Summary
- Microsoft is rolling out self-service migration for Copilot Studio agents from legacy app-registration identities to Microsoft Entra Agent ID.
- This primarily affects Copilot Studio agents created before May 2026 that may still be using the older identity model.
- Migrating to Entra Agent ID centralizes agent governance, audit logging, lifecycle management, and Conditional Access control in Microsoft Entra ID.
- IT admins should identify eligible agents, validate inventory is enabled, migrate in small batches, and test each agent’s channels, authentication, connectors, flows, and integrations before wider rollout.
Microsoft 365 Message Center ID: MC1462458
Primary Service: Power Platform
Admin Impact: Medium
User Impact: Low
Release Start: 26 Aug 2026
Release End: 26 Aug 2026
Last Modified: August 27, 2026
Category: Plan for change
Tags: New feature, Admin impact
Status: Launched
Products & Platforms: Microsoft Copilot (Power Platform)
History
8/26/2026 Item Added to Message Center
Microsoft Message
On August 24, 2026, we initiated the gradual roll out of self-service migrations to Microsoft Entra Agent IDs for Copilot Studio agents in Power Platform Advisor. Copilot Studio agents created before May 2026 may still use legacy app-registration identities. We recommend migrating these agents to Microsoft Entra Agent ID.
How does this affect me?
Migrating your agents to Microsoft Entra Agent ID helps your organization build, discover, govern, and protect agent identities across services by using a unified platform.
Key benefits include:
- Audit logging in Microsoft Entra ID.
- Agent lifecycle management.
- Integration with Entra ID Governance.
- Visibility of connector permissions as API permissions on the agent identity, so Entra and Microsoft 365 admins can see what an agent can do without opening Power Platform admin center.
- Ability to target those connector permissions with Microsoft Entra Conditional Access policies (for example, network location, device compliance, or risk conditions).
What action do I need to take?
We recommend identifying and migrating your eligible agents to Microsoft Entra Agent ID. To perform this mitigation please follow the steps listed below:
- Confirm that Power Platform inventory is enabled for your tenant.
- In the Power Platform admin center, go to Actions > Entra ID Governance > Active, and open Migrate Copilot Studio agents to Microsoft Entra Agent ID for enhanced agent governance.
- Coordinate a validation window with the makers who own the agents.
- Start with a small batch of noncritical agents. After migration, validate each agent’s channels, authentication, actions, connectors, flows, and integrations before migrating another batch.
- Review Microsoft Entra sign-in logs and applicable Conditional Access results. If an agent does not pass validation, revert it before continuing.
This message is for awareness, and no action is required.
For more information, please visit Migrate Copilot Studio agents to Microsoft Entra Agent ID.