web
You’re offline. This is a read only version of the page.
close
Skip to main content

Announcements

News and Announcements icon
Community site session details

Community site session details

Session Id :
Power Platform Community / Forums / Copilot Studio / MS Teams Members and G...
Copilot Studio
Suggested Answer

MS Teams Members and Guests Should NOT Automatically Be Able to View or Edit Copilot Studio Agents

(3) ShareShare
ReportReport
Posted on by 4
TL;DR
 
Microsoft Teams Members and Guests should not automatically receive access to view or edit the underlying Copilot Studio agent.
 
Team membership should grant permission to use the published agent only. Access to view its instructions, topics, knowledge sources and configuration, or to make any changes, should require explicit permission from the agent owner or an authorised administrator.
 
The current behaviour does not provide adequate separation between agent users and agent developers. It conflicts with the principle of least privilege and creates unnecessary security, governance and accidental-change risks for enterprise deployments.
 
Copilot Studio should provide separate permissions for Use, View, Edit and Manage. By default, Team Members and Guests should receive only the Use permission.
 
 
Issue
 
The current permission behaviour for Copilot Studio agents created in Microsoft Teams environments presents challenges for enterprise governance and access-control requirements...
 
Membership in a Microsoft Team should not automatically provide access to the underlying agent in Copilot Studio. Most Team Members and Guests are intended to be end users of a published agent. They should be able to interact with the agent in Microsoft Teams without being able to view, access or edit its configuration.
 
In our case:
 
• The agent was created in a Microsoft Teams environment.
• The agent owner is an Owner of the associated Microsoft Team.
• Another account is only a Member of that Team.
• The Member was not explicitly granted access to the agent in Copilot Studio.
• The agent owner cannot remove or change the Member's Copilot Studio access through the agent sharing settings.
• The Member still has access to the agent in Copilot Studio because of membership in the associated Team.
 
Microsoft Support confirmed that this is currently expected behaviour by design. However, the current design does not provide sufficient separation between agent consumers and agent contributors for enterprise scenarios.
 
This behaviour should be changed.
 
A user who has only been assigned the Team Member or Guest role should not automatically receive access to the agent's design and configuration. More importantly, Members and Guests should not be able to edit the agent unless an agent owner has explicitly granted them editing permission.
 
Team membership is not equivalent to agent development responsibility.
 
The Team may include operational users, business users, external collaborators or other stakeholders who need to use the published agent but have no responsibility for developing or maintaining it. Automatically exposing the agent through Copilot Studio creates an unnecessary access-control and governance risk.
 
 
Security and Governance Concern
 
The current permission model does not provide a clear separation between agent consumption and agent development responsibilities.
 
Users who only need to interact with the published agent should not automatically be given access to underlying design information such as:
 
• Agent instructions and prompts
• Topics, triggers and conversation flows
• Knowledge-source configuration
• Connection and integration details
• Internal business logic
• Test content and unpublished development work
• Other agent settings and implementation details
 
These artefacts may contain confidential business information, internal operating logic or intellectual property that should only be available to explicitly authorised agent owners and contributors.
 
If a Team Member or Guest can edit any part of the agent without being explicitly assigned an agent editing role, the risk is more serious. Unauthorised or accidental changes could affect how the agent responds, which information it uses and how it behaves for end users.
 
Access to use an agent and access to develop an agent are fundamentally different permissions. They should not be inherited together through Microsoft Teams membership.
 
 
Expected Permission Model
 
Copilot Studio should provide separate and independently assignable permissions for:
 
1. Use Agent
 
The user can interact with the published agent through Microsoft Teams or another approved channel but cannot access the agent in Copilot Studio.
 
2. View Agent Configuration
 
The user can inspect the agent in Copilot Studio but cannot make changes.
 
3. Edit Agent
 
The user can modify the agent's instructions, topics, knowledge sources and other authorised configuration.
 
4. Manage Agent
 
The user can control ownership, sharing, permissions, publishing and other administrative settings.
 
By default, Microsoft Teams Members and Guests should receive only the Use Agent permission.
 
View, Edit and Manage permissions should require an explicit assignment by the agent owner or an authorised administrator. These permissions should not be automatically inherited from general Team membership.
 
 
Expected Scenario
 
A typical enterprise deployment should support the following arrangement:
 
• Team Owner and Agent Owner: Can use, view, edit and manage the agent.
• Authorised Agent Contributor: Can use, view and edit the agent based on explicitly assigned permissions.
• Team Member: Can use the published agent but cannot view or edit it in Copilot Studio.
• Team Guest: Can use the published agent when permitted but cannot view or edit it in Copilot Studio.
 
For example:
 
User A owns the Microsoft Team and the Copilot Studio agent.
 
User B is a Member of the Microsoft Team and needs to use the published agent as part of normal business operations.
 
User B should be able to interact with the agent in Microsoft Teams. However, User B should not see the agent in Copilot Studio and should not be able to view or change its instructions, topics, knowledge sources or settings unless User A explicitly grants the required permission.
 
 
Requested Enhancement
 
Please change the Copilot Studio permission model for Microsoft Teams environments so that:
 
• Team membership grants access to use the published agent only.
• Team Members and Guests do not automatically receive access to the agent in Copilot Studio.
• Viewing the agent configuration requires explicit View or Edit permission.
• Editing the agent requires explicit Edit permission.
• Agent owners can remove or modify inherited access without removing the user from the Microsoft Team.
• Usage permissions remain separate from design and administrative permissions.
• Existing effective permissions and their sources are visible to agent owners and administrators.
 
Where access is inherited, Copilot Studio should clearly identify the source of that access and allow an authorised administrator to override it at the agent level.
 
 
Business Impact
 
The current behaviour makes it difficult to deploy Copilot Studio agents within existing Microsoft Teams structures while maintaining appropriate access control.
 
Organizations may have to choose between:
 
• Allowing broad access to agent configuration.
• Removing legitimate users from the associated Team.
• Creating separate Teams solely to control Copilot Studio visibility.
• Moving the agent to a different environment.
• Avoiding wider deployment of the agent.
 
These workarounds add administrative overhead, fragment collaboration and weaken the governance model.
 
The requested enhancement would support:
 
• Principle of least privilege
• Separation of duties
• Protection of confidential business logic and intellectual property
• Reduced risk of accidental or unauthorised changes
• Clearer ownership and accountability
• Safer enterprise adoption of Copilot Studio
 
 
Summary
 
The ability to use a published agent must be separated from the ability to view, edit or manage that agent in Copilot Studio.
 
Microsoft Teams Members and Guests should not automatically receive access to the agent's configuration merely because they belong to the associated Team. They should never be able to edit the agent unless an authorised agent owner or administrator has explicitly granted them editing permission.
 
Please provide agent-level permissions that allow organizations to give users access to the chatbot experience without giving them access to the chatbot's underlying design and configuration.
Categories:
  • Suggested answer
    M Bilal Khan Profile Picture
    376 on at
    Hi @SC-16060155-0,
     

    I agree with the concern here, especially around the separation between using an agent and developing/managing it.

    From an enterprise governance perspective, being a member of a Team shouldn't automatically mean that the user is a contributor to every Copilot Studio resource associated with that Team. A lot of Teams have a broad audience, while agent development should normally be limited to a much smaller group.

    The biggest concern for me would be accidental changes. A business user may only need to ask the agent questions in Teams, but exposing the underlying topics, instructions, knowledge configuration, etc. creates a very different level of access.

    A permission model such as Use → View → Edit → Manage would make this much clearer and would follow the principle of least privilege.

    I also think it would be useful if Copilot Studio clearly showed why a user has access — for example, whether it is coming from Team membership, an environment role, or an explicit agent permission. That would make troubleshooting and governance much easier for administrators.

    Hopefully Microsoft considers this separation in the permission model, because it becomes increasingly important as Copilot Studio agents are deployed more widely across enterprise Teams.

  • Suggested answer
    11manish Profile Picture
    4,802 Super User 2026 Season 2 on at
    Copilot Studio should separate runtime consumption permissions from authoring and management permissions. Microsoft Teams membership should grant the ability to use a published agent where permitted, but should not automatically grant access to the agent's underlying design and configuration. Viewing, editing, publishing and managing an agent should require explicitly assigned permissions.

    Your requested behavior is architecturally reasonable and aligns well with enterprise security principles. However, based on the behavior described and Microsoft's confirmation that the current behavior is by design, this should currently be treated as a Copilot Studio permission-model limitation. The long-term solution is granular agent-level RBAC, rather than requiring organizations to manipulate Team membership merely to control who can develop an agent.
  • Suggested answer
    Haque Profile Picture
    4,280 Super User 2026 Season 2 on at
    Hi @SC-16060155-0,
     
    Long though but really good catch!
     

    As of now, Copilot Studio does not fully support this granular permission model out of the box. Instead, Copilot Studio relies on the security models of the underlying data sources and authentication layers you connect it to. A thread is going on here.

    I would say your concern should be a valid feedback which is important to Microsoft product teams to prioritize these capabilities.

    Meanwhile, if it is possible, let's consider controlling access by limiting who is added as a team member or guest, and use separate environments or tenants for development versus production agents.

     

    References:

     

  • Suggested answer
    Valantis Profile Picture
    7,545 Super User 2026 Season 2 on at
     

    • Team membership can expose the agent in the Teams app

    • that is by design today

    • there is no separate agent-level RBAC model for Teams members/guests that cleanly enforces use-only vs edit access

    If the goal is least privilege, the workaround is to keep dev and consumer audiences in separate teams or environments, or use the web app sharing model for chat-only access rather than relying on Teams membership alone.


      Best regards,

    Valantis   ✅ If this helped solve your issue, please Accept as Solution so others can find it quickly.

    ❤️ If it didn’t fully solve it but was still useful, please click “Yes” on “Was this reply helpful?” or leave a Like :).

    🏷️ For follow-ups  @Valantis.

    📝 https://valantisond365.com/ 💼 LinkedIn   ▶️ YouTube
  • SC-16060155-0 Profile Picture
    4 on at

    Hi all, OP here.

    Thanks for confirming this is the current behaviour and for sharing the available workarounds.

    The purpose of this thread is rather to request a product enhancement. I believe agent consumption and agent authoring should be separate permissions, especially in enterprise environments where Team membership can be much broader than the group responsible for maintaining an agent.

    Hopefully the Product Team can consider introducing a dedicated Use / View / Edit / Manage permission model in Copilot Studio.

    Thank you!

  • Valantis Profile Picture
    7,545 Super User 2026 Season 2 on at

    Hi @SC-16060155-0,

    Just wanted to check in and see if everything is working now or if you had a help in some way.

    If you still need any help, feel free to let me know.

    Also, if the issue is resolved, it would be great if you could mark the answer as solved so others with the same question can find it easily.

     

    Thanks and have a great day!

     

     

     
  • SC-16060155-0 Profile Picture
    4 on at
    At this stage, the issue remains unresolved. The current behavior appears to be by design, and we're waiting for the product team to provide a change or enhancement that addresses the concern.

    Since there isn't a working solution available yet, I can't mark the thread as solved...

    I'll update the thread status if there is any progress from the product team :)

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

Season of Sharing Community Challenge Winners!

Congratulations to our community stars!

Kudos to our 2025 Community Spotlight Honorees

Expanding mentorship, skilling, and AI innovation

Leaderboard > Copilot Studio

#1
Mohsin Ali Profile Picture

Mohsin Ali 360

#2
Valantis Profile Picture

Valantis 253 Super User 2026 Season 2

#3
11manish Profile Picture

11manish 184 Super User 2026 Season 2

Last 30 days Overall leaderboard