Karl-Johan Spiik, Microsoft MVP

Action is the most beautiful form of speech

Page 3 of 13

From Likes to Insights: Measuring Real User Experience in Conversational AI

At CollabDays Bremen this year, one session stood out for its clarity, practicality, and truth‑telling about a challenge many AI teams quietly struggle with. Katerina Chernevskaya delivered a deeply insightful talk on a topic that is easy to overlook in… Continue Reading →

Power Platform Governance & Security Architecture

I attended CollabDays Bremen last weekend. Session led by Stalin Ponnusamy, MVP provided a comprehensive and practical deep dive into Power Platform governance, breaking down the layered security model that organizations must understand to protect sensitive data in a world… Continue Reading →

You are ready for AI! But are your users?

I attended CollabDays Bremen last weekend. I attended Leo Visser’s session without any expectations as I just arrived at the venue.  Internal Reflection: Key Takeaways From Leo Visser’s Presentation Leo Visser’s session took a broad and sometimes chaotic landscape —… Continue Reading →

Fixing Prompt Injection Vulnerability

I’ve been building agents a while and after CollabDays Portugal I had the idea of hacking my own Copilot Studio agent. Other MVPs discussed how important and hot topic security is and I had an idea. I realised that if… Continue Reading →

Copilot Studio Agent Security

Below are the mitigations that significantly reduce exfiltration risk. These should be in place before deploying any Copilot Studio agent to a production environment. 1. Apply Least‑Privilege Access Only grant the agent permissions it absolutely needs — nothing more.If the… Continue Reading →

Obfuscated request patterns and rapid‑fire multi‑turn scripts

There was still couple tests to run for my agent before thinking how to fix problems. Like in any testing, it is important to run all tests, then analyse before starting to fix anything when first bug is revealed. Many… Continue Reading →

Copilot Studio Agent Data Exfiltration

I wanted to test how easy it was hacking my own agent created in July. I seems prompt injection was quite easy. I did not know how to hack the agent other means, I needed to ring my old pall… Continue Reading →

Hacking my Job Application Agent was easy

I created Job Application agent in July and felt that I need something more in my demos. I felt that security is now quite hot topic and I was thinking that how easy it would be hacking my own agent…. Continue Reading →

Use MCP server tools with natural language

Modern ERP systems like Dynamics 365 Finance & Operations offer powerful APIs and server-side tools for procurement, inventory, and invoicing. But interacting with these tools often requires technical knowledge and structured queries. What if you could simply ask in natural… Continue Reading →

Agent invites user to chat

I had the task for creating a demo for CEOs and CFOs with Dynamics 365 Finance & Operations (FO). Idea was to create something simple but helpful for the target group. I knew that Microsoft offers out-of-the-box agents for FO… Continue Reading →

« Older posts Newer posts »

© 2026 Karl-Johan Spiik, Microsoft MVP — Powered by WordPress

Theme by Anders NorenUp ↑