Unauthenticated / standalone web sessions will no longer maintain an isolated separate history vault. All conversation history merges into the tenant-bound Graph memory and Purview auditing log.
The legacy toggle enabling unauthenticated web grounding without commercial data protection (CDP) token assertion is decommissioned. All web queries route through Entra ID SSO with tenant encryption.
Old browser-injected sidecar extensions and standalone manifest connectors are deprecated in favor of declarative Copilot Studio agents and Microsoft Teams declarative app packages.
Complete checklist items to update the unified tenant readiness metrics prior to enforcement cutoff.