Ask AI (MSFT Agent)

NAVIGATION  Select the sparkle icon in the upper-right corner of the SaaS Alerts portal, next to the Help icon, to access Ask AI. Ask AI is also available in Microsoft Teams after your organization is connected, a Teams administrator makes the app available, and access is granted through the SaaS Alerts portal.

Overview

Ask AI (MSFT Agent) is a conversational AI assistant built into Kaseya SaaS Alerts for Microsoft 365 environments. Administrators can use Ask AI to ask natural-language questions, investigate issues, generate reports, and request changes related to:

  • Identity and access

  • Email and collaboration

  • Threat protection

  • Compliance

  • Cloud app security

  • Fortify posture data

Ask AI provides a conversational interface for working with connected Microsoft 365 organizations and Fortify posture information. Before making a change, Ask AI presents the proposed plan for review and approval.

Open Ask AI

You can open Ask AI in either of the following ways:

  • Select the sparkle icon in the upper-right corner of the SaaS Alerts portal. The icon appears between the Help icon and the user profile area.

  • If the New here? callout appears, select Show me or Tell me what the MSFT Agent can do.

The New here? callout also provides these options:

  • Remind me next login: Closes the callout and displays it again the next time you sign in.

  • Dismiss: Closes the callout. The callout does not appear the next time you sign in.

    NOTE  You can still open Ask AI by selecting the sparkle icon after dismissing the callout.

Accept the AI Chat Terms of Use

The first time you open Ask AI, selecting the sparkle icon, Show me, or Tell me what the MSFT Agent can do opens the AI Chat – Terms of Use dialog before you can access the AI Assistant panel.

To accept the terms of use:

  1. Review the AI Chat – Terms of Use dialog.

  2. Select I Agree to continue, or select Cancel to close the dialog without enabling the chat.

  3. After you select I Agree, the AI Assistant panel opens. You can then enter a question or select a suggested prompt.

If you select Cancel, Ask AI does not open. You are prompted to review the terms again the next time you try to open Ask AI.

After you accept the terms, selecting the sparkle icon opens the AI Assistant panel directly on subsequent visits.

Explore the AI Assistant panel

Use the AI Assistant panel to enter questions and requests and review the assistant’s responses.

When the panel opens, it displays suggested prompts to help you get started. For example, you can:

  • Request a summary of critical alerts

  • Check your Microsoft Secure Score

  • Find users who do not have multifactor authentication enabled

  • Ask what Microsoft 365 tenant configurations the assistant can perform

When you ask what Ask AI can do, the assistant provides a walkthrough organized by product area.

Responses may include:

  • Plain-text answers

  • Numbered options that you can select by replying with the corresponding number

  • Suggested-reply buttons

  • An organization picker when a request could apply to more than one connected Microsoft 365 organization

  • Progress updates for long-running requests

Depending on your request, Ask AI may provide an answer, ask you to identify an organization, run a read-only investigation, prepare a report or export, or present a proposed change for your review and approval.

Ask AI is also available in Microsoft Teams after your organization is connected, a Teams administrator makes the app available, and access is granted through the SaaS Alerts portal. For more information, see Connect Ask AI to Microsoft Teams.

Main panel options

Option Description
Message box Enter a question or request in plain language, such as asking about a user’s sign-ins or requesting a permission grant.

Suggested reply buttons

Select a suggested response to send it to the assistant.

Organization picker

Select the connected Microsoft 365 organization to which your question or request applies. This option appears when the assistant needs additional organization information.

Feedback control

Rate a response, select a reason for the rating, and provide an optional comment.

Examples of what you can ask

Depending on the connected services, available permissions, and applicable licenses, you can ask Ask AI to:

  • Investigate why a user cannot sign in or why a policy is not taking effect

  • Review recent sign-ins or audit and activity information

  • Run KQL hunting queries against Microsoft Defender

  • Identify who has access to a SharePoint site, including the individual members of SharePoint groups

  • Investigate whether mailbox access came from the mailbox owner, a user with delegated access, or an application with ongoing permission

  • List, create, update, or delete Microsoft Defender for Cloud Apps policies

  • Request Send As or Full Access permission grants

  • Review Microsoft 365 license assignments and measured service activity

  • Review Fortify posture information across connected organizations

  • Generate a report or export

For conceptual Microsoft questions that are not specific to your environment, Ask AI can search and read official Microsoft documentation.

Proposed changes are presented through the preview-and-approve flow before Ask AI makes the change. Some actions depend on the organization’s available permissions and licenses.

Approval card

When a request would make a change in Microsoft 365, Ask AI displays an approval card that previews the proposed plan. The card lists the steps in the plan, the organization it targets, and whether each step creates, updates, or deletes something.

When one detail remains unresolved and Ask AI can use a clearly safer choice, Ask AI identifies that choice on the approval card.

Ask AI does not make the proposed change until you approve the plan. In Microsoft Teams, typing yes does not authorize a change. You must use the buttons on the approval card.

Field Description
Step list Lists the actions that the proposed plan will perform, in order, including actions required to support a later step. For example, a plan can create an app registration before creating its service principal.

Organization label

Identifies the Microsoft 365 organization against which the plan will run.

Color coding

Indicates whether a step creates, updates, or deletes an object.

Approve and Decline buttons

Approve runs the plan. Decline discards it. In Microsoft Teams, these buttons are the only way to authorize or decline the proposed change.

Export

When you explicitly request a complete report or dataset, Ask AI does not intentionally shorten the results. If the information is too large for one file, Ask AI can provide it in CSV format or split it across multiple files, such as one file for each organization.

In Microsoft Teams, an export is saved to your OneDrive. Ask AI provides a card that you can use to open or download the file.

If you decline a Teams export, the file is not saved to OneDrive, but the contents remain available in the chat.

Prerequisites and limitations

Review the following prerequisites and limitations before using Ask AI:

  • The first time you open Ask AI, you must review and accept the AI Chat Terms of Use, also referred to as the SaaS Alerts AI-Powered Chat Panel Beta Program Agreement, before you can send a message.

  • Using Ask AI in Microsoft Teams requires your organization to be connected to Microsoft Teams, a Teams administrator to make the Fortify Agent app available in the Teams admin center, and access to be granted through the SaaS Alerts portal. Publishing the app to the Teams catalog alone does not make it available for installation. Availability changes can take up to 24 hours to take effect.

  • Root-cause investigations are read-only. Ask AI cannot make changes during an investigation, and each investigation is limited to the Microsoft 365 organization named in the request.

  • Some Fortify actions depend on the available license. If an action is not covered by the license, Ask AI reports the licensing requirement instead of attempting a workaround.

  • The Microsoft 365 activity report used for license-usage questions measures activity in Exchange, OneDrive, SharePoint, Teams, Skype for Business, and Yammer. Services such as Intune, Microsoft Entra ID P1 or P2, Microsoft Defender, Microsoft Purview, Power Platform, Project, and Visio are reported as unmeasured instead of unused.

  • If Ask AI identifies a required Microsoft permission that the connection does not have, Ask AI can provide a Microsoft consent link. After consent is completed, the conversation resumes without requiring you to start over.

How to

FAQ