This topic introduces Microsoft Copilot Studio agents and the components needed to
configure red teaming assessments.
Microsoft Copilot Studio is a low-code development platform that enables you to build
conversational AI agents for your enterprise. These agents can interact with users
through natural language, execute business workflows, and integrate with various
Microsoft services and third-party applications. When you deploy Copilot Studio
agents in your environment, they often have access to sensitive internal tools, data
sources, and automation capabilities through Power Automate flows, making them
potential targets for security vulnerabilities that require thorough assessment.
When you configure a Microsoft Copilot Studio agent as a target in AI Red Teaming,
the system establishes a native connection to your Copilot deployment through the
Power Platform APIs. This connection enables the AI Red Teaming engine to interact
with your agent in the same manner that end users would, sending conversational
inputs and observing the agent's responses and tool invocations.
When you connect to Microsoft Copilot Studio agents through AI Red Teaming, you must
authenticate using delegated permissions as required by the Power Platform APIs.
This authentication flow necessitates that you physically log in through Microsoft's
login page to verify your identity and provide consent for the application to act on
your behalf. Service-to-service authentication is not available for this
integration, as support for this capability depends on Microsoft's own
implementation roadmap and timeline for enabling application permissions in the
Power Platform APIs. When adding a MS Copilot Studio agent as your target, you can
use either No Authentication or Authenticate using
Microsoft.
Prerequisites