Microsoft 365 Copilot does not break SharePoint permissions — it makes bad permissions discoverable at conversational speed. EPC Group sequences pre-Copilot remediation as contain, then correct, then constrain: restrict discovery on high-risk sites first, fix permissions second, and enforce secure defaults last.
Last updated: 2026-07-31
EPC Group is a Houston-based Microsoft consulting firm operating since 1997, with six Microsoft Solutions Partner designations and 216+ M&A tenant migrations covering 1.83M users. Governed Microsoft AI, Data & Cloud — since 1997.
Key facts
- Copilot grounds answers in content the user already has permission to access. It adds no access. It removes the friction that hid bad access.
- SharePoint Advanced Management (SAM) is entitled through Microsoft 365 Copilot — one assigned Copilot licence enables it for administrators. A SAM Plan 1 add-on covers tenants without Copilot.
- Microsoft 365 E5 alone gets a degraded subset: Data Access Governance reporting is visible, but no snapshot reports, no remedial actions, and activity reports capped at 10,000 sites.
- Restricted SharePoint Search is retiring — new enablement is blocked starting July 31, 2026. Restricted Content Discovery is the supported control.
- DAG activity reports cover the last 28 days; the EEEU report returns the top 100 sites; reports take up to 24 hours and re-run every 24 hours.
- Site access reviews cover up to 100 sites from the report web view and 1,000 per calendar month from the site permissions report. Beyond that, PowerShell.
- Restricted Content Discovery is a site-level index property with real latency — above 500,000 items an update can take over a week to reflect in Copilot.
Quick facts
| Question | Answer |
|---|---|
| Does Copilot bypass permissions? | No. It honours existing SharePoint, OneDrive and Exchange permissions |
| Then why is oversharing a problem now? | Search needed a query and a guess. Copilot summarises everything the user can reach |
| What licence covers the tooling? | Microsoft 365 Copilot (one assigned licence enables SAM for admins), or the SAM Plan 1 add-on |
| First report to run | Content Management Assessment — SharePoint admin center, Advanced Management |
| Fastest containment control | Restricted Content Discovery on high-risk sites; changes no permissions |
| Hardest single problem | EEEU on individual files and folders, not just site membership |
| Realistic elapsed time | 4–6 weeks for a scoped population; 8–16 weeks for a full estate; 6 months with item-level EEEU sprawl |
| Is this a one-time project? | No. Assessment every 30 days; snapshots quarterly, activity reports monthly |
Why Copilot converts latent oversharing into an incident
Nothing about your permissions changes when you assign a Copilot licence. Microsoft is explicit: Copilot retrieves data from Microsoft Graph and respects existing permissions, sharing settings and policies. The tenant is exactly as exposed the day before you deploy as the day after.
What changes is the cost of discovery. Finding the salary workbook someone shared with "Everyone except external users" in 2021 used to require guessing it existed, guessing a matching search term, and scrolling past the noise. Enterprise search punished vague intent. That friction was never a control, but it functioned as one, and organisations have quietly relied on it for a decade. Copilot removes it three ways at once: it accepts vague natural-language intent, it reads across containers and summarises instead of returning links, and it answers with confidence, so a user who would never open an unfamiliar site reads a paragraph synthesised from it.
This is why "Copilot leaked our data" incidents are almost never Copilot defects. They are permission defects with a new witness. That framing matters commercially: this is not an AI project, it is an access-governance project that AI gave you a deadline for. Run it that way and the output also feeds SOC 2 evidence and insider-risk work.
One corollary: Copilot is also an oversharing detector. A small instrumented pilot with a fast triage channel teaches more in two weeks than a scripted permission crawl teaches in two months — deliberately, with a contained population, not accidentally with 8,000 people.
The Contain–Correct–Constrain Model
The Contain–Correct–Constrain Model is EPC Group's sequencing framework for pre-Copilot remediation. Its governing rule: you cannot correct fast enough to outrun a deployment date, so contain first and correct on your own schedule. Teams that invert this either miss the date or ship with the worst sites still discoverable.
| Phase | Objective | Primary controls | Exit test |
|---|---|---|---|
| 1 — Contain | Make the worst content undiscoverable without touching permissions | RCD; Purview DLP for Copilot; Archive on dead sites | High-risk sites return nothing in Copilot for a test user who should not see them |
| 2 — Correct | Remove access that should never have existed | Site access reviews; EEEU removal at site and item level; inheritance repair; ownership assignment | Exposure Register shows no unowned high-risk sites and no company-wide links on labelled content |
| 3 — Constrain | Make the defect non-recurring | Tenant sharing defaults; RAC at provisioning; mandatory site sensitivity labels; lifecycle and attestation policies | A newly provisioned site cannot reach the pre-remediation exposure state |
Two rules are non-negotiable. Containment is temporary and must have an expiry. Microsoft designs Restricted Content Discovery as an interim control and warns that excessive use degrades the completeness of Copilot answers — the value you are paying for. Every contained site needs a named owner and a review date. And constraint precedes broad rollout. Correcting 400 sites while users keep creating company-wide links buys you a treadmill.
Discovery: exactly which reports to run, and where
Run these in order. All live in the SharePoint admin center except where noted.
1. Content Management Assessment — Advanced Management → Start assessment. The hub, and the correct 2026 starting point. It runs five reports in one pass: inactive sites (no activity in 180 days), site ownership, broken inheritance, unrestricted internal sharing via EEEU, and unrestricted sharing links. Expect 2 to 72 hours by tenant size, and no action without consent. Re-run every 30 days.
2. Site permissions across your organization (snapshot) — Reports → Data access governance. Your baseline across every SharePoint and OneDrive site: which carry the broadest access, thousands of users, external guests, or EEEU. Run quarterly. It produces the number your sponsor will quote.
3. Sites and files shared via special SharePoint groups (snapshot) — the report most teams miss. Where report 2 names which sites are overshared, this names which items are effectively public through EEEU or Everyone, and how. That is what lets you script cleanup instead of waiting on 300 site owners.
4. Sharing links and Shared with 'Everyone except external users' (activity, last 28 days) — these catch oversharing as it happens. Run monthly. The EEEU report returns the top 100 sites; the detailed CSV extends to a million rows with administrator, template, privacy and sensitivity label.
5. Sensitivity labels for files and Purview DSPM data risk assessments — run both in parallel, not after. They overlay classification onto the same estate and flag overshared sites holding regulated content.
Two cautions. Reports will not run with concealed report data enabled — a Global Administrator must clear Display concealed user, group, and site names in all reports. And permissioned-user counts are not deduplicated: group, direct and link access are each counted. Rank with the number; never give it to an auditor.
The EEEU problem, and the order you fix it in
"Everyone except external users" is a built-in SharePoint group containing every internal user, present and future. It is the largest single source of enterprise oversharing, granted through two structurally different paths needing different fixes.
Path 1 — EEEU in site membership. A public site puts EEEU into owners, members or visitors, exposing every item. The easy case: one object, one owner, one decision.
Path 2 — EEEU on individual items. A user picks EEEU in the people picker on a file or folder inside an otherwise private site. The site looks locked down in every site-level report. The file is not. This produces the incidents, and it is why the item-level report matters.
Remediate in this order:
- Contain. Apply Restricted Content Discovery to the top EEEU sites carrying sensitive data. Permissions stay intact; discovery stops; nobody loses access to work in flight.
- Kill the source before the symptom. Turn off or restrict company-wide links and EEEU grants at tenant level. Cleaning items while the tap runs is wasted effort.
- Fix site membership. Remove EEEU from SharePoint groups on sites that should not be public; convert to Entra security groups. No security-group model? Stop and build one — usually the real long pole.
- Fix items with script, not people. Use the item-level report and SharePoint Online PowerShell for bulk removal. The SharePoint Advanced Management Administrator role exists for exactly this.
- Delegate the judgement calls. Where an administrator cannot legitimately decide, initiate site access reviews — compliance often prevents IT from seeing item-level detail, and owners can. Customise the email; an uncustomised request looks like phishing.
- Verify with a canary. Prompt Copilot from a deliberately low-privilege test account for the content you just remediated. If it answers, you are not done. "We turned it on Friday" is not evidence.
Control-to-licence map
This is the table the Microsoft blog cannot publish. Every control is native; the licence column is what actually blocks projects.
| Oversharing risk | Native control that mitigates it | Licence required |
|---|---|---|
| Sensitive site discoverable in Copilot during cleanup | Restricted Content Discovery (RCD) | Copilot licence (SAM) |
| Site reachable by anyone with the link or broad permissions | Restricted Access Control (RAC) — access only for a named Entra security or M365 group | Copilot licence (SAM) |
| No visibility into where broad permissions exist | Data access governance snapshot + activity reports | SAM for full reports; E5 alone gets activity reports capped at 10,000 sites, no remediation |
| EEEU on individual files and folders | Sites and files shared via special SharePoint groups report + PowerShell removal | Copilot licence (SAM) |
| IT cannot legally inspect item-level permissions | Site access review delegated to site owners | Copilot licence (SAM) |
| Ownerless sites with nobody accountable | Site ownership policy (minimum owner count, notification, enforcement) | Copilot licence (SAM) |
| Stale content producing wrong answers | Inactive site policy + Microsoft 365 Archive | SAM for the policy; Archive pay-as-you-go at $0.05/GB/month |
| Sensitive content grounding Copilot answers at all | Purview DLP for Microsoft 365 Copilot; sensitivity labels | E3 for foundational Purview; E5 for auto-labelling and DSPM depth |
| Uncontrolled site creation re-creating the problem | Restricted site creation | SAM Plan 1 add-on specifically — not the Copilot entitlement |
Underneath it all: a base subscription of Office 365 E3/E5/A5 or Microsoft 365 E1/E3/E5/A5, or the GCC equivalents. Our E3 vs E5 comparison works the Purview side; the Copilot pricing and licensing guide the Copilot side.
The remediation runbook: week 1, week 4, ongoing
Week 1 — contain and measure. Assign the SharePoint Advanced Management Administrator role. Clear the concealed-report-data setting. Start the assessment, the site permissions snapshot and the Purview DSPM assessment in parallel — they run for hours to days, so start them before planning anything. Apply Restricted Content Discovery to sites you already know are dangerous: HR, legal, corporate development, payroll, executive. Turn off anonymous "Anyone" links absent a documented business case. Stand up the Exposure Register — one row per site carrying owner, sensitivity, exposure vector, containment state, remediation owner and due date. That spreadsheet is the project.
Weeks 2–3 — correct the top of the list. Rank by the intersection of broad audience and sensitive content, never either alone; a public site of cafeteria menus is not a finding. Run the item-level report and script EEEU removal where the answer is unambiguous. Initiate site access reviews for the rest, using PowerShell above the 100-site cap. Resolve ownerless sites by policy, not email. Archive or delete dead sites — inactive content degrades answer quality as well as widening exposure.
Week 4 — constrain and gate. Set tenant sharing defaults to the least permissive setting the business tolerates, with link expiry. Require site sensitivity labels at provisioning so privacy and sharing follow the label, not the creator. Apply Restricted Access Control by default to business-critical sites. Configure inactive-site, ownership and attestation policies. Then run the gate.
Ongoing. Re-run the assessment every 30 days; snapshots quarterly, activity reports monthly. Lift RCD once a site is remediated — leaving it on degrades the answers you pay $30 per user per month for. Review the Exposure Register monthly in a governance forum.
The pre-Copilot go/no-go gate
Ship when every line is true for the population you are enabling, not the whole tenant. Gate per wave.
| # | Gate criterion | Evidence |
|---|---|---|
| 1 | Content Management Assessment completed within the last 30 days | Dashboard timestamp |
| 2 | Site permissions snapshot baseline captured and dated | Exported report in the Exposure Register |
| 3 | Every high-risk site is remediated or under Restricted Content Discovery | Exposure Register, zero rows "open" |
| 4 | Zero ownerless sites in the enabled population | Site ownership policy report |
| 5 | Company-wide links and EEEU grants disabled or restricted at tenant level | Sharing settings + change history report |
| 6 | Sensitivity labels applied to sites holding regulated data, driving privacy and sharing | Purview label policy + label report |
| 7 | Purview DLP for Copilot configured for content that must never ground an answer | DLP policy in enforce mode |
| 8 | Canary account test passes for at least ten named sensitive items | Dated prompts and responses |
| 9 | Purview audit enabled and Copilot interaction retention decided | Audit config + retention policy |
| 10 | Named triage channel and 24-hour SLA for user-reported surprises | Published runbook, staffed rota |
| 11 | Executive sponsor has signed the residual-risk statement | Signed one-pager |
Criterion 11 is not bureaucracy. Residual risk is never zero, and whoever owns it should know they own it — see our note on the CFO conversation about AI governance.
Effort drivers: what makes this four weeks versus six months
The variable is never tenant size. It is the shape of the mess.
Four to six weeks looks like: fewer than 2,000 sites; a working Entra security-group model; EEEU concentrated in site membership rather than items; ownership largely intact; one business unit. That is configuration plus a bounded cleanup.
Three to six months means at least three of these are true. Item-level EEEU sprawl — thousands of files shared organisation-wide inside private sites, unfixable at site level and unsafe to delegate. No group model — a decade of permissions granted to individuals, so there is nothing to migrate access to; a directory project wearing a SharePoint costume. Migrated legacy structures — file-share folder permissions with broken inheritance everywhere; you cannot break or reinherit permissions on a list or library above 100,000 items, so some must be restructured rather than repermissioned. Absent ownership — every review request bounces. Federated business units — no single administrator has authority, so remediation moves at the speed of negotiation. Regulatory constraint — legal or works councils limit what IT may inspect. Guest accumulation — years of unmanaged B2B invitations with standing access.
Budget three buckets: platform configuration (days), discovery and analysis (mostly elapsed waiting), and remediation (large, almost entirely human judgement). The licence covers none of the third. Firms quoting this as a licensing exercise are quoting the wrong project — see our delivery-partner risk analysis.
What breaks — failure modes
| Symptom | Root cause | Fix |
|---|---|---|
| RCD turned on but Copilot still returns the content | Site-level index property has not propagated; sites over 500,000 items can take more than a week | Wait and re-test with the canary account; do not assume same-day effect |
| Copilot answers get worse after remediation | RCD left on too many sites; Microsoft warns excessive use reduces available content | Lift RCD on every remediated site; time-box containment |
| Data access governance reports fail to generate | Concealed report data enabled in the Microsoft 365 admin center | Global Administrator clears "Display concealed user, group, and site names in all reports" |
| Site access reviews sent but ignored, or cannot be sent estate-wide | Default email reads like phishing; the web view caps at 100 sites and 1,000 reviews per month | Customise sender, title and message and escalate via the owner's manager; use PowerShell above the cap |
| Cannot break inheritance to fix a library | Lists and libraries over 100,000 items cannot break or reinherit permissions | Restructure into smaller scopes, or repermission at item level |
| Plan assumed Restricted SharePoint Search as the holding control | It is retiring; new enablement blocked from July 31, 2026 | Re-plan on Restricted Content Discovery; if RSS is on, remediate and disable it |
| Restricted site creation cannot be enabled | It requires the SAM Plan 1 add-on, not the Copilot entitlement | Buy the add-on, or control creation through Entra group-creation policy |
| Guest users reappear in remediated sites weeks later | Anyone in the organisation can invite guests by default | Restrict invitations to admins and the Guest Inviter role; add recurring access reviews |
What changed in 2026
- Restricted SharePoint Search is retiring. New enablement is blocked starting July 31, 2026. It was always a short-term measure, capped at a 100-site allow list and explicitly "not a security boundary." Restricted Content Discovery replaces it.
- Content Management Assessment is now the front door to SAM, replacing the menu-based "All features" navigation with a one-click assessment returning categorised findings and recommended actions.
- An item-level exposure report shipped. Sites and files shared via special SharePoint groups identifies which files and folders are effectively public through EEEU or Everyone — enabling scripted cleanup instead of owner-by-owner delegation.
- A dedicated admin role exists. SharePoint Advanced Management Administrator carries all SharePoint Administrator rights plus metadata visibility across content and permission removal at scale.
- Microsoft published a real blueprint. Secure and govern Microsoft 365 Copilot: foundational deployment guidance organises the work into remediate oversharing, set up guardrails, meet regulations — the closest first-party equivalent to a sequence.
- Entitlement paths widened. SAM reaches tenants three ways: any assigned Copilot licence, the SAM Plan 1 add-on, or Microsoft 365 E7 (the Frontier Suite: E5 plus Copilot plus Entra Suite plus Agent 365). Site attestation policies also went generally available.
Where to go next
If your Copilot go-live date is set and your Exposure Register is not, the date is the risk. EPC Group runs pre-Copilot oversharing remediation as a fixed-scope engagement: assessment, Exposure Register, containment, item-level EEEU cleanup, and a signed go/no-go gate. Start with SharePoint consulting or data governance consulting.
Related: SharePoint migration services · My Sites in SharePoint · SharePoint vs Google Drive · Box vs SharePoint · SharePoint network drive mapping · Microsoft 365 E3 vs E5 · Copilot vs ChatGPT Enterprise · Microsoft consulting firms · Microsoft Frontier Company · EPC Group
Frequently asked questions
Does Microsoft 365 Copilot bypass SharePoint permissions?
No. Copilot retrieves content through Microsoft Graph and honours existing permissions, sharing settings and policies. Nobody sees anything in Copilot they could not already open directly. What changes is discoverability: content that was technically reachable but practically buried becomes reachable through a plain-language question.
Do I need SharePoint Advanced Management to fix oversharing?
Not strictly, but without it you work blind. Microsoft 365 E5 alone shows Data Access Governance activity reports capped at 10,000 sites, with no snapshot reports and no remedial actions. SAM adds baseline reports, site access reviews, Restricted Access Control and Restricted Content Discovery, and is included with a Copilot licence.
What is EEEU and why does it matter so much?
"Everyone except external users" is a built-in SharePoint group containing every internal user, including future employees. Content reaches it two ways: a public site, or a file or folder shared with EEEU through the people picker. The second is invisible in site-level reports and causes most Copilot oversharing incidents.
Should I turn on Restricted SharePoint Search while I clean up?
No. Restricted SharePoint Search is retiring and new enablement is blocked starting July 31, 2026. It was capped at 100 sites and was never a security boundary. Use Restricted Content Discovery on specific high-risk sites instead, and remove it as each site is remediated.
How long does pre-Copilot remediation take?
Four to six weeks for a bounded population in a tenant with a working security-group model and site ownership largely intact. Three to six months where EEEU sprawl exists at item level, permissions were granted to individuals rather than groups, or no single administrator has authority across business units.
Can we deploy Copilot to a pilot group before remediation is finished?
Yes, and it is usually the better plan. Gate per wave rather than per tenant: contain the known-sensitive sites, enable a small instrumented group, staff a triage channel with a 24-hour response, and treat every surprising answer as a free finding. Never enable thousands of users with no containment and no triage path.
What does this cost beyond licensing?
The licences buy tooling, not remediation. Budget three buckets: platform configuration (days), discovery and analysis (mostly elapsed waiting — assessments run 2 to 72 hours), and remediation, which is human judgement and the largest by an order of magnitude. Related pay-as-you-go meters: Microsoft 365 Archive $0.05/GB/month, Backup $0.15/GB/month, extra SharePoint storage $0.20/GB/month (as published at time of writing (July 2026)).
What is the single highest-value first action?
Apply Restricted Content Discovery to sites you already know are sensitive — HR, legal, payroll, corporate development, executive — before any report finishes. It changes no permissions, disrupts nobody, and removes the highest-consequence exposure on day one while discovery completes.
Sources and verification
- Microsoft Learn — Configure a secure and governed foundation for Microsoft 365 Copilot
- Microsoft Learn — Secure and govern Microsoft 365 Copilot: Foundational deployment guidance
- Microsoft Learn — Get ready for Microsoft 365 Copilot and agents with SharePoint Advanced Management
- Microsoft Learn — What is SharePoint Advanced Management?
- Microsoft Learn — Prerequisites for SharePoint Advanced Management
- Microsoft Learn — SharePoint Advanced Management features in Microsoft 365 Copilot licenses
- Microsoft Learn — Assess your organization's content management status (Content Management Assessment)
- Microsoft Learn — Data access governance reports for SharePoint and OneDrive sites
- Microsoft Learn — Monitor "Everyone except external users" (EEEU) sharing with the EEEU activity report
- Microsoft Learn — Initiate site access reviews for data access governance reports
- Microsoft Learn — Restrict discovery of SharePoint sites and content (Restricted Content Discovery)
- Microsoft Learn — Restrict access to a SharePoint site (Restricted Access Control)
- Microsoft Learn — Restricted SharePoint Search (retirement notice)
- Microsoft Learn — Manage site lifecycle policies
- Microsoft Learn — Microsoft 365 Copilot data and compliance readiness
- Microsoft Learn — Minimum requirements to deploy Microsoft 365 Copilot
- Microsoft Learn — Learn about Microsoft Purview Data Loss Prevention for Microsoft 365 Copilot
- Microsoft Learn — Data Security Posture Management: oversharing assessments
- Microsoft Learn — Apply principles of Zero Trust to Microsoft 365 Copilot
- Microsoft Learn — Configure external collaboration settings for B2B in Microsoft Entra External ID
- Microsoft Learn — Secure external access to Microsoft Teams, SharePoint, and OneDrive with Microsoft Entra ID
- Microsoft Learn — SharePoint limits (unique permission scopes, list and library limits)
- Microsoft Learn — Pay-as-you-go services and pricing (Microsoft 365 Archive, Backup, SharePoint storage rates)
- Microsoft — Microsoft 365 Copilot pricing
- Microsoft SharePoint Blog — Sesha Mani, What's new in Content Governance in SharePoint, OneDrive, and Teams for AI era, May 7, 2025 (the citation this article replaces)
