Integrations / Microsoft Copilot Studio

Keep your Copilot where it runs. See what it did.

Sulcus reads your Copilot Studio environment’s telemetry from Azure Application Insights and shows each conversation as a run. Your agents keep running in Microsoft’s environment; Sulcus only observes.

Deployed elsewhere · observation only

Sulcus adds

A run for each conversation.

  • Which agents were invoked, including sub-agents.
  • Which tools ran, by name.
  • When a reply was sent during a turn.
  • Timing where Copilot Studio measures it, outcome and error type.
  • The model name, where the telemetry includes it.
  • A bounded event history for each run.

Microsoft keeps

The agents and everything they do.

  • Hosting and running your Copilot Studio agents.
  • Topics, tools, knowledge, channels and publishing.
  • Conversations, messages and the people in them.
  • The telemetry itself, in your Application Insights resource.

How it connects

Sulcus reads; nothing is installed in your agent.

Your Power Platform environment sends its data to an Azure Application Insights resource. Sulcus signs in to Microsoft as an app registration you create, and queries that resource about once a minute for agent, tool and reply records from your environment.

A conversation usually appears within about three minutes of the activity. It isn’t live, and it depends on Microsoft delivering the telemetry. A run closes after 30 minutes without new activity; a conversation that continues later appears as a new run.

OBSERVATION BOUNDARY
Runs the agents
Microsoft Copilot Studio
Telemetry source
Azure Application Insights
One run is
One conversation’s activity
Not read by Sulcus
Messages, tool inputs and results, user identity

Connect

What you set up, and what you give Sulcus.

StepWhereWhat’s needed
Export telemetryPower Platform admin centerThe environment that holds your agents sends its data to an Azure Application Insights resource.
Create a sign-in for SulcusMicrosoft Entra IDAn app registration with a client secret.
Grant read accessThe Application Insights resourceThe Reader role for that app registration, under Access control.
Connect in SulcusProjects → Connect Copilot StudioTenant ID, Environment ID, Application Insights Application ID, the app registration’s Application (client) ID and its client secret.

Sulcus checks the connection with Microsoft before it saves anything. If Microsoft rejects the credential or the query, nothing is stored. On a first connection Sulcus reads up to the last day of telemetry.

Data and credentials

What Sulcus reads and stores.

An allowlist, applied in the query

Sulcus asks Application Insights only for the fields it shows: record type, identifiers, timestamps, duration, outcome, error type, agent and tool names, and model name. Messages, replies, tool inputs and results, and who was talking aren’t requested, so they aren’t sent to Sulcus.

The client secret is stored, encrypted

Unlike the API keys of a hosted run, this connection needs a saved credential. Sulcus stores the client secret encrypted, tied to that one project, and never shows it again. The tenant, environment, Application Insights and client IDs are stored with the project and visible to workspace members.

Disconnecting

Disconnect in the project’s settings deletes the saved client secret and stops Sulcus reading the environment. Existing runs are kept. You can also revoke the secret or the Reader role in Microsoft at any time.

Boundaries

What this integration doesn’t do.

Sulcus can’t start, stop, pause or rerun a Copilot Studio agent, and it can’t approve or deny what the agent does. There is no token limit: token counts aren’t part of what Sulcus reads. Ending a run in Sulcus changes nothing in Microsoft.

Sulcus shows what the environment’s telemetry contains, and Microsoft’s environment-level telemetry export is a preview feature that may change. Activity that Microsoft doesn’t export, records that fail validation and telemetry more than about a week old don’t appear. Durations are missing where Copilot Studio doesn’t measure them.

Get started

See your first run in Sulcus.

Create an account, then connect an agent: a public Git repository Sulcus runs for you, Claude Code or Codex on your computer, or a Google ADK service or Microsoft Copilot Studio environment you already run.

Early access. Hosted repository runs may be limited to selected workspaces; the app shows what yours can run.