Support Center | ☎︎ Call us: (845) 440-5000 | info@vjnetworks.com
Back to Blog

Microsoft 365 Copilot for Small Business: What It Does and Costs

CybersecurityManaged IT
Last updated: September 11, 2026

Microsoft 365 Copilot Business runs $21 per user per month on an annual term, discounted to $18 through December 31, 2026, and it only surfaces files and messages the person asking could already open.

That last half of the sentence is the part worth slowing down on. Price is the easy part. Most of the Copilot conversations I have with owners never get past it, and the one that matters is about what the thing can reach once you switch it on.

So here is the honest state of it from where I sit, running an IT company in Congers since 2004.

Almost Nobody Is Asking Us For This

One client has asked us for Copilot. One. We got them a subscription and it works fine.

That is not the picture you get from the coverage, and I would rather tell you the truth than sell you the trend. What clients are asking about, regularly now, is ChatGPT and Claude. Someone on staff started using one, it saved them an hour, and now the owner wants to know whether that was a terrible idea. Copilot usually enters the conversation as our answer to that question rather than as the thing they walked in asking for. That order matters.

Bias disclosed, by the way. We sell Microsoft 365 management and we benefit when clients consolidate onto a platform we already run. Read the rest with that in mind. We are straight about the same bias in our Google Workspace comparison, which is honest about where Google is the better answer.

What You Get For The Money

Start with the naming. There are two Copilots and people mix them up constantly, which matters because one of them is free and one of them is not.

Copilot Chat comes with the Microsoft 365 Business plans you probably already pay for. It answers questions off the public web. It cannot open your files. The paid tier is the one that connects to your own content through Microsoft Graph, which is what makes it useful and also what makes it worth thinking about carefully.

CapabilityCopilot Chat (included)Microsoft 365 Copilot (paid)
Answers from the public webYesYes
Reads your SharePoint, OneDrive, Outlook, and Teams contentNoYes, within your own permissions
Sits inside Word, Excel, PowerPoint, and OutlookNoYes
Summarizes a Teams meeting you sat throughNoYes
Prompts and responses excluded from foundation model trainingYesYes

The gap between those two columns is the entire product. You are paying for tenant grounding. Everything else is packaging.

What It Costs In 2026

Microsoft restructured this for smaller companies, and the numbers moved. The $30 figure that still shows up in most articles is the enterprise lineage of the product. Small businesses buy a different SKU now. Different name, different price.

PlanAnnual, per user/monthMonthly billing
Microsoft 365 Copilot Business (add-on to a plan you already have)$18.00 promotional, $21.00 standard$25.20
Microsoft 365 Business Standard with Copilot$23.50$28.20
Microsoft 365 Business Premium with Copilot$32.00$38.40

Two things about that table. The $18 is promotional and Microsoft has it running through December 31, 2026, so budget the $21. And the add-on row is an add-on, meaning it stacks on top of whatever base license that user already carries. A Business Premium seat plus Copilot lands north of $40 all in. Budget the whole stack.

Prices move. I am printing these because a post titled “what it costs” that refuses to name a number is useless, but check Microsoft’s current business pricing before you sign anything. This category has been repriced twice already.

Rows of archived file boxes and folders representing everything Microsoft 365 Copilot can surface from a tenant

The Question I Would Ask Before The Price Question

Access is the whole thing. Here is what genuinely worries me about AI at work, and it has very little to do with Copilot specifically.

If someone copies a paragraph into a chatbot, that is one thing. Bad practice, limited blast radius. It is a different proposition entirely when you hand an AI tool directory access to your tenant and it can reach every mailbox, every Teams message, and every SharePoint site in the company. No matter what a vendor writes in its terms, there is a limit to how tightly anyone can constrain what a language model does with what it can see. Microsoft says as much about its own product, noting that responses are not guaranteed to be one hundred percent factual and that people should review output before sending it on.

So the access question comes first. Always.

Now the part we had wrong. Copilot does not get the global key. Microsoft’s documentation is direct about it: Copilot “only surfaces organizational data to which individual users have at least view permissions,” and the semantic index that grounds its answers honors that same identity boundary. Ask it something as a receptionist and you get the receptionist’s view of the company. Prompts, responses, and the data pulled through Microsoft Graph are also excluded from training the foundation models, which is documented in Microsoft’s data, privacy, and security documentation for Copilot.

Which is reassuring. It is not the whole story.

Copilot Doesn’t Create Your Oversharing Problem. It Makes It Searchable.

Read that permissions sentence again and notice what it quietly assumes. Copilot respects your permission model. It says nothing about whether your permission model is any good. Yours may not be.

In a company that has been running Microsoft 365 for eight or nine years, the permission model is usually an archaeological record. A site somebody shared with Everyone in 2019 to unblock a deadline. A departed bookkeeper’s OneDrive that got handed to the whole finance group. A Teams channel spun up for a project that ended, still holding the contract. None of it was reachable in practice, because nobody could find it. Obscurity was doing the work. Search was bad enough to function as a security control.

Copilot is a very good search tool. That is the whole risk. Stated plainly.

The salary spreadsheet nobody could locate is now one plain-English question away from any employee who technically had view rights to it all along. Nothing was breached. Nothing leaked outside the company. An access problem that existed for six years just became visible in an afternoon, and it will look like Copilot caused it.

Two colleagues reviewing printed access permissions across a small conference table before a Copilot rollout

Microsoft agrees, for what it is worth. Step one of their own rollout guide is getting your data ready, before licensing, and they recommend running a readiness assessment of your data governance and security controls before you deploy. That step gets skipped constantly. It is the boring one. If you are only now moving onto the platform, sort the permission model out during the Microsoft 365 migration rather than a year later.

What we look at before anyone turns it on:

  • Every SharePoint site shared with “Everyone” or “Everyone except external users.” This is where most of it hides.
  • OneDrive accounts belonging to people who left. Those get reassigned in a hurry and the sharing rarely gets cleaned up afterward.
  • Teams channels from finished projects, especially ones that were created by whoever needed them fastest.
  • Payroll, HR, and legal documents. Not because they are usually exposed, but because that is where being wrong costs the most.
  • Guest and external accounts that still hold access to anything.
  • Whether sensitivity labels exist at all. Copilot honors Microsoft Purview encryption and label-based rights, which is only useful if somebody applied them.

That review is not glamorous and it is not fast. It is also the work. In a 20-person company we usually spend more time on the cleanup than on the rollout itself, and the cleanup is worth doing whether or not you ever buy a Copilot seat.

Why I’d Rather Hand This To Microsoft Than To A Startup

This part is judgment, not documentation, so take it as one owner’s read.

Microsoft has been in business for five decades and has spent the last fifteen of them being held to account on how it handles commercial data, in court, by regulators, and by every enterprise procurement team on earth. Copilot inherits that. It sits under the same GDPR, ISO 27001, and HIPAA commitments as the rest of your tenant, plus ISO 42001, which is the newer standard specifically for AI management systems.

Compare that to handing your operating data to a company that has existed for five years. They may be excellent. Their intentions are probably fine. But the track record simply is not there yet, and a promise from a young company is a different asset class than a contractual commitment from one with fifty years of enforcement history behind it.

One wrinkle, though. Microsoft now offers third-party models from Anthropic and OpenAI as subprocessors inside some Copilot experiences. Your admin decides whether those are enabled, and additional terms apply when they are. So “it is all Microsoft” is closer to true than exactly true, and the admin control is the thing to know about. Close, not exact.

If you want a neutral framework for thinking through any of this, NIST publishes a voluntary AI Risk Management Framework, including a generative AI profile that came out in 2024. It is vendor-agnostic and it is free.

Who Should Buy It, And Who Should Wait

Buy seats if your team lives in Outlook and Teams all day, meetings are a real part of the job, and your permission model has been reviewed in the last year or two. The meeting recap feature alone tends to justify the cost for people who sit in four calls a day. That one pays for itself.

Wait if you have never audited SharePoint sharing. Not because Copilot is dangerous, but because you will spend the first month chasing exposures that predate it and blaming the wrong thing.

Skip it, for now, if the actual need is a general-purpose assistant for writing and research. Copilot Chat covers that at no extra charge, and it is already sitting in the license you pay for.

One more thing. Do not buy a seat for everybody. Start with three or four people who will genuinely use it, give it a quarter, and see whether anyone complains when you take it away. That test is more reliable than any pilot survey.

What Comes Up On The Call

Is Copilot worth $18 a seat for a 20-person company?
$18 a seat across 20 people is $360 a month, or roughly $4,300 a year at the promotional rate. Worth it if the people holding those seats are in meetings and email constantly. Not worth it spread evenly across a team where half the staff barely open Outlook. Do the math per person. Buy it for the heavy users and leave everyone else on Copilot Chat.
Can Copilot read everyone’s email and Teams chats?
Not the way people picture it. Microsoft documents that Copilot only surfaces content the signed-in user already has at least view permission for, and the grounding index honors that same boundary. It reaches your stuff, not the company’s stuff. That distinction matters. The catch is that plenty of people have permissions nobody remembers granting them.
Does Microsoft train its AI on our documents?
Short answer, no. Microsoft’s documentation states that prompts, responses, and data accessed through Microsoft Graph are not used to train the foundation models. Your Copilot interactions are stored in your tenant under the same commitments as your other Microsoft 365 content, and admins can apply retention policies to them through Purview. Worth knowing that last part, because it also means those prompts are discoverable records.
We already use ChatGPT. Why add Copilot?
Different jobs, mostly. A general assistant is good at drafting and reasoning about text you hand it. Copilot’s advantage is that it already knows where your contract, your thread with that vendor, and last Tuesday’s meeting live. The real reason we bring it up is usually simpler. If people are already pasting company information into something, giving them a sanctioned tool inside the tenant beats pretending it is not happening. The broader version of that conversation is shadow IT.
What has to be cleaned up before we turn it on?
SharePoint sharing, first. Anything shared with Everyone, orphaned OneDrive accounts from departed staff, dead Teams channels, and any external guests still holding access. Microsoft puts this ahead of licensing in its own deployment guide, which tells you something. Most small businesses have never looked, and the first look is always longer than expected. Nobody enjoys it.
Can we try it without committing the whole company?
Three or four seats is the usual starting point, and monthly billing exists precisely so you can do that without an annual commitment. It costs more per seat that way. It costs a great deal less than discovering in month nine that nineteen of your twenty licenses go unused, which is the more common outcome by a wide margin.
Find out what Copilot would be able to see in your tenant

We will review your SharePoint sharing, orphaned accounts, and guest access, then tell you in writing what needs cleaning up before anyone buys a seat. Free, and the findings are yours whether you hire us or not.

Get a Tenant Access Review →

Or call (845) 440-5000