IA & Agentes
Copilot Studio - Publicando e Governando [4] - Governança: environments, DLP e o Microsoft Agent 365
Copilot Studio - Publishing & Governing [4] - Governance: environments, DLP and Microsoft Agent 365
Fala dataholics! Nos três primeiros posts a gente aprendeu a publicar o agente no Teams, no M365 Copilot e no seu próprio site. Show, o agente tá no ar. Só que agora vem o problema que ninguém conta no tutorial: quando o Copilot Studio cai no colo do time inteiro, em vez de um agente você tem quarenta, e aí a pergunta muda de "como publico?" pra "quem é que controla isso tudo?". Hoje a gente entra na parte de governança, com environments, DLP e o novo Microsoft Agent 365.

O que veremos nesse post:
Environments: onde os agentes moram
DLP: a cerca do que o agente pode tocar
Microsoft Agent 365: o control plane novo
Minha leitura sobre isso
Environments: onde os agentes moram
Todo agente do Copilot Studio vive dentro de um environment do Power Platform, que é basicamente um container isolado com seus próprios dados, conexões e permissões. A primeira boa prática de governança é não deixar todo mundo criando agente no environment default da empresa, que vira uma zona. O caminho saudável é separar por ambiente, tipo um pra desenvolvimento e teste e outro pra produção, com acesso controlado, do mesmo jeito que a gente separa dev e prod no mundo de dados. Isso já resolve metade da bagunça antes dela acontecer.
DLP: a cerca do que o agente pode tocar
Environment separado é o "onde". O DLP (Data Loss Prevention) é o "o quê". Com políticas de DLP no Power Platform admin center, você define quais conectores e quais dados um agente pode ou não usar dentro daquele environment. É isso que impede um agente inocente de puxar dado sensível pra um conector externo qualquer e vazar informação sem ninguém perceber.
Tem também um controle mais radical: o admin consegue, lá no Power Platform admin center, desligar a publicação de agentes com IA generativa pro tenant inteiro. É o botão de pânico pra quem ainda não quer liberar geral. A ideia é você abrir a torneira aos poucos, com regra, em vez de deixar tudo aberto e correr atrás depois.
Microsoft Agent 365: o control plane novo
Aqui entra a novidade quente. Em maio de 2026 a Microsoft lançou em GA o Microsoft Agent 365, que é o painel central pra você enxergar e governar todos os agentes da empresa num lugar só. E o mais interessante é que ele não fica preso ao Copilot Studio: ele observa, gerencia e protege agente que nasceu no Copilot Studio, no Azure AI Foundry, no AWS Bedrock, onde for. Inventário de agentes, permissões, comportamento e atividade, tudo numa tela.
Reginaldo, mas o admin center já não fazia parte disso?
Fazia, mas pedaço. O admin center do M365 e o do Power Platform cuidam do que roda no mundo Microsoft. O Agent 365 é a tentativa de olhar por cima de tudo, inclusive agente de terceiros, tratando o agente como uma identidade que precisa de acesso, monitoramento e ciclo de vida igual a gente trata usuário.
Minha leitura
Vou ser honesto: no papel o Agent 365 é exatamente o que faltava, porque agente virou sprawl rápido e ninguém quer descobrir num incidente que tinha trinta agentes rodando sem dono. A promessa de tratar agente como identidade governada é a direção certa. Agora, GA recém-saído é GA recém-saído, e eu ainda não rodei em produção pra dizer o quanto ele entrega de verdade no dia a dia, principalmente na parte de agente que não é da Microsoft. Fica o registro pra gente cobrar depois. O que já dá pra fazer sem depender de nada novo é o arroz com feijão: environment separado e DLP configurado. Isso resolve a maior parte dos perrengues hoje.
RESUMO
Environments: isole os agentes por ambiente (dev, prod), não deixe todo mundo no default.
DLP: no Power Platform admin center, controle quais conectores e dados cada agente pode tocar.
Dá pra desligar a publicação de agentes com IA generativa no tenant todo, se precisar segurar.
Microsoft Agent 365 (GA em maio/2026): control plane único pra ver e governar agentes de qualquer plataforma, tratando agente como identidade.
Começa pelo básico (environment + DLP), que já resolve muito, e acompanha o Agent 365 amadurecer.
Governança não é o assunto mais sexy do mundo, mas é o que segura a peteca quando aquele piloto legal vira produção de verdade. No próximo post a gente fecha a série falando dos agentes autônomos, aqueles que não esperam você perguntar e disparam sozinhos por evento ou agendamento. Comenta aí se a sua empresa já sofre com sprawl de agente.
Referências:
https://learn.microsoft.com/en-us/microsoft-copilot-studio/security-and-governance
Fique bem e até a próxima.
#copilotstudio #agent365 #governanca #ia #agentes #datainaction
Hey dataholics! In the first three posts we learned to publish the agent to Teams, to M365 Copilot and to your own site. Great, the agent is live. But now comes the problem nobody mentions in the tutorial: when Copilot Studio lands in the whole team's lap, instead of one agent you have forty, and then the question shifts from "how do I publish?" to "who's controlling all this?". Today we get into the governance part, with environments, DLP and the new Microsoft Agent 365.

What we'll cover in this post:
Environments: where the agents live
DLP: the fence around what the agent can touch
Microsoft Agent 365: the new control plane
My take on it
Environments: where the agents live
Every Copilot Studio agent lives inside a Power Platform environment, which is basically an isolated container with its own data, connections and permissions. The first governance best practice is to not let everyone create agents in the company's default environment, which turns into a mess. The healthy path is to separate by environment, like one for development and testing and another for production, with controlled access, the same way we separate dev and prod in the data world. That alone solves half the chaos before it happens.
DLP: the fence around what the agent can touch
A separate environment is the "where". DLP (Data Loss Prevention) is the "what". With DLP policies in the Power Platform admin center, you define which connectors and which data an agent can or can't use inside that environment. That's what stops an innocent agent from pulling sensitive data into some external connector and leaking information without anyone noticing.
There's also a more radical control: from the Power Platform admin center, the admin can turn off publishing agents that use generative AI for the entire tenant. It's the panic button for those who don't want to open things up yet. The idea is to open the tap gradually, with rules, instead of leaving everything open and chasing after it later.
Microsoft Agent 365: the new control plane
Here's the hot new thing. In May 2026 Microsoft released Microsoft Agent 365 to GA, the central panel for you to see and govern all the company's agents in one place. And the interesting part is that it doesn't stay locked to Copilot Studio: it observes, manages and protects an agent born in Copilot Studio, in Azure AI Foundry, in AWS Bedrock, wherever. Agent inventory, permissions, behavior and activity, all on one screen.
Reginaldo, but wasn't the admin center already part of this?
It was, but only a piece. The M365 admin center and the Power Platform one handle what runs in the Microsoft world. Agent 365 is the attempt to look over the top of everything, including third-party agents, treating the agent as an identity that needs access, monitoring and a lifecycle just like we treat a user.
My take
I'll be honest: on paper Agent 365 is exactly what was missing, because agents turned into sprawl fast and nobody wants to find out during an incident that they had thirty agents running with no owner. The promise of treating an agent as a governed identity is the right direction. That said, a brand-new GA is a brand-new GA, and I haven't run it in production yet to say how much it really delivers day to day, especially on the non-Microsoft agent part. Let's put a pin in that and check back later. What you can already do without depending on anything new is the bread and butter: a separate environment and DLP configured. That solves most of the headaches today.
RECAP
Environments: isolate agents by environment (dev, prod), don't leave everyone in the default.
DLP: in the Power Platform admin center, control which connectors and data each agent can touch.
You can turn off publishing agents that use generative AI across the whole tenant if you need to hold back.
Microsoft Agent 365 (GA in May 2026): a single control plane to see and govern agents from any platform, treating the agent as an identity.
Start with the basics (environment + DLP), which already solves a lot, and watch Agent 365 mature.
Governance isn't the sexiest topic in the world, but it's what keeps things together when that nice pilot turns into real production. In the next post we close the series talking about autonomous agents, the ones that don't wait for you to ask and fire on their own by event or schedule. Comment below if your company already suffers from agent sprawl.
References:
https://learn.microsoft.com/en-us/microsoft-copilot-studio/security-and-governance
Stay well and see you next time.
#copilotstudio #agent365 #governance #ai #agents #datainaction
Gostou? Tem mais no YouTube e no LinkedIn.
Enjoyed it? There's more on YouTube and LinkedIn.