author: barclayn
31 May: Entra documentation adds security guidance and Copilot playbooks; PIM for Groups is explicitly marked Preview
The period is documentation-led rather than a confirmed service rollout. The strongest additions are a Microsoft Security Copilot workflow for Entra recommendations, governance-focused Entra Copilot procedures, and new Entra ID guidance on redirect-URI hygiene and Global Administrator access to Azure subscriptions. An updated ID Governance page documents eligible PIM for Groups membership and ownership in access packages and explicitly labels that capability Preview. No supplied change announces general availability, retirement, a Message Center event, or a runtime policy change; the PIM/access-package timing reference is best read as documentation clarification.
- New documentation for Entra recommendations in Microsoft Security Copilot
Security Copilot · Fundamentals
A new Security Copilot page documents using Microsoft Security Copilot and Microsoft Entra skills to investigate how to move a tenant toward a secure and healthy state. This establishes a new Learn workflow, not a confirmed feature launch, preview, or general-availability announcement.
- Copilot guidance expands into identity-governance investigations
ID Governance · Fundamentals
New ID Governance content describes using Microsoft Security Copilot and Microsoft Entra skills to investigate identity-based security incidents in Entitlement Management; a companion page covers extracting and analyzing Access Reviews data. These are task-specific procedures, with no stated change to Entitlement Management, Access Reviews, or Copilot behavior.
- New Entra ID guidance targets dangling or abandoned redirect URIs
Entra ID · Microsoft identity platform
A new Microsoft identity platform page focuses on the requirement that app registrations not have dangling or abandoned domain redirect URIs. The item establishes a documented control area, but supplies no detail about enforcement, remediation, or a change in redirect-URI processing.
A new Entra ID page states that Global Administrators do not have standing access to Azure subscriptions. This is a least-privilege and access-model guidance point, not evidence in this feed that existing tenants were migrated or that subscription permissions changed.
- PIM for Groups access-package instructions updated and explicitly marked Preview
ID Governance · Governance
The updated ID Governance page describes assigning eligible group membership or ownership in access packages through Privileged Identity Management for Groups, including enabling PIM for a group, adding the group to an access package, and verifying eligible assignments. The capability is explicitly labeled Preview; no general-availability date or retirement is supplied.
This period briefing was generated by AI from the tracked Microsoft Learn and Message Center changes.
26 updates
Microsoft Entra ID
10 updates- **Service plans included (friendly names)**: A list of service plans (friendly names) in the product that correspond to the string ID and GUID
Jwt Claims Customization
Updatedauthor: cilwerner
- [Attribute Definition Administrator](~/identity/role-based-access-control/permissions-reference.md#attribute-definition-administrator)
Whats New
Updated>Get notified about when to revisit this page for updates by copying and pasting this URL: `https://learn.microsoft.com/api/search/rss?search=%22Release+notes+-+Azure+Active+Directory%22&locale=en-us` into your  feed reader.
author: barclayn
author: barclayn
author: barclayn
Kerbf5 Tutorial
Updated* F5 BIG-IP system is provisioned with APM modules (LTM is optional)
1. Navigate to the [Cloud Partner Program enrollment page](https://partner.microsoft.com/dashboard/account/v3/enrollment/joinnow/basicpartnernetwork/new).
Microsoft Entra ID Protection
1 updateCopilot Security Entra
Updated:::image type="content" source="./media/copilot-entra-risky-user-summarization/risky-user-details.png" alt-text="Screenshot that shows the ID Protection risky user summarization details.":::
Microsoft Entra ID Governance
9 updatesAs an access package manager, you can assign which role you want to provide a user for a group within an access package. By [managing groups with Privileged Identity Management(PIM)](../id-governance/privileged-identity-management/groups-discover-groups.md), you're able to enhance security by designating that group access happens just-in-time. This article describes how to enable PIM for a group, adding the group to an access package, and verifying eligible assignments are available.
Pim Apis
Updated- PIM alerts for Azure Resources in ARM API - Preview.
This article serves as a reference for Microsoft Entra ID behavior when assignment periods of an access package and PIM policy dont align.
Any users with existing assignments to the access package will automatically become members (or owners) of this group or team after it's added. For more information, see [when changes are applied](#when-changes-are-applied).
A Microsoft Entra documentation page was updated: Entra Suite Scenario.
Use Microsoft Security Copilot and Microsoft Entra skills to quickly investigate identity-based security incident.
A Microsoft Entra documentation page was updated: Customer intent: As an identity administrator, I want to learn how to use Microsoft Security Copilot to investigate insights within entitlements management in Microsoft Entra so that I can quickly respond to identity-based security incidents..
Learn how to use Microsoft Entra Copilot to extract and analyse access review data
Copilot Entra Access Reviews
Updated1. Navigate to **Identity Governance** > **Access reviews**.
Microsoft Entra Verified ID
2 updatesAn ongoing challenge for helpdesk is verifying the identity of callers seeking help, especially in remote interactions via phone, chat, or email. Traditional methods such as personally identifiable information (PII) and knowledge-based authentication are no match for today’s sophisticated attackers, who leverage phishing, social engineering, and even AI-powered voice cloning to bypass defences. The consequences are serious: under pressure, helpdesk agents may unintentionally expose sensitive data or authorize fraudulent actions.
Our Identity Verification (IDV) partner network extends Microsoft Entra Verified ID's capabilities to help you build seamless end-user experiences. With Verified ID, you can integrate with IDV partners to enable scenarios like remote onboarding with government ID checks using identity verification and proofing services.
Microsoft Entra Global Secure Access
2 updatesauthor: HULKsmashGithub
Troubleshoot Connectors
Updated> [!NOTE]
Security Copilot + Entra
2 updatesUse Microsoft Security Copilot and Microsoft Entra skills to quickly investigate how to evolve your tenant to a secure and healthy state.
> [!NOTE]
