{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreihh7lb4npwkhe5wz74tcesecj737mw6xepxbc2iqyvcizto6ub7ze",
"uri": "at://did:plc:rrhaxgucx3tyy7yi322tgmjh/app.bsky.feed.post/3mfap3ey23rd2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreif6evlztphqotgvgcielse46zozru7mlsdvrgm355rdqp3yppa6j4"
},
"mimeType": "image/png",
"size": 280507
},
"path": "/blog/microsoft-copilot-reads-confidential-business-mail",
"publishedAt": "2026-02-19T00:00:00.000Z",
"site": "https://tuta.com",
"textContent": "Microsoft has confirmed that since late January, a bug in Microsoft 365 Copilot has enabled the AI assistant to read and summarize emails even if explicitly marked as confidential. The bug in Copilot bypassed data loss prevention (DLP) policies used by organizations to protect sensitive information. Microsoft has rolled out a fix, but has not yet disclosed how many users or organizations have been affected. One thing is clear: AI assistants like Copilot cannot and must not be trusted to have access to an organization’s mailbox or sensitive data.",
"title": "Microsoft Copilot had access to organizations’ confidential emails – without permission."
}