Microsoft has announced expanded Data Loss Prevention (DLP) capabilities to restrict Microsoft 365 Copilot from processing emails with sensitivity labels, addressing growing concerns about AI-driven data risks.
The feature, tied to Microsoft 365 Roadmap ID 489221, will enter public preview in June 2025 and reach general availability (GA) by August 2025.
This update ensures sensitive emails sent on or after January 1, 2025, are excluded from Copilot’s response summarization and grounding processes.
The enhancement allows organizations to apply existing or new DLP policies to block Copilot from referencing emails marked with labels like Highly Confidential or Personal in chat interactions. Key aspects include:
Administrators can create rules using the Content contains > Sensitivity labels condition in the Microsoft Purview portal, leveraging Microsoft’s Data Security Posture Management for AI (DSPM for AI) for centralized oversight.
The DLP update integrates with Microsoft’s broader information protection framework:
Testing methodologies, such as those documented by Office 365 IT Pros, highlight how labeled documents are silently excluded from Copilot search results, leaving no trace of restricted data.
| Risk Factor | Mitigation Strategy |
|---|---|
| Data leakage via AI summarization | Apply sensitivity labels with encryption and configure DLP policies to block Copilot access. |
| Compliance violations | Use DSPM for AI to identify unlabeled sensitive data and generate label policies. |
| User disruption | Train teams on Copilot’s updated behavior using Microsoft Mechanics tutorials10. |
| Policy misconfiguration | Test policies in audit mode pre-deployment and monitor via Purview activity logs. |
This update reinforces Microsoft’s commitment to secure AI adoption, enabling organizations to balance productivity gains with robust data governance.
IT teams should review sensitivity label taxonomies and leverage Purview’s Conditional Access integrations to preempt oversharing risks.
As Copilot’s capabilities expand into apps like Word and Excel, proactive DLP configuration will be critical to maintaining compliance in generative AI workflows.
Find this Story Interesting! Follow us on LinkedIn and X to Get More Instant Updates
The post Microsoft Purview DLP Restricts Microsoft 365 Copilot from Handling Sensitive Emails appeared first on Cyber Security News.
The post Imagine’s Steve Reynolds Discusses Impact Of Pixel Power Acquisition appeared first on TV…
Anil Bhardwaj Broadcast standards association ATSC has named Indian broadcasting executive Anil Bhardwaj as director of…
Telestream is expanding practical AI enhancements across its Vantage, Vantage Cloud, EDC, Stanza and Qualify product lines to unify operations across on-premises,…
Riedel Communications today announced that Fondazione Teatro alla Scala has deployed a comprehensive wireless intercom…
At the 2026 NAB Show in Las Vegas, April 18-22, Netgear will highlight its new…
IBC today announced a new strategic partnership with EIT Culture & Creativity — the institutional partnership for culture…
This website uses cookies.