Share via


Mask sensitive data, fields with column-level security

Important

This content is archived and is not being updated. For the latest documentation, go to Administer Microsoft Power Platform. For the latest release plans, go to Dynamics 365, Power Platform, and Cloud for Industry release plans.

Important

Some of the functionality described in this release plan has not been released. Delivery timelines may change and projected functionality may not be released (see Microsoft policy). Learn more: What's new and planned

Enabled for Public preview General availability
Users by admins, makers, or analysts Aug 30, 2024 Apr 2025

Business value

All enterprise and financial customers are required to protect their customers' personal data and sensitive fields to prevent data from exfiltration. With this feature, admins can mask sensitive fields and eliminate the bulk export of these fields.

Feature details

Currently, highly privileged users who have access to customers' personal data and sensitive fields can see these fields in their entirety. There is a risk when employees can download sensitive information using bulk export operations. With this feature, the admin can mask sensitive fields and eliminate the bulk export of these fields.

Admins can grant special privileges to selected users to see the sensitive fields as masked, by default, and permit certain users to read sensitive fields (one record at a time to prevent data exfiltration). Access to sensitive fields is audited to allow the security team to monitor for potential fraud.

See also

Create and manage masking rules (docs)