Action is the most beautiful form of speech

Tag Microsoft

Fixing Prompt Injection Vulnerability

I’ve been building agents a while and after CollabDays Portugal I had the idea of hacking my own Copilot Studio agent. Other MVPs discussed how important and hot topic security is and I had an idea. I realised that if… Continue Reading →

Copilot Studio Agent Security

Below are the mitigations that significantly reduce exfiltration risk. These should be in place before deploying any Copilot Studio agent to a production environment. 1. Apply Least‑Privilege Access Only grant the agent permissions it absolutely needs — nothing more.If the… Continue Reading →

Obfuscated request patterns and rapid‑fire multi‑turn scripts

There was still couple tests to run for my agent before thinking how to fix problems. Like in any testing, it is important to run all tests, then analyse before starting to fix anything when first bug is revealed. Many… Continue Reading →

Hacking my Job Application Agent was easy

I created Job Application agent in July and felt that I need something more in my demos. I felt that security is now quite hot topic and I was thinking that how easy it would be hacking my own agent…. Continue Reading →

Use MCP server tools with natural language

Modern ERP systems like Dynamics 365 Finance & Operations offer powerful APIs and server-side tools for procurement, inventory, and invoicing. But interacting with these tools often requires technical knowledge and structured queries. What if you could simply ask in natural… Continue Reading →

Agent invites user to chat

I had the task for creating a demo for CEOs and CFOs with Dynamics 365 Finance & Operations (FO). Idea was to create something simple but helpful for the target group. I knew that Microsoft offers out-of-the-box agents for FO… Continue Reading →

Upgrade your flow with Dataverse prompt

With the hype of AI people started to realise that they could automate their work. The same thing we have been telling them for years. Somehow the AI changed the mindset so that people finally realise, that basic things can… Continue Reading →

Allow users to try building agents without publishing them

Want to encourage users to try building Copilot Studio Agents but don’t allow publishing them? This is good consideration to add into your Copilot Studio or Agents Governance Model. If a user gets idea to try-out creating an agent, the… Continue Reading →

From Agent Quality to Power Platform Governance – Practical Tool Demos

In a session at CollabDays Finland 2025, Microsoft MVP Terho Antila and Arto Niemi from Locoda tackled one of the most complex challenges facing Power Platform professionals today: how to bring structure, visibility, and automation to sprawling environments powered by AI and Copilot… Continue Reading →

Mastering Copilot Agent Governance: Strategies for Secure and Efficient Deployment

At CollabDays Finland 2025, Microsoft MVP Mikko Koskinen delivered a session that tackled one of the most pressing challenges in the Power Platform ecosystem: how to govern, deploy, and scale Copilot Studio agents responsibly (session slides). With a background in enterprise architecture and hands-on… Continue Reading →

« Older posts

© 2026 Karl-Johan Spiik, Microsoft MVP — Powered by WordPress

Theme by Anders NorenUp ↑