Skip to main content
  1. Home
  2. Computing
  3. News

Check your Copilot settings after this confidential email bug

Microsoft says Copilot "work tab" chat pulled from Sent Items and Drafts despite labels.

Add as a preferred source on Google
Copilot
Unsplash

Microsoft has warned that a Microsoft 365 Copilot issue led Copilot Chat to generate summaries from confidential emails that should have been blocked by sensitivity labels and data loss prevention controls. It detected the problem on January 21, and tied it to the Copilot “work tab” chat experience.

If your workplace relies on labels and DLP to keep sensitive mail from being processed, the immediate question is simple. Did the fix reach your tenant, and does Copilot still pull from the wrong places.

A DLP bypass in the work tab

First spotted by BleepingComputer, Microsoft says an internal code error caused Copilot “work tab” chat to pick up items from Sent Items and Drafts, then summarize them even when a sensitivity label and a DLP policy were configured.

Recommended Videos

Those folders are also where sensitive material tends to live. Drafts can hold negotiations, early numbers, or language you never intended to send. Sent Items can include the final wording that went to a customer, partner, or regulator. A summary that includes restricted text makes it easier for information to travel inside everyday chat.

For admins, the key point is that this isn’t about someone copy pasting an email into Copilot.

What Microsoft still isn’t saying

Microsoft began deploying a fix in early February and says it’s monitoring to confirm the change works. But it hasn’t shared two details security teams will care about, how many tenants were affected, and how far back the behavior went before it was detected on January 21.

Without a clear window, it’s hard to choose between a narrow review and a broader one.

What you should do next

Admins should test whether Copilot “work tab” chat can still summarize labeled emails from those mail folders in your environment. Write down what you observe, and keep it with audit notes in case your security team needs to document impact later. Be thorough.

For everyone else, treat Copilot summaries as something to verify, not something to trust by default, until your IT team confirms the updated behavior. If you handle regulated or contract bound information, flag this now so the controls can be checked instead of assumed.

Paulo Vargas
Paulo Vargas is an English major turned reporter turned technical writer, with a career that has always circled back to…
This $1,299 gaming PC wants to be a Steam Machine without waiting for Valve
Valve’s Steam Machine dream is already real in MetaPC's new prebuilt
MetaPC's Steamroller is a new Steam Machine rival

Valve’s Steam Machine may be the face of SteamOS, but the platform isn't exclusive to it. A big announcement after Steam Machine's unveiling was that SteamOS would be arriving on systems outside of the new hybrid console. Now, MetaPCs is one of the first to take advantage of this by opening the preorders for the Steamroller, a new prebuilt gaming desktop that ships with SteamOS installed by default.

Though Steamroller is not trying to be a tiny console-like cube. It is a normal desktop PC with standard parts and a real upgrade path. The system costs $1,299 and is listed with a preorder date of July 3, 2026.

Read more
This cheap Steam Machine clone sounds too good to be true because it probably is
A Chinese Steam Machine clone claims impossible hardware at an impossible price
A Chinese rip-off of the Steam Machine

Valve’s new Steam Machine has already caused plenty of sticker shock. So it's no surprise that a flood of cheaper alternatives is hitting the online market. Valve is currently charging over $1,000 for its tiny-living-room SteamOS PC, and of course, people are trying to offer the same feel for less money,

One listing from China is a great example, but it looks a little too suspicious. According to VideoCardz, a Steam Machine-style mini PC listing shared on Reddit claims to offer a compact SteamOS system with a 2TB SSD, AMD Ryzen 5 5500 processor, Radeon RX 6750 GRE 10GB graphics, 16GB of DDR5 memory, and a price of 4,680 RMB, or roughly $688. This sounds incredible... if it were true.

Read more
A YouTuber 3D printed an entire outfit, but the comfort and cost are more complicated than you’d think
The 3D-printed outfit is real. Whether it's practical is a different conversation entirely.
Adult, Male, Man

YouTuber Matthew Trahan has made a career out of 3D printing increasingly unusual things. He has printed musical instruments, bedroom furniture, and, in one particularly memorable video, himself.

His latest project is a full outfit, from shirt to shoes, belt to glasses, because apparently nobody told him 3D printers are for creating engineering prototypes or structures that aren’t otherwise feasible, not for fashion week.

Read more