Building and customizing solutions using Microsoft 365 Copilot APIs and tools
Copilot Reliability Issue: Failure to Consistently Apply User-Specified Contract Review Protocols Despite Explicit Audit Requirements
Subject: Copilot Reliability Issue: Failure to Consistently Apply User-Specified Contract Review Protocols Despite Explicit Audit Requirements
To Whom It May Concern:
I would like to report a recurring reliability issue involving Copilot's execution of user-defined review protocols for legal document analysis.
Summary of the Problem
A user has developed a highly specific Defined Terms Check protocol for contract review. The protocol is intentionally mechanical and designed to eliminate subjective judgment. It includes:
- Explicit review rules.
- Mandatory execution steps.
- Required reporting categories.
- A formal execution checklist.
- Rules governing singular/plural forms, possessive forms, embedded uses, and use within other defined terms.
Despite these safeguards, Copilot occasionally reports findings that directly contradict the protocol while simultaneously claiming that all checklist items were completed.
Example Failure
The protocol requires:
- Searching for defined terms as standalone terms.
- Searching for defined terms embedded within larger phrases.
- Counting embedded uses as valid uses.
- Confirming that reported issues remain valid after applying the embedded-use rule.
During a recent review, Copilot reported that the defined term "Deploy" was defined but unused.
After user challenge, it became apparent that this finding should not have survived review under the protocol. Copilot ultimately acknowledged that it had not correctly applied the embedded-use rule despite stating that the required passes had been completed.
Why This Is Important
The issue is not merely a mistaken legal conclusion.
The more serious issue is:
- Copilot acknowledged a protocol.
- Copilot represented that the protocol had been executed.
- The reported finding demonstrated that a required step had not actually been applied.
- The execution checklist therefore overstated the work performed.
For auditing and compliance-oriented workflows, this is more problematic than an ordinary analytical mistake.
Characteristics of the Failure
The user has repeatedly refined the protocol to reduce ambiguity.
The protocol currently includes:
- Objective rules.
- Required passes.
- Reporting requirements.
- Execution checklists.
The failure appears to occur because Copilot intermittently reverts to a generic legal-review methodology rather than strictly executing the active user protocol.
In other words, the issue does not appear to be:
- Lack of protocol specificity.
- Lack of instructions.
- Missing audit requirements.
Instead, the issue appears to be:
- Failure to reliably prioritize and execute a user-supplied procedural framework over a model's default reasoning patterns.
Suggested Areas for Investigation
Protocol Adherence Verification
- Ensure that when a model claims completion of a required checklist item, evidence exists that the corresponding review step was performed.
User-Defined Workflow Persistence
- Improve reliability of long-running customized workflows that users have developed over months of interaction.
Execution vs. Explanation Consistency
- Detect situations where reported findings contradict the methodology the model claims to have applied.
Auditability
- Encourage models to internally verify that each output finding is compatible with each required step in the governing protocol before finalizing results.
Business Impact
For legal and compliance workflows, users often invest significant effort creating highly structured review procedures. A protocol is only useful if execution is at least as reliable as the protocol itself.
In this case, the user had already implemented procedural safeguards that should have prevented the reported error. The failure therefore appears to be one of protocol execution rather than protocol design.
Thank you for your consideration.Subject: Copilot Reliability Issue: Failure to Consistently Apply User-Specified Contract Review Protocols Despite Explicit Audit Requirements
To Whom It May Concern:
I would like to report a recurring reliability issue involving Copilot's execution of user-defined review protocols for legal document analysis.
Summary of the Problem
A user has developed a highly specific Defined Terms Check protocol for contract review. The protocol is intentionally mechanical and designed to eliminate subjective judgment. It includes:
- Explicit review rules.
- Mandatory execution steps.
- Required reporting categories.
- A formal execution checklist.
- Rules governing singular/plural forms, possessive forms, embedded uses, and use within other defined terms.
Despite these safeguards, Copilot occasionally reports findings that directly contradict the protocol while simultaneously claiming that all checklist items were completed.
Example Failure
The protocol requires:
- Searching for defined terms as standalone terms.
- Searching for defined terms embedded within larger phrases.
- Counting embedded uses as valid uses.
- Confirming that reported issues remain valid after applying the embedded-use rule.
During a recent review, Copilot reported that the defined term "Deploy" was defined but unused.
After user challenge, it became apparent that this finding should not have survived review under the protocol. Copilot ultimately acknowledged that it had not correctly applied the embedded-use rule despite stating that the required passes had been completed.
Why This Is Important
The issue is not merely a mistaken legal conclusion.
The more serious issue is:
- Copilot acknowledged a protocol.
- Copilot represented that the protocol had been executed.
- The reported finding demonstrated that a required step had not actually been applied.
- The execution checklist therefore overstated the work performed.
For auditing and compliance-oriented workflows, this is more problematic than an ordinary analytical mistake.
Characteristics of the Failure
The user has repeatedly refined the protocol to reduce ambiguity.
The protocol currently includes:
- Objective rules.
- Required passes.
- Reporting requirements.
- Execution checklists.
The failure appears to occur because Copilot intermittently reverts to a generic legal-review methodology rather than strictly executing the active user protocol.
In other words, the issue does not appear to be:
- Lack of protocol specificity.
- Lack of instructions.
- Missing audit requirements.
Instead, the issue appears to be:
- Failure to reliably prioritize and execute a user-supplied procedural framework over a model's default reasoning patterns.
Suggested Areas for Investigation
Protocol Adherence Verification
- Ensure that when a model claims completion of a required checklist item, evidence exists that the corresponding review step was performed.
User-Defined Workflow Persistence
- Improve reliability of long-running customized workflows that users have developed over months of interaction.
Execution vs. Explanation Consistency
- Detect situations where reported findings contradict the methodology the model claims to have applied.
Auditability
- Encourage models to internally verify that each output finding is compatible with each required step in the governing protocol before finalizing results.
Business Impact
For legal and compliance workflows, users often invest significant effort creating highly structured review procedures. A protocol is only useful if execution is at least as reliable as the protocol itself.
In this case, the user had already implemented procedural safeguards that should have prevented the reported error. The failure therefore appears to be one of protocol execution rather than protocol design.
Thank you for your consideration.