Copilot Studio MCP and Dome
Build agents in Copilot Studio. Decide what they call.
Copilot Studio connects agents to MCP servers by URL, with an API key in a header. Add a Dome Gateway that way and the agent reaches only the tools its rules allow. Every call lands in Dome's audit trail.
How Dome helps
Dome provides governance for every Microsoft Copilot Studio tool and model call
A URL and a header
The onboarding wizard takes the Gateway's MCP URL and an API key sent in the Authorization header. The key is a Dome agent key.
Tools named, not inherited
Rules list the tools each Copilot Studio agent may call. Anything else on the Gateway is refused.
Tool calls governed, models not
Copilot Studio runs its own models, and their calls don't pass through Dome. Every tool call does.
Get started
Copilot Studio on a Gateway in three steps
Register an agent in Dome, then add the Gateway in Copilot Studio's MCP onboarding wizard with the agent's key. The Dome commands were run against a workspace; the Copilot Studio steps come from Microsoft's docs.
01
Register an agent and issue its key
One Dome agent for each Copilot Studio agent you want to tell apart.
$ dome agents register --name helpdesk-copilot --gateway prod-gateway$ dome agents create-key helpdesk-copilot --name copilot-studio$ dome rules apply helpdesk-copilot.cedar --agent helpdesk-copilot --name jira-helpdesk02
Copy the Gateway's MCP URL
It's endpoints.mcp_url in the output. Copilot Studio supports the Streamable HTTP transport, and so does the Gateway.
$ dome gateways get prod-gateway --json03
Add the Gateway in Copilot Studio
On the agent's Tools page, choose Add a tool, New tool, then Model Context Protocol. Enter the URL, pick API key, type Header, header name Authorization. When you create the connection, enter Bearer followed by the agent key.
Commands and rules tested against a Dome workspace on October 1, 2026. For anything about Microsoft Copilot Studio itself, see Microsoft's documentation.
Rules
File tickets, read the knowledge base
The permit lets the agent discover tools and call Atlassian. The forbid refuses every Atlassian tool except four: search, read and create Jira issues, and read Confluence.
permit (principal, action == Dome::Action::"mcp:discover", resource); permit (principal, action == Dome::Action::"mcp:call", resource is Dome::MCPTool)when { resource.connection_name == "atlassian" }; forbid (principal, action == Dome::Action::"mcp:call", resource is Dome::MCPTool)when { resource.connection_name == "atlassian" }unless { ["searchJiraIssuesUsingJql", "getJiraIssue", "createJiraIssue", "getConfluenceContent"] .contains(resource.tool_name)};Try it
One call, two outcomes
Switch the caller or the argument and watch the same call decide differently. Every decision lands in audit.
Call
- Agenthelpdesk-copilot is registered and active
- KeyBearer key from the Copilot Studio connection is valid
- RulecreateJiraIssue is on the list
Agent workflow
Bringing it together
Connecting Microsoft Copilot Studio to registered agents, tools, and identity in Dome completes a governed agent application.
Acting for
Agent
Runtime
Microsoft Copilot Studio
This page
Client
Claude Code
See how
Control point
Gateway
- Rules
- Guards
- Quotas
Every call decided and audited
Models
FAQ
Common questions
Can Copilot Studio connect to a remote MCP server?
Yes. Its MCP onboarding wizard takes a server URL over Streamable HTTP, with no authentication, an API key, or OAuth 2.0.
What goes in the API key field for a Dome Gateway?
Bearer, a space, then the Dome agent key, with Authorization as the header name. A request without it gets a 401.
Does Dome see which employee asked?
No. With an API key, Dome sees the Copilot Studio agent, so audit names the agent.
Do Copilot Studio's model calls go through Dome?
No. Dome governs the tool calls the agent makes through the Gateway.
Explore
More of what Dome works with
Model
Claude Fable
Fable 5.1 from Anthropic and Amazon Bedrock in one failover pool, open to one group and capped by quota.
Read moreProvider
Anthropic
The Claude API behind the Model Broker: the key held in Dome, every call authorized, metered and audited.
Read moreMCP server
GitHub
The GitHub MCP server behind the Tool Gateway, with rules that decide each call on its owner and repository.
Read moreIdentity
Okta
Okta tokens verified on every agent call, so rules and audit name the person each agent acted for.
Read moreClient
Codex
Codex on a Dome Gateway with per-developer sign-in, rules on every tool call, and audit by name.
Read moreAgent service
TinyFish
TinyFish's web agents behind the Tool Gateway, with rules that decide each run on the site it targets.
Read moreNext steps
Talk with our FDE team
Our forward deployed engineers work with your platform team to get your agents into production and under control: the first one governed on your own systems, and a pattern your teams can repeat for every agent after it.
No card required to start. Register your first agent in minutes.
Agent frameworks and runtimes: govern agents without a rewrite
Build agents on the framework you already use. Dome governs their tool and model calls without a rewrite.
See them all