<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Secure AI — What's new</title>
    <link>https://secure-ai.guide/whats-new</link>
    <atom:link href="https://secure-ai.guide/updates.xml" rel="self" type="application/rss+xml"/>
    <description>Recently added and updated AI security scenarios, solutions, and capabilities on secure-ai.guide.</description>
    <language>en</language>
    <lastBuildDate>Sat, 08 Aug 2026 00:00:00 GMT</lastBuildDate>
    <item>
      <title>Guide: The Microsoft agent landscape</title>
      <link>https://secure-ai.guide/guides/microsoft-ai-landscape</link>
      <guid isPermaLink="true">https://secure-ai.guide/guides/microsoft-ai-landscape</guid>
      <category>Guide</category>
      <pubDate>Sat, 08 Aug 2026 00:00:00 GMT</pubDate>
      <description>Introduction to Microsoft&apos;s AI Agents — where each one sits, how much of an agent you build and therefore have to secure, and how Agent 365 governs them all once they exist.</description>
    </item>
    <item>
      <title>Guide: Security frameworks &amp; regulations</title>
      <link>https://secure-ai.guide/guides/security-frameworks-regulations</link>
      <guid isPermaLink="true">https://secure-ai.guide/guides/security-frameworks-regulations</guid>
      <category>Guide</category>
      <pubDate>Sat, 08 Aug 2026 00:00:00 GMT</pubDate>
      <description>The shared language for AI security — which acronyms are laws, frameworks, standards, and threat references, how they stack together, and how Microsoft turns them into practice.</description>
    </item>
    <item>
      <title>Solution: Shadow AI</title>
      <link>https://secure-ai.guide/solutions/shadow-ai</link>
      <guid isPermaLink="true">https://secure-ai.guide/solutions/shadow-ai</guid>
      <category>Solution</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Discover, control, and govern unsanctioned AI app usage across your organisation — from building visibility into shadow AI activity to blocking risky destinations, preventing data loss, and governing sanctioned use.</description>
    </item>
    <item>
      <title>Scenario: Govern Agent Identity and Access</title>
      <link>https://secure-ai.guide/scenarios/govern-agent-identity-and-access</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/govern-agent-identity-and-access</guid>
      <category>Scenario</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Give every agent a first-class Entra identity, then govern what it authenticates as and what it can reach — assign a responsible owner, right-size access with packages and reviews, and enforce risk-based Conditional Access before it touches resources.</description>
    </item>
    <item>
      <title>Scenario: Govern Sanctioned Enterprise AI</title>
      <link>https://secure-ai.guide/scenarios/govern-sanctioned-enterprise-ai</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/govern-sanctioned-enterprise-ai</guid>
      <category>Scenario</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Bring the AI that runs outside Microsoft&apos;s Copilot family — custom apps you build and sanctioned SaaS such as ChatGPT Enterprise and Anthropic Claude — under Microsoft Purview, so their interactions are discovered, audited, and governed like the rest of your estate rather than remaining a blind spot.</description>
    </item>
    <item>
      <title>Scenario: Investigate and Respond to Agent Incidents</title>
      <link>https://secure-ai.guide/scenarios/investigate-and-respond-to-agent-incidents</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/investigate-and-respond-to-agent-incidents</guid>
      <category>Scenario</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Gives responders what they need to work an agent incident end to end — the agent inventory, the identity graph behind it, the conversation evidence, and the legal-hold path — so an alert can be scoped, understood, and acted on.</description>
    </item>
    <item>
      <title>Capability: Agent Threat Hunting &amp; Investigation</title>
      <link>https://secure-ai.guide/capabilities/microsoft-defender-xdr-agent-threat-hunting</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-defender-xdr-agent-threat-hunting</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Correlates AI agent alerts into incidents and gives analysts an incident graph to scope the blast radius, then queries Agent 365 observability data with Kusto Query Language in Advanced Hunting — across the AgentsInfo, CloudAppEvents, and BehaviorInfo tables — to investigate threats and proactively hunt for risk. Turns near-real-time agent detections into full investigation and threat-hunting workflows in the Microsoft Defender portal.</description>
    </item>
    <item>
      <title>Capability: Agent Identity Lifecycle Management</title>
      <link>https://secure-ai.guide/capabilities/microsoft-entra-id-governance-agent-lifecycle-management</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-entra-id-governance-agent-lifecycle-management</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Governs the identity lifecycle of AI agents in Microsoft Entra ID Governance — enabling, disabling, and retiring agents, and keeping an accountable human sponsor on every agent so oversight is never lost. When a sponsor leaves, sponsorship transfers automatically to their manager, and Lifecycle Workflows automate the mover and leaver notifications that keep an agent&apos;s access from outliving its oversight.</description>
    </item>
    <item>
      <title>Capability: AI Interaction Retention</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-data-lifecycle-management-ai-retention</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-data-lifecycle-management-ai-retention</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Applies Microsoft Purview retention policies and labels to the prompts and responses of Microsoft 365 Copilot, agents, and other AI apps, retaining what the organization must keep and deleting what it no longer needs. Covers both user Copilot experiences and agent interactions across the supported surfaces.</description>
    </item>
    <item>
      <title>Capability: Purview DSPM AI Interaction Discovery</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-dspm-ai-interaction-discovery</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-dspm-ai-interaction-discovery</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Uses Microsoft Purview Data Security Posture Management reports, AI observability, and Activity explorer to surface user interactions with AI apps and agents, identify sensitive information in prompts and responses, and inform follow-up controls such as DLP, insider risk, investigation, and remediation workflows.</description>
    </item>
    <item>
      <title>Capability: eDiscovery for AI Interactions</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-ediscovery-ai-interactions</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-ediscovery-ai-interactions</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Lets legal and compliance teams search, place holds on, review, and export the prompts and responses of Microsoft 365 Copilot, agents, and other AI apps in Microsoft Purview eDiscovery — treating a user mailbox or an agent instance as the custodian. Reduces the risk of being unable to preserve or investigate AI interaction data for legal and compliance cases.</description>
    </item>
    <item>
      <title>Capability: Enterprise AI App Connectors</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-enterprise-ai-app-connectors</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-enterprise-ai-app-connectors</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Connects sanctioned non-Microsoft enterprise AI apps — ChatGPT Enterprise and Anthropic Claude (connector in preview) — to Microsoft Purview so their prompts and responses surface in Data Security Posture Management for AI with auditing, and, for ChatGPT Enterprise, insider risk, communication compliance, eDiscovery, and retention. Brings enterprise AI outside Microsoft under monitoring and compliance, though sensitivity-label, encryption, and DLP enforcement are not supported for these connected apps.</description>
    </item>
    <item>
      <title>Capability: Entra-registered AI App Governance</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-entra-registered-ai-apps</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-entra-registered-ai-apps</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Registers custom, in-house AI apps in Microsoft Entra and integrates them with the Microsoft Purview SDK so their prompts and responses inherit the full Purview control plane — data classification, sensitivity labels, encryption, data loss prevention, insider risk, communication compliance, eDiscovery, retention, and Compliance Manager. Gives apps you build the same data governance as Microsoft Copilot rather than leaving them outside compliance.</description>
    </item>
    <item>
      <title>Capability: Encryption Enforcement Without Labels</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-information-protection-encryption-without-labels</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-information-protection-encryption-without-labels</guid>
      <category>Capability</category>
      <pubDate>Mon, 03 Aug 2026 00:00:00 GMT</pubDate>
      <description>Enforces Azure Rights Management VIEW and EXTRACT usage rights on content protected without a sensitivity label — such as Message Encryption, Information Rights Management, or Customer Key — so Microsoft 365 Copilot and Copilot Cowork only return data the user is entitled to see. Unlike labeled content, this protection is not inherited by newly generated output.</description>
    </item>
    <item>
      <title>Capability: Abuse Monitoring</title>
      <link>https://secure-ai.guide/capabilities/azure-ai-foundry-abuse-monitoring</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/azure-ai-foundry-abuse-monitoring</guid>
      <category>Capability</category>
      <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
      <description>Detects recurring harmful content and misuse patterns in Azure OpenAI prompts and completions, and flags potentially abusive users through content classification and pattern scoring. Surfaces Risks &amp; Safety monitoring signals so teams can respond to misuse of deployed models.</description>
    </item>
    <item>
      <title>Capability: Policy Templates</title>
      <link>https://secure-ai.guide/capabilities/microsoft-365-admin-center-agent-policy-templates</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-365-admin-center-agent-policy-templates</guid>
      <category>Capability</category>
      <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
      <description>Bundle predefined governance and security policies from Microsoft Entra, Purview, SharePoint Online, and Defender into templates that administrators apply to agents in the Microsoft 365 admin center, standardizing controls and reducing manual configuration across the agent estate. Requires the Microsoft Agent 365 license.</description>
    </item>
    <item>
      <title>Capability: Copilot Web Grounding Controls</title>
      <link>https://secure-ai.guide/capabilities/microsoft-365-admin-center-copilot-web-grounding-controls</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-365-admin-center-copilot-web-grounding-controls</guid>
      <category>Capability</category>
      <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
      <description>Governs whether Microsoft 365 Copilot and Copilot Chat can ground responses on the public web, and which external domains are off-limits. Admins turn web grounding on or off tenant-wide with the Allow web search in Copilot policy and exclude up to 1,000 domains, keeping untrusted or non-compliant web sources out of AI responses.</description>
    </item>
    <item>
      <title>Capability: Adaptive Protection for AI Risk</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-insider-risk-management-adaptive-protection</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-insider-risk-management-adaptive-protection</guid>
      <category>Capability</category>
      <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
      <description>Dynamically assigns escalated DLP, data lifecycle, and Conditional Access controls to users whose insider risk level rises — automatically tightening restrictions when risk increases and relaxing them when it subsides.</description>
    </item>
    <item>
      <title>Capability: Power Platform Activity Monitoring</title>
      <link>https://secure-ai.guide/capabilities/microsoft-sentinel-power-platform-activity-monitoring</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-sentinel-power-platform-activity-monitoring</guid>
      <category>Capability</category>
      <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
      <description>Collects agent and Power Platform activity into Microsoft Sentinel and applies analytics rules to detect, investigate, and respond to suspicious agent behavior alongside other tenant signals. Reduces the risk of undetected malicious agent activity.</description>
    </item>
    <item>
      <title>Capability: Isolated Agent Execution Environment</title>
      <link>https://secure-ai.guide/capabilities/microsoft-windows-365-for-agents-isolated-execution</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-windows-365-for-agents-isolated-execution</guid>
      <category>Capability</category>
      <pubDate>Wed, 29 Jul 2026 00:00:00 GMT</pubDate>
      <description>Runs agents inside pooled, stateless Cloud PCs that are Microsoft Entra-joined and Intune-enrolled and reset after every session. Contains what a manipulated or compromised agent can reach and leaves a per-session identity and audit trail for every action.</description>
    </item>
    <item>
      <title>Capability: Copilot Response Label Inheritance</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-information-protection-copilot-label-inheritance</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-information-protection-copilot-label-inheritance</guid>
      <category>Capability</category>
      <pubDate>Mon, 27 Jul 2026 00:00:00 GMT</pubDate>
      <description>Copilot responses and generated files inherit the highest-priority sensitivity label of the sources they draw on, carrying that label&apos;s encryption and markings onto the AI output so protection follows the content instead of stopping at the grounding data.</description>
    </item>
    <item>
      <title>Scenario: Establish the Foundry Security Foundation</title>
      <link>https://secure-ai.guide/scenarios/establish-foundry-security-foundation</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/establish-foundry-security-foundation</guid>
      <category>Scenario</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Lock down the Microsoft Foundry platform, its network path, and its data before any agent ships — scoped access, private networking, and customer-controlled encryption as the baseline every project inherits.</description>
    </item>
    <item>
      <title>Scenario: Protect Foundry Agents at Runtime</title>
      <link>https://secure-ai.guide/scenarios/protect-foundry-agents-at-runtime</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/protect-foundry-agents-at-runtime</guid>
      <category>Scenario</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Harden the running agent so it resists prompt attacks, doesn&apos;t leak sensitive or protected output, stays aligned to its assigned task, and has its tool traffic mediated.</description>
    </item>
    <item>
      <title>Capability: AI Red Teaming Agent</title>
      <link>https://secure-ai.guide/capabilities/azure-ai-foundry-ai-red-teaming-agent</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/azure-ai-foundry-ai-red-teaming-agent</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Runs automated adversarial scans against models and Foundry agents — simulating prompt injection, jailbreak, and agentic attacks with PyRIT strategies — and scores each attempt with an Attack Success Rate to surface safety and security weaknesses before deployment. In preview.</description>
    </item>
    <item>
      <title>Capability: Risk &amp; Safety Evaluators</title>
      <link>https://secure-ai.guide/capabilities/azure-ai-foundry-risk-safety-evaluators</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/azure-ai-foundry-risk-safety-evaluators</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Scores model and agent outputs against built-in risk and safety evaluators — including groundedness, indirect prompt injection (XPIA), prohibited actions, and sensitive data leakage — so teams can gate releases and catch unsafe behaviour before deployment. Runs from the Azure AI Evaluation SDK or the Foundry portal and feeds results back into observability.</description>
    </item>
    <item>
      <title>Capability: Application Insights Agent Observability</title>
      <link>https://secure-ai.guide/capabilities/azure-monitor-application-insights-agent-telemetry</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/azure-monitor-application-insights-agent-telemetry</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Provides a unified Agent details view (in preview) that monitors AI agents across Microsoft Foundry, Copilot Studio, and third-party frameworks using OpenTelemetry Gen AI semantics — tracking performance, token usage and cost, Gen AI errors, and end-to-end traces. Copilot Studio agents can additionally emit opt-in, high-fidelity runtime telemetry for deep query-based analysis in KQL.</description>
    </item>
    <item>
      <title>Capability: Copilot Security Dashboard</title>
      <link>https://secure-ai.guide/capabilities/microsoft-365-admin-center-copilot-security-dashboard</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-365-admin-center-copilot-security-dashboard</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Surfaces Microsoft 365 Copilot data-security posture in the Microsoft 365 admin center — data loss prevention, oversharing, and compliance insights — so administrators can monitor and act on Copilot data risk in one place. Draws on Microsoft Purview signals to give a single view of Copilot data governance.</description>
    </item>
    <item>
      <title>Capability: Security Dashboard for AI</title>
      <link>https://secure-ai.guide/capabilities/microsoft-defender-xdr-security-dashboard-for-ai</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-defender-xdr-security-dashboard-for-ai</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Aggregates AI security posture and real-time risk signals from Microsoft Defender, Microsoft Entra, and Microsoft Purview into one scorecard and inventory spanning Microsoft 365 Copilot, Copilot Studio agents, Microsoft Foundry apps and agents, and third-party or shadow AI. Gives security leaders a single cross-product view of AI assets and their risk; currently in preview.</description>
    </item>
    <item>
      <title>Capability: Communication Compliance for AI Interactions</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-communication-compliance-ai</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-communication-compliance-ai</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Detects inappropriate, risky, or policy-violating content in AI prompts and responses — including Microsoft 365 Copilot, connected AI apps, and browser-accessed third-party AI tools — using built-in classifiers and custom policies.</description>
    </item>
    <item>
      <title>Capability: AI-Assisted Incident Investigation &amp; Response</title>
      <link>https://secure-ai.guide/capabilities/microsoft-security-copilot-incident-investigation</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-security-copilot-incident-investigation</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>Gives SOC analysts a natural-language assistant that summarises incidents, correlates signals across Defender XDR, Sentinel, Entra, and Purview, and recommends guided responses — accelerating triage and response for incidents that involve AI agents. Runs standalone or embedded in the Defender portal, with agent identity and RBAC set by the Security Copilot owner.</description>
    </item>
    <item>
      <title>Capability: SharePoint Admin Agent</title>
      <link>https://secure-ai.guide/capabilities/microsoft-sharepoint-advanced-management-admin-agent</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-sharepoint-advanced-management-admin-agent</guid>
      <category>Capability</category>
      <pubDate>Fri, 24 Jul 2026 00:00:00 GMT</pubDate>
      <description>An AI-powered governance agent that lets administrators investigate tenant-level content risks — oversharing, sprawl, stale sites, and access — through natural-language queries instead of running reports manually. Analyzes SharePoint and SharePoint Advanced Management data to recommend and guide oversharing remediation before a Microsoft 365 Copilot rollout.</description>
    </item>
    <item>
      <title>Solution: Agent Identity &amp; Access Management</title>
      <link>https://secure-ai.guide/solutions/agent-identity-and-access</link>
      <guid isPermaLink="true">https://secure-ai.guide/solutions/agent-identity-and-access</guid>
      <category>Solution</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Give every agent a first-class identity, then govern what it authenticates as and what it can reach — registering agents in Microsoft Entra, assigning owners, right-sizing access with packages and reviews, and enforcing risk-based Conditional Access.</description>
    </item>
    <item>
      <title>Solution: Agent Observability &amp; Governance</title>
      <link>https://secure-ai.guide/solutions/agent-observability-and-governance</link>
      <guid isPermaLink="true">https://secure-ai.guide/solutions/agent-observability-and-governance</guid>
      <category>Solution</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Bring the growing population of AI agents into view and under control with Microsoft Agent 365 — from a centralized, cross-platform inventory of every agent and who owns it, to lifecycle governance over which agents are allowed, what tools they can call, and which policies apply.</description>
    </item>
    <item>
      <title>Solution: Detect &amp; Respond to AI Data Risk</title>
      <link>https://secure-ai.guide/solutions/detect-and-respond-to-ai-data-risk</link>
      <guid isPermaLink="true">https://secure-ai.guide/solutions/detect-and-respond-to-ai-data-risk</guid>
      <category>Solution</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Turn AI audit signals, insider-risk indicators, and communication-compliance findings into investigation and response — bridged into Microsoft Defender XDR and Microsoft Sentinel.</description>
    </item>
    <item>
      <title>Solution: Protect Enterprise Data Used by AI</title>
      <link>https://secure-ai.guide/solutions/protect-enterprise-data-used-by-ai</link>
      <guid isPermaLink="true">https://secure-ai.guide/solutions/protect-enterprise-data-used-by-ai</guid>
      <category>Solution</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Control what enterprise data AI can read and share — discover where sensitive data and oversharing create AI risk, classify and label it, prevent its loss to AI apps and agents, and govern its lifecycle.</description>
    </item>
    <item>
      <title>Solution: Secure the Agent Runtime</title>
      <link>https://secure-ai.guide/solutions/secure-the-agent-runtime</link>
      <guid isPermaLink="true">https://secure-ai.guide/solutions/secure-the-agent-runtime</guid>
      <category>Solution</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Protect the running agent from manipulation — control which destinations it can reach, block risky tool invocations before they execute, and inspect the local agent loop on endpoints.</description>
    </item>
    <item>
      <title>Scenario: Classify and Label Data Feeding AI</title>
      <link>https://secure-ai.guide/scenarios/classify-and-label-ai-data-foundation</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/classify-and-label-ai-data-foundation</guid>
      <category>Scenario</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Establish the information-protection foundation AI controls depend on — classify sensitive data and apply labels so protection travels with the content agents and Copilots ground on.</description>
    </item>
    <item>
      <title>Scenario: Detect and Respond to Risky AI Data Activity</title>
      <link>https://secure-ai.guide/scenarios/detect-and-respond-to-risky-ai-data-activity</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/detect-and-respond-to-risky-ai-data-activity</guid>
      <category>Scenario</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Close the loop — turn AI audit signals, insider-risk indicators, and communication-compliance findings into investigation and response, bridged into Defender XDR and Sentinel.</description>
    </item>
    <item>
      <title>Scenario: Discover Sensitive Data and AI Risk</title>
      <link>https://secure-ai.guide/scenarios/discover-sensitive-data-and-ai-risk</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/discover-sensitive-data-and-ai-risk</guid>
      <category>Scenario</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Start with visibility — find where sensitive data, oversharing, AI interactions, and unsanctioned AI usage create risk before choosing controls.</description>
    </item>
    <item>
      <title>Scenario: Govern AI Data Lifecycle and Retention</title>
      <link>https://secure-ai.guide/scenarios/govern-ai-data-lifecycle-and-retention</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/govern-ai-data-lifecycle-and-retention</guid>
      <category>Scenario</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Decide how long AI prompts, responses, and related evidence are kept, deleted, preserved, or removed from active AI grounding.</description>
    </item>
    <item>
      <title>Scenario: Prevent Data Loss to AI Apps and Agents</title>
      <link>https://secure-ai.guide/scenarios/prevent-data-loss-to-ai-apps-and-agents</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/prevent-data-loss-to-ai-apps-and-agents</guid>
      <category>Scenario</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Turn classification and labels into enforcement boundaries for Copilot, agents, prompts, grounding data, and the browser-based AI apps users reach on their own.</description>
    </item>
    <item>
      <title>Scenario: Protect Agents at Runtime</title>
      <link>https://secure-ai.guide/scenarios/protect-agents-at-runtime</link>
      <guid isPermaLink="true">https://secure-ai.guide/scenarios/protect-agents-at-runtime</guid>
      <category>Scenario</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Protect the running agent from manipulation — control which destinations it can reach, block risky tool invocations before they execute, and inspect the local agent loop on endpoints for prompt injection and high-risk actions.</description>
    </item>
    <item>
      <title>Capability: AI Security Posture Management</title>
      <link>https://secure-ai.guide/capabilities/microsoft-defender-for-cloud-ai-security-posture-management</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-defender-for-cloud-ai-security-posture-management</guid>
      <category>Capability</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Discovers deployed generative AI apps and models across Azure, AWS, and GCP — the AI bill of materials — and assesses their posture, surfacing identity, data, and internet-exposure recommendations, attack paths, and infrastructure-as-code misconfigurations.</description>
    </item>
    <item>
      <title>Capability: Prompt Injection Protection</title>
      <link>https://secure-ai.guide/capabilities/microsoft-entra-internet-access-prompt-injection-protection</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-entra-internet-access-prompt-injection-protection</guid>
      <category>Capability</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Inspects prompts flowing to generative AI apps in Internet Access traffic and blocks adversarial prompt injection and jailbreak attempts before they reach the language model, enforced at the network layer through the Global Secure Access client. It ships with detectors for major generative AI services, extends to custom JSON-based apps, and currently covers text prompts only.</description>
    </item>
    <item>
      <title>Capability: Sensitive Information Types and Classifiers</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-data-classification-sensitive-info-types</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-data-classification-sensitive-info-types</guid>
      <category>Capability</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Identifies sensitive data with pattern-based sensitive information types (SITs) and machine-learning trainable classifiers. In AI scenarios these classifiers find sensitive content in user prompts and responses and provide the detection basis that labels, DLP, DSPM reports, and investigation all build on.</description>
    </item>
    <item>
      <title>Capability: Browser Data Security for AI Prompts in Edge</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-data-loss-prevention-browser-data-security</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-data-loss-prevention-browser-data-security</guid>
      <category>Capability</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Enforces DLP inline in Microsoft Edge for Business, inspecting text users type or paste into AI app prompts in real time and blocking sensitive submissions before they leave the browser — without onboarding the device. Configuration policies block users from reaching the same unmanaged AI apps in unprotected browsers.</description>
    </item>
    <item>
      <title>Capability: Endpoint DLP for AI App Uploads</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-data-loss-prevention-endpoint-dlp</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-data-loss-prevention-endpoint-dlp</guid>
      <category>Capability</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Monitors managed devices and blocks paste, upload, or clipboard copy of sensitive information to AI application websites, keeping sensitive data from leaving endpoints through third-party AI apps.</description>
    </item>
    <item>
      <title>Capability: Network Data Security for AI Traffic</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-data-loss-prevention-network-data-security</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-data-loss-prevention-network-data-security</guid>
      <category>Capability</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Monitors and blocks sensitive data shared with unmanaged AI apps through non-Microsoft browsers, apps, APIs, and add-ins by integrating with SASE and secure web gateway solutions to inspect HTTP/HTTPS traffic at the network layer — the surface Endpoint DLP cannot see.</description>
    </item>
    <item>
      <title>Capability: Insider Risk Signals for AI Activity</title>
      <link>https://secure-ai.guide/capabilities/microsoft-purview-insider-risk-management-ai-signals</link>
      <guid isPermaLink="true">https://secure-ai.guide/capabilities/microsoft-purview-insider-risk-management-ai-signals</guid>
      <category>Capability</category>
      <pubDate>Thu, 23 Jul 2026 00:00:00 GMT</pubDate>
      <description>Uses Microsoft Purview Insider Risk Management to identify users with potentially risky AI-related behavior, such as sharing sensitive content with AI apps or interacting with unsanctioned AI services, by correlating configured activity signals from Microsoft Purview, Microsoft 365, browser, endpoint, and network controls. These insights are integrated into Microsoft Defender XDR, where IRM alerts correlate per user into a single incident for unified investigation.</description>
    </item>
    <item>
      <title>Solution: SecOps for AI</title>
      <link>https://secure-ai.guide/solutions/secops-for-ai</link>
      <guid isPermaLink="true">https://secure-ai.guide/solutions/secops-for-ai</guid>
      <category>Solution</category>
      <pubDate>Wed, 22 Jul 2026 00:00:00 GMT</pubDate>
      <description>Connect agent activity to security operations — stream telemetry to the SOC, detect AI-specific threats, and investigate and respond to agent incidents across Microsoft Sentinel, Defender, and Purview.</description>
    </item>
  </channel>
</rss>
