Pinned Posts
Forum Widgets
Latest Discussions
Classification on DataBricks
Hello everyone, I would like to request an updated confirmation regarding the correct functioning of custom classification for Databricks Unity Catalog data sources. Here is my current setup: The data source is active. Source scanning is working correctly. I created the custom classification in “Annotation management / Classifications”. I created and successfully tested the regular expression under “Annotation management / Classification Rules”. I generated the Custom Scan Rule Set in “Source management / Scan Rule Sets”, associated to Databricks and selecting the custom rule. However, when running the scan on Databricks: I do not find any option to select my Scan Rule Set (for another source like Teradata, this option is visible). No classification findings are generated based on my custom rule. Other tests do produce findings (system-generated). Does anyone have insights on what I should verify? Or is this custom classification functionality not supported for Databricks?andres_vgFeb 20, 2026Copper Contributor39Views0likes0CommentsAutomatic sensitivity label on existing labeled documents and emails
If I enable today automatic sensitivity labeling for label "Confidential" on behalf on sensitive information type "Credit Card" and 1000 documents are labeled with the label "Confidential". What happend if I remove the sensitive information type "Credit Card" from the label "Confidential", and put it on the Automatic sensitivity label "Highly Confidential". What happend to the 1000 documents which already have the label "Confidential"? Will it be modified to "Highly Confidential" or not?khhajFeb 20, 2026Copper Contributor23Views0likes0CommentsEmail to external(trusted user) not require verify user Identity(with Google or One-time passcode)
Dear Expert and Community, I am starting with MS Purview - Data Loss Prevention. I have one point to clarify and seek your advise / comment / contribute or sharing good practice regarding with below: - Firstly, we can send email to externally user contain sensitive information, it is encryption or blocked (result: worked as expected). If remail encrypt, the external receiver require verify the Identity via sign in with google acc / with a one time password. - Second: we plan sending email to external user (only trusted user / domain). Is it possible, do not require these scope user reverify their Identity again and again? If yes, how to do it? If not - why? Well appreciated for update and supporting. Thanks,DA_Atada16Feb 19, 2026Copper Contributor57Views0likes0CommentsOnboard devices in Purview is grayed out
I’m getting started with Microsoft Purview and running into issues onboarding devices. In the Purview portal, no devices appear, and the “Onboard devices” option is grayed out. I have EMS E5 licenses assigned to all users, and I’m signed in as a Global Admin with Purview Administrator and Security Administrator roles. All devices are managed by Intune and run Windows 11 Enterprise with the latest updates. They are Microsoft Entra joined (AAD joined), show up correctly in Defender, and their Defender onboarding status is active and onboarded. What piece am I missing that would prevent these devices from showing in Purview and keep the onboarding option disabled? Any guidance would be appreciated.FaisalMFeb 17, 2026Copper Contributor92Views0likes4CommentsIssue Using Built in Trainable Classifiers in Auto Labelling Policies - Purview
Over the last few days, I have run into issue while configuring Auto labelling policies in Purview specifically when using built in classifiers for eg: Budget, Agreements These classifiers are parr of ready to use. They have been working well for us until recently but now saving an auto labelling rule that includes any of Trainable classifiers getting client side error: 'Could not find rule pack associated with sensitive information type' this is unexpected because: same classifiers eg: Budget worked perfectly just few weeks ago. No changes have made to roll, permissions on our side. Still not sure why showing issue now. Kindly request you, help me with root cause of the cause. Please feel free to post it comments if someone faced same issue in using trainable classifiers in auto labelling policies. Thanks in advance. Regards, BanuMuraliBanuMuraliFeb 16, 2026Brass Contributor148Views2likes2CommentsFuture - Purview vs Fabric for governance
I was wondering if anyone else was struggling to determine where exactly the future of Purview is regarding Data Governance? I see Microsoft pushing a ton of Data Governance functions into Fabric along with promoting the Catalog and Governance capabilities are in Fabric, but this doesn't cover the Enterprise. We are working to build a more robust Enterprise Data Governance solution, but I'm struggling to find reasons to build out Purview with all of the direction in expanding Fabric more than I hear news around Purview. Purview doesn't even ingest metadata on tables and columns from Fabric Lakehouse and Warehouse? Hoping gather other's experience and view points.JBNFMFeb 16, 2026Copper Contributor74Views0likes1CommentLifecycle using Custom Protection with Purview Sensitivity Labels
Organizations using Purview Sensitivity Labels with custom protection face a fundamental governance challenge: there is no lifecycle‑ready way to maintain, audit, or update per‑document user rights as teams evolve. This affects compliance, need‑to‑know enforcement, and operational security. Document lifecycle challenges Team growth: new members do not inherit document‑specific rights. Team shrinkage: departing members retain access unless manually removed. Employee offboarding: accounts are disabled, but compliance may require explicit removal from protected documents. Audit requirements: organizations need to answer “Who has what rights on document X?” — and today, no native tool provides this for custom‑protected files. Existing method Limitation Purview PowerShell Overwrites all existing assignments; no granular updates MIP Client Not yet capable of bulk lifecycle operations OlaProeis/FileLabeler Great tool, but limited by the same PowerShell constraints What the tool enables Rights audit trail per document Controlled lifecycle updates (add/remove/transfer rights) Preservation of original files for rollback Multi‑action batch processing Admin‑only delegated workflow with MIP superuser role Full logging for compliance Supported operations ListRightAssignments – extract all rights from each document under a given label GUID SetOwner / AddOwner – assign or add owners AddEditor / AddRestrictedEditor / AddViewer – role‑based additions RemoveAccess – remove any user from all roles AddAccessAs – map one user’s role to one or more new users Multi‑action execution – combine operations in a single run Safe mode – original files preserved; updated copies created with a trailer Because this tool can modify access to highly sensitive content, it must be embedded in a controlled workflow: ticket‑based approval, delegated admin, MIP superuser assignment, and retention of all logs as part of the audit trail. This ensures compliance with need‑to‑know, separation of duties, and legal requirements. I would appreciate feedback from the community and Microsoft product teams on: whether similar lifecycle capabilities are planned for Purview whether the MIP SDK is the right long‑term approach how others handle custom‑protected document lifecycle today interest in collaborating on a more robust open‑source version MaxMax Philipp BlickenstorferFeb 14, 2026Copper Contributor82Views0likes1CommentHow can I discover my AI Foundry Agents?
Apologies for being new to Purview, but I cannot figure this out... So far I've created a Microsoft Purview account, included myself to a number of roles. I've enabled Microsoft Purview in the new Microsoft Foundry portal by navigating to Operate => Compliance => Security posture and enabled "Microsoft Purview". Back in Purview, I can see Copilot Apps and Agent, but I cannot see an agents deployed in Microsoft Foundry. What am I missing?wmmihaaFeb 12, 2026Copper Contributor58Views0likes2CommentseDiscovery - Issues exploring groups & users related to a hybrid data source
Hi all, first time posting - unusually I could find nothing out there that helped. I work in an organisation has an on-premises domain which syncs to our tenant. I don't manage the domain or the sync, but I'm assured that the settings are vanilla and there are no errors being logged. 99% of our users are hybrid. The tenant is shared across multiple legal entities, so I'm using eDiscovery to fulfil our GDPR subject access requests The issue I am hitting is straightforward. in eDiscovery searches with hybrid users as the data source, I cannot add related objects (manager, direct reports, groups the user is in). The properties are present in Entra, but not visible to Purview, so I'm not investigating sync errors at the moment. For cloud objects, I can see manager, teams, etc. and it works fine. Does anyone have any insights they can share on the "explore and add" mechanics in eDiscovery search data sources? I'm drawing a complete blank on this one. Where should I be looking?PatReaneyFeb 12, 2026Copper Contributor20Views0likes0CommentsCannot find sensitivity label Confidential - Internal Employee
Dear Microsoft Community, As per review there no have the sensitivity label, Confidential - Internal Employees on the Microsoft Purview, SIT or Rule. We notices when email come from Department A send to all internal users always come with label "Confidential - Internal Employees". Can you share good practice to resolve / troubleshooting what is next action? To ensure no any interrupt user daily operation. Thanks,DA_Atada16Feb 11, 2026Copper Contributor43Views0likes1Comment
Tags
- purview142 Topics
- microsoft purview88 Topics
- Information Protection28 Topics
- Sensitivity Labels26 Topics
- ediscovery17 Topics
- Azure Purview15 Topics
- endpoint dlp14 Topics
- data loss prevention14 Topics
- Retention Policy13 Topics
- api10 Topics