Announcements
We are planning to use Microsoft Entra ID for access management to our AI agents and the underlying database. The agents will also work with Power Automate flows.
Our goal is:
All employees should be able to use the AI agent.
Only specific departments should be able to access and trigger certain flows.
Should permissions be managed in the agent, in Power Automate, or both?
Would it make sense to create separate agents per department with flows embedded, or keep a single agent?
This is for a large enterprise rollout across 50+ countries, so scalability and maintainability are key.
Any recommendations or best practices would be greatly appreciated.
Thank you for your reply.
Just to confirm — do you agree with the proposed agent architecture and the permission model being managed through Microsoft Entra ID?
The idea is that all employees should be able to access the bot for general questions and answers, but only employees from specific departments should be able to use certain workflows, such as price list retrieval, shipment calculations, and other department-specific automations.
Does this approach align with best practices in your opinion?
Under review
Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.
Congratulations to our 2026 Super Users!
Congratulations to our 2025 community superstars!
These are the community rock stars!
Stay up to date on forum activity by subscribing.
Valantis 612
chiaraalina 170 Super User 2026 Season 1
deepakmehta13a 116