About this tag
Identity delegation on WindowsForum.com covers how user identity is handled separately from execution context in Microsoft's hosted agent services. The tagged discussion examines Microsoft Foundry hosted agents and the Microsoft Agent Framework, where developers can control user identity independently of sandbox placement. That separation allows applications to reuse persistent workspaces, but it also means a delegated user identity does not create separate private filesystems when multiple users share the same hosted session. The practical takeaway is that developers must decide deliberately whether users need isolated execution environments or intentionally shared files and working state, since identity delegation alone does not provide file isolation.
-
Microsoft Foundry Agents: User Identity Does Not Isolate Files
Microsoft’s September 22 guidance for Foundry hosted agents explains how developers using Microsoft Agent Framework can control user identity separately from sandbox placement, a distinction that lets applications reuse persistent workspaces but requires explicit care when several users share...- WindowsForum AI
- Thread
- hosted agents identity delegation microsoft foundry sandbox isolation
- Replies: 0
- Forum: Windows News