iO_
8 months agoRegular Visitor
Status:
New
Copilot Data Governance: Multi-Level Access Control for Trust & Compliance
Empower data owners and administrators with precise control over which data Copilot can access and use for responses. This ensures sensitive or irrelevant information isn't inadvertently shared or processed.
A centralized system allowing data responsible persons/admins to set clear controls at three key levels:
- Capacity Level: Define broad default settings or hard exclusions for entire data capacities.
- Workspace Level: Override or refine capacity-level policies for specific workspaces.
- Item Level: Provide the finest control, allowing direct inclusion or exclusion of individual items (semantic model, eventhouse, etc.) from Copilot's scope.
Key Benefits:
- Enhanced Trust & Compliance: Users and organizations gain confidence knowing data usage is controlled, meeting privacy and regulatory standards.
- Reduced Risk: Prevents Copilot from using sensitive, outdated, or inappropriate data.
- Empowered Data Owners: Puts control directly into the hands of those who understand the data best.
1 Comment
- salutationsNew MemberWe have restricted data on the tenant. This can’t be presented to GenAI. Please provide a project, workspace, item level override which can be controlled by Tenant Admins and automated via an API. Even more powerful - make it a DLP policy that Copilot honors. As a Tenant Admin - I’d like 100% control. Not delegated to Capacity Admins, Domain Admins and Workspace Admins. Also please consider a Certified for AI which is above Ready for AI or Prepped for AI. We’d want an Entra Security Group to approve the labeling. Honoring Sensitivity Labels is a must-have. default everything to No AI so that permission is granted by Governance.
Recent ideas
Expose Refresh Warnings and Informational Messages via Notifications and API
When a Power BI semantic model refresh completes successfully, the status shows Completed, even when the refresh details contain warnings or informational messages that require attention. Please pro...Jashwanth_K19 minutes agoMicrosoft EmployeeNew17Views6likes0CommentsInvoke Pipeline Task - Workspace Identity Authentication
Currently, the Fabric Data Factory Invoke Pipeline task uses the user's credentials who saved the pipeline to then authenticate to the Azure Data Factory to execute the ADF pipeline. When that user'...dzebrowitz4 hours agoAdvocate IPlanned1.8KViews61likes5CommentsFabric Pipeline should run as workspace identity
Currently, Microsoft Fabric pipelines run under the identity of the last user who modified them, which can cause disruptions when tenant administrators make changes to security policies, such as enab...pellitteris4 hours agoAdvocate IINew1.4KViews27likes3CommentsBring Back separating Power BI artifacts on a per web page basis
Previously, the ability to have different artifacts open on different web tabs was enabled. This was beneficial if you wanted to differentiate what environments you were in, working across three diff...zoe-dean6 hours agoNew MemberNew53Views8likes0CommentsREST API Should expose credentials used in connections
When a consultant leaves a client, it's important to clean up any connections that may have the consultants credentials embedded within. I'm able to use the Fabric CLI to get the managed connections ...PeterDaniels6 hours agoAdvocate IIINew20Views7likes0Comments