Microsoft Purview: Reverting single capturing group enforcement for custom SIT regex
Microsoft Purview is reverting the enforcement of the single capturing group limit for custom Sensitive Information Type regexes, allowing multiple top-level capturing groups again. This change, effective late July 2026, requires no immediate action but recommends reviewing and updating regexes to a single capturing group where possible. What and why Following customer feedback, Microsoft Purview is reverting the enforcement of the single capturing group limit for custom Sensitive Information Type (SIT) regular expressions that was previously communicated in MC1413309. This change restores the prior behavior, allowing administrators to create and edit custom SITs that contain multiple capturing groups through both the Microsoft Purview user experience and PowerShell cmdlets. While enforcement is being reverted, we recommend that organizations review custom regular expressions and update them to use a single top-level capturing group where possible. This helps prepare for potential future changes. Any future enforcement changes would be communicated in advance to allow sufficient planning time. For clarity, this guidance applies to regular expressions that contain multiple top-level capturing groups separated by alternation, such as (pattern1)|(pattern2). It does not apply to nested capturing groups within a single expression. Rollout schedule Beginning late July 2026 and expected to complete in late July 2026 Impact on your organization Who is affected Administrators who create or manage custom Sensitive Information Types (SITs) in Microsoft Purview. Organizations that use custom SITs with regular expressions containing multiple top-level capturing groups. Platforms and services Microsoft Purview Data Loss Prevention (DLP) Microsoft Purview compliance portal PowerShell cmdlets for SIT management What will happen Administrators can create and edit custom SITs that contain multiple capturing groups. Creation and editing of these SITs will no longer be blocked. Existing custom SITs that use multiple capturing groups will continue to function as before and do not require remediation as a result of this change. Existing DLP policies and enforcement behavior are not affected. No tenant configuration changes are required. The change is on by default as part of the service update. Action required and recommendations No immediate action is required. We recommend that administrators: Review custom SITs that use multiple top-level capturing […]
The post Microsoft Purview: Reverting single capturing group enforcement for custom SIT regex appeared first on M365 Admin.
Published on:
Learn moreWe can help you with Microsoft Purview: Reverting single capturing group enforcement for custom SIT regex
If you want help implementing, troubleshooting, or improving this product, contact us and we’ll point you in the right direction.
Related posts
Microsoft OneDrive and SharePoint: Generate smart tables of contents for PDFs on the web with Copilot
Microsoft 365 Copilot users can generate AI-created, hierarchical, clickable tables of contents for PDFs in OneDrive and SharePoint on the web...
Microsoft Defender for Office 365: Changes to Unified RBAC permission mapping for Microsoft Entra Security Operator role
Microsoft is updating Microsoft Defender for Office 365’s Unified RBAC mapping for the Microsoft Entra Security Operator role, removing ...
Microsoft 365 Copilot: new guided Copilot onboarding experience
Microsoft 365 Copilot introduces an optional, admin-enabled guided onboarding experience for Frontier participants starting late October 2026....
Microsoft Purview |Unified Classification Management Experience
Microsoft Purview is launching a unified Classification Management experience for admins to manage classifiers consistently. Public Preview st...
Microsoft Purview | Data Loss Prevention: Administrative Units support for DLP policies for Microsoft Copilot
Microsoft Purview extends Microsoft Entra Administrative Units support to Copilot DLP policies, enabling delegated management within units whi...
Action required: Update Teams devices to a minimum app version ahead of the retirement of Exchange Web Services (EWS)
Update Microsoft Teams Rooms on Android, phones, and panels to the minimum app version released in February 2026 before October 2026 to avoid ...
Microsoft Power Platform governance and administration – Secure Dataverse record with column-based filtering
We are announcing the ability for admins to use filtered views to select and manage record-level access securely by defining security based on...
Microsoft Teams: Impersonation Protection for Teams meetings
Impersonation Protection for Teams meetings helps users identify potentially deceptive participants and meeting organizers. When Teams detects...
Microsoft Copilot (Microsoft 365): Use Dataverse Business Skills in Sales Agent
Business Skills are natural language instructions authored and stored in Microsoft Dataverse that teach Sales Agent how work gets done within ...