Microsoft 365 Copilot Business runs $21 per user per month on an annual term, discounted to $18 through December 31, 2026, and it only surfaces files and messages the person asking could already open.
That last half of the sentence is the part worth slowing down on. Price is the easy part. Most of the Copilot conversations I have with owners never get past it, and the one that matters is about what the thing can reach once you switch it on.
So here is the honest state of it from where I sit, running an IT company in Congers since 2004.
Almost Nobody Is Asking Us For This
One client has asked us for Copilot. One. We got them a subscription and it works fine.
That is not the picture you get from the coverage, and I would rather tell you the truth than sell you the trend. What clients are asking about, regularly now, is ChatGPT and Claude. Someone on staff started using one, it saved them an hour, and now the owner wants to know whether that was a terrible idea. Copilot usually enters the conversation as our answer to that question rather than as the thing they walked in asking for. That order matters.
Bias disclosed, by the way. We sell Microsoft 365 management and we benefit when clients consolidate onto a platform we already run. Read the rest with that in mind. We are straight about the same bias in our Google Workspace comparison, which is honest about where Google is the better answer.
What You Get For The Money
Start with the naming. There are two Copilots and people mix them up constantly, which matters because one of them is free and one of them is not.
Copilot Chat comes with the Microsoft 365 Business plans you probably already pay for. It answers questions off the public web. It cannot open your files. The paid tier is the one that connects to your own content through Microsoft Graph, which is what makes it useful and also what makes it worth thinking about carefully.
| Capability | Copilot Chat (included) | Microsoft 365 Copilot (paid) |
|---|---|---|
| Answers from the public web | Yes | Yes |
| Reads your SharePoint, OneDrive, Outlook, and Teams content | No | Yes, within your own permissions |
| Sits inside Word, Excel, PowerPoint, and Outlook | No | Yes |
| Summarizes a Teams meeting you sat through | No | Yes |
| Prompts and responses excluded from foundation model training | Yes | Yes |
The gap between those two columns is the entire product. You are paying for tenant grounding. Everything else is packaging.
What It Costs In 2026
Microsoft restructured this for smaller companies, and the numbers moved. The $30 figure that still shows up in most articles is the enterprise lineage of the product. Small businesses buy a different SKU now. Different name, different price.
| Plan | Annual, per user/month | Monthly billing |
|---|---|---|
| Microsoft 365 Copilot Business (add-on to a plan you already have) | $18.00 promotional, $21.00 standard | $25.20 |
| Microsoft 365 Business Standard with Copilot | $23.50 | $28.20 |
| Microsoft 365 Business Premium with Copilot | $32.00 | $38.40 |
Two things about that table. The $18 is promotional and Microsoft has it running through December 31, 2026, so budget the $21. And the add-on row is an add-on, meaning it stacks on top of whatever base license that user already carries. A Business Premium seat plus Copilot lands north of $40 all in. Budget the whole stack.
Prices move. I am printing these because a post titled “what it costs” that refuses to name a number is useless, but check Microsoft’s current business pricing before you sign anything. This category has been repriced twice already.

The Question I Would Ask Before The Price Question
Access is the whole thing. Here is what genuinely worries me about AI at work, and it has very little to do with Copilot specifically.
If someone copies a paragraph into a chatbot, that is one thing. Bad practice, limited blast radius. It is a different proposition entirely when you hand an AI tool directory access to your tenant and it can reach every mailbox, every Teams message, and every SharePoint site in the company. No matter what a vendor writes in its terms, there is a limit to how tightly anyone can constrain what a language model does with what it can see. Microsoft says as much about its own product, noting that responses are not guaranteed to be one hundred percent factual and that people should review output before sending it on.
So the access question comes first. Always.
Now the part we had wrong. Copilot does not get the global key. Microsoft’s documentation is direct about it: Copilot “only surfaces organizational data to which individual users have at least view permissions,” and the semantic index that grounds its answers honors that same identity boundary. Ask it something as a receptionist and you get the receptionist’s view of the company. Prompts, responses, and the data pulled through Microsoft Graph are also excluded from training the foundation models, which is documented in Microsoft’s data, privacy, and security documentation for Copilot.
Which is reassuring. It is not the whole story.
Copilot Doesn’t Create Your Oversharing Problem. It Makes It Searchable.
Read that permissions sentence again and notice what it quietly assumes. Copilot respects your permission model. It says nothing about whether your permission model is any good. Yours may not be.
In a company that has been running Microsoft 365 for eight or nine years, the permission model is usually an archaeological record. A site somebody shared with Everyone in 2019 to unblock a deadline. A departed bookkeeper’s OneDrive that got handed to the whole finance group. A Teams channel spun up for a project that ended, still holding the contract. None of it was reachable in practice, because nobody could find it. Obscurity was doing the work. Search was bad enough to function as a security control.
Copilot is a very good search tool. That is the whole risk. Stated plainly.
The salary spreadsheet nobody could locate is now one plain-English question away from any employee who technically had view rights to it all along. Nothing was breached. Nothing leaked outside the company. An access problem that existed for six years just became visible in an afternoon, and it will look like Copilot caused it.

Microsoft agrees, for what it is worth. Step one of their own rollout guide is getting your data ready, before licensing, and they recommend running a readiness assessment of your data governance and security controls before you deploy. That step gets skipped constantly. It is the boring one. If you are only now moving onto the platform, sort the permission model out during the Microsoft 365 migration rather than a year later.
What we look at before anyone turns it on:
- Every SharePoint site shared with “Everyone” or “Everyone except external users.” This is where most of it hides.
- OneDrive accounts belonging to people who left. Those get reassigned in a hurry and the sharing rarely gets cleaned up afterward.
- Teams channels from finished projects, especially ones that were created by whoever needed them fastest.
- Payroll, HR, and legal documents. Not because they are usually exposed, but because that is where being wrong costs the most.
- Guest and external accounts that still hold access to anything.
- Whether sensitivity labels exist at all. Copilot honors Microsoft Purview encryption and label-based rights, which is only useful if somebody applied them.
That review is not glamorous and it is not fast. It is also the work. In a 20-person company we usually spend more time on the cleanup than on the rollout itself, and the cleanup is worth doing whether or not you ever buy a Copilot seat.
Why I’d Rather Hand This To Microsoft Than To A Startup
This part is judgment, not documentation, so take it as one owner’s read.
Microsoft has been in business for five decades and has spent the last fifteen of them being held to account on how it handles commercial data, in court, by regulators, and by every enterprise procurement team on earth. Copilot inherits that. It sits under the same GDPR, ISO 27001, and HIPAA commitments as the rest of your tenant, plus ISO 42001, which is the newer standard specifically for AI management systems.
Compare that to handing your operating data to a company that has existed for five years. They may be excellent. Their intentions are probably fine. But the track record simply is not there yet, and a promise from a young company is a different asset class than a contractual commitment from one with fifty years of enforcement history behind it.
One wrinkle, though. Microsoft now offers third-party models from Anthropic and OpenAI as subprocessors inside some Copilot experiences. Your admin decides whether those are enabled, and additional terms apply when they are. So “it is all Microsoft” is closer to true than exactly true, and the admin control is the thing to know about. Close, not exact.
If you want a neutral framework for thinking through any of this, NIST publishes a voluntary AI Risk Management Framework, including a generative AI profile that came out in 2024. It is vendor-agnostic and it is free.
Who Should Buy It, And Who Should Wait
Buy seats if your team lives in Outlook and Teams all day, meetings are a real part of the job, and your permission model has been reviewed in the last year or two. The meeting recap feature alone tends to justify the cost for people who sit in four calls a day. That one pays for itself.
Wait if you have never audited SharePoint sharing. Not because Copilot is dangerous, but because you will spend the first month chasing exposures that predate it and blaming the wrong thing.
Skip it, for now, if the actual need is a general-purpose assistant for writing and research. Copilot Chat covers that at no extra charge, and it is already sitting in the license you pay for.
One more thing. Do not buy a seat for everybody. Start with three or four people who will genuinely use it, give it a quarter, and see whether anyone complains when you take it away. That test is more reliable than any pilot survey.
What Comes Up On The Call
Is Copilot worth $18 a seat for a 20-person company?
Can Copilot read everyone’s email and Teams chats?
Does Microsoft train its AI on our documents?
We already use ChatGPT. Why add Copilot?
What has to be cleaned up before we turn it on?
Can we try it without committing the whole company?
We will review your SharePoint sharing, orphaned accounts, and guest access, then tell you in writing what needs cleaning up before anyone buys a seat. Free, and the findings are yours whether you hire us or not.
