Commands › Exchange Online

Get-DlpSensitiveInformationType

Exchange Online ExchangeOnlineManagement Get-*

For more information, see Security & Compliance PowerShell. Use the Get-DlpSensitiveInformationType cmdlet to list the sensitive information types that are defined for your organization in the Microsoft Purview compliance portal. Sensitive information types are used by data loss prevention (DLP) rules to check for sensitive information such as social security, passport, or credit card numbers.

Quick start script

# Get-DlpSensitiveInformationType — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Run and inspect
Get-DlpSensitiveInformationType | Format-List

# 3. Export for evidence / drift tracking
Get-DlpSensitiveInformationType | Export-Clixml .\DlpSensitiveInformationType-$(Get-Date -Format yyyyMMdd).xml

Syntax

Get-DlpSensitiveInformationType [[-Identity] <SensitiveInformationTypeIdParameter>]
 [-Capability <ClassificationCapabilityType>]
 [-IncludeDetails]
 [-IncludeElements <ClassificationPrimitiveElementType>]
 [-Organization <OrganizationIdParameter>]
 [<CommonParameters>]

Parameters (5)

ParameterTypeRequiredWhat it controls
-Identity SensitiveInformationTypeIdParameter The Identity parameter specifies the sensitive information type that you want to view. Valid values are:
-Capability ClassificationCapabilityType {{ Fill Capability Description }}
-IncludeDetails SwitchParameter {{ Fill IncludeDetails Description }}
-IncludeElements ClassificationPrimitiveElementType {{ Fill IncludeElements Description }}
-Organization OrganizationIdParameter This parameter is reserved for internal Microsoft use.

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.