
Model Context Protocol (MCP) connectors that link Microsoft 365 Copilot to a variety of internal and external systems are gaining the ability to create, update, and delete content in authorized systems – directly within Copilot Chat.
Expanding beyond read-only access to external systems is a significant advance that puts more power into customers’ AI tools. Customers could use the new features to update a record in a CRM system or turn a support escalation email into a ticket within a project tracking tool. Either update could be launched from the Copilot interface.
The new, bidirectional updating features are being added to Microsoft 365 Copilot “federated connectors,” which tap the widely supported MCP to access data while that data remains in its original location.
Third parties deliver connectors to a wide range of data sources, spanning 16 categories that include collaboration, CRM, data analytics, and IT management. Check out the full range of connector categories and specific data sources within each. The scope of connectors gives a clear indicator of the potential to more deeply integrate Copilot as an interface to take actions in a broad array of corporate workflows.
Dynamic Updates
Federated connectors — from Microsoft or partners — are published in the Connectors Gallery and they help Copilot users unlock more relevant and timely insights across their workflows.
Federated connectors’ new write, update, and delete actions operate according to these rules:
- Actions run in the third-party data source on behalf of the signed-in user, limited by that user’s permissions. Operating through the connector, Copilot can change only what the user is already permitted to change in the source system.
- Copilot sends the connector the information it needs to complete the action and returns the outcome to the user. No data is indexed into Microsoft 365.
- Connectors that create, update, or delete data initially require the user’s explicit approval. Actions that the user declines aren’t performed. Copilot shows a confirmation card that names the connector and the tool it wants to use. The user then chooses between options of allow once, allow for conversation, always allow, or cancel
- The actions available through a connector depend on the tools exposed by the connector publisher. Publishers can add or change tools over time.
Admin Views and Controls
Each federated connector’s details page in the Microsoft 365 admin center includes a Tools section that lists the tools available to users in the organization, including tools that can modify or delete data. Write, update, and delete tools are part of the connector and aren’t enabled separately.
Admins can enable or disable a connector for the tenant and limit it to specific groups. Disabling a connector removes all of its tools. If an already-enabled connector includes tools that create, update, or delete data, those tools are available to Copilot.
The new features enabling users to create, update or delete data will become available in October for Microsoft 365 Copilot chat, Copilot agents, Cowork, and Copilot in Word, Excel, PowerPoint, and Outlook applications.
More on Connectors and MCP:
- Latest Microsoft Connectors Documentation
- AI in Financial Services: Anthropic Connects to Core Data Sources
- With Pre-Built Connectors, Industry Platforms Should Drive Faster AI Impact
- Anthropic Connectors Integrate Google Productivity Apps Natively Into Claude

Community Summit North America is the largest independent innovation, education, and training event for Microsoft business applications delivered by Expert Users, Microsoft Leaders, MVPs, and Partners. Register now to attend Community Summit in Nashville, TN from October 11-15.



