Copilot Sensitive Info type DLP safeguarding not blocking prompts as intended

Patrick Ollero 0 Reputation points
2026-05-18T21:58:44.0566667+00:00

I'm unable to get the DLP policy that prevents Copilot from processing when a sensitive info type is typed into the chat.

  • The policy is on and enforced and not in simulation mode
  • The policy has been on for over 2 months (not a propagation issue)
  • I am testing with actual SIT text in the chat, not uploaded files
  • I am testing with a GA account, Business Standard, and with Copilot Basic free version (which according to Microsoft should be supported).
  • The prompt continues processing and may sometimes say It's sensitive, but continues to process and asks for more information. It never shows blocked or stopping the chat process.
  • There are no alerts in Purview showing that a DLP policy was applied or detected
  • I've used several different made up or test sensitive info type test.

I'm leaning towards the issue being a rollout issue, or licensing issue (less likely). I can't find anyway to confirm it is a rollout issue in the tenant, but it let me set up the policy with no issue.

User's image

User's image

Microsoft 365 and Office
Microsoft 365 and Office

A comprehensive suite of productivity tools and cloud services that enhance collaboration, communication, and efficiency. Combining classic Office apps with advanced Microsoft 365 features, it supports both personal and business needs

0 comments No comments

1 answer

Sort by: Most helpful
  1. AI answer

    2026-05-18T21:59:09.5666667+00:00

    The behavior matches the current design and limitations of DLP for Microsoft 365 Copilot prompts rather than a rollout or licensing issue.

    Key points from the documented behavior:

    1. The “block sensitive information types in prompts” feature is in preview and only applies to the Microsoft 365 Copilot and Copilot Chat policy location.
    2. DLP evaluates only the text typed directly into the Copilot prompt. It does not inspect:
      • Files uploaded into the prompt
      • Other content sources used by Copilot (SharePoint, OneDrive, Exchange, etc.)
    3. When the Content contains → Sensitive information types condition is used with the action Prevent Copilot from processing content → Processing prompts, the expected result is:
      • Copilot does not respond to the prompt.
      • The prompt is not used for internal or external web searches.
    4. There is a separate action, Prevent Copilot from processing content → Performing Web Searches, which only blocks external web search but still allows Copilot to answer using internal data.

    Given this, the DLP rule must meet all of the following to fully block the prompt:

    1. Policy location is Microsoft 365 Copilot and Copilot Chat (no other locations in the same policy).
    2. Condition is Content contains → Sensitive information types.
    3. Action is specifically Prevent Copilot from processing content → Processing prompts (not just “Performing Web Searches”).
    4. The policy is in enforce mode (not simulation) and has had time to sync (up to four hours) into Copilot.

    If Copilot is:

    • Flagging content as sensitive,
    • Continuing to respond,
    • And no DLP alerts appear in Purview,

    then the most likely configuration issue is that the rule is using the web search–only action or a different location/condition combination, so the prompt itself is never being blocked by the Copilot-specific DLP engine.

    Recommended checks and adjustments:

    1. Open the DLP policy and confirm:
      • Location: Microsoft 365 Copilot and Copilot Chat is selected.
      • No other locations are enabled in that same policy (this location disables others by design).
    2. Edit the rule and verify:
      • Condition: Content contains → Sensitive information types with the SITs being tested.
      • Action: Prevent Copilot from processing content → Processing prompts is selected.
    3. Ensure the policy is Turned on immediately (not simulation) and wait up to four hours for changes to apply.
    4. Test again using only typed prompt text that matches one of the configured SITs.

    If all of the above are confirmed and the prompt still processes with no DLP event, the remaining path is to open a support case so the service team can check for tenant-specific issues with the preview rollout of the Microsoft 365 Copilot and Copilot Chat policy location.


    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.