Data Loss Prevention (DLP) Violations Feed
The DLP Violations Feed helps you monitor how users handle sensitive data across the platform. It surfaces when data policies are violated—giving you insights into the type of data involved, the triggering agent, and the context of the violation. This is essential for identifying risk, improving data governance, and guiding training efforts.
Key Metrics in the Feed
Each row in the feed includes:
- Policy – The specific policy that was violated (e.g., PII, PHI, PCI).
- Finding Type – The type of sensitive data detected (e.g., email address, credit card number).
- Finding – The exact piece of data that triggered the violation.
- Source – The origin of the request that led to the violation.
- Agent – The agent that processed the data.
- Project – The project associated with the violation.
- Confidence – The likelihood that the data was correctly flagged.
DLP Violation Details
You can select the following rows to view more details:
- Violation Details – Includes the policy, data type, specific finding, and confidence score.
- Returned Chunks – Shows the retrieved data used by the model, with violations highlighted in red.
This detailed view is a valuable audit tool for reviewing how and where violations occur, helping ensure strong data security practices.
This detailed view is a valuable audit tool for reviewing how and where violations occur, helping ensure strong data security practices.
Filter for Targeted Analysis
You can filter the feed to focus on specific patterns or contexts:
- Date – View violations within a selected timeframe.
- Project – Focus on specific projects or teams.
- Policy – Drill into violations tied to certain data policies.
- Finding Type – Filter by the specific kind of sensitive data detected.
These filtering options allow for targeted analysis, helping you drill down into specific aspects of DLP violations and optimize where necessary.
Refresh & Export
- Refresh to view the latest DLP violation data in real time.
- Export to CSV for offline analysis, reporting, or deeper investigation.