Message Center
Microsoft Purview Data Security Triage Agent will add sensitive data remediation via Microsoft Teams for SharePoint and OneDrive files, automating user notifications and tracking remediation progress. This opt-in feature, launching in public preview late June 2026, aims to reduce compliance risk and improve remediation visibility.
What and Why
Microsoft Purview Data Security Triage Agent in Data Loss Prevention (DLP) will include a sensitive data remediation capability to help organizations identify and remediate sensitive information across SharePoint and OneDrive at scale. This capability will automate user engagement by sending remediation requests directly to the last modifier of affected files through Microsoft Teams. By enabling a closed-loop remediation process, organizations will be able to reduce compliance risk, improve remediation rates, and gain better visibility into remediation progress.
Rollout Schedule
Impact on Your Organization
Who is affected
Platforms/Services
What will happen
Action Required/Recommendations
Action may be required if you plan to use this feature.
Learn more:
Compliance considerations
| Question | Answer |
| Does the change alter how existing customer data is processed, stored, or accessed (for example, documents, emails, or chats)? | Yes. Sensitive data identified through Data Loss Prevention alerts is processed to trigger remediation workflows, including notifying users and tracking remediation activity. |
| Does the change introduce or significantly modify AI, machine learning, or agent capabilities that interact with or provide access to customer data? | Yes. The Data Security Triage Agent uses AI-assisted automation to triage alerts and orchestrate remediation workflows involving customer data. |
| Does the change provide a new way of communicating between users, tenants, or subscriptions? | Yes. The feature introduces automated Microsoft Teams messages sent to users regarding remediation of sensitive data. |
| Does the change alter how admins can monitor, report on, or demonstrate compliance activities? | Yes. The feature adds remediation tracking and visibility in the Data Security Posture Management dashboard, enhancing compliance monitoring capabilities. |
| Does the change include an admin control, and can it be controlled through Entra ID group membership? | Yes. The feature requires explicit admin opt-in and can be configured by administrators within the Data Security Triage Agent settings. |