This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Answer the following questions to check your understanding of data policies in Power Platform.
A tenant-level data policy places the SharePoint connector in the Business group. An environment-level policy applied to the same environment places SharePoint in the Blocked group. What is the effective result for SharePoint in that environment?
SharePoint is available in the Business group because tenant policies take precedence.
SharePoint is blocked because the system applies the most restrictive combination of all applicable policies.
SharePoint remains in the Non-Business group as a compromise between the two policies.
You need to prevent a Copilot Studio agent from using public websites as a knowledge source while still allowing SharePoint knowledge. Which approach should you use?
Block the Knowledge source with public websites and data in Copilot Studio virtual connector in your DLP policy.
Block all HTTP connectors in the DLP policy.
Remove the agent's SharePoint access and configure a custom connector instead.
You want to allow makers to use the SharePoint connector but prevent them from deleting items. What feature should you configure?
Endpoint filtering with a URL pattern that excludes delete operations.
Action-level controls on the SharePoint connector to block the Delete item action.
A separate environment-level policy that blocks SharePoint entirely in production.
You enable desktop flow actions in a data policy and want to block database access in desktop flows for Zava Pay environments. What happens to existing desktop flows that use the Database module?
They continue running indefinitely because DLP only applies to new flows.
They're suspended synchronously if they have no child flows, or within 24 hours if they call child flows.
They're suspended only during the weekly consistency check.
Which approach best describes the recommended data policy strategy for a multi-zone Power Platform tenant?
Create one policy per connector, each scoped to all environments.
Layer a tenant-wide baseline that applies everywhere, then add zone-specific policies with increasing restrictions for higher-risk environments.
Apply a single comprehensive policy that blocks all connectors except those explicitly approved for each environment.
You must answer all questions before checking your work.
Was this page helpful?
Need help with this topic?
Want to try using Ask Learn to clarify or guide you through this topic?