Agent 365 Capabilities Summary
Last Updated: March 2026
Version: v1.2.53
Overview
This reference consolidates all Microsoft Agent 365 capabilities documented across the FSI-AgentGov framework. Use this page to quickly locate Agent 365-specific guidance and demonstrate comprehensive coverage to stakeholders and auditors.
GA Status Update
Microsoft Agent 365 reaches general availability on May 1, 2026, as part of Microsoft 365 E7 and standalone Agent 365 per-user licensing. Agent Essentials SDK capabilities are expected to mature alongside the broader Agent 365 platform. Feature availability and documentation may change at or after GA.
What is Agent 365?
Agent 365 is Microsoft's governance control plane for AI agents, announced at Ignite 2025. It treats AI agents as first-class identities with dedicated governance capabilities distinct from traditional Microsoft 365 user governance.
Key Components
Framework Coverage Matrix
Identity & Access Management
Data Protection
| Agent 365 Capability |
FSI Control |
Coverage Status |
| DLP for Copilot Prompts |
1.5 |
Comprehensive |
| DSPM for AI |
1.6 |
Comprehensive |
| Sensitivity Label Inheritance |
1.5 |
Comprehensive |
| Agent 365 DLP Policy Scope |
1.5 |
Comprehensive |
| Blueprint data governance |
1.6 |
Comprehensive |
Inventory & Lifecycle
| Agent 365 Capability |
FSI Control |
Coverage Status |
| Agent Registry |
1.2, 3.1 |
Comprehensive |
| Shadow Agent Detection |
3.6 |
Comprehensive |
| Agent Store Curation |
1.2 |
Comprehensive |
| Orphaned Agent Remediation |
3.6 |
Comprehensive |
| Agent Attestation |
Sponsorship Workflows |
Comprehensive |
| Agent Retirement |
Agent Decommissioning |
Comprehensive |
Observability & Audit
| Agent 365 Capability |
FSI Control |
Coverage Status |
| OpenTelemetry Integration |
Observability Playbook |
Comprehensive |
| Agent Activity Dashboard |
3.8 |
Comprehensive |
| AI Usage Events |
1.7 |
Comprehensive |
| Tool Usage Tracking |
Observability Playbook |
Comprehensive |
| Inference Event Logging |
1.7 |
Comprehensive |
| Purview/Defender Integration |
1.7, 3.9 |
Comprehensive |
| Blueprint Audit Events |
1.7 |
Comprehensive |
Security
| Agent 365 Capability |
FSI Control |
Coverage Status |
| Defender AI-SPM |
1.24 |
Comprehensive |
| AI Threat Detection |
1.8, 3.9 |
Comprehensive |
| Quarantined Agent Collection |
1.11 |
Documented |
Interoperability
| Agent 365 Capability |
FSI Control |
Coverage Status |
| MCP Server Governance |
2.17 |
Comprehensive |
| Cross-Platform Agent Management |
2.17 |
Comprehensive |
| Multi-Agent Orchestration |
2.17 |
Comprehensive |
Quick Reference: Where to Find Agent 365 Guidance
Framework Documents
Reference Documents
Playbooks
Native Admin Center Coverage vs. Deployable Solutions
Microsoft's Agent overview page already provides the tenant-level Agent Registry, pending request queue, ownerless agent queue, and overview analytics surfaces for administrators. In the FSI framework, those native capabilities are covered by Control 2.25 — Agent 365 Admin Center Governance Console, Control 3.13 — Agent 365 Admin Center Analytics and Reporting, and Control 3.14 — Agent 365 Observability SDK. Deployable solutions should complement those native surfaces rather than duplicate them.
| Need |
Primary artifact |
Notes |
| Native Agent Registry, pending requests, ownerless agents, overview analytics |
Controls 2.25 and 3.13 |
Use the Microsoft 365 Agent overview and Agent Registry surfaces as the system of record for tenant-level governance monitoring. |
| Automated sponsor enforcement, access reviews, inactivity handling, deactivation workflows |
agent-365-lifecycle-governance solution |
Extends Agent 365 and Entra governance with workflow automation and Dataverse evidence. |
| Custom-agent telemetry, workbooks, and alert routing |
Control 3.14 and the agent-observability-foundation solution |
Use when native overview metrics are insufficient for custom agents or longer-term operational evidence. |
There is no separate live agent-365-governance-monitor solution in this repository. If future work is needed, it should stay limited to gaps not already covered by the native Agent 365 admin surfaces and the deployable solutions listed above.
Controls with Agent 365 Sections
Regulatory Alignment
Agent 365 capabilities support FSI regulatory requirements:
| Regulation |
Agent 365 Capability |
Benefit |
| FINRA 4511 |
Audit logging, Agent Registry |
Complete interaction records |
| FINRA 3110 |
Observability SDK, Sponsorship |
Supervision evidence |
| SEC 17a-3/4 |
DSPM, Audit events |
Record retention compliance |
| OCC 2011-12 |
Blueprint lifecycle, Registry |
Model inventory requirements |
| Fed SR 11-7 |
Agent ID, Attestation |
Model governance accountability |
| SOX 302/404 |
Observability, Audit trail |
Internal control evidence |
| GLBA 501(b) |
DLP, DSPM, Defender |
Customer data protection |
Implementation Guidance
Phased Adoption
| Phase |
Agent 365 Components |
FSI Controls to Implement |
| Phase 1: Foundation |
Entra Agent ID, Basic Registry |
1.2, 1.11, 3.1 |
| Phase 2: Data Protection |
DLP for Prompts, DSPM |
1.5, 1.6 |
| Phase 3: Lifecycle |
Blueprints, Sponsorship, Attestation |
1.11 (expanded), 3.6 |
| Phase 4: Observability |
OpenTelemetry, Workbooks, Alerts |
Observability Playbook |
| Phase 5: Advanced |
MCP Governance, Multi-Agent |
2.17 |
Zone-Specific Adoption
| Component |
Zone 1 |
Zone 2 |
Zone 3 |
| Agent ID |
Optional |
Recommended |
Required |
| Blueprints |
Not needed |
Recommended |
Required |
| Agent Store access |
Open |
Curated |
Restricted |
| Observability |
Basic |
Standard |
Full |
| MCP Servers |
Not allowed |
Approved only |
Committee approval |
Microsoft Documentation
FSI-AgentGov Resources
FSI Agent Governance Framework v1.2.53 - March 2026