Commands › Exchange Online

Remove-DlpSensitiveInformationType

Exchange Online ExchangeOnlineManagement Remove-*

For more information, see Security & Compliance PowerShell. Use the Remove-DlpSensitiveInformationType cmdlet to remove sensitive information type rules that use document fingerprints. You can't use this cmdlet to remove built-in sensitive information type rules.

Quick start script

# Remove-DlpSensitiveInformationType — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Capture the current state first — you cannot roll back what you never recorded
$before = Get-DlpSensitiveInformationType
$before | Format-List

# 3. Make the change (dry run first)
Remove-DlpSensitiveInformationType -Identity <DataClassificationIdParameter> -WhatIf
Remove-DlpSensitiveInformationType -Identity <DataClassificationIdParameter>

# 4. Verify and diff
$after = Get-DlpSensitiveInformationType
Compare-Object ($before | Out-String) ($after | Out-String)

Syntax

Remove-DlpSensitiveInformationType [-Identity] <DataClassificationIdParameter>
 [-Confirm]
 [-WhatIf]
 [<CommonParameters>]

Parameters (3)

ParameterTypeRequiredWhat it controls
-Identity DataClassificationIdParameter yes The Identity parameter specifies the sensitive information type rule that you want to remove. You can use any value that uniquely identifies the sensitive information type rule. For example:
-Confirm SwitchParameter The Confirm switch specifies whether to show or hide the confirmation prompt. How this switch affects the cmdlet depends on whether the cmdlet requires confirmation before proceeding.
-WhatIf SwitchParameter The WhatIf switch doesn't work in Security & Compliance PowerShell.

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.