In a business environment, there is no security unless you pay for premium licenses for every user that touches a managed environment. That’s $30 per user per month for basic security. If you have one agent that 1000 employees may use, that’s baseline $30k per month. If you don’t have a managed environment, the anybody in your organization with a copilot license (not copilot studio) can login to the default environment, create agents, and share them indiscriminately. There is no middle ground.
This is all 100% incorrect btw.
https://www.microsoft.com/en-au/microsoft-365-copilot/pricing/enterprise
What information exactly do you think copilot would be capturing about someone else in an online multiplayer game that is cause for concern that isn't already being captured by companies?