Skip to main content America 250 AI Economy Institute Cybersecurity Sustainability Microsoft on the Issues AI for Good Lab Communities Customer Security and Trust Energy, Connectivity, and Sustainability Open Data Trusted Technology Reports Hub US AI Diffusion Report Global AI Diffusion Report Environmental Sustainability Report Microsoft Digital Defense Report Microsoft Impact Summary Responsible AI Transparency Report Microsoft 365 Azure Copilot Windows Surface XBOX Deals Small Business Support Windows Apps Outlook OneDrive Microsoft Teams OneNote Microsoft Edge Moving from Skype to Teams Computers Shop XBOX Accessories VR & mixed reality Certified Refurbished Trade-in for cash XBOX Game Pass Ultimate PC Game Pass XBOX games PC games Microsoft AI Microsoft Security Dynamics 365 Microsoft 365 for business Microsoft Power Platform Windows 365 Small Business Digital Sovereignty Azure Microsoft Developer Microsoft Learn Support for AI marketplace apps Microsoft Tech Community Microsoft Marketplace Software companies Visual Studio Microsoft Rewards Free downloads & security Education Gift cards Licensing Unlocked stories View Sitemap

Natasha Crampton​

Chief Responsible AI Officer

Share

Natasha Crampton, Chief Responsible AI Officer, reflects on the people, practices, and systems behind our responsible AI work, and how this report helps show that work in action.​

Scaling adaptable governance

AI has the potential to benefit people, organizations, and communities in every part of the world if we earn and sustain trust in how we develop and deploy AI. For Microsoft, that means adapting with rigor as technology and risks continue to evolve rapidly—staying grounded in core commitments while investing in the strategies, tools, and teams that enable our customers and partners to use our AI technologies with justified confidence.

Our AI principles

Microsoft’s AI principles continue to serve as the north star of our approach to AI governance. Over multiple waves of innovation and the rise of agentic AI, these principles have informed the creation of our Responsible AI Standard and guided its evolution to today.

Diagram showing Microsoft Responsible AI principles. Fairness, Reliability and Safety, Privacy and Security, and Inclusiveness are supported by Transparency and Accountability as foundational principles.

How we develop, release, and operate AI responsibly​

At Microsoft, we align this work with the NIST AI Risk Management Framework (RMF) functions of Govern, Map, Measure, and Manage, complemented by a central pre-release oversight process to verify that risks have been appropriately addressed before release.

Click any node to explore

Explore the framework

Select Map, Measure, Manage, or Govern to discover Microsoft’s 2025-2026 progress on each risk management function.

Map


We enhanced AI risk taxonomies; introduced new agentic AI threat modeling practices; and launched an emerging tech program to address new risks from frontier AI capabilities.

Measure


We expanded internal evaluation capabilities in risk coverage and tools; established partnerships with government institutes to advance evaluation; and leveraged a new external testing framework for Copilot Health.

Manage

We implemented new or expanded guardrails, including prompt injection defenses and safety classifier coverage; established new templates for transparency documentation; and strengthened governance capabilities for agents.

Govern

We re-engineered our Responsible AI Standard; developed new tooling; and invested in our Responsible AI Governance Community.

What we have accomplished at scale 

Delivered responsible AI training to nearly 20,000 engineers, policymakers, and customers.

Reviewed 100+ enacted and proposed laws and engaged over 80 of our employees from 30+ teams to shape our re-engineered Responsible AI Standard.

Consulted with over 250 licensed clinicians from over two dozen countries as well as everyday users to assess the clarity, helpfulness, and safety of Copilot Health pre-release.

Advanced AI reliability measurement across more languages, expanding MLCommons AILuminate benchmarking capacity with research on 6 locales across Asia and launching PazaBench with coverage of 39 African languages.

Two entrepreneurs relax in a casual office and discuss strategy.

Copilot Health helps users explore health questions through a dedicated experience within Copilot. Microsoft combined clinical and safety evaluations, credible-source grounding, accessibility reviews, and a phased release to support responsible deployment.

Two entrepreneurs relax in a casual office and discuss strategy.

Copilot Health helps users explore health questions through a dedicated experience within Copilot. Microsoft combined clinical and safety evaluations, credible-source grounding, accessibility reviews, and a phased release to support responsible deployment.

Meeting the agentic moment

AI systems are evolving, becoming more capable and interconnected, and executing multi-step actions. Linking together multiple models, tools, services, and applications to complete increasingly complex tasks expands the risk landscape.

In response, we strengthened our governance approach. This evolution includes a comprehensive re-engineering of our Responsible AI Standard, enabling agility as AI capabilities and risks continue to emerge, as well as a focus on practical tools to enable our customers and the ecosystem.

How we’ve adapted the Responsible AI Standard to an evolving landscape

Two new chapters in the Standard clearly separate developer and deployer responsibilities, reflecting how AI moves from development into real-world use.

Requirements are now tailored across AI models, platform services, and applications, and safeguards match how agentic capabilities weave through the AI tech stack.

The Standard now separates core requirements from scenario‑specific ones, applying additional safeguards where AI use poses higher potential risk.

The refreshed Standard integrates previously standalone policies and more closely aligns with security requirements like the Security Development Lifecycle.

A recruiter interviews a job applicant in an open office space.

MAI-Image-1 and Image-2 generate high-quality images from text prompts. This case study shows how Microsoft supports safe deployment by layering training, testing, filtering, and monitoring safeguards across the model and product lifecycle.​

A recruiter interviews a job applicant in an open office space.

MAI-Image-1 and Image-2 generate high-quality images from text prompts. This case study shows how Microsoft supports safe deployment by layering training, testing, filtering, and monitoring safeguards across the model and product lifecycle.​

Agentic capabilities

Microsoft’s AI technologies span the technology stack—from models to the platforms that support their deployment to the applications that bring AI to life for users.

Agentic capabilities apply across layers of the AI tech stack. AI agents and multi-agent systems are enabled by models that are optimized for agentic use and may operate as part of platform services or applications, performing multi-step tasks by managing how models interact with tools, data, or environments.

The updated Responsible AI Standard sets requirements that address how agentic capabilities weave through the AI tech stack and integrates appropriate safeguards throughout the AI lifecycle.

Layered AI stack showing AI models, AI platform services, and AI applications, with agentic capabilities spanning all layers.
Meeting on the go.

Microsoft built Copilot Cowork to agentically complete workplace tasks across Microsoft 365, combining user approvals, permission-based access, safety guardrails, and phased deployment. 

Meeting on the go.

Microsoft built Copilot Cowork to agentically complete workplace tasks across Microsoft 365, combining user approvals, permission-based access, safety guardrails, and phased deployment. 

Lessons
from deploying AI

Our commitment to responsible AI extends beyond the AI technologies that Microsoft builds and operates. The updated Responsible AI Standard introduces a new Deployer Chapter that establishes requirements for how we deploy third-party AI applications at Microsoft, helping ensure risks are managed and people remain at the center of deployment decisions.

Key steps in our AI deployment governance

Assess the provider’s documentation for the application’s capabilities, limitations, safeguards, and monitoring features to support responsible deployment.

Review deployment-specific risks, implement mitigations and oversight, and ensure that AI supports human judgment and accountability.

Monitor performance, user feedback, and incidents after launch to identify issues, take corrective action, and continuously improve.

Inform users to support responsible use, including about the application’s intended uses and limitations and the safeguards we’ve implemented.

Workflow showing Assess, Deploy, and Inform stages, with Detect and Respond as a continuous activity spanning deployment and communication.
GitHub Copilot: AI that builds with you

Microsoft uses GitHub Copilot to accelerate software development while applying responsible AI practices, including phased deployment, human oversight, and integrated security safeguards.

GitHub Copilot: AI that builds with you

Microsoft uses GitHub Copilot to accelerate software development while applying responsible AI practices, including phased deployment, human oversight, and integrated security safeguards.

Investing in standards and tools

Our commitment to responsible AI extends to how we support and learn from the ecosystem. We invest to prepare customers, partners, and the public to use AI technologies that are trustworthy and beneficial and to strengthen our feedback loops with experts and user communities.

Microsoft invests in foundational research and collaborative partnerships to strengthen the methodologies that underpin responsible AI.

Microsoft actively contributes to industry and multistakeholder forums to rapidly advance the shared practices, tools, and standards needed to define and implement effective AI governance.

Microsoft invests in compliance, tools, and training to help customers and partners innovate with AI while advancing governance, security, and accountability.

Microsoft partners globally to strengthen AI literacy, support young people and older adults, and advance how AI reflects the needs and perspectives of people around the world.

Microsoft tunes into everyday users, AI developers, and experts in AI and other domains, helping ensure our AI governance practices reflect broad experiences and insights.

Corporate executives discussing business in a conference room

Microsoft has expanded our partnerships with government research institutions in the US, UK, Singapore, and Australia to further advance evaluation methodologies, better understand human-AI interaction risks, and support multilingual AI capabilities and safety.

Corporate executives discussing business in a conference room

Microsoft has expanded our partnerships with government research institutions in the US, UK, Singapore, and Australia to further advance evaluation methodologies, better understand human-AI interaction risks, and support multilingual AI capabilities and safety.