Summary
- Microsoft 365 admin center now includes controls for browser use in Copilot Cowork.
- Admins can scope access more granularly to no users, all users, or specific security groups instead of managing it only at the tenant level.
- The feature is disabled by default, so tenant admins must explicitly enable browser access before users can use it.
- Microsoft recommends starting with a small pilot group and then expanding access after validating the experience.
- This change affects Microsoft Copilot (Microsoft 365) administration and pilot planning.
Microsoft is introducing admin controls for browser use in Copilot Cowork, rolling out worldwide from mid to late September 2026. The capability is disabled by default and permits targeting specific security groups or users for controlled pilots. Administrators should review user access requirements and configure settings via the Microsoft 365 admin centre before general deployment.
Administrator impact: Administrators must manually enable and configure browser access scope in the Microsoft 365 admin centre if they wish to use this feature.
End user impact: End users will only be able to use browser capabilities within Copilot Cowork if their account is included in the administrator configuration scope.
Score rationale: This is a planned administrative control feature that remains inactive by default but requires manual configuration to enable.
Use the local browser with Copilot Cowork
Admins can now control browser use in Copilot Cowork via Microsoft 365 admin center, enabling access for specific users or groups. Rolling out worldwide mid to late September 2026, this feature is off by default and requires admin activation. Recommended to pilot with small groups before broader deployment.
Primary Service: M365 Copilot
Admin Impact: Medium
User Impact: Medium
Release Start: 15 Sept 2026
Release End: 30 Sept 2026
Published: 19 Sept 2026
Expires: 30 Nov 2026
Last updated: 19 Sept 2026
Services: Admin, Edge, M365 Copilot
Category: Plan for change
Tags: Admin Action, New Feature
History
9/19/2026 Item Added to Message Center
Microsoft Message
Controls for browser use in Copilot Cowork are now available in the Microsoft 365 admin center (MAC). As part of this rollout, we’re also introducing more granular access controls, allowing admins to enable the capability for specific users or security groups instead of managing access at the tenant-wide level. This gives organizations greater flexibility to run controlled pilots, validate the experience with targeted teams, and expand access over time.
Rollout schedule
General Availability (Worldwide): We will begin rolling out on mid-September 2026 and expect to complete by late September 2026.
Impact on your organization
Admins can configure local browser access for:
- No users
- All users
- Specific groups
- Only users included in the configured scope will have access to the capability
Action required / Recommendations
Review which users or security groups should receive access and plan how you’ll evaluate the capability. Consider starting with a small pilot group before expanding deployment more broadly.
Tenant admins must enable Cowork browsing by performing the following steps. This feature is disabled by default.
- From the menu, select Copilot > Settings > View All > Cowork settings.
- Under Allow browser access, select Allow Cowork to use the Microsoft Edge browser to perform tasks on behalf of users.
- Use the local browser with Copilot Cowork | Microsoft Learn