Microsoft Purview Data Loss Prevention
Monitors and enforces policies to prevent inappropriate sharing, transfer, or use of sensitive data across Microsoft 365 apps, endpoints, cloud services, and AI applications.
Capabilities
- Browser Data Security for AI Prompts in EdgeSecureObserve Users Data
Enforces DLP inline in Microsoft Edge for Business, inspecting text users type or paste into AI app prompts in real time and blocking sensitive submissions before they leave the browser — without onboarding the device. Configuration policies block users from reaching the same unmanaged AI apps in unprotected browsers.
- DLP for Microsoft 365 Copilot and AgentsSecureGovern Data Agents
Applies a Data Loss Prevention policy at the Microsoft 365 Copilot location that stops agents from processing files carrying specified sensitivity labels when grounding on SharePoint content. Reduces the risk of sensitive labeled data being used in agent responses.
- Endpoint DLP for AI App UploadsSecure Users Data
Monitors managed devices and blocks paste, upload, or clipboard copy of sensitive information to AI application websites, keeping sensitive data from leaving endpoints through third-party AI apps.
- Network Data Security for AI TrafficSecureObserve Users Data
Monitors and blocks sensitive data shared with unmanaged AI apps through non-Microsoft browsers, apps, APIs, and add-ins by integrating with SASE and secure web gateway solutions to inspect HTTP/HTTPS traffic at the network layer — the surface Endpoint DLP cannot see.