Microsoft Purview: Reverting single capturing group enforcement for custom SIT regex
Microsoft Purview is reverting the enforcement of the single capturing group limit for custom Sensitive Information Type regexes, allowing multiple top-level capturing groups again. This change, effective late July 2026, requires no immediate action but recommends reviewing and updating regexes to a single capturing group where possible. What and why Following customer feedback, Microsoft Purview is reverting the enforcement of the single capturing group limit for custom Sensitive Information Type (SIT) regular expressions that was previously communicated in MC1413309. This change restores the prior behavior, allowing administrators to create and edit custom SITs that contain multiple capturing groups through both the Microsoft Purview user experience and PowerShell cmdlets. While enforcement is being reverted, we recommend that organizations review custom regular expressions and update them to use a single top-level capturing group where possible. This helps prepare for potential future changes. Any future enforcement changes would be communicated in advance to allow sufficient planning time. For clarity, this guidance applies to regular expressions that contain multiple top-level capturing groups separated by alternation, such as (pattern1)|(pattern2). It does not apply to nested capturing groups within a single expression. Rollout schedule Beginning late July 2026 and expected to complete in late July 2026 Impact on your organization Who is affected Administrators who create or manage custom Sensitive Information Types (SITs) in Microsoft Purview. Organizations that use custom SITs with regular expressions containing multiple top-level capturing groups. Platforms and services Microsoft Purview Data Loss Prevention (DLP) Microsoft Purview compliance portal PowerShell cmdlets for SIT management What will happen Administrators can create and edit custom SITs that contain multiple capturing groups. Creation and editing of these SITs will no longer be blocked. Existing custom SITs that use multiple capturing groups will continue to function as before and do not require remediation as a result of this change. Existing DLP policies and enforcement behavior are not affected. No tenant configuration changes are required. The change is on by default as part of the service update. Action required and recommendations No immediate action is required. We recommend that administrators: Review custom SITs that use multiple top-level capturing […]
The post Microsoft Purview: Reverting single capturing group enforcement for custom SIT regex appeared first on M365 Admin.
Published on:
Learn moreWe can help you with Microsoft Purview: Reverting single capturing group enforcement for custom SIT regex
If you want help implementing, troubleshooting, or improving this product, contact us and we’ll point you in the right direction.
Related posts
Microsoft Teams: Enhanced real-time alerting rule management in the Teams admin center
Microsoft Teams will enhance Real-Time Alerting rule management in the Teams admin center by enabling rule duplication, bulk user uploads, and...
Copilot Studio – Use MCP-compliant tools in agent workflows
We are announcing the ability to use MCP (model context protocol) – compliant tools in agent workflows in Microsoft Copilot Studio. This...
Microsoft Teams: Personal message reminders for chat and channels
Microsoft Teams will introduce personal message reminders for chat and channel messages in October 2026. Users can set, manage, and receive no...
M365 Copilot: Tell Copilot what you need directly from the Copilot button in Word, Excel, and PowerPoint
Microsoft 365 Copilot adds a new prompt input directly on the Copilot button in Word, Excel, and PowerPoint for faster, contextual content cre...
Microsoft Outlook for iPad: Minimize email drafts and return to them later
Outlook for iPad will allow users to compose emails in a separate window and minimize drafts to return later, enhancing multitasking. This fea...
Microsoft Purview eDiscovery: Select user-owned SharePoint Embedded containers as a data source
Microsoft Purview eDiscovery will support selecting user-owned SharePoint Embedded containers as data sources for cases, searches, and holds s...
Microsoft Purview: Removing pay-as-you-go requirements for Edge for Business DLP unmanaged app protections
Starting mid-October 2026, Microsoft Purview will remove the pay-as-you-go billing requirement for inline collection and DLP policies protecti...
Data Privacy: Microsoft Online Services Subprocessor Disclosure
This notice provides an update to the Microsoft Online Services Subprocessors List. Microsoft may engage non-Microsoft organizations to help p...
Microsoft Graph: User.ReadBasic.All will no longer allow reading user app role assignments and license details
User.ReadBasic.All will no longer provide access to user app role assignments and license details starting mid-September 2026 to fix a securit...
30-Day Reminder: Windows Server 2022 will reach end of mainstream support on October 13, 2026
On October 13, 2026, Windows Server 2022 will reach end of mainstream support. The October 2026 security update will be the last mainstream su...