In brief: 66% of enterprises are delaying or halting Copilot deployments due to concerns about data security and the risk of confidential information disclosure.
66% of enterprises have delayed or halted the deployment of Microsoft Copilot because they fear the AI assistant could disclose confidential data. This raises a critical question for security leaders about actual data protection governance for AI assistants in enterprise-wide deployment.
According to a recent survey, two-thirds (66%) of surveyed enterprises have delayed or halted the deployment of Microsoft Copilot. The primary concern is that the AI assistant could transfer or disclose sensitive and confidential corporate data to external systems.
For Chief Information Security Officers, this is a central governance issue: Copilot systems must — like all AI agents — be configured with clear data classifications, retention policies, and access controls. The widespread hesitation suggests that many organizations have not yet established these fundamentals or view Microsoft’s guarantees as insufficient.
The delay carries a risk: while enterprises build control frameworks, individual departments or users may adopt Copilot or comparable tools in the shadows (Shadow AI), further exacerbating the security situation. A proactive strategy with transparent data flow documentation and test environments could close this gap.
Source: borncity.com · Published 26 July 2026
Lumi AI News — AI-assisted curation according to Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.