Agent Builder rejects PDF files that were working previously and remain searchable in Copilot Chat

Patrick Hogan 0 Reputation points
2026-09-03T15:16:08.26+00:00

Hello,

I am experiencing what appears to be a discrepancy between Microsoft 365 Copilot Chat and Agent Builder.

I have multiple PDF documents that were successfully attached to and used by my agents as recently as yesterday. The agents were functioning correctly, and these same types of PDF files were being accepted without issue.

Today, those same agents are showing errors on the PDF knowledge sources. When I remove and re-upload the files, they are rejected and display a red error icon. The tooltip indicates that the file may not be usable due to a sensitivity label.

The file can still be successfully found and referenced through Copilot Chat search, and Copilot Chat is able to read and use the document. However, Agent Builder rejects the file when I attempt to add it as a knowledge source.

Troubleshooting already performed:

  • Removed and re-uploaded the PDFs multiple times.
  • Verified the issue is occurring today despite the same files working yesterday.
  • Confirmed the PDF is not password protected.
  • Confirmed Adobe Acrobat shows "Security Method: No Security."
  • Checked Windows file properties and did not find any obvious security restrictions.
  • Created a brand-new test PDF. The test PDF is accepted by Agent Builder, while the MD&A PDFs are rejected.
  • Confirmed the PDFs remain searchable and usable through Copilot Chat.
  • Observed the issue on another user's screen before seeing the same behavior within my own agents.

My questions are:

  1. What conditions would allow a PDF to be searchable and usable in Copilot Chat but prevent it from being used as an Agent Builder knowledge source?
  2. Are Agent Builder knowledge sources subject to additional sensitivity label, Purview, compliance, or indexing restrictions that do not apply to Copilot Chat search?
  3. Is there a way to determine the specific reason Agent Builder is rejecting the PDF?
  4. Has there been any recent change or service issue related to Agent Builder PDF ingestion, indexing, or sensitivity label enforcement?
  5. Is there a diagnostic log or error detail available beyond the red error icon that would help identify the root cause?

The most confusing aspect is that these files and agents were functioning normally yesterday, and the PDFs remain accessible through Copilot Chat today. The issue appears to be isolated to Agent Builder's ability to ingest or use the files as knowledge sources.

Any guidance would be greatly appreciated.

Microsoft Copilot | Other

1 answer

Sort by: Most helpful
  1. AI answer

    2026-09-03T15:17:06.1133333+00:00

    Yes. Agent Builder knowledge sources have file-specific restrictions that can block a PDF even when the file is still usable elsewhere in Microsoft 365 Copilot.

    The conditions documented for embedded files in Agent Builder are:

    1. Sensitivity label with Microsoft Purview Double Key Encryption (DKE) enabled
      The file can be embedded but isn’t used as knowledge.
    2. Sensitivity label with user-defined permissions enabled
      The file uploads, but agent creation fails without an error message.
    3. Sensitivity label where extract rights are disabled for the user
      The file uploads, but agent creation fails without an error message.
    4. Sensitivity label from another tenant with encryption enabled
      The file can be embedded but isn’t used as knowledge.
    5. Password-protected files
      The builder sees an error message next to the uploaded file.

    Based on the symptoms described:

    • the PDF is not password protected,
    • a newly created test PDF is accepted,
    • the rejected files show a tooltip mentioning sensitivity labels,

    The most likely cause is that those specific PDFs have a sensitivity-label or encryption condition that Agent Builder blocks for embedded knowledge, even though the files remain searchable or readable in Copilot Chat.

    Also, Agent Builder has separate handling for embedded file knowledge. Uploaded files are stored in tenant-owned SharePoint Embedded containers, and Copilot uses only the text content of those files for grounding. That means Agent Builder ingestion is not just a general “Copilot Chat can read it” path.

    For diagnostics, the documented behavior is limited:

    • some blocked conditions fail without an error message,
    • password-protected files show an error next to the file,
    • the Share screen shows the sensitivity label if labels are set on embedded content.

    No richer end-user diagnostic log is documented in the provided material beyond the UI behavior and support workflow.

    A practical way to isolate the cause is:

    1. Compare a rejected PDF with the new test PDF that uploads successfully.
      Focus on whether the rejected files have a sensitivity label, encryption, user-defined permissions, disabled extract rights, or came from another tenant.
    2. If the rejected PDFs have any of those label/encryption conditions, remove or replace those files for Agent Builder knowledge use.
      The documented guidance is to avoid uploading files with DKE, remove files with user-defined permissions, remove files with extract rights disabled, and avoid encrypted labeled files from another tenant.
    3. If the issue must be escalated, use Send feedback inside Microsoft 365 Copilot and include:
      • that the issue is related to Agent Builder in Microsoft 365 Copilot
      • agent ID
      • tenant ID
      • environment ID
      • session ID
      • if relevant to the Agent preview pane or Describe tab, enter /debug in the chat box and include that output

    About a recent service change or incident: no service-change explanation is documented in the provided material. Only the known embedded-file restrictions and support path are documented.

    One more important limitation: Microsoft Purview Information Barriers aren’t supported on embedded files. Any user who can access the agent can see responses grounded in that embedded content.


    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.