Copilot Studio approval flow in Teams still prompts users for connection despite using flow author credentials
Nobody has claimed this yet.
Assessment
- Difficulty
- 5/5
- Estimated time
- Over a week
- Newbie friendliness
- 20/100
- Issue type
- Bug
- Clarity
- Needs clarification
- Activity status
- Stale
- Domain
- authentication, cloud
Research direction
No repository file, test, or entry point is identified; start by reproducing the flow through Copilot Studio in Teams and compare it with a manual Power Automate run. Done would require determining whether the connection prompt is a documented limitation or a defect and identifying a supported author-credential approach.
Written by the indexing model from the issue text.
Description
I am facing an issue while using Copilot Studio with a Power Automate flow that includes Approvals in Microsoft Teams.
Scenario
The flow is triggered from a Copilot Studio agent.
The flow contains a Teams approval (Standard Approvals) action.
Under Run-only permissions, I have configured:
✅ Use flow author’s connection for new actions
✅ For Connections Used → Standard approvals, selected Use this connection (Standard approvals)
The flow owner (author) has a valid and active connection.
End users should not be required to authenticate or provide their own connections.
Expected Behavior
When the flow runs from Copilot Studio:
The approval request should be created and sent using the flow author’s credentials
Users interacting with the Copilot should not be prompted to sign in or manage connections
Actual Behavior
When the flow reaches the Approval step, it redirects to Connection Manager
Users are prompted to authenticate or are blocked due to missing permissions
This happens even though the flow is explicitly configured to use the author’s connection
Additional Notes
This issue occurs specifically when the flow is executed via Copilot Studio (Teams channel, M365 Chat)
The same flow works correctly when triggered manually from Power Automate
The problem appears to be related to how Copilot Studio handles approval connectors and run-only connections
Impact
This blocks production usage because:
End users should not be asked to authenticate
The agent is intended to run using service/author credentials only
Request
Please clarify:
Whether this is a known limitation or bug in Copilot Studio approvals
If there is a recommended or supported approach to ensure approvals always use the flow author’s credentials
Whether a service principal or alternative approval pattern is required for Copilot StudioI am facing an issue while using Copilot Studio with a Power Automate flow that includes Approvals in Microsoft Teams.
Scenario
The flow is triggered from a Copilot Studio agent.
The flow contains a Teams approval (Standard Approvals) action.
Under Run-only permissions, I have configured:
✅ Use flow author’s connection for new actions
✅ For Connections Used → Standard approvals, selected Use this connection (Standard approvals)
The flow owner (author) has a valid and active connection.
End users should not be required to authenticate or provide their own connections.
Expected Behavior
When the flow runs from Copilot Studio:
The approval request should be created and sent using the flow author’s credentials
Users interacting with the Copilot should not be prompted to sign in or manage connections
Actual Behavior
When the flow reaches the Approval step, it redirects to Connection Manager
Users are prompted to authenticate or are blocked due to missing permissions
This happens even though the flow is explicitly configured to use the author’s connection
Additional Notes
This issue occurs specifically when the flow is executed via Copilot Studio (Teams channel)
The same flow works correctly when triggered manually from Power Automate
The problem appears to be related to how Copilot Studio handles approval connectors and run-only connections
Impact
This blocks production usage because:
End users should not be asked to authenticate
The agent is intended to run using service/author credentials only
Request
Please clarify:
Whether this is a known limitation or bug in Copilot Studio approvals
If there is a recommended or supported approach to ensure approvals always use the flow author’s credentials
- Dominant language
- TypeScript
- Stars
- 797
- Forks
- 491
- PR merge metrics
- No merged PRs in 30d
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from microsoft/CopilotStudioSamples
-
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
-
SharePointSSOComponent
microsoft/CopilotStudioSamples#537 · 1 assignee ·
-
Difficulty 4/5 3-5 days Newbie friendliness 45/100
microsoft/CopilotStudioSamples#532 · 1 comment ·
-
Unable to Deploy SPFx Agent to a Single SharePoint Site (Works Only with Tenant-Wide Deployment) Open
Difficulty 4/5 3-5 days Newbie friendliness 45/100
microsoft/CopilotStudioSamples#531 · 1 comment ·
-
Difficulty 4/5 3-5 days Newbie friendliness 35/100
All issues in microsoft/CopilotStudioSamples
Similar issues
-
VerificationGate: ATTRIBUTION quote guard never matches a normal quotation (\b around the quote) Open
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
danielmiessler/LifeOS#2234 ·
-
T: Bug
Difficulty 2/5 1-3 hours Newbie friendliness 75/100
-
Difficulty 2/5 1-3 hours Newbie friendliness 65/100
-
Difficulty 1/5 Under an hour Newbie friendliness 85/100
-
Mend: dependency security vulnerability untriaged
Difficulty 2/5 1-3 hours Newbie friendliness 70/100