Following up on this weekend's Copilot architecture overhaul, Microsoft is now making Entra Agent IDs mandatory for all AI agents and initiating metered billing. Elsewhere on the docket: Nvidia introduces new hardware-level guardrails for enterprise AI, and the Supreme Court's 6-3 ruling on voter roll verification reveals the technical risks of relying on federal immigration databases.
Building on yesterday's coverage of Copilot Autopilot agents receiving native Entra ID identities, Microsoft has now made these directory objects mandatory for all Copilot Studio and Azure AI Foundry agents, removing the opt-out mechanism available since July 2026. Under this architecture, autonomous agents receive first-class directory objects, Exchange mailboxes, and Teams access. As part of the broader shift to metered execution we tracked over the weekend, agentic workloads will now be priced at $0.01 per Copilot Credit, and org-wide agent publishing requires explicit administrative approval via the M365 Admin Center Agent Registry.
Why it matters
Assigning distinct directory objects to non-human workers solves a persistent audit ambiguity for enterprise compliance officers, but it introduces immediate tenant overhead. Managed service providers must now audit legacy agents built prior to May 2026, migrate them in the Power Platform Admin Center, and enforce Conditional Access policies. Furthermore, tenant administrators must closely monitor directory object limits—which default to 50,000 objects in standard environments—to prevent agent creation failures as citizen development scales.
Microsoft announced that Copilot in SharePoint will reach General Availability on September 30, 2026. Concurrently, the preview PowerShell cmdlets used to manage Copilot scope—including KnowledgeAgentScope and KnowledgeAgentSelectedSitesList—will be officially retired on November 1, 2026. Following deprecation, tenant administrators must manage Copilot site availability using native Site AI settings in the SharePoint Admin Center combined with Restricted Content Discovery controls.
Why it matters
SharePoint administrators and consultants must immediately update their tenant governance runbooks to reflect the shift from scripted PowerShell controls to UI-driven Site AI settings. Relying on deprecated cmdlets after November 1 risks leaving sensitive corporate site collections exposed to Copilot indexing. Implementing Restricted Content Discovery is critical for preventing overshared organizational data from surfacing in AI search results while tenant permission audits are underway.
Fleshing out the structural overhaul of Copilot we noted on Friday, Microsoft is officially consolidating the platform's user experiences into three primary hubs: Home, Code, and Autopilot. Home unifies standard chat and delegated multi-step 'Cowork' tasks directly inside Office apps, while Code allows users to build custom internal applications using natural language backed by the sandboxed Copilot Managed Runtime we highlighted previously. Autopilot introduces the persistent background agents capable of multi-day execution without active user prompting.
Why it matters
By moving Copilot from a sidecar chatbot into a persistent execution layer, Microsoft is changing how enterprise workflows are orchestrated. However, because advanced features like Autopilot and Code draw on the usage-based Copilot Credits we've been tracking rather than flat monthly seat subscriptions, IT leaders face substantial cost-management hurdles. Technology consultants must guide enterprise clients in establishing strict spending guardrails and plugin controls in Agent 365 before enabling these metered capabilities broadly.
Nvidia announced a two-tier security framework, OpenShell and Sentry, designed to enforce strict boundary guardrails on autonomous AI agents at both the software and hardware levels. OpenShell provides an open-source software verification layer that validates agent system calls against enterprise policy. Complementing it, Sentry runs natively on Nvidia GPU silicon to monitor agent execution logs and reasoning chains in real time, quarantining rogue or out-of-bounds agents within milliseconds.
Why it matters
As enterprise AI agents gain autonomous tool-use permissions across corporate databases, relying solely on prompt engineering or model fine-tuning leaves critical systems vulnerable to intent drift and sandbox escapes. Nvidia's hardware-level monitoring introduces a deterministic circuit breaker that operates below the application layer. This architecture establishes a new baseline for enterprise AI security, forcing software developers to build agents that comply with hardware-enforced policy provers.
Providing more detail on Friday's emergency unsigned order that we tracked over the weekend, the U.S. Supreme Court ruled 6-3 to lift a lower-court injunction regarding federal voter verification. The decision officially allows the Department of Homeland Security to resume state access to the Systematic Alien Verification for Entitlements (SAVE) database, enabling state election officials to conduct bulk inquiries against federal immigration and Social Security Administration records five weeks before the midterms.
Why it matters
The high court's decision grants state election administrators an immediate federal data matching tool, but highlights technical risks regarding database latency and false-positive error rates. Historical SAVE implementations in states like Texas flagged thousands of potential noncitizens who were later confirmed to be naturalized U.S. citizens due to lag times in federal record updates. Election offices must establish clear administrative review procedures to prevent naturalized voters from facing sudden registration challenges before Election Day.
Following up on the joint law enforcement disruption of the EvilTokens platform we covered earlier this week, new details reveal the Phishing-as-a-Service operation charged $1,500 upfront and $500 monthly on Telegram. Before its infrastructure was seized, EvilTokens integrated AI models to automatically scan the 12,000 captured mailboxes, map organizational hierarchies via Microsoft Graph, and generate targeted wire-fraud lures within minutes of initial compromise.
Why it matters
The detailed autopsy of the EvilTokens platform demonstrates exactly how threat actors combine device-code authentication abuse with automated AI reconnaissance to bypass traditional controls. Because the operation extracted Primary Refresh Tokens and session cookies without requiring fake login pages, standard security awareness training remains insufficient. Security teams must enforce Conditional Access policies that strictly restrict or disable device code authentication across unmanaged tenant endpoints.
Real-world 10-to-90 percent fast-charging tests of the 2027 Chevrolet Bolt demonstrated a 38-minute charge time, down from 83 minutes on the legacy 2022 model. The performance gain stems from a transition to lithium-iron-phosphate (LFP) battery chemistry, which supports a peak charging rate of 148 kW and an average draw of 94 kW. The updated vehicle also features a factory-integrated NACS connector for direct access to Tesla Superchargers without adapters.
Why it matters
Sluggish DC fast-charging was the defining operational bottleneck of the previous-generation Bolt, restricting its utility for long-distance travel. Achieving an average 94 kW charging rate paired with native NACS access turns the entry-level EV into a viable cross-country commuter. Furthermore, the adoption of durable LFP chemistry provides owner-operators with improved thermal stability and full 100% daily charging tolerance without rapid degradation.
The Massachusetts Supreme Judicial Court issued a unanimous decision upholding the constitutionality of the MBTA Communities Act, rejecting a legal challenge brought by the town of Marshfield. The ruling confirms that suburban municipalities served by MBTA transit lines cannot use local zoning ordinances to block mandatory as-of-right multi-family housing districts. Compliance data shows over 10,000 housing units have entered regional development pipelines under the law as of September 2026.
Why it matters
This definitive legal ruling closes the primary courtroom route for municipal holdouts attempting to bypass state transit-oriented density mandates across Greater Boston. Developers can now move forward with by-right multi-family projects in compliant towns without facing discretionary local board delays. For the regional tech and commercial economy, enforcing compliance helps expand housing supply around key transit corridors.
SpaceX is scheduled to launch Starship Flight 14 from Starbase, Texas, on Monday, September 28, attempting the vehicle's first orbital insertion mission. Operating under an updated FAA Part 450 license split into Orders A-1 and A-2, the mission utilizes Booster 21 and Ship 41 to deploy 26 Starlink V3 satellites into a 32-degree inclination orbit. Following an eight-hour orbital coast phase, Ship 41 will execute a controlled deorbit burn targeting splashdown in the South Pacific, while SpaceX forgoes a tower catch for Booster 21 in favor of a Gulf landing burn.
Why it matters
Transitioning Starship from suborbital trajectories to true orbital operations validates the heavy-lift architecture needed for future commercial payloads and NASA Artemis lunar missions. Successfully executing an orbital engine relight and managing thermal loads during atmospheric reentry are essential milestones for vehicle reusability. The deployment of 26 next-generation Starlink V3 satellites also accelerates orbital network bandwidth capacity.
Microsoft has halted the distribution of optional maintenance update KB5002907 after system administrators reported that it deactivated perpetual Office 2016 and Office 2019 installations. Intended to resume updates for out-of-date Microsoft 365 setups, the update's migration script failed on endpoints running mixed 32-bit Office applications alongside 64-bit Access Runtimes, triggering 'Unlicensed Product' warnings or stripping the Office suite completely.
Why it matters
Unannounced update regressions that strip legacy perpetual licenses create severe operational disruption for IT administrators managing hybrid desktop estates. Managed service providers must audit their Windows Update deployment rings to ensure KB5002907 is blocked until a revised package is issued. Affected endpoints can generally be remediated by manually re-entering product keys or executing account repair sign-ins.
Directory Identity Mandates Extend to Non-Human AI Agents Enterprise AI agents are transitioning from loose app registrations and shared service accounts to mandatory, fully provisioned Entra Agent IDs. Microsoft now assigns dedicated directory objects, Exchange mailboxes, and storage to autonomous agents, making them auditable in tenant logs but introducing new licensing and object quota constraints.
Consumption Metering Layers Over Fixed SaaS Seat Subscriptions As persistent agents like Autopilot and Cowork execute multi-day background tasks, vendors are shifting away from pure per-user seat pricing. The introduction of metered Copilot credits and FinOps tracking controls forces enterprise IT to budget for variable compute consumption alongside traditional licensing.
Hardware and Silicon-Level Guardrails Reinforce Software Policies Software-level prompts and alignment rules are proving insufficient to contain autonomous agent execution. The rollout of hardware-enforced monitoring systems like Nvidia's OpenShell and Sentry highlights an industry pivot toward deterministic, millisecond-level isolation of rogue agentic processes.
On-Premises Infrastructure Security Risks Accelerate Cloud Migrations Active zero-day exploitation and urgent federal patching directives for legacy, self-hosted SharePoint deployments underscore the persistent operational tax of self-hosted collaboration suites compared to centrally managed cloud services.
Emergency Judicial Orders Shape Midterm Election Machinery The U.S. Supreme Court's emergency docket intervention allowing state access to federal SAVE citizenship databases five weeks before elections illustrates how high-court rulings are dictating local voter roll maintenance and administrative procedures.
What to Expect
2026-09-28—CISA emergency patching deadline for actively exploited SharePoint Server vulnerability CVE-2026-65660.
2026-09-28—SpaceX scheduled launch of Starship Flight 14 targeting orbital insertion and Starlink V3 deployment.
2026-09-30—General availability rollout begins for Microsoft Copilot in SharePoint alongside retiring PowerShell controls.
2026-11-01—Deprecation date for preview PowerShell controls managing Copilot availability in SharePoint.
2026-11-30—Trump Media & Technology Group convertible debt repayment deadline.
How We Built This Briefing
Every story, researched.
Every story verified across multiple sources before publication.
🔍
Scanned
Across multiple search engines and news databases
356
📖
Read in full
Every article opened, read, and evaluated
125
⭐
Published today
Ranked by importance and verified across sources
10
— The Tenant Desk
🎙 Listen as a podcast
Subscribe in your favorite podcast app to get each new briefing delivered automatically as audio.
Apple Podcasts
Library tab → ••• menu → Follow a Show by URL → paste