19 Total
8 High severity
10 Medium severity
1 Low severity

Key Facts

Who may access content generated by Copilot?
Microsoft limits access to content generated by Copilot to people with the right permissions.
What does Microsoft require as part of responsible AI use?
Microsoft requires that human oversight be maintained as part of responsible AI use.
What security and compliance requirements are inherited when Copilot is used at work?
Microsoft requires that when Copilot is used at work, all existing security and compliance requirements are inherited, so that only people with the right permissions can access the content it generates.
What does Microsoft require implementation of?
Microsoft requires implementation of AI governance tools, such as the Microsoft Responsible AI Dashboard, to monitor and manage AI systems.
Does Microsoft require implementation of tools to monitor and manage AI systems?
Microsoft requires implementation of AI governance tools, such as the Microsoft Responsible AI Dashboard, to monitor and manage AI systems.
When may users manage their privacy preferences?
Microsoft allows users to manage their privacy preferences at any time through Copilot Privacy settings.
Stay ahead of the changes
Track Microsoft and get the diff the day its terms change.
Summary

This document sets out Microsoft's binding rules for how its AI systems, including Copilot, must be built and used responsibly, requiring equal treatment, human oversight, and strong privacy and security protections. If you use Copilot at work, your organization's existing security rules automatically apply, and only people with the right permissions can see what Copilot generates. You can update your privacy preferences at any time through Copilot Privacy settings.

Analysis

The Microsoft Responsible AI Standard establishes a defined framework of six core values—Fairness, Reliability and Safety, Privacy and Security, Transparency, Accountability, and Inclusiveness—that govern how Microsoft designs, builds, and operates AI systems across their full lifecycle. The document imposes affirmative obligations on AI use, including the maintenance of human oversight, responsible validation of AI models, implementation of AI governance tooling such as the Responsible AI Dashboard, and compliance with legal and regulatory requirements alongside avoidance of harmful bias. It establishes that Copilot's access to generated content is gated by permissions, that existing organizational security and compliance requirements are inherited when Copilot is used in work contexts, and that users may manage their privacy preferences at any time through Copilot Privacy settings. The five enumerated ethical considerations for generative AI use—bias and fairness, privacy and security, transparency and accountability, inclusiveness, and reliability and safety—are framed as requirements rather than aspirational guidance.

What this means for you

This document means that Microsoft's AI systems, including Copilot, are required to treat users equally, avoid discrimination based on personal characteristics, and keep personal data secure while remembering relevant details about daily life. Human oversight is a stated obligation, so AI outputs are not fully autonomous. Copilot-generated content at work is restricted to users with the right permissions, and your organization's existing security and compliance controls carry over automatically. As a concrete action: you can manage your privacy preferences at any time by visiting your Copilot Privacy settings.

Institutional Analysis
Stay ahead of the changes

Institutional analysis available with Insight

Which mapped governance frameworks each document engages, tied to the specific provisions that engage them.

3 important changes detected

3 versions captured · Last updated: April 2026

What changed Microsoft updated three passages in its Responsible AI Principles on April 19, 2026. The first change revised the opening tagline from 'Build your business with trustworthy AI' to 'Accelerate business growth with trustworthy AI' and expanded the supporting description from a single sentence about safe practices to a more detailed statement about accelerating adoption and reducing risk. The second change replaced a reference to 'Get the e-book' with 'Watch the webinar' in a resources section. The third change rephrased guidance about Copilot security from 'When you're using Copilots at work' to 'When using Copilot at work,' a minor grammatical adjustment. These are primarily marketing and messaging updates with no material change to underlying responsible AI commitments or consumer obligations.
Why this matters These changes are primarily editorial and marketing updates to Microsoft's Responsible AI Principles. The revised language emphasizes business value and risk reduction rather than introducing new restrictions or permissions. The shift from 'e-book' to 'webinar' and the grammatical adjustment to Copilot guidance do not alter what users can do or what data the platform collects. The updated terms make no substantive change to user rights, data handling, or security obligations.
View full change record →
What changed Microsoft updated three sentences in its Responsible AI Principles published on March 13, 2026. The marketing heading changed from 'Build your business with trustworthy AI' to 'Accelerate business growth with trustworthy AI,' with slightly revised descriptive language. A resource link changed from 'Get the e-book' to 'Watch the webinar,' and minor wording was adjusted in a statement about Copilot security compliance. These are editorial updates to resource references and promotional framing with no change to underlying policies or commitments.
Why this matters This change consists of editorial updates to promotional language and resource references within Microsoft's Responsible AI Principles. The substantive commitments, principles, and security frameworks described in the document remain unchanged. No new obligations, restrictions, or permissions are created by these edits.
View full change record →

March 6, 2026 low

Microsoft updated three discrete elements in its Responsible AI Principles document on March 6, 2026. The introductory call-to-action statement changed from 'Accelerate business growth with trustworthy AI' to 'Build your …

View change record →
Featured, High severity
Featured, Medium severity

Complete Provision Index

Every distinct legal provision identified in this document. Featured provisions appear above with analysis.

19 provisions
12 featured
9 clause types
8 high severity
Acceptable Use Restrictions 1 1 high
Account Control 1 1 high
Data Collection 1 1 high
Stay ahead of the changes

Monitoring

Microsoft has updated this document before. Monitor includes same-day alerts, structured change summaries, and monitoring for up to 20 platforms.

Stay ahead of the changes

Governance Intelligence

Need provision-level monitoring and regulatory mapping? Insight includes governance timelines, drift analysis, and full provision tracking.

Cross-platform context

See how other platforms handle Access control limits Copilot generated content and similar clauses.

Compare across platforms →

Mapped Governance Frameworks

DSA
European Union
View official text ↗
Archival ProvenanceSource & Archival Record
Last Captured April 19, 2026 06:03 UTC
Capture Method Automated scheduled archival capture
Document ID CA-D-000019
Version ID CA-V-000632
SHA-256 c2711385e39a092fcc66f3433e970b093ef581a8f85518707b28e93428be600a
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Hash verified

Governance Monitoring

Monitor governance changes across the platforms you rely on.

Structured alerts for policy changes, governance events, and provision updates across 352+ platforms.

Start monitoring → Compare plans