HomeTechnologyCopilot Actions is coming to Windows 11, but Microsoft’s own safety warning is raising eyebrows

Copilot Actions is coming to Windows 11, but Microsoft’s own safety warning is raising eyebrows

Microsoft’s new Copilot Actions feature in Windows 11 is creating buzz, but not all of it is positive. The company has issued warnings about security risks, including the possibility of malicious prompts tricking the AI into harmful actions. Here’s what users should know before enabling it.

November 24, 2025 / 12:52 IST
Story continues below Advertisement
Microsoft Copilot
Microsoft Copilot

Microsoft’s upcoming “Copilot Actions” feature on Windows 11 is drawing attention for reasons the company probably didn’t expect. The tool is currently available only in Insider builds as part of Copilot Labs, and it is switched off by default. Users also need admin access to turn it on. That alone hints that this isn’t a casual feature meant for everyone just yet.

But the bigger concern is what Microsoft itself admits. In a newly updated support document, the company warns that features like Copilot Actions come with what it calls “novel security risks.” One of the main threats highlighted is cross-prompt injection, where malicious content hidden in documents, websites or even UI elements can trick the AI into ignoring its original instructions. According to Microsoft, this could lead to unexpected and serious consequences, including data theft or even the installation of malware on your system.

Story continues below Advertisement

In other words, a Windows feature meant to assist you could potentially be manipulated to harm your device. Microsoft is blunt enough to say, “We recommend that you only enable this feature if you understand the security implications.” And when you try to turn it on, Windows shows you a warning pop-up explaining that the feature is experimental and may affect your PC’s performance or security.

What makes people uneasy is the level of access Copilot Actions receives once enabled. It gets read and write access to your Desktop, Documents, Downloads, Pictures, Videos and Music folders. That is essentially your entire personal digital life. While Microsoft says it has safeguards in place, such as requiring user approval for actions, running tasks in isolated workspaces and logging every activity, many feel it still gives an unpredictable AI far too much freedom.