Skip to content

Roadmap: Expand Compliance Guard to cover external sharing and DLP policies #2

Description

@afkpal

Summary

Broaden the Compliance Guard to evaluate external sharing requests and Data Loss Prevention (DLP) policy changes against client-specific rules, in addition to the current account/mailbox/Conditional Access checks.

Why

For wealth management and financial advisory firms, external sharing and DLP are common sources of compliance exposure. Adding these to the Compliance Guard widens the safety net before sensitive data leaves the tenant.

Acceptance criteria

  • Compliance Guard recognizes external-sharing and DLP-change intents
  • Returns verdict + reasoning + required approval + safe steps
  • References client archiving/retention vendor (e.g. Global Relay, Smarsh, Redtail) where relevant
  • Flags any action that could violate SEC/FINRA recordkeeping

Notes

Keeps the grounded, no-hallucination design: all rules come from verified SharePoint Client Profiles data.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions