We are currently taking our first steps in developing and deploying custom agents using Microsoft Copilot Studio, and I would like to clarify the licensing and access model for end users.
Our scenario:
-
A limited number of users build and manage custom agents in Copilot Studio.
-
The agent is published within our corporate Microsoft environment.
-
The agent uses Dataverse tables and Power Automate flows to retrieve and process information.
-
A larger group of end users will only interact with the published agent; they will not create or manage agents.
-
These end users have our standard Microsoft 365 setup and access to Copilot Chat, but do not necessarily have an individual Microsoft 365 Copilot or Copilot Studio license.
My questions are:
-
Do these end users need an additional Copilot Studio or Microsoft 365 Copilot license to fully use the published custom agent?
-
If not, can their usage be centrally covered through the Copilot Credits/capacity or pay-as-you-go model configured for the Copilot Studio/Power Platform environment?
-
If two users access exactly the same published agent, ask the same question, and have identical permissions to the underlying Dataverse data and Power Automate flows, should the agent provide the same functionality and comparable response quality regardless of whether one user has a Microsoft 365 Copilot license and the other only has standard Copilot Chat access?
-
What are the minimum permissions and/or licenses an end user needs for the Power Platform environment, Dataverse tables, connections and Power Automate flows used by the agent?
-
Is the following deployment model therefore supported?
A limited number of licensed Copilot Studio makers create and manage the agents, while a much larger group of standard Microsoft 365 users consume the published agents, with agent consumption being centrally billed through Copilot Studio Credits/capacity or pay-as-you-go.
The reason for my question is that during testing we have observed significantly different results between users accessing the same published agent. One user receives a detailed, properly grounded answer, while another user receives a much shorter and less useful response that appears not to use the underlying data sources.
I am therefore trying to determine whether this difference can be caused by the end user's license, or whether we should focus entirely on environment access, authentication, Dataverse security roles, connection permissions, or other configuration settings.
Any clarification or experience with this type of enterprise deployment would be greatly appreciated.

Report
All responses (
Answers (