← Previous week
Next week →
Week in brief

Windows Autopatch adds approval controls as Security Copilot joins E5/E7 plans

This week brought two substantive Message Center announcements: Windows Autopatch is gaining more granular update governance, while Security Copilot is now included with Microsoft 365 E5 and E7 plans. The Autopatch rollout runs from September 1 through October 15, 2026; Security Copilot requires no purchase or administrator action for inclusion.

  • Rolling out September 1–October 15, 2026, the enhancements add customizable automatic or manual approvals, deferral settings, update pausing, and detailed per-device reporting for Windows quality, .NET Framework, and quick machine recovery updates. Administrators can use these controls to manage update timing and monitor device-level results more precisely.

  • Security Copilot is now included in Microsoft 365 E5/E7 plans, with agents integrated across Defender, Entra, Intune, Purview, and the Security Copilot portal. Organizations receive monthly Security Compute Units and developer tools; no purchase or action is needed, while additional paid features can be explored separately or organizations can opt out through support.

For Intune administrators

Autopatch administrators can use customizable automatic or manual approvals, deferrals, update pausing, and per-device reporting for Windows quality, .NET Framework, and quick machine recovery updates. Microsoft 365 E5/E7 organizations receive monthly Security Compute Units and developer tools, with agents integrated across Defender, Entra, Intune, Purview, and the Security Copilot portal; additional paid features remain optional.

This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.

Updates this week

1
1
Daily Intune.Admin.News

Get daily email updates

Get a concise summary of the latest Microsoft Intune updates delivered straight to your inbox.

Loading the secure signup form…