check before: 2025-04-01
Product:
Microsoft 365 suite, Microsoft Edge, Purview, Purview Communication Compliance, Purview compliance portal, Purview Data Loss Prevention
Platform:
Online, Web, Windows Desktop, World tenant
Status:
Launched
Change type:
Admin impact, New feature, Updated message, User impact
Links:
Details:
Summary:
Microsoft Purview Data Loss Prevention will add inline protection in Microsoft Edge for Business to prevent sensitive data leaks when interacting with AI apps like ChatGPT, Google Gemini, and DeepSeek. Rolling out May to November 2025, admins can configure policies but no action is needed before rollout.
Details:
Updated September 9, 2025: We have updated the timeline. Thank you for your patience.
Coming soon for Microsoft Purview | Data Loss Prevention (DLP): We will introduce new inline protection capabilities for Microsoft Edge for Business that prevent data leakage for the various ways that users interact with sensitive data in the browser, including typing text directly into a web application or sending a prompt to a generative AI app. Inline protection is built natively into Edge for Business, meaning it can be enabled even without deploying Endpoint DLP, and the inline protection complements existing Endpoint DLP protections for uploading or pasting sensitive content to the browser. This capability will be available starting with several top consumer generative AI apps (ChatGPT, Google Gemini, and DeepSeek), and will expand to support a growing list of unmanaged apps over time.
Learn more in our blog: Building layered protection: New Microsoft Purview data security controls for the browser & network | Microsoft Community Hub
This message is associated with Microsoft 365 Roadmap ID 486368.
[When this will happen:]
Public Preview: We will begin rolling out late May 2025 (previously early April) and expect to complete by late July 2025 (previously early June).
General Availability (Worldwide): We will begin rolling out early November 2025 and expect to complete by early November 2025.
Change Category:
XXXXXXX ... free basic plan only
Scope:
XXXXXXX ... free basic plan only
Release Phase:
General Availability, Preview
Created:
2025-04-02
updated:
2025-09-10
Public Preview Start Date
XXXXXXX ... free basic plan only
Task Type
XXXXXXX ... free basic plan only
Docu to Check
XXXXXXX ... free basic plan only
MS How does it affect me
XXXXXXX ... free basic plan only
MS Preperations
XXXXXXX ... free basic plan only
MS Urgency
XXXXXXX ... free basic plan only
MS workload name
XXXXXXX ... free basic plan only
linked item details
XXXXXXX ... free basic plan only
summary for non-techies**
Microsoft is enhancing its Purview Data Loss Prevention system by introducing inline protection in Edge for Business, which monitors and controls data interactions with AI applications like ChatGPT and Google Gemini, allowing administrators to configure security measures based on user risk levels.
Direct effects for Operations**
Data Leakage Risk
Without preparation, users may inadvertently expose sensitive data when interacting with AI applications, leading to potential data breaches.
- roles: Security Admin, End User
- references: https://learn.microsoft.com/purview/dlp-configure-endpoint-settings?tabs=purview#sensitive-service-domain-groups, https://techcommunity.microsoft.com/blog/microsoft-security-blog/building-layered-protection-new-microsoft-purview-data-security-controls-for-the/4395071
" target="_blank" rel="nofollow noopener noreferrer">https://techcommunity.microsoft.com/blog/microsoft-security-blog/building-layered-protection-new-microsoft-purview-data-security-controls-for-the/4395071
User Experience Disruption
The new inline protection may block legitimate user prompts containing sensitive data, causing frustration and hindering productivity.
- roles: End User, IT Support
- references: https://learn.microsoft.com/purview/dlp-configure-endpoint-settings?tabs=purview#sensitive-service-domain-groups, https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=486368
Compliance and Policy Management
Admins may face challenges in managing compliance policies effectively if they are not informed about the changes, leading to misconfigurations.
- roles: Compliance Officer, Security Admin
- references: https://techcommunity.microsoft.com/blog/microsoft-security-blog/building-layered-protection-new-microsoft-purview-data-security-controls-for-the/4395071, https://www.microsoft.com/microsoft-365/roadmap?filters=&searchterms=486368
Configutation Options**
XXXXXXX ... paid membership only
Opportunities**
XXXXXXX ... free basic plan only
Potentional Risks**
XXXXXXX ... paid membership only
Data Protection**
XXXXXXX ... paid membership only
IT Security**
XXXXXXX ... paid membership only
Hypothetical Work Council Statement**
XXXXXXX ... paid membership only
DPIA Draft**
XXXXXXX ... paid membership only
explanation for non-techies**
XXXXXXX ... free basic plan only
** AI generated content. This information must be reviewed before use.
a free basic plan is required to see more details. Sign up here
A cloudsocut.one plan is required to see all the changed details. If you are already a customer, choose login.
If you are new to cloudscout.one please choose a plan.
change history
| Date | Property | old | new |
| 2025-09-10 | MC Messages | Updated July 2, 2025: We have updated the timeline below. Thank you for your patience.
Coming soon for Microsoft Purview | Data Loss Prevention (DLP): We will introduce new inline protection capabilities for Microsoft Edge for Business that prevent data leakage for the various ways that users interact with sensitive data in the browser, including typing text directly into a web application or sending a prompt to a generative AI app. Inline protection is built natively into Edge for Business, meaning it can be enabled even without deploying Endpoint DLP, and the inline protection complements existing Endpoint DLP protections for uploading or pasting sensitive content to the browser. This capability will be available starting with several top consumer generative AI apps (ChatGPT, Google Gemini, and DeepSeek), and will expand to support a growing list of unmanaged apps over time. Learn more in our blog: Building layered protection: New Microsoft Purview data security controls for the browser & network | Microsoft Community Hub This message is associated with Microsoft 365 Roadmap ID 486368. [When this will happen:] Public Preview: We will begin rolling out late May 2025 (previously early April) and expect to complete by late July 2025 (previously early June). We will update this message when the plan for General Availability is finalized. | Updated September 9, 2025: We have updated the timeline. Thank you for your patience.
Coming soon for Microsoft Purview | Data Loss Prevention (DLP): We will introduce new inline protection capabilities for Microsoft Edge for Business that prevent data leakage for the various ways that users interact with sensitive data in the browser, including typing text directly into a web application or sending a prompt to a generative AI app. Inline protection is built natively into Edge for Business, meaning it can be enabled even without deploying Endpoint DLP, and the inline protection complements existing Endpoint DLP protections for uploading or pasting sensitive content to the browser. This capability will be available starting with several top consumer generative AI apps (ChatGPT, Google Gemini, and DeepSeek), and will expand to support a growing list of unmanaged apps over time. Learn more in our blog: Building layered protection: New Microsoft Purview data security controls for the browser & network | Microsoft Community Hub This message is associated with Microsoft 365 Roadmap ID 486368. [When this will happen:] Public Preview: We will begin rolling out late May 2025 (previously early April) and expect to complete by late July 2025 (previously early June). General Availability (Worldwide): We will begin rolling out early November 2025 and expect to complete by early November 2025. |
| 2025-09-10 | MC Last Updated | 07/02/2025 18:06:52 | 2025-09-09T23:37:30Z |
| 2025-09-10 | MC Summary | New inline protection controls for AI apps in Microsoft Edge for Business will be introduced in Microsoft Purview Data Loss Prevention (DLP). This feature will prevent data leakage when users interact with sensitive data in the browser. The rollout starts in late May 2025 and completes by late July 2025. Admins can configure these features in Purview. | Microsoft Purview Data Loss Prevention will add inline protection in Microsoft Edge for Business to prevent sensitive data leaks when interacting with AI apps like ChatGPT, Google Gemini, and DeepSeek. Rolling out May to November 2025, admins can configure policies but no action is needed before rollout. |
| 2025-07-03 | MC Messages | Updated May 15, 2025: We have updated the timeline below. Thank you for your patience.
Coming soon for Microsoft Purview | Data Loss Prevention (DLP): We will introduce new inline protection capabilities for Microsoft Edge for Business that prevent data leakage for the various ways that users interact with sensitive data in the browser, including typing text directly into a web application or sending a prompt to a generative AI app. Inline protection is built natively into Edge for Business, meaning it can be enabled even without deploying Endpoint DLP, and the inline protection complements existing Endpoint DLP protections for uploading or pasting sensitive content to the browser. This capability will be available starting with several top consumer generative AI apps (ChatGPT, Google Gemini, and DeepSeek), and will expand to support a growing list of unmanaged apps over time. Learn more in our blog: Building layered protection: New Microsoft Purview data security controls for the browser & network | Microsoft Community Hub This message is associated with Microsoft 365 Roadmap ID 486368. [When this will happen:] Public Preview: We will begin rolling out late May 2025 (previously early April) and expect to complete by early June 2025 (previously late April). We will update this message when the plan for General Availability is finalized. | Updated July 2, 2025: We have updated the timeline below. Thank you for your patience.
Coming soon for Microsoft Purview | Data Loss Prevention (DLP): We will introduce new inline protection capabilities for Microsoft Edge for Business that prevent data leakage for the various ways that users interact with sensitive data in the browser, including typing text directly into a web application or sending a prompt to a generative AI app. Inline protection is built natively into Edge for Business, meaning it can be enabled even without deploying Endpoint DLP, and the inline protection complements existing Endpoint DLP protections for uploading or pasting sensitive content to the browser. This capability will be available starting with several top consumer generative AI apps (ChatGPT, Google Gemini, and DeepSeek), and will expand to support a growing list of unmanaged apps over time. Learn more in our blog: Building layered protection: New Microsoft Purview data security controls for the browser & network | Microsoft Community Hub This message is associated with Microsoft 365 Roadmap ID 486368. [When this will happen:] Public Preview: We will begin rolling out late May 2025 (previously early April) and expect to complete by late July 2025 (previously early June). We will update this message when the plan for General Availability is finalized. |
| 2025-07-03 | MC Last Updated | 05/15/2025 21:12:18 | 2025-07-02T18:06:52Z |
| 2025-07-03 | MC Summary | Microsoft Purview is introducing new inline protection controls for AI apps in Microsoft Edge for Business, starting with ChatGPT, Google Gemini, and DeepSeek. This feature, rolling out from late May to early June 2025, allows admins to block sensitive data prompts and tailor enforcement levels. No admin action is required before rollout. | New inline protection controls for AI apps in Microsoft Edge for Business will be introduced in Microsoft Purview Data Loss Prevention (DLP). This feature will prevent data leakage when users interact with sensitive data in the browser. The rollout starts in late May 2025 and completes by late July 2025. Admins can configure these features in Purview. |
| 2025-05-16 | MC Last Updated | 04/02/2025 02:51:09 | 2025-05-15T21:12:18Z |
| 2025-05-16 | MC Messages | Coming soon for Microsoft Purview | Data Loss Prevention (DLP): We will introduce new inline protection capabilities for Microsoft Edge for Business that prevent data leakage for the various ways that users interact with sensitive data in the browser, including typing text directly into a web application or sending a prompt to a generative AI app. Inline protection is built natively into Edge for Business, meaning it can be enabled even without deploying Endpoint DLP, and the inline protection complements existing Endpoint DLP protections for uploading or pasting sensitive content to the browser. This capability will be available starting with several top consumer generative AI apps (ChatGPT, Google Gemini, and DeepSeek), and will expand to support a growing list of unmanaged apps over time.
Learn more in our blog: Building layered protection: New Microsoft Purview data security controls for the browser & network | Microsoft Community Hub This message is associated with Microsoft 365 Roadmap ID 486368. [When this will happen:] Public Preview: We will begin rolling out early April 2025 and expect to complete by late April 2025. We will update this message when the plan for General Availability is finalized. | Updated May 15, 2025: We have updated the timeline below. Thank you for your patience.
Coming soon for Microsoft Purview | Data Loss Prevention (DLP): We will introduce new inline protection capabilities for Microsoft Edge for Business that prevent data leakage for the various ways that users interact with sensitive data in the browser, including typing text directly into a web application or sending a prompt to a generative AI app. Inline protection is built natively into Edge for Business, meaning it can be enabled even without deploying Endpoint DLP, and the inline protection complements existing Endpoint DLP protections for uploading or pasting sensitive content to the browser. This capability will be available starting with several top consumer generative AI apps (ChatGPT, Google Gemini, and DeepSeek), and will expand to support a growing list of unmanaged apps over time. Learn more in our blog: Building layered protection: New Microsoft Purview data security controls for the browser & network | Microsoft Community Hub This message is associated with Microsoft 365 Roadmap ID 486368. [When this will happen:] Public Preview: We will begin rolling out late May 2025 (previously early April) and expect to complete by early June 2025 (previously late April). We will update this message when the plan for General Availability is finalized. |
| 2025-05-16 | MC MessageTagNames | New feature, User impact, Admin impact | Updated message, New feature, User impact, Admin impact |
| 2025-05-16 | MC Summary | New inline protection controls for AI apps in Microsoft Edge for Business will be introduced in Microsoft Purview Data Loss Prevention (DLP). This feature, available from April 2025, will prevent data leakage when interacting with sensitive data in the browser. Admins can block sensitive prompts in AI apps like ChatGPT, Google Gemini, and DeepSeek. No action is required before the rollout. | Microsoft Purview is introducing new inline protection controls for AI apps in Microsoft Edge for Business, starting with ChatGPT, Google Gemini, and DeepSeek. This feature, rolling out from late May to early June 2025, allows admins to block sensitive data prompts and tailor enforcement levels. No admin action is required before rollout. |
Last updated 2 months ago ago