Microsoft Purview enforcing one capturing group limit for custom sensitive information types
Microsoft Purview will enforce a limit of one capturing group per regular expression in custom Sensitive Information Types by early July 2026. Admins must update existing SITs with multiple capturing groups to comply, or creation and updates will be blocked, affecting DLP policy functionality. What and Why Microsoft Purview is enforcing the documented limit of one capturing group per regular expression in custom Sensitive Information Type (SIT) definitions. This change improves consistency, reliability, and predictability in pattern matching for data classification and Data Loss Prevention scenarios. This enforcement applies when custom SITs are created or updated and may block those operations if the limit is exceeded. Rollout Schedule General Availability (Worldwide, GCC, GCC High, and DoD): The rollout is expected to complete by early July 2026. Impact on Your Organization Who is affected Admins who create or manage custom SITs in Microsoft Purview Platforms and services Microsoft Purview portal PowerShell cmdlets (New-DlpSensitiveInformationTypeRulePackage and Set-DlpSensitiveInformationTypeRulePackage) What will happen New custom SITs that include more than one capturing group in a regular expression will be blocked during creation. Updates to existing SITs will fail validation if the regular expression contains more than one capturing group. When editing or re-saving SITs that contain more than one capturing group, admins must update regular expression patterns to include only one capturing group before changes can be saved. This enforcement applies across both portal and PowerShell experiences. Existing SITs with multiple capturing groups will stop functioning. Action Required or Recommendations Action required. Review all custom SITs that use regular expressions to identify any with multiple capturing groups. After rollout, updates to these SITs will fail validation until corrected, which may delay policy updates. Update regular expression patterns to comply with the one capturing group limit. Test updated SITs to ensure they continue to match the intended content before applying them to production policies. Review service limits documentation to confirm compliance requirements. Learn more (and for the full list of SIT limits): Sensitive information type limits | Microsoft Purview | Microsoft Learn Compliance Considerations This change enforces existing limits for SITs and may affect how Data Loss Prevention […]
The post Microsoft Purview enforcing one capturing group limit for custom sensitive information types appeared first on M365 Admin.
Published on:
Learn moreWe can help you with Microsoft Purview enforcing one capturing group limit for custom sensitive information types
If you want help implementing, troubleshooting, or improving this product, contact us and we’ll point you in the right direction.
Related posts
Dynamics 365 Finance and Operations cross-app: Migrate finance and operations environments from Lifecycle Services to Power Platform admin center
The self-service environment migration feature moves management of an existing finance and operations apps environment from Microsoft Dynamics...
Microsoft Teams: Start side conversations during meetings
Keep collaboration moving without disrupting the main discussion. Start and continue one-to-one or small-group conversations directly from a m...
Microsoft Purview: Data Lifecycle Management – Ensure regulatory compliance by deleting inactive OneDrives and mailboxes for departing employees
Enables admins to delete both content and containers for departed users at scale thereby keeping your tenant compliant without any manual effo...
Microsoft Entra ID: Passkey support for B2B users
B2B users, including internal guest users and external users, will be able to register and sign in with passkeys issued by a resource tenant t...
Microsoft Teams: Hide organizer names in calendar view on Teams Panels
Microsoft Teams Panels will add an admin setting to show or hide organizer names in Calendar View, configurable via the Teams Rooms Pro Manage...
Microsoft Defender for Office 365: New email submissions data in Advanced Hunting
Microsoft Defender for Office 365 will add two new Advanced Hunting tables, SubmissionEvents and SubmissionResults, providing security teams e...
Microsoft Copilot: Introducing the Microsoft plugin registry for Microsoft Copilot experiences
Microsoft is introducing a Microsoft plugin registry for Copilot experiences and Microsoft 365 apps, centralizing discovery, publishing, and g...
Action Required: Upgrade ExchangeOnlineManagement PowerShell Module to Version 3.10.1 or Later
Upgrade the ExchangeOnlineManagement PowerShell module to version 3.10.1 or later by March 31, 2027, to avoid authentication failures due to n...
Microsoft PowerPoint: Brand Guidelines and Style removed from new Brand Kit creation
Microsoft PowerPoint no longer includes Brand Guidelines and Style when creating new Brand Kits to simplify the process. Existing Brand Kits r...
Updates available for Microsoft 365 Apps for Current Channel
We’ve released updates to the following update channel for Microsoft 365 Apps: Current Channel When this will happen: We’ll be gra...