You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: copilot/microsoft-365-ai-disclaimers.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -29,9 +29,9 @@ To turn on the Copilot AI disclaimer, you need to be assigned the AI Administrat
29
29
30
30
## Turn on Microsoft 365 Copilot AI disclaimers
31
31
32
-
1. In the [Microsoft 365 admin center](https://admin.microsoft.com), go to **Copilot** -> **Settings** -> **Copilot actions** -> **Copilot AI disclaimer**.
32
+
1. In the [Microsoft 365 admin center](https://admin.microsoft.com), go to **Copilot** -> **Settings** -> **View all** -> **Copilot AI disclaimer**.
33
33
2. On the **Copilot AI disclaimer** page, select **Standard** or **Bold** to select the font for the disclaimer.
34
-
3. Optional: Create a page with your organization’s internal AI policy and add the URL under Provide a web address that's available from the tooltip. Or leave this field blank if you want to keep the default Microsoft Copilot AI disclaimer.
34
+
3. Optional: Create a page with your organization’s internal AI policy and add the URL under **Provide a web address that is available from the tooltip**. Or leave this field blank if you want to keep the default Microsoft Copilot AI disclaimer.
35
35
4. Review the disclaimer and select **Save** to apply the setting.
|Yammer |https://www.yammer.com/office365|Yammer Online, Yammer login | Automatic or can manually add | Published, Draft, Scheduled, Excluded, Expired, Suggested |Yammer is a collaboration tool that helps you connect with colleagues. | Microsoft Suggests, Microsoft Recommends | Name of the admin | Unique ID ||
162
+
|Viva Engage |https://www.yammer.com/office365|Viva Engage Online, Viva Engage login | Automatic or can manually add | Published, Draft, Scheduled, Excluded, Expired, Suggested |Viva Engage is a collaboration tool that helps you connect with colleagues. | Microsoft Suggests, Microsoft Recommends | Name of the admin | Unique ID ||
Copy file name to clipboardExpand all lines: copilot/watermarks.md
+4-5Lines changed: 4 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -15,14 +15,14 @@ ms.collection:
15
15
- must-keep
16
16
hideEdit: true
17
17
ms.update-cycle: 180-days
18
-
ms.date: 02/24/2026
18
+
ms.date: 03/27/2026
19
19
---
20
20
21
21
# Add watermarks to content generated or altered by using AI in Microsoft 365
22
22
23
23
To help provide additional transparency about what content has been generated or altered by using AI in Microsoft 365, watermarks can be added to videos and audio content. A policy setting controls your organization’s ability to add a visual or audio watermark to video and audio content that your users generate or alter by using AI in Microsoft 365.
24
24
25
-
Starting in the second half of February 2026, visual or audio watermarks can be added to video and audio content that your users generate or alter by using AI in Microsoft 365. You need to [enable a policy setting](#to-turn-on-watermarks-by-using-cloud-policy) for watermarks to be added to video and audio content. Your organization is always responsible for following the [Microsoft Enterprise AI Services Code of Conduct](/legal/ai-code-of-conduct), including not generating or sharing deceptive AI content.
25
+
Visual or audio watermarks can be added to video and audio content that your users generate or alter by using AI in Microsoft 365. You need to [enable a policy setting](#to-turn-on-watermarks-by-using-cloud-policy) for watermarks to be added to video and audio content. Your organization is always responsible for following the [Microsoft Enterprise AI Services Code of Conduct](/legal/ai-code-of-conduct), including not generating or sharing deceptive AI content.
26
26
27
27
Here are two examples:
28
28
@@ -52,8 +52,7 @@ For information about images, see [Watermarks for images](#watermarks-for-images
52
52
To turn on watermarks for video and audio content that your users generate or alter by using AI in Microsoft 365, you need to use the "Include a watermark when content from Microsoft 365 is generated or altered by AI" policy. This policy is available only in [Cloud Policy service for Microsoft 365](/microsoft-365-apps/admin-center/overview-cloud-policy).
53
53
54
54
> [!NOTE]
55
-
> - This policy is available in Cloud Policy as of February 12, 2026.
56
-
> - This policy isn’t available to United States government customers using Microsoft 365 (or Office 365) Government Community Cloud (GCC), GCC High, or DoD offerings.
55
+
> This policy isn’t available to United States government customers using Microsoft 365 (or Office 365) Government Community Cloud (GCC), GCC High, or DoD offerings.
57
56
58
57
If you want to add a watermark to video and audio content, you need to set this policy to **Enabled**. If you set this policy to **Disabled** or **Not configured**, a visual or audio watermark isn’t added. This policy doesn’t apply to images.
59
58
@@ -64,7 +63,7 @@ Regardless of how you configure this policy, [additional information is added to
64
63
65
64
## Watermarks for images
66
65
67
-
The "Include a watermark when content from Microsoft 365 is generated or altered by AI" policy doesn’t apply to images. Instead, your users will be able to turn on watermarks for images by going to **Settings & Privacy** > **Privacy** at [https://myaccount.microsoft.com](https://myaccount.microsoft.com). We anticipate this capability will be available by the end of March 2026.
66
+
The "Include a watermark when content from Microsoft 365 is generated or altered by AI" policy doesn’t apply to images. Instead, your users will be able to turn on watermarks for images by going to **Settings & Privacy** > **Privacy**> **Data options**at [https://myaccount.microsoft.com](https://myaccount.microsoft.com).
68
67
69
68
> [!NOTE]
70
69
> - If you don’t want your users to be able to generate images by using AI in Microsoft 365, you can set the "Control access to Designer Image Generation" policy to **Enabled** in [Cloud Policy](/microsoft-365-apps/admin-center/overview-cloud-policy).
Copy file name to clipboardExpand all lines: microsoft-365/admin/security-and-compliance/gdpr-compliance.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -238,7 +238,7 @@ Microsoft 365 for business can help you with the GDPR process in the following w
238
238
239
239
-**Discover**: An important step to GDPR compliance is knowing what data you have.
240
240
241
-
-**Manage**: Controlling access to data and managing its use is an integral part of GDPR. Microsoft 365 for business protects business data based on policies you want to apply to devices. Device management is vital in an age where employees work remotely. Microsoft 365 for business includes device management features that make sure data is protected across all devices. For example, you can specify that all Windows 10 devices in your business are protected via Windows Defender.
241
+
-**Manage**: Controlling access to data and managing its use is an integral part of GDPR. Microsoft 365 for business protects business data based on policies you want to apply to devices. Device management is vital in an age where employees work remotely. Microsoft 365 for business includes device management features that make sure data is protected across all devices. For example, you can specify that all Windows 10 devices in your business are protected via Microsoft Defender.
242
242
243
243
-**Protect**: Microsoft 365 for business is designed for security. Its device management and data protection controls work across your business network, including remote devices, to help keep data secure. Microsoft 365 for business offers controls such as privacy settings in Microsoft 365 productivity apps and encryption of documents. With Microsoft 365 for business, you can perform GDPR compliance monitoring to make sure you have the right level of protection set.
Copy file name to clipboardExpand all lines: microsoft-365/admin/security-and-compliance/m365b-devices-basic-mobility-security-overview.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -221,7 +221,7 @@ The settings in the following table are available only on the **New-DeviceConfig
221
221
|_WLANEnabled_||||✔|Disables Wi-Fi on devices.|
222
222
|_WorkFoldersSyncUrl_||||✔|Specifies the Work Folders URL on a Windows Server that's used to synchronize company resources on devices. For more information about Work Folders, see [Work Folders overview](/windows-server/storage/work-folders/work-folders-overview).|
223
223
224
-
<!--- Do the SmartScreen/AV settings for Windows apply to Windows Defender? --->
224
+
<!--- Do the SmartScreen/AV settings for Windows apply to Microsoft Defender? --->
225
225
226
226
For information about configuring policies in PowerShell, see [Use PowerShell to create policies in Basic Mobility and Security](m365b-devices-basic-mobility-security-policies-configure.md#use-powershell-to-create-policies-in-basic-mobility-and-security).
Copy file name to clipboardExpand all lines: microsoft-365/admin/security-and-compliance/m365bp-devices-protection.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -55,7 +55,7 @@ The following types of device protection policies are available in Business Prem
55
55
- Linux
56
56
-**[App Control for Business policies](/intune/intune-service/protect/endpoint-security-app-control-policy#get-started-with-app-control-for-business-policies)**: Manage approved apps for Windows devices with App Control for Business policies and Managed Installers. Supported platforms:
57
57
- Windows
58
-
-**[Attack surface reduction](/intune/intune-service/protect/endpoint-security-asr-policy)**: Targets behavior typically used to infect computers, and helps secure removable devices. Uses Windows Defender antivirus on Windows devices. Supported platforms:
58
+
-**[Attack surface reduction](/intune/intune-service/protect/endpoint-security-asr-policy)**: Targets behavior typically used to infect computers, and helps secure removable devices. Uses Microsoft Defender Antivirus on Windows devices. Supported platforms:
59
59
- Windows and [Configuration Manager](/intune/configmgr/core/understand/introduction) on Windows.
60
60
-**[Disk encryption policies](/intune/intune-service/protect/endpoint-security-disk-encryption-policy)**: Manage built-in disk and folder-level encryption on Windows and macOS devices. Supported platforms:
Copy file name to clipboardExpand all lines: microsoft-365/enterprise/additional-office365-ip-addresses-and-urls.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -64,7 +64,7 @@ Apart from DNS, these instances are all optional for most customers unless you n
64
64
|15|**Authentication and identity FQDNs** <p> The FQDN `secure.aadcdn.microsoftonline-p.com` needs to be in your client's Internet Explorer (IE) or Edge Trusted Sites Zone to function.||Trusted Sites|
65
65
|16|**Microsoft Teams FQDNs** <p> If you are using Internet Explorer or Microsoft Edge, you need to enable first, and third-party cookies and add the FQDNs for Teams to your Trusted Sites. This is in addition to the suite-wide FQDNs, CDNs, and telemetry listed in row 14. See [Known issues for Microsoft Teams](/microsoftteams/known-issues) for more information.||Trusted Sites|
66
66
|17|**SharePoint Online and OneDrive for Business FQDNs** <p> All '.sharepoint.com' FQDNs with '\<tenant\>' in the FQDN need to be in your client's IE or Edge Trusted Sites Zone to function. In addition to the suite-wide FQDNs, CDNs, and telemetry listed in row 14, you need to also add these endpoints.||Trusted Sites|
67
-
|18|**Yammer** <br> Yammer is only available in the browser and requires the authenticated user to be passed through a proxy. All Yammer FQDNs need to be in your client's IE or Edge Trusted Sites Zone to function.||Trusted Sites|
67
+
|18|**Viva Engage** <br> Viva Engage is only available in the browser and requires the authenticated user to be passed through a proxy. All Viva Engage FQDNs need to be in your client's IE or Edge Trusted Sites Zone to function.||Trusted Sites|
68
68
|19|Use **[Microsoft Entra Connect](/azure/active-directory/hybrid/)** to sync on-premises user accounts to Microsoft Entra ID.|See [Hybrid Identity Required Ports and Protocols](/azure/active-directory/hybrid/reference-connect-ports), [Troubleshoot Microsoft Entra connectivity](/azure/active-directory/hybrid/tshoot-connect-connectivity), and [Microsoft Entra Connect Health Agent Installation](/azure/active-directory/hybrid/how-to-connect-health-agent-install#outbound-connectivity-to-the-azure-service-endpoints).|Outbound server-only traffic|
69
69
|20|**[Microsoft Entra Connect](/azure/active-directory/hybrid/)** with 21 ViaNet in China to sync on-premises user accounts to Microsoft Entra ID.|`*.digicert.com:80` <BR> `*.entrust.net:80` <BR> `*.chinacloudapi.cn:443` <br> `secure.aadcdn.partner.microsoftonline-p.cn:443` <br> `*.partner.microsoftonline.cn:443` <p> Also see [Troubleshoot ingress with Microsoft Entra connectivity issues](https://docs.azure.cn/zh-cn/active-directory/hybrid/tshoot-connect-connectivity).|Outbound server-only traffic|
70
70
|21|**Microsoft Stream** (needs the Microsoft Entra user token). <br> Microsoft 365 Worldwide (including GCC)|`*.cloudapp.net` <br> `*.api.microsoftstream.com` <br> `*.notification.api.microsoftstream.com` <br> `amp.azure.net` <br> `api.microsoftstream.com` <br> `az416426.vo.msecnd.net` <br> `s0.assets-yammer.com` <br> `vortex.data.microsoft.com` <br> `web.microsoftstream.com` <br> TCP port 443|Inbound server traffic|
Copy file name to clipboardExpand all lines: microsoft-365/enterprise/contoso-mdm.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -57,7 +57,7 @@ This is how Contoso set up their mobile device management infrastructure:
57
57
- Device encryption to help prevent unauthorized access.
58
58
- A six-digit PIN or password.
59
59
- An inactivity-timeout period.
60
-
- Antivirus and malware protection, and signature updates with Windows Defender on Windows 11 devices.
60
+
- Antivirus and malware protection, and signature updates with Microsoft Defender on Windows 11 devices.
61
61
- Automatic updates on Windows 11 devices that include the latest security updates.
62
62
- Pushing certificates to managed devices.
63
63
- A clear separation of business and personal data. Users or admins can selectively wipe corporate data from the device, while leaving personal data such as pictures, personal email accounts, and personal files untouched.
Copy file name to clipboardExpand all lines: microsoft-365/enterprise/m365-dr-commitments.md
+2-2Lines changed: 2 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -83,12 +83,12 @@ The following customer data is stored at rest in the _Local Region Geography_:
83
83
- Microsoft 365 Groups
84
84
- Exchange public folders
85
85
- Microsoft Teams chats and channel messages
86
-
-Yammer user and community messages
86
+
-Viva Engage user and community messages
87
87
- Customer Data copied and stored in Exchange Online hidden mailboxes
88
88
- Teams channel messages
89
89
- Teams chats
90
90
- Teams private channel messages
91
-
-Yammer user and community messages
91
+
-Viva Engage user and community messages
92
92
- SharePoint, OneDrive, Exchange Online and Microsoft Teams follow the data residency commitments for those services. Refer to [Exchange Online](m365-dr-service-exo.md), [SharePoint](m365-dr-service-spo.md), and [Microsoft Teams](m365-dr-service-teams.md) workload data residency pages for more details.
0 commit comments