Skip to content

Commit bc39374

Browse files
authored
Merge pull request #4551 from MicrosoftDocs/revert-3624-diannegali-phishingagent
Revert "phishing triage capabilities"
2 parents 04c0acd + 0035d71 commit bc39374

23 files changed

+13
-378
lines changed

defender-xdr/phishing-triage-agent.md

Lines changed: 11 additions & 358 deletions
Large diffs are not rendered by default.

defender-xdr/security-copilot-agents-defender.md

Lines changed: 2 additions & 20 deletions
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,7 @@ ms.topic: concept-article
1818
search.appverid:
1919
- MOE150
2020
- MET150
21-
ms.date: 05/12/2025
21+
ms.date: 04/28/2025
2222
appliesto:
2323
- Microsoft Defender XDR
2424
- Microsoft Sentinel in the Microsoft Defender portal
@@ -41,20 +41,6 @@ The [Phishing Triage Agent](phishing-triage-agent.md) helps security operations
4141

4242
The agent is triggered when a user in your organization submits a phishing incident. The agent autonomously analyzes the submitted email to classify them as either phishing or not phishing based on its training and the context of the organization.
4343

44-
#### Permissions
45-
46-
The agent requires the following permissions to operate:
47-
48-
- Security data basics (read)
49-
- Email & collaboration content (read)
50-
- Email & collaboration metadata (read)
51-
- Security Copilot (read)
52-
- Alerts (manage)
53-
54-
#### Identity
55-
56-
The agent operates in the context of the identity you associate with it. Creating the agent's identity and assigning the appropriate permissions to the agent is the required before starting the setup.
57-
5844
#### Products
5945

6046
Tenants must have the following products enabled to use the agent:
@@ -68,8 +54,4 @@ The following plugins must be enabled in Security Copilot:
6854

6955
- Microsoft Defender XDR
7056
- Microsoft Threat Intelligence
71-
- Phishing Triage Agent
72-
73-
#### Roles with access
74-
75-
The **Security Administrator** role is required to set up and manage the agent. Users with the same permissions as the Phishing Triage Agent can view the agent's activity and results, and provide feedback on the agent's classification verdict.
57+
- Phishing Triage Agent
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.

0 commit comments

Comments
 (0)