the Workflows Agent. The post also confirms Microsoft Agent 365 is now generally available as the centralized control plane for agents.
MAY 7, 2026
AgentsMicrosoft's Becoming a Frontier Firm guide, published April 16, 2026, states that Microsoft Digital had already built a firm foundation for an agent-ready data estate before deploying AI agents, and links directly to a separate internal guide on Microsoft 365 Copilot governance, published May 7, 2026 and updated June 8, 2026, both authored by Alex Fleck on the Inside Track Blog. The Copilot guide covers eight chapters of data governance: self-service container creation, sensitivity labeling, file-label inheritance, employee training, DLP verification, lifecycle attestation, sharing controls, and oversharing detection. Neither guide specifies a process for authorizing the business purpose or scope of an individual agent before deployment.