Back to latest version

MC1217153 - Microsoft Purview compliance portal: Information Protection – Email attachment preview in Activity Explorer

Message Center

Metadata at Jan 13, 2026

Published

Jan 13, 2026

Service

Microsoft 365 suite
Microsoft Purview

Tag

New feature
User impact
Admin impact

Platforms

Web

Metadata changes

Tags
Admin impact, New feature, Updated message, User impactAdmin impact, New feature, User impact
End date
Mar 30, 2026Mar 7, 2026

Body changes

removed textadded text

Updated February 17, 2026: We have updated the timeline. Thank you for your patience. 

Introduction

We’re enhancing Activity Explorer in the Microsoft Purview compliance portal to provide better visibility into sensitive data detected in Exchange Online. Today, admins can only view email message bodies when investigating Data Loss Prevention (DLP) or Information Protection events. With this update, admins will be able to preview flagged email attachments directly within Activity Explorer—without downloading the email—simplifying investigations and reducing risk exposure.

This message is associated with Microsoft Roadmap ID 543969.

When this will happen

General Availability (Worldwide) rollout will begin in early February 2026 and complete by end ofearly February 2026 (previously early February).

How this affects your organization

Who is affected: Admins who use Microsoft Purview Activity Explorer to investigate Data Loss Prevention (DLP) or Information Protection events in Exchange Online.

What will happen:

  • Admins will be able to preview email attachments flagged for sensitive data directly within Activity Explorer:
  • user settings

  • A preview pane will appear for supported file types.
  • Email downloads will no longer be required for most investigations.
  • The feature will be enabled by default; no configuration changes will be required.
  • Existing DLP and Information Protection policies will remain unchanged.

What you can do to prepare

  • No action is required. This update will take effect automatically after rollout.
  • (Optional) Communicate this improvement to your security and compliance teams.
  • (Optional) Update internal investigation workflows or documentation.

Compliance considerations

No compliance considerations identified. Review as appropriate for your organization.