Loading...

Microsoft Purview enforcing one capturing group limit for custom sensitive information types

Microsoft Purview enforcing one capturing group limit for custom sensitive information types

Microsoft Purview will enforce a limit of one capturing group per regular expression in custom Sensitive Information Types by early July 2026. Admins must update existing SITs with multiple capturing groups to comply, or creation and updates will be blocked, affecting DLP policy functionality. What and Why Microsoft Purview is enforcing the documented limit of one capturing group per regular expression in custom Sensitive Information Type (SIT) definitions. This change improves consistency, reliability, and predictability in pattern matching for data classification and Data Loss Prevention scenarios. This enforcement applies when custom SITs are created or updated and may block those operations if the limit is exceeded. Rollout Schedule General Availability (Worldwide, GCC, GCC High, and DoD): The rollout is expected to complete by early July 2026. Impact on Your Organization Who is affected  Admins who create or manage custom SITs in Microsoft Purview Platforms and services Microsoft Purview portal PowerShell cmdlets (New-DlpSensitiveInformationTypeRulePackage and Set-DlpSensitiveInformationTypeRulePackage) What will happen New custom SITs that include more than one capturing group in a regular expression will be blocked during creation. Updates to existing SITs will fail validation if the regular expression contains more than one capturing group. When editing or re-saving SITs that contain more than one capturing group, admins must update regular expression patterns to include only one capturing group before changes can be saved. This enforcement applies across both portal and PowerShell experiences. Existing SITs with multiple capturing groups will stop functioning. Action Required or Recommendations Action required. Review all custom SITs that use regular expressions to identify any with multiple capturing groups. After rollout, updates to these SITs will fail validation until corrected, which may delay policy updates. Update regular expression patterns to comply with the one capturing group limit. Test updated SITs to ensure they continue to match the intended content before applying them to production policies. Review service limits documentation to confirm compliance requirements. Learn more (and for the full list of SIT limits): Sensitive information type limits | Microsoft Purview | Microsoft Learn Compliance Considerations This change enforces existing limits for SITs and may affect how Data Loss Prevention […]

The post Microsoft Purview enforcing one capturing group limit for custom sensitive information types appeared first on M365 Admin.

Published on:

Learn more
Need help with this product?

We can help you with Microsoft Purview enforcing one capturing group limit for custom sensitive information types

If you want help implementing, troubleshooting, or improving this product, contact us and we’ll point you in the right direction.

M365 Admin
M365 Admin

by João Ferreira

Share post:

Related posts

Dynamics 365 Finance and Operations cross-app: Migrate finance and operations environments from Lifecycle Services to Power Platform admin center

The self-service environment migration feature moves management of an existing finance and operations apps environment from Microsoft Dynamics...

10 hours ago

Microsoft Teams: Start side conversations during meetings

Keep collaboration moving without disrupting the main discussion. Start and continue one-to-one or small-group conversations directly from a m...

10 hours ago

Microsoft Purview: Data Lifecycle Management – Ensure regulatory compliance by deleting inactive OneDrives and mailboxes for departing employees

Enables admins to delete both content and containers for departed users at scale thereby keeping your tenant compliant without any manual effo...

10 hours ago

Microsoft Entra ID: Passkey support for B2B users

B2B users, including internal guest users and external users, will be able to register and sign in with passkeys issued by a resource tenant t...

10 hours ago

Microsoft Teams: Hide organizer names in calendar view on Teams Panels

Microsoft Teams Panels will add an admin setting to show or hide organizer names in Calendar View, configurable via the Teams Rooms Pro Manage...

1 day ago

Microsoft Defender for Office 365: New email submissions data in Advanced Hunting

Microsoft Defender for Office 365 will add two new Advanced Hunting tables, SubmissionEvents and SubmissionResults, providing security teams e...

1 day ago

Microsoft Copilot: Introducing the Microsoft plugin registry for Microsoft Copilot experiences

Microsoft is introducing a Microsoft plugin registry for Copilot experiences and Microsoft 365 apps, centralizing discovery, publishing, and g...

1 day ago

Action Required: Upgrade ExchangeOnlineManagement PowerShell Module to Version 3.10.1 or Later

Upgrade the ExchangeOnlineManagement PowerShell module to version 3.10.1 or later by March 31, 2027, to avoid authentication failures due to n...

1 day ago

Microsoft PowerPoint: Brand Guidelines and Style removed from new Brand Kit creation

Microsoft PowerPoint no longer includes Brand Guidelines and Style when creating new Brand Kits to simplify the process. Existing Brand Kits r...

1 day ago

Updates available for Microsoft 365 Apps for Current Channel

We’ve released updates to the following update channel for Microsoft 365 Apps: Current Channel When this will happen: We’ll be gra...

1 day ago

Newsletter

Get the latest Dynamics 365 and Power Platform content in your inbox

A curated digest of community blogs, product news, videos, and podcasts — delivered without the noise.

Weekly updates Unsubscribe anytime Fresh community picks
We use your email only for the newsletter and you can unsubscribe at any time.
By subscribing, you agree to the privacy policy.