Share via


Data policy example - Block Power Platform connectors in agents

You can use data policies to prevent agent authors from configuring connectors. Doing so can help prevent data exfiltration.

For more information about other data policy configurations, see Configure data policies for agents.

Configure data policy to block Power Platform connectors in the Power Platform admin center

To configure the data policy to block Power Platform connectors, follow these steps:

  1. Sign in to the Power Platform admin center.

  2. On the side navigation, select Security, and then select Data and privacy. The Data protection and privacy page opens.

  3. Select Data policy. The Data policies page opens.

  4. Create a new data policy, or choose an existing data policy to edit:

    • If you want to create a new data policy, select New Policy. For detailed instructions, see Create a data policy.
    • If you want to choose an existing data policy to edit, select the data policy and select Edit Policy. For detailed instructions, see Edit a data policy.
  5. Select Next. The Add an environment page opens.

    • If you want to add an environment to your data policy, select the environment in the Available tab and select Add to policy.
    • If you want to remove an environment from your data policy, select the environment in the Added to policy tab and select Remove from policy.
  6. Select Next. The Assign connectors page opens.

  1. Use the search box to find the connector you want to block.
  2. Select the connector's More actions icon (), and then select Block. You can also see connectors that are already blocked in the Blocked tab.
  3. Select Next.
  4. Review your policy, then select Create policy if you're creating a new policy or Update policy if you're editing an existing policy.

Confirm data policy enforcement

You can confirm that this connector is being used in the data policy from Copilot Studio:

  1. Open your agent from the environment where the data policy is applied and go to the authoring canvas.

  2. Create a new topic and add an Action node.

  3. In the node's properties, select Connectors and choose your connection. Save your topic.

  4. If the policy is enforced, you'll see an error banner with a Details button after the topic is saved. On the Channels page, expand the error link and select the Download button to see details. The Published button is disabled when there's a data policy violation.

In the details file, a row appears for each violation. If a connector has a data policy violation, a row appears for each connector.

Note

Classic chatbots don't support Power Platform connectors.