Agent Tutorials — Build & Govern Agents
TL;DR: A hands-on learning path for Microsoft 365 security and governance practitioners who want to build and govern agents — not just run audits. It runs from your first declarative agent through knowledge governance, Copilot Studio lifecycle, Microsoft Entra Agent ID, MCP and the Claude SKILL.md spec.
These tutorials are different from our audit skills: a skill is a read-only SKILL.md you paste into a host to assess a tenant. A tutorial teaches you how to build a compliant agent — knowledge curation, lifecycle, identity, and governance.
The learning path
| # | Tutorial | Host | Level |
|---|---|---|---|
| 1 | Agent Fundamentals | Conceptual | Intro |
| 2 | Declarative Agents 101 | M365 Copilot | Intro |
| 3 | Agents Toolkit & TypeSpec | Agents Toolkit | Intermediate |
| 4 | Knowledge Governance | M365 Copilot + Copilot Studio | Intermediate |
| 5 | Migrating to Copilot Studio | Copilot Studio | Intermediate |
| 6 | Copilot Studio Governance & Lifecycle | Copilot Studio | Intermediate |
| 7 | MCP Servers for M365 | MCP | Advanced |
| 8 | Entra Agent ID & Zero Trust | Microsoft Entra | Advanced |
| 9 | Agent 365 SDK | Agent 365 SDK | Advanced |
| 10 | Agent Skills for Claude | Claude SKILL.md | Advanced |
Where to start
If you are new to agents, work through 1 → 2 → 4 → 6 → 8. Security teams who only want the governance essentials can jump straight to Knowledge Governance (4), Copilot Studio Governance & Lifecycle (6) and Entra Agent ID & Zero Trust (8).