Connect Microsoft 365 to V7 Go

🚧

Preview

This feature is new and evolving. Details on this page may change as we
improve it.

V7 Go connects to Microsoft 365 through Work IQ, Microsoft's MCP
endpoint. One connector covers Outlook mail, Teams chats and meetings,
OneDrive and SharePoint files, and people search. Search for Outlook,
Teams, or OneDrive in Go and pick Microsoft 365 (Work IQ).

You need:

  • A Microsoft 365 Copilot license for the person who signs in.
  • A Microsoft Entra administrator for the one-time app registration and
    admin consent, unless V7 already provides the app (see below).
  • A work or school account. Personal Microsoft accounts (outlook.com,
    hotmail.com) are not supported.

If the page shows Connect

In some regions V7 already provides the Entra app. Press Connect and
approve Microsoft's consent screen.

Two gates remain:

  • "Approval required" (or AADSTS65001 / AADSTS90094): a tenant admin
    must grant consent for the app and the WorkIQAgent.Ask permission once.
  • The Copilot license still applies.

If the page shows a setup card

  1. In Go, open Integrations → MCP Connectors → Microsoft 365 (Work IQ)
    — or ask the agent in chat to use Outlook, Teams, or OneDrive. A
    connect card appears.
  2. Confirm the organization has Microsoft 365 Copilot licenses.
  3. In the Microsoft Entra admin center,
    create an app registration. Set Supported account types to Accounts in
    any organizational directory
    (multitenant). Single-tenant apps fail
    at sign-in with AADSTS50194.
  4. Under API permissions, add the delegated WorkIQAgent.Ask permission
    (APIs my organization uses → search Work IQ) and grant admin
    consent
    .
  5. Under Authentication, add a Web platform and enter the callback URI
    from the card as a redirect URI.
  6. Under Certificates and secrets, create a client secret.
  7. Copy the Application (client) ID and the secret value (not the
    secret ID) into the card. Never paste them into chat.
  8. Press Connect and complete Microsoft's consent screen.

Troubleshooting

  • AADSTS650052. The Work IQ service principal is not provisioned in
    the tenant. An admin must run Microsoft's Enable-WorkIQToolsForTenant.ps1
    script, then retry.
  • AADSTS50194. The app is single-tenant. Switch it to Accounts in any
    organizational directory.
  • AADSTS65001. Admin consent for WorkIQAgent.Ask was not granted.
    Re-grant it on the app's API permissions page.
  • Connected, but tools return license or policy errors. The signing-in
    user has no Copilot license, or the tenant restricts Work IQ. Assign a
    license. Reconnecting does not help.
  • invalid_client. The client secret expired, or the secret ID was
    pasted instead of the secret value. Create a new secret and re-enter
    credentials.

For messages Go shows on the connect card, see
MCP connector errors.

FAQ

Is the connection shared? Connections follow the sharing policy on the
connector page.

What can the agent do? Search Outlook, Teams, OneDrive, SharePoint, and
people — whatever the Work IQ grant and the user's Microsoft 365
permissions allow. Ask "what Microsoft 365 tools do you have?" for the live
list.


Did this page help you?