Search

MC208818 – Updates coming to Power Apps Data Loss Prevention (archived)

Power Apps Icon

*For this entry exists the more relevant or more recent entry MC236224

check before: 2020-04-13

Product:

Power Apps, Power Automate, PowerApps

Platform:

Online, World tenant

Status:

Change type:

Links:

MC236224

Details:

Starting April 20th, 2020 Power Apps will begin enforcing Data Loss Prevention (DLP) policies when applications are launched. This enforcement is in addition to the DLP enforcement that occurs when connections are added to applications in Power Apps Studio.

What are Data Loss Prevention policies?
Your organization's data is likely one of the most important assets you are responsible for safeguarding as an administrator. Power Apps and Power Automate allow rapid build and rollout of high value applications that allow users to measure and act on the data in real time. Users often have good intentions but might overlook the potential for exposure from data leakage to services and audiences that shouldn't have access to the data. Data Loss Prevention (DLP) policies enforce rules of what connectors can be used together by classifying connectors as either Business Data only or No Business Data allowed. Simply, if you put a connector in the business data only group, it can only be used with other connectors from that group in the same app. Please see this "https://docs.microsoft.com/power-platform/admin/wp-data-loss-prevention">article for further information on DLP.

What will change?
Typically, as a Power Apps maker you are informed of any DLP policy (as configured by the tenant or environment admin) violations while adding a connection to an app in Power Apps Studio. However, if DLP policies are edited by admins *after* an app is created, then users could continue to use the app even if it didn't adhere to the latest DLP policy. This upcoming change ensures Power Apps not adhering to the latest published DLP policies no longer run until they comply with the latest DLP policy applicable for the environment.

How will you or your users be impacted?
Apps not adhering to the latest DLP policies in the organization will not launch but will instead be presented with an error message to end-users stating the app isn't compliant with the new policies.

How you or your users can fix the impacted Power Apps?
Makers should open the app in "https://create.powerapps.com/">Power Apps Studio to identify the connections in the application that violate the latest DLP policies. Makers should edit the application to remove these connections to bring the application back into compliance with the latest DLP policies.

If an application’s connections violating the latest DLP cannot be removed due to its use case, then admins and makers can decide to move the application with its existing connection to a different environment where the DLP policies allow the app to run without removing any connections. This may mean admins need to create new environments and DLP policies to accommodate the application’s requirements. Sometimes admins may agree to edit existing DLP policies in their current environment to accommodate an application’s requirement based on the security assessment.

Change Category:
XXXXXXX ...

Scope:
XXXXXXX ...

Release Phase:

Created:
2020-04-07

updated:
2020-04-07

the free basic plan is required to see all details. Sign up here


A cloudsocut.one plan is required to see all the changed details. If you are already a customer, choose login.
If you are new to cloudscout.one please choose a plan.


Last updated 2 years ago

Share to MS Teams

Login to your account

Welcome Back, We Missed You!