PL-900 Practice Question: Demonstrate the capabilities of Microsoft Copilot Studio
A company is using Microsoft Copilot Studio to build a copilot for employee onboarding. The copilot must authenticate users to provide personalized information. The company uses Microsoft Entra ID (now Microsoft Entra ID) for identity management. Which authentication method should the administrator configure in Copilot Studio?
⚠ Common exam trap
It's easy for candidates to confuse SharePoint as an authentication method because it is a common data source, but authentication in Copilot Studio is always handled by an identity provider like Microsoft Entra ID, not by SharePoint itself.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Microsoft Entra ID (Azure AD) authentication
Microsoft Entra ID (Azure AD) authentication is the correct choice because the company uses Microsoft Entra ID for identity management, and Copilot Studio natively supports this authentication method to provide personalized, authenticated experiences. This allows the copilot to verify user identities via OAuth 2.0 and OpenID Connect, enabling access to user-specific data and context during onboarding.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Anonymous access
Why it's wrong here
Anonymous access grants no user identity, so the copilot cannot retrieve personalised onboarding information. It is tempting because anonymous access removes sign-in friction and suits public-facing bots, but the stem requires authenticated, per-employee content tied to Microsoft Entra ID accounts.
- ✗
Manual authentication
Why it's wrong here
Manual authentication requires the administrator to supply an authorisation URL and credentials, bypassing Microsoft Entra ID sign-in entirely, so personalised identity claims are unavailable. It is tempting because manual auth suits external or custom identity providers, but the stem already mandates Microsoft Entra ID.
- ✓
Microsoft Entra ID (Azure AD) authentication
Why this is correct
Microsoft Entra ID authentication lets the copilot sign users in with their existing organisational credentials, returning identity claims the bot uses to personalise onboarding content. It integrates directly with the company's current identity provider without separate credential stores.
- ✗
SharePoint authentication
Why it's wrong here
SharePoint authentication only verifies access to SharePoint resources, not Microsoft Entra ID identities, so it cannot deliver the personalised onboarding data tied to the employee's Entra ID account. It is tempting because SharePoint hosts onboarding content, and it would fit a copilot scoped solely to SharePoint document retrieval without per-user identity.
Go deeper
Related to this question
About these practice questions
One of 701 original PL-900 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This PL-900 practice question is part of Courseiva's free Microsoft certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PL-900 exam.