DLP Detection Patterns
1284 community-built patterns for detecting sensitive data across 77 jurisdictions.
All patterns
Detects documents containing intelligence holdings, surveillance methods, evidence gaps, and investigative strategy against active criminal investigation targets. These target packages reveal the full picture of what police know and do not know about a suspect, enabling counter-surveillance and evidence destruction if disclosed.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
- Frameworks
- QGISCF
Detects pre-release adoption records including birth parent identities, adoptee matching assessments, placement recommendations, relinquishment consents, and contact vetoes under the Adoption Act 2009 (Qld). These records contain information that individuals have a legal right to control — premature or unauthorised disclosure can cause profound emotional harm and breach court-sealed orders.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Adoption Act 2009 (Qld), Child Protection Act 1999 (Qld), IPA 2009 (Qld)
- Frameworks
- QGISCF
Detects Emirates Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ae
- Regulations
- UAE PDPL
- Frameworks
- ISO 27001, ISO 27701
Detects UAE passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ae
- Regulations
- UAE PDPL
- Frameworks
- ISO 27001, ISO 27701
Detects agent tool-misuse / high-risk action instructions in AI/agent context: destructive or irreversible action language coupled with a high-impact target or an approval-bypass clause (OWASP LLM06 / Agentic Top 10). The action verb and target must co-occur to suppress IT-runbook false positives.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects data-exfiltration carriers in AI/LLM output: markdown images or links and HTML img tags whose URL points off-tenant and carries an encoded data payload in the path or query. This is an EchoLeak-style (cf. CVE-2025-32711) generic markdown/HTML exfiltration-carrier marker - it flags the carrier shape, not the full CVE mechanism (which also involves XPIA evasion and a Teams proxy/CSP bypass).
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects hidden or encoded content carriers used for indirect prompt injection (OWASP LLM01): zero-width / bidirectional / homoglyph Unicode control characters that conceal instructions in otherwise benign prose, and abnormally long base64 strings embedded inline in text. These carriers smuggle attacker instructions into documents, emails, and web content that an LLM later ingests.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects overt jailbreak / roleplay-persona framings in AI/LLM input (OWASP LLM01): persona-override framings (DAN, developer mode), restriction-removal roleplay, and "for research/educational purposes" pretexts. Curated from public jailbreak taxonomies; no novel jailbreaks authored.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects risky MCP / plugin / connector descriptors: tool manifests requesting over-broad or unexplained scopes, or encouraging autonomous action that bypasses user approval (OWASP LLM06 / Agentic Top 10). Phrase detection is corroborated by AI-context markers.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects directives intended to persist across sessions or to be written into model memory that change the assistant's role, priority or policy (OWASP LLM08 persistent-context poisoning). Phrase detection is corroborated by AI-context markers.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Marks AI-generated output context (responses, generated files, chat exports) so existing PII/secret SITs can be re-scoped to it. Detection of the sensitive data itself is delegated to those SITs via the ai-threat-classifiers collection; this pattern supplies the AI-output context signal.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects direct prompt-injection / goal-hijack attempts in AI/LLM input: imperative phrases that try to override higher-priority (system) instructions, change the model's role or goal, or bypass approval guardrails (OWASP LLM01). Phrase detection is corroborated by AI-context markers.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects instruction-like content embedded inside reference / retrieval material (RAG sources): directives addressed to a retrieval AI, high-imperative density, or sudden authority claims that attempt to steer downstream model behaviour (OWASP LLM08 retrieval poisoning). Phrase detection is corroborated by AI-context markers.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects instructions embedded in repository text (README, AGENTS.md, comments, issues) that target an AI coding agent and direct it to take risky action - skipping review/tests, exfiltrating data, or committing secrets (OWASP LLM01 indirect injection via source control).
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects secrets and credentials surfaced in AI/LLM context: private-key headers (RSA / EC / OpenSSH / generic) and connection-string passwords (password= / pwd=) pasted into prompts, chat exports, or AI-generated output. Reuses the intent of built-in credential SITs, re-scoped to the AI surface.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Supplies the AI-prompt context signal (typed prompts, Copilot/Copilot Chat/Studio, uploaded files) so existing PII/regulated-data SITs can be re-scoped to AI prompts via the ai-threat-classifiers collection. Known coverage gap (from the library): native DLP scans typed prompt text, not uploaded file contents, in the Copilot location.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Marks the context of data being submitted to external / unapproved AI services (shadow AI destination domains) so existing PII/secret SITs can be re-scoped to it. Detection of the sensitive data itself is delegated to those SITs via the ai-threat-classifiers collection; this pattern supplies the external-AI destination context signal.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects overt attempts to elicit disclosure of an assistant's system prompt, policies, guidelines, or tool schema (OWASP LLM02/LLM07): "reveal/print/show/repeat your system prompt/instructions" and similar extraction phrasings.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
- Frameworks
- ISO 27001
Detects Cuit Cuil patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ar
- Regulations
- PDPL (AR)
- Frameworks
- ISO 27001, ISO 27701
Detects Documento Nacional de Identidad patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ar
- Regulations
- PDPL (AR)
- Frameworks
- ISO 27001, ISO 27701
Detects Argentine passport numbers issued by the Registro Nacional de las Personas (RENAPER). Since the 2012 biometric passport series, every booklet carries a unique alphanumeric number of exactly three uppercase letters followed by six digits (e.g. AAC382190). The number is independent of the holder's DNI. Special three-letter series are reserved for travel documents issued to stateless persons (ZZA) and refugees (ZZX) under RENAPER Disposicion 904/2021.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ar
- Regulations
- PDPL (AR)
- Frameworks
- ISO 27001, ISO 27701
Detects Austria driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- at, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Personalausweis patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, at
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Austria passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- at, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Austria Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- at, eu
- Regulations
- GDPR
Detects Sozialversicherungsnummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, at
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Austria Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- at, eu
- Regulations
- GDPR
Detects Austria Value Added Tax (VAT) Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- at, eu
- Regulations
- GDPR
Detects Australian Capital Territory driver licence numbers in the established eight-to-ten-digit shape. Enforceable tiers require an explicit driver-licence-number label and ACT context; the strict tier additionally requires Access Canberra or ACT Road Transport Authority evidence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-act
- Regulations
- Information Privacy Act 2014 (ACT), Privacy Act 1988 (Cth), Road Transport (Driver Licensing) Act 1999 (ACT)
- Frameworks
- ISO 27001
Detects Australian Financial Services Licence (AFSL) numbers issued by ASIC to authorised financial services providers.
- Type
- regex
- Confidence
- low
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects ASIC registered agent numbers used by agents who lodge company documents with the Australian Securities and Investments Commission. The number is a short (typically 3-6 digit) identifier issued to a registered agent and quoted on ASIC forms and lodgements.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Corporations Act 2001 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects Australian Director Identification Numbers (director IDs / DIN) issued by the Australian Business Registry Services (ABRS). A director ID is a 15-digit number beginning with Australia's ISO 3166 country code 036, followed by an 11-digit unique identifier and a single check digit, often written with spaces or hyphens between groups.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Corporations Act 2001 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies Australian Bank State Branch (BSB) routing codes in 3-digit dash 3-digit or continuous 6-digit formats. Supports space separator. Requires corroborative financial-institution keywords.
- Type
- regex
- Confidence
- low
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Australian Business Numbers (ABNs), which are unique 11-digit identifiers issued by the Australian Business Register to entities carrying on a business in Australia. ABNs are commonly formatted as groups of 2-3-3-3 digits separated by spaces or hyphens. The ABN includes a check digit mechanism, but this pattern relies on format matching combined with corroborative evidence rather than algorithmic validation.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies Australian mobile telephone numbers in domestic (04XX) and international (+614XX) notation. Uses lookaround boundaries to prevent embedded numeric matches. Supports space-only separation between digit groups for high precision.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects candidate Centrelink Customer Reference Numbers consisting of 9 digits followed by a letter. The bare shape is not unique and requires a CRN/Centrelink label for enforcement.
- Type
- regex
- Confidence
- low
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects Australian Citizenship Certificate number patterns including prefixed formats (ACC, CDM, ACS, CAS followed by 4-8 digits) and numeric-only formats (0 + 10 digits).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects Australian Company Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects compliance assessment reports identifying regulatory gaps and non-compliance findings.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Identifies substantive critical-infrastructure and essential-service network or control-system designs. Topic phrases are retained for discovery; enforcement requires segmentation, data-flow, trust-boundary, VLAN, DMZ, firewall, or OT-zone design content, and high confidence also requires a populated address, VLAN, port, device, or rule detail.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects data breach reports including breach details, affected individuals, and OAIC notifications.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies references to Australian consumer deposit account numbers in financial and compliance documents. Uses structural anchors with proximity constraints.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Catalogue reference for the Microsoft Purview built-in Australia Driver's License Number sensitive information type. Microsoft recommends medium confidence (75) for the built-in entity. This YAML-only record supports registry search and discovery without reproducing Microsoft's built-in regular expressions, keyword dictionaries, or XML.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Australian workplace drug and alcohol testing records - screening and confirmatory results under AS/NZS 4308 (urine) and AS/NZS 4760 (oral fluid), laboratory result phrasing (non-negative, cut-off concentrations in ng/mL), and breath/blood alcohol readings recorded in fitness-for-work programs.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Privacy Act 1988 (Cth) - health information, Work Health and Safety Act 2011
- Frameworks
- ISO 27001
Detects Australian OTC electricity derivative and power purchase agreement confirmation content - documentation under the June 2006 Australian Electricity Addendum and 2005 ISDA Commodity Definitions, electricity swap/cap/floor/swaption confirmations settled against the AEMO regional reference price, and PPA confirmation phrasing with $/MWh fixed prices.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Corporations Act 2001 (Cth) - derivatives, Competition and Consumer Act 2010 (Cth)
- Frameworks
- ISO 27001
Detects Australian enterprise agreement and enterprise bargaining content under the Fair Work Act 2009 - agreement text and drafts (single-enterprise and greenfields agreements, nominal expiry, better off overall test), Fair Work Commission agreement codes (AE followed by six digits), and bargaining process artefacts (notice of employee representational rights, protected action ballots, logs of claims).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Fair Work Act 2009 (Cth)
- Frameworks
- ISO 27001
Detects financial statements including profit and loss, balance sheets, and income statements.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Identifies Australian fixed-line telephone numbers across domestic bracketed, unbracketed, and international formats for area codes 02, 03, 07, and 08. Uses lookaround boundaries and supports hyphen separators within digit groups.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Freedom of Information Act exemption section references (sections 33-38 and 42-47) in Australian government documents. Requires FOI/freedom of information keyword context.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects Australian electricity forward/broker curve exports - forward or broker curve phrasing tied to NEM regional reference identifiers (QLD1, NSW1, VIC1, SA1, TAS1), load shape terms (flat/peak/off-peak), or calendar/quarter strip notation (Cal27, Q1-27, CY2027, FY27) with $/MWh values. Internal curve marks reveal a participant's price expectations and valuation basis.
- Type
- regex
- Confidence
- low
- Jurisdictions
- au
- Regulations
- Corporations Act 2001 (Cth) - market integrity
- Frameworks
- ISO 27001
Detects Healthcare Provider Identifier - Individual (HPI-I) patterns. The HPI-I is a 16-digit number starting with the prefix 800361. No checksum validation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Individual Healthcare Identifier (IHI) patterns. The IHI is a 16-digit number starting with the prefix 800360; the official format carries a Luhn check digit (not enforced here).
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies Australian personal names using capitalised name structure with controlled evidence from the consolidated Australian forename and surname dictionaries. Supports the multicultural name coverage represented in Australian birth, immigration, and administrative sources.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects loan agreement documents containing borrower details, interest rates, and repayment terms.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects the Australian Government OFFICIAL protective marking (PSPF / QGISCF) in both email forms ([SEC=OFFICIAL] subject markings, X-Protective-Marking headers) and visible document banners. Excludes UNOFFICIAL and OFFICIAL: Sensitive (handled by au-marking-sensitive). Regex logic ported from Microsoft's canonical PSPF SIT guidance; matched case-sensitively so the lowercase English word "official" does not trigger.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- PSPF, QGISCF
Detects the Australian Government PROTECTED protective marking (PSPF / QGISCF) in both email and document forms, sweeping up its IMM/caveat variants (Personal-Privacy, Legal-Privilege, Legislative-Secrecy, CABINET, NATIONAL-CABINET). SECRET and TOP SECRET roll up here so they receive at-least-PROTECTED handling. Regex logic ported from Microsoft's canonical PSPF SIT guidance; matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- PSPF, QGISCF
Detects the Australian Government SECRET and TOP SECRET security classifications in both email and document forms. Intended to surface content that should not be stored on the platform (these classifications roll up to the PROTECTED label in au-marking-protected for handling, while this SIT flags them for remediation). Matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- PSPF
Detects the Australian Government SENSITIVE tier in both email and document forms: Commonwealth OFFICIAL: Sensitive (including its IMM/caveat variants such as Personal-Privacy, Legal-Privilege, Legislative-Secrecy) and the Queensland (QGISCF) standalone SENSITIVE marking. Regex logic ported from Microsoft's canonical PSPF SIT guidance; matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- PSPF, QGISCF
Identifies Australian Medicare card numbers (10-11 digits, first digit 2-6). Filters same-digit sequences. Requires corroborative health-scheme keywords for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Australian Medicare card numbers, which are issued to Australian citizens and permanent residents for access to subsidised healthcare under the Medicare system. The number consists of 10 digits: the first digit is between 2 and 6, followed by 8 additional digits and a single check digit. Numbers are commonly formatted as groups of 4-5-1 digits separated by spaces or hyphens.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Medicare Provider Number patterns. An 8-character code consisting of 6 digits, a location character, and a check character. Validated by location and check character sets.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Australian mining technical records - JORC Code resource and reserve estimates (Measured/Indicated/Inferred resources, Proved/Probable reserves, Competent Person statements), drill-and-blast design parameters (blast patterns, powder factor, maximum instantaneous charge, stemming), pit geotechnical stability assessments, and spelled-out mining tenement grants.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Security of Critical Infrastructure Act 2018 (Cth), Mineral Resources Act 1989 (Qld), Explosives Act 1999 (Qld)
- Frameworks
- ISO 27001
Detects mortgage documents containing property security details, LVR ratios, and borrower financial information.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Discovery-only compatibility coverage for Australian driver's licence number candidates across all states and territories. The stable au-motor-vehicle-permit slug is retained for catalogue, collection, workbook, and package compatibility. State and territory enforcement belongs to the eight au-*-driver-licence-number SITs. Microsoft Purview tenants can instead select the free built-in Australia Driver's License Number entity (1cbbc8f5-9216-4392-9eb5-5ac2298d1356); this compatibility pattern is not a custom clone of that built-in.
- Type
- regex
- Confidence
- low
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects AEMO MSATS retail-market transaction content - aseXML transaction names (CATSChangeRequest, NMIDiscoveryRequest/Response, ServiceOrderRequest/Response, MeterDataNotification), CATS change-request codes (e.g. CR1000/CR1060, CR4050/1, CR5050/1), and role-coded NMI standing data (FRMP/LNSP/MDP with an NMI). These artefacts carry customer transfer, metering and consumption context regulated under the retail market procedures.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- National Energy Retail Rules / NER Ch 7 (metering), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects references to nationality/citizenship/immigration-status disclosure in Australian documents: nationality fields, national origin, citizenship status, visa status, and naturalization records. Not framed as an Art-9-style special category (Australia has no equivalent regime) — sensitivity here rests on immigration-status/visa risk under the Migration Act 1958 (Cth) and on the "national origin" limb of the Racial Discrimination Act 1975 (Cth), distinct from that Act's race/ethnicity limb covered by the sibling au-racial-ethnic-origin pattern. Topic-grade detector, low confidence by design.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- au
- Regulations
- Migration Act 1958 (Cth), Racial Discrimination Act 1975 (Cth), Privacy Act 1988 (Cth), NDB Scheme (Cth)
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects NDIS Participant Number patterns. A 9-digit number starting with the prefix 43.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects AEMO NEM dispatch bid/offer submission artefacts - the MMS bidding table vocabulary (BIDDAYOFFER, BIDOFFERPERIOD, BIDOFFERFILETRK, MNSP day-offer tables), the Dispatch Bid/Offer Submissions JSON payload fields (energyBids, fcasBids, mnspBids, rebidExplanation), and the participant FTP bid filename convention (<PARTICIPANTID>_<x>BID<x>_<timestamp>.zip/.json). Pre-dispatch bids, price bands and rebid reasoning are commercially critical trading data for market participants.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- National Electricity Rules cl 3.8 (bidding and dispatch), Competition and Consumer Act 2010 (Cth)
- Frameworks
- ISO 27001, SOCI Act 2018 (Cth)
Detects AEMO Dispatchable Unit Identifiers (DUIDs) when labelled as such. DUIDs are short (max 8 character) unit codes - modern IDs are alphanumeric, legacy IDs may contain '#', '/' or '-' (e.g. BARRON-1, W/HOE#1, ER01, LOYYB1). IMPORTANT: DUIDs are fully PUBLIC identifiers (published in the AEMO NEM Registration and Exemption List and in five-minute NEMWEB dispatch data). This pattern is a discovery-only context marker and corroborative building block for sensitive-content patterns (bids, availability, curves) - it must never enforce on its own. A bare DUID token is indistinguishable from ordinary text, so the pattern requires the DUID label (or dispatchable-unit phrasing) immediately before the code.
- Type
- regex
- Confidence
- low
- Jurisdictions
- au
- Regulations
- National Electricity Rules Ch 2 (registration) and cl 3.8 (dispatch)
- Frameworks
- ISO 27001, SOCI Act 2018 (Cth)
Detects New South Wales driver licence numbers in the established eight-digit or four-digit-plus-two-letter shapes. Enforceable tiers require an explicit driver-licence-number label and NSW context; the strict tier additionally requires Transport for NSW, Service NSW, or a legacy NSW road authority.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-nsw
- Regulations
- Privacy Act 1988 (Cth), Privacy and Personal Information Protection Act 1998 (NSW), Road Transport Act 2013 (NSW)
- Frameworks
- ISO 27001
Detects Northern Territory driver licence numbers in the established six-to-eight-digit shape. Enforceable tiers require an explicit driver-licence-number label and NT context; the strict tier additionally requires Motor Vehicle Registry authority evidence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-nt
- Regulations
- Information Act 2002 (NT), Motor Vehicles Act 1949 (NT), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects five implemented Australian standard number-plate shapes for NSW, Victoria, Queensland, South Australia, and Western Australia. It does not validate issuance and excludes personalised plate formats; registration and transport-agency evidence controls enforcement.
- Type
- regex
- Confidence
- low
- Detection quality
- Partial
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects references to patents, intellectual property registrations, and IP Australia filings.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Detects PBS Prescriber Number patterns. A 7-digit number whose check digit uses weights [0,5,8,4,2,1], mod 11 (checksum NOT enforced in this regex-only pattern; structural detection only).
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects a populated Australian residential street address linked to a labelled person. Bare address structure is available for discovery, the balanced tier requires person and residential context plus Australian geography, and the strict tier requires state and postcode corroboration.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Catalogue reference for the Microsoft Purview built-in Australia physical addresses named-entity SIT. Microsoft rates the built-in at medium confidence and includes it in All Physical Addresses. This YAML-only record supplies supplementary Australian address vocabulary for registry search and testing; it does not reproduce Microsoft's opaque named-entity engine and is not a custom XML clone.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Nationally Coordinated Criminal History Check (National Police Check) certificate and application reference numbers issued through the ACIC National Police Checking Service. Matches a police check phrase near a reference / certificate / receipt value that identifies a specific check.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Australian property title and plan references used across state and territory land-title systems, including Lot/DP, Lot/SP, Lot/PS, Lot/LP, Lot/CP, title references, and folio identifiers. Requires land-registry context for enforcing tiers.
- Type
- regex
- Confidence
- low
- Detection quality
- Partial
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects QLD Blue Card working with children check applications and screening documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects QLD Bond Loan applications for rental assistance and financial hardship support.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Identifies Queensland building approvals, permits, certifications, development applications, and occupancy/compliance records. Topic phrases are retained for discovery; enforcement requires actual decision, condition, assessment, certification, or approved-work content, and high confidence also requires a formal application identifier and Queensland authority context.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects QLD Transport and Main Roads driver licence application and renewal forms.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Queensland driver licence numbers in the established eight-to-nine-digit shape. This identifier SIT is separate from au-qld-driver-licence-form, which detects application and renewal documents rather than populated licence numbers.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-qld
- Regulations
- Information Privacy Act 2009 (Qld), Privacy Act 1988 (Cth), Transport Operations (Road Use Management) Act 1995 (Qld)
- Frameworks
- ISO 27001
Detects QLD Government tender documents including procurement evaluations, pricing schedules, and evaluation criteria.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects QLD Health clinical handover documents containing patient status, medications, and treatment plans.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects QLD Health medical record references including MRN/URN identifiers and clinical documentation.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects QLD Health patient consent forms including advance directives and enduring power of attorney documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Identifies Queensland heavy-vehicle access permit applications and issued permit records for oversize, overmass, Class 1, B-double, and road-train movements. Queensland topic context is discovery-only; enforcement requires operator, vehicle, route, or access-condition fields, while high confidence also requires a labelled permit/application reference and NHVR authority context.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects QLD home education registration documents for homeschooled children.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects QLD social housing applications and housing assistance eligibility documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects QLD marine vessel registration documents and operator licence details.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects Queensland mental health assessment and involuntary treatment records, including psychiatric evaluations, Mental Health Act 2016 (Qld) involuntary treatment orders (ITOs), treatment authority documents, and Mental Health Review Tribunal decisions affecting compulsory treatment.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects QLD notifiable condition reports for public health surveillance and disease notifications.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects QLD school incident reports containing student behavioural and disciplinary details.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects special education and special needs learning plans, including Queensland individual education / special needs plans with children's disability and learning-support details, goals, adjustments, and review dates, and equivalent special education plan records in Australian education contexts.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects QLD student enrolment forms containing children's personal information and family details.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies Queensland vehicle registration application, transfer, renewal, and certificate forms. Queensland form topics are discovery-only; enforcement requires multiple registration-record fields, while high confidence also requires an official F3518/F3520 form number and a populated VIN, registration-number, or plate-number field.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects South Australian driver licence and learner permit numbers in the established one-letter-plus-five-or-six- digit shape. Enforceable tiers require an explicit licence-number label and South Australian context; the strict tier additionally requires Service SA or Department for Infrastructure and Transport authority evidence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-sa
- Regulations
- Motor Vehicles Act 1959 (SA), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies substantive Security of Critical Infrastructure Act, CIRMP, and AESCSF compliance assessments. Topic phrases are retained for discovery; enforcement requires obligation status, compliance findings, maturity ratings, control gaps, risk-management-program content, or remediation actions, and high confidence additionally requires a critical-asset/responsible-entity context and an adverse finding.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Criminal Code 1899 (Qld), SOCI Act 2018 (Cth)
- Frameworks
- QGISCF
Identifies Australian physical addresses using structural street-number + street-name regex combined with road-type, state/territory, and postcode corroborative evidence. Covers the implemented road-type endings: the standard abbreviated set plus the declared extended endings (Rise, View, Gardens, Loop, Trail, Track, Pass, Heights) — not the full GNAF classification list.
- Type
- regex
- Confidence
- low
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Australian Superannuation Fund Number (RSE) patterns. An R prefix followed by 7 digits, registered with APRA.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Tasmanian driver licence numbers in the established seven-digit or one-letter-plus-five-or-six-digit shapes. Enforceable tiers require an explicit licence-number label and Tasmanian context; the strict tier additionally requires Transport Services, Service Tasmania, or Department of State Growth authority evidence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-tas
- Regulations
- Personal Information Protection Act 2004 (Tas), Privacy Act 1988 (Cth), Vehicle and Traffic Act 1999 (Tas)
- Frameworks
- ISO 27001
Detects Australian tax invoices containing GST, ABN, and payment details as required by ATO regulations.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Identifies Australian Tax File Numbers (TFNs) — unique nine-digit identifiers issued by the Australian Taxation Office. Uses an inline mod-11 Checksum validator with AllDigitsSameFilter and TextMatchFilter to exclude known test values.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Identifies personal names preceded by salutations (Mr, Mrs, Ms, Dr, Prof, etc.) in Australian documents. Uses structural regex for honorific + capitalised name components with corroborative evidence from the consolidated Australian forename and surname dictionaries.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to legal full name in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Identifies documents containing references to previous legal names and aliases in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Identifies documents containing references to citizenship status in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to social security number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to taxpayer identification number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to voter registration number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to military service number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988. Phrase-level concept detector: it matches defence-qualified service-number wording, not an issued numeric value; bare service number without defence context is out of the primary.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to social benefits claimant number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects populated Australian residential street addresses. Bare street structure is retained for discovery, while enforcing tiers require Australian geographic evidence and home/residential context; the strict tier also requires a labelled person linked to the address.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects populated Australian mailing addresses, including street delivery addresses, PO/GPO boxes, locked bags, and private bags. Enforcing tiers require mailing/correspondence context and Australian geography; the strict tier also requires a labelled recipient.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects populated Australian residential utility service addresses. Enforcing tiers require utility service context, account or metering context, and Australian geography; the strict tier also requires a labelled account holder.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects references to employee withholding elections in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to employer payroll tax filings in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to employee tax forms in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to contractor tax forms in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to wage garnishment orders in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to retirement contribution records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to pension account identifiers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to childcare benefit payroll claims in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to tax authority correspondence in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to superannuation identifiers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to remittance instructions in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to wire transfer instructions in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to payment fraud investigation files in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to credit bureau reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to credit scores in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to debt collection records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to insurance policy records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to underwriting decision rationales in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to know-your-customer profiles in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to anti-money-laundering alerts in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to suspicious activity reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to beneficial ownership declarations in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to reinsurance contract terms in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Identifies documents containing references to supplier invoice records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to tax exemption certificates in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to rebate agreement terms in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies Australian regulator-facing responses and submissions addressing examinations, supervisory or prudential reviews, inquiries, and findings, including matters involving APRA, ASIC, AUSTRAC, ACCC, OAIC, and Queensland regulators. Topic phrases are discovery-only; enforcement requires Australian authority context and substantive management-response evidence, while high confidence also requires a structured regulator matter reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701, QGISCF
Identifies documents containing references to antitrust legal analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to breach notification draft communications in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to corporate records under seal in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to patent draft claims in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies provider identifier records references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Identifies documents containing references to financial aid applications in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies Australian grant peer-review comments and assessment records containing substantive assessor observations, scores, or funding outcomes. Grant-review and application phrases are retained for discovery at 65; Australian funding context plus populated assessment fields raise confidence to 75, while a formal record reference and explicit funding outcome raise it to 85.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to customer complaint case files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to taxpayer case management files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to welfare eligibility determinations in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to unemployment benefit records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to pension entitlement records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to business licensing applications in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to lawful intercept transcripts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to scada network diagrams in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to substation protection relay settings in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to pipeline pressure and flow setpoints in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies substantive water-treatment dosing formulas and control values. Topic phrases are retained for discovery; enforcement requires a populated dose, concentration, feed rate, or process value, and high confidence also requires a treatment-plant asset, process, or control-tag reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to electric grid dispatch plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to plant shutdown and startup procedures in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to refinery process control setpoints in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to rail signaling configurations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to air traffic operational procedures in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to telecom core network configurations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to critical spare parts inventories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to ot cyber incident reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to cctv coverage and blind spot analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies Australian government data-classification matrices that map information categories to classification levels and handling controls. Matrix topics are retained for discovery at 65; Australian PSPF or QGISCF context plus multiple schema fields raises confidence to 75, while a populated category-to-Australian-marking row raises it to 85.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to data protection impact assessments in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to breach likelihood and impact assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to privacy complaint investigations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies pre-submission draft responses, submissions, and reports prepared for Australian regulators, including APRA, ASIC, AUSTRAC, ACCC, OAIC, and Queensland regulators. Topic phrases are discovery-only; enforcement requires Australian authority context and substantive reporting content, while high confidence also requires a structured regulator matter or submission reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701, QGISCF
Identifies documents containing references to politically exposed person assessment files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to national emergency response plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to whistleblower protection case records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to sovereign debt issuance plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies candidate Australian passport numbers using a broad one- or two-letter prefix followed by seven digits. The regex does not validate an issued passport series; Australian travel-document and issuing-nation evidence are required for enforcement.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects Unique Student Identifier (USI) patterns. A 10-character alphanumeric code (uppercase letters and digits) mandatory since January 2023 for higher education in Australia. The Purview design inventories the broad bare shape at 65, enforces a labelled value in education context at 75, and reserves 85 for labelled values with authoritative USI/VET record context.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects Victorian driver licence and learner permit numbers in the established eight-to-ten-digit shape. Enforceable tiers require an explicit licence-number label and Victorian context; the strict tier additionally requires VicRoads authority evidence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-vic
- Regulations
- Privacy Act 1988 (Cth), Privacy and Data Protection Act 2014 (Vic), Road Safety Act 1986 (Vic)
- Frameworks
- ISO 27001
Detects Western Australian driver licence numbers in the established seven-digit shape. Enforceable tiers require an explicit driver-licence-number label and WA context; the strict tier additionally requires WA transport or Driver and Vehicle Services authority evidence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au-wa
- Regulations
- Privacy Act 1988 (Cth), Road Traffic (Authorisation to Drive) Act 2008 (WA)
- Frameworks
- ISO 27001
Detects references to water quality monitoring data, compliance reports, and environmental water testing results.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Working With Children Check (WWCC) clearance numbers across Australian states. Covers the NSW structural format (WWC + 7 digits + check letter, e.g. WWC1234567E) and the labelled VIC / WA / generic forms where a WWCC or working-with-children phrase precedes a card or clearance number. The Queensland Blue Card is handled by a separate classifier.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Child Protection (Working with Children) Act 2012 (NSW), HRIPA (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), Working with Children Act 2005 (Vic)
- Frameworks
- ISO 27001, ISO 27701
Detects Azure App Service deployment passwords in configuration files and publish profiles. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Batch account shared access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Bot Framework secret key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Bot Service application secret patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Cognitive Search (AI Search) API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Cognitive Services subscription key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Container Registry (ACR) access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Cosmos DB account access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Databricks personal access token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure DevOps application secret patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure DevOps personal access token (PAT) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Mixed
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure DocumentDB (now Cosmos DB) authentication key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Microsoft Entra (formerly Azure AD) client access token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Microsoft Entra (formerly Azure AD) client secret patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Microsoft Entra (formerly Azure AD) user credential patterns including username/password combinations targeting Microsoft login endpoints. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Event Grid access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Functions master key and API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure IaaS database and Azure SQL connection string patterns containing credentials. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure IoT Hub connection string patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure IoT Hub shared access key patterns outside of connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Logic App shared access signature (SAS) URL patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Machine Learning web service API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Maps subscription key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure publish settings file password patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Cache for Redis connection string password patterns extracted from connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Cache for Redis connection string patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Shared Access Signature (SAS) token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Service Bus connection string patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Service Bus Shared Access Signature (SAS) token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure shared access key and webhook token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure SignalR Service access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure SQL Database connection string patterns specifically targeting the .database.windows.net domain. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Storage account access key patterns in connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects generic Azure Storage account key patterns including keys assigned to variables or configuration properties. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Storage account key patterns outside of full connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Mixed
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Storage Account Shared Access Signature (SAS) patterns for high-risk resources with write or delete permissions. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Storage Account Shared Access Signature (SAS) patterns for standard resources. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure subscription management certificate patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects bail condition documents including bail undertakings, surety arrangements, and conditions imposed on accused persons under the Bail Act 1980 (Qld). These documents contain personal details of accused persons, reporting obligations, curfew details, exclusion zones, and no-contact conditions.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Bail Act 1980 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects government bank account details (BSB + account number) combined with payment authorisation credentials, approval tokens, or signing authorities that together enable the initiation of payments.
- Type
- regex
- Confidence
- medium
- Detection quality
- Error
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects Belgium driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- be, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Rijksregisternummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, be
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Belgium passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- be, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Belgium Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- be, eu
- Regulations
- GDPR
Detects Belgium Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- be, eu
- Regulations
- GDPR
Detects Bulgaria driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- bg, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Bulgaria passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- bg, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Bulgaria Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- bg, eu
- Regulations
- GDPR
Detects Единен граждански номер (ЕГН) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, bg
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Brazilian driver licence numbers (CNH - Carteira Nacional de Habilitação). The CNH register number is 11 digits. Structural detection alone is ambiguous with CPF length, so corroborative CNH keywords are required for reliable use.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- br
- Regulations
- LGPD, CTB (Brazil)
- Frameworks
- ISO 27001, ISO 27701
Detects CNPJ patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- br
- Regulations
- LGPD
- Frameworks
- ISO 27001, ISO 27701
Detects CPF patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- br
- Regulations
- LGPD
- Frameworks
- ISO 27001, ISO 27701
Detects Registro Geral patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- br
- Regulations
- LGPD
- Frameworks
- ISO 27001, ISO 27701
Detects Brazil Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- br
- Regulations
- LGPD
Detects Brazilian PIX keys in email, +55 mobile, or EVP UUID forms.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- br
- Regulations
- LGPD, BCB PIX regulations
- Frameworks
- ISO 27001, ISO 27701
Detects Canada Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- ca
- Regulations
- Law 25 (QC), PIPEDA
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Canada Revenue Agency (CRA) Business Numbers (BN). The core BN is nine digits assigned to a business. Program accounts append a two-letter program identifier (RC, RM, RP, or RT) and a four-digit reference, for example 123456789RC0001 for a corporate income-tax account.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ca
- Regulations
- PIPEDA, Law 25 (QC), Excise Tax Act (CA)
- Frameworks
- ISO 27001, ISO 27701
Detects Canada driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ca
- Regulations
- Law 25 (QC), PIPEDA
- Frameworks
- ISO 27001, ISO 27701
Detects Canada Health Service Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ca
- Regulations
- FIPPA, Law 25 (QC), PHIPA, PIPEDA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Government of Canada protective markings under the Treasury Board Standard on Security Categorization (Appendix J of the Directive on Security Management): the Canada-distinctive "Protected" designations Protected A / Protected B / Protected C (information whose compromise could injure interests outside the national interest), and the classified levels Confidential / Secret / Top Secret (injury to the national interest). "Protected A/B/C" is unique to Canada and matched at high confidence in both title-case and ALL-CAPS renderings; the classified words are shared vocabulary with other nations and are matched only at lower, Canada-government-context-gated tiers. Rendering verified directly against the Treasury Board Standard on Security Categorization; matched case-sensitively.
- Type
- regex
- Confidence
- high
- Jurisdictions
- ca
- Regulations
- Directive on Security Management (Canada)
- Frameworks
- Policy on Government Security
Detects Ontario Health Insurance Plan (OHIP) numbers: 10 digits often grouped 4-3-3 with a two-letter version code.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ca
- Regulations
- PIPEDA, PHIPA (Ontario)
- Frameworks
- ISO 27001, ISO 27701
Detects Canada passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ca
- Regulations
- Law 25 (QC), PIPEDA
- Frameworks
- ISO 27001, ISO 27701
Detects Canada Personal Health Identification Number (PHIN) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ca
- Regulations
- FIPPA, Law 25 (QC), PHIPA, PIPEDA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects North American Numbering Plan (NANP) telephone numbers in Canadian contexts: the domestic NPA-NXX-XXXX form (bracketed, hyphenated, dotted, spaced, or bare, with an optional leading trunk "1") and the international +1 NPA-NXX-XXXX form. Area-code (NPA) and exchange-code (NXX) groups are constrained to a leading digit of 2-9 with the N11 service-code shape (211/311/411/511/611/711/811/911) excluded from both groups, per NANPA's published format rules. This pattern is structurally identical to us-phone-number because NANP area codes are drawn from a single pool shared by the US, Canada, and Caribbean member territories — the digit sequence itself cannot distinguish a Canadian number from a US one. This is the sibling of us-phone-number; the two are differentiated by jurisdiction/regulation metadata and country-specific corroborative evidence keywords only, not by regex — see us-phone-number's description for the documented family convention.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ca
- Regulations
- PIPEDA, Law 25 (QC), Unsolicited Telecommunications Rules (CRTC)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Canada Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- ca
- Regulations
- PIPEDA
Detects SIN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- ca
- Regulations
- Law 25 (QC), PIPEDA
- Frameworks
- ISO 27001, ISO 27701
Detects financial submissions to the QLD Cabinet Budget Review Committee (CBRC) containing agency funding bids, savings proposals, capital expenditure requests, and fiscal strategy options.
- Type
- document_marker
- Confidence
- high
- Jurisdictions
- au
- Regulations
- Corporations Act 2001 (Cth), Criminal Code 1899 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects legal annexures to Cabinet submissions containing privileged legal analysis supporting Cabinet decision-making. These documents carry dual protection: Cabinet confidentiality (Westminster convention) and legal professional privilege. Disclosure breaches both simultaneously with no remediation possible.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Crime and Corruption Act 2001 (Qld), Criminal Code 1899 (Qld), Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects draft monetary policy decisions, interest rate recommendations, or central bank board deliberation papers before public announcement. Covers RBA board papers and Treasury analysis of expected RBA decisions.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Reserve Bank Act 1959 (Cth)
- Frameworks
- QGISCF
Detects Swiss passport numbers issued by fedpol (Federal Office of Police). Passports of the 2003, 2006 and 2010 series carry an eight-character number consisting of one uppercase letter followed by seven digits (e.g. E1234567); the 2010 series always begins with the letter X. The letters O and I are never used, to avoid confusion with the digits 0 and 1. The 2022 series (the only series issued since October 2022) has no published fixed structure — fedpol deliberately keeps the numbering rules non-public — so 2022-series numbers may not match this shape. Only the documented 2010-and-earlier format is covered.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ch
- Regulations
- FADP (Switzerland), Identity Documents Act (Switzerland, SR 143.1)
- Frameworks
- ISO 27001, ISO 27701
Detects Switzerland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- ch
- Regulations
- FADP (Switzerland)
Detects AHV-Nummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- ch
- Regulations
- FADP (Switzerland)
- Frameworks
- ISO 27001, ISO 27701
Detects documents containing child exploitation investigation case files including victim identification data, offender network intelligence, and investigative techniques used against CSAM distribution networks. QPS Task Force Argos is the primary Queensland unit. Disclosure re-victimises children and compromises active rescue operations.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Criminal Code 1899 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects child safety investigation case files containing child identifiers, harm notifications, investigation outcomes, child protection orders, and out-of-home care placements under the Child Protection Act 1999 (Qld). These files contain highly sensitive information about vulnerable children including substantiated abuse details — unauthorised disclosure endangers child safety and compromises ongoing investigations.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Child Protection Act 1999 (Qld), Human Rights Act 2019 (Qld), IPA 2009 (Qld)
- Frameworks
- QGISCF
Detects RUT patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- cl
- Regulations
- PDPL (CL)
- Frameworks
- ISO 27001, ISO 27701
Detects defence strategy documents for class action proceedings against the State or State entities. These documents reveal the State's vulnerability assessment and defence approach for claims potentially affecting thousands of claimants. Note: trainable classifier recommended for production using class action document structural features.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Civil Proceedings Act 2011 (Qld)
- Frameworks
- QGISCF
Detects People's Republic of China passport numbers. The current ordinary (e-)passport uses an 'E' prefix followed by one letter (excluding I and O) and 7 digits, or 'E' plus 8 digits. Older series use a 'G' prefix plus 8 digits, and earlier passports used 'P', 'D' (diplomatic) or 'S' (service) prefixes plus 8 digits. The short, loosely structured format means corroborative keyword proximity is strongly recommended.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- cn
- Regulations
- PIPL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects China Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- cn
- Regulations
- PIPL
Detects Resident Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- cn
- Regulations
- PIPL
- Frameworks
- ISO 27001, ISO 27701
Detects Mainland China Unified Social Credit Codes (统一社会信用代码) assigned to legal persons and other organisations. The code is 18 characters using a restricted alphabet (digits and selected letters excluding I, O, Z, S, V), with an embedded administrative division code in positions 3-8.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- cn
- Regulations
- PIPL (China), Cybersecurity Law (China)
- Frameworks
- ISO 27001, ISO 27701
Detects Cédula de Ciudadanía patterns. Detects this pattern using regex with corroborative keyword evidence.
- Type
- regex
- Confidence
- low
- Detection quality
- Mixed
- Jurisdictions
- co
- Regulations
- PDPL (CO)
- Frameworks
- ISO 27001, ISO 27701
Detects Colombia Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- co
- Regulations
- Habeas Data Law (Colombia)
Detects draft legal submissions to Commissions of Inquiry established under the Commissions of Inquiry Act 1950 (Qld). Disclosure prejudices the State's participation and may breach statutory confidentiality.
- Type
- keyword_proximity
- Confidence
- low
- Jurisdictions
- au
- Regulations
- QGISCF, Commissions of Inquiry Act 1950 (Qld)
Detects community-based corrections orders including probation orders, parole conditions, and community service orders issued under the Corrective Services Act 2006 (Qld). These documents contain offender details, supervision conditions, approved addresses, and compliance assessments by Queensland Corrective Services.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Corrective Services Act 2006 (Qld), Penalties and Sentences Act 1992 (Qld)
- Frameworks
- QGISCF
Detects documents containing the identities of police informants (confidential human sources) embedded within criminal organisations. Informant identity is the single most sensitive category of law enforcement information globally. Disclosure has historically resulted in murders and creates immediate lethal risk.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects financial models for mergers, acquisitions, or divestments containing actual valuations, synergy estimates, deal structures, and price ranges. Disclosure constitutes insider information under securities law.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Corporations Act 2001 (Cth), Criminal Code 1899 (Qld)
- Frameworks
- QGISCF
Detects controlled operation authorisations under PPRA 2000 (Qld) Part 5. Controlled operations involve officers in criminal activity under legal authority. Disclosure reveals officers and operational scope.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Crime and Corruption Act 2001 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects published coronial findings and recommendations under the Coroners Act 2003 (Qld). Although coronial findings are public documents, they contain sensitive details about the circumstances and cause of death, manner of death, and identity of deceased persons. Government agencies handling these documents should classify them as SENSITIVE Legal due to the distressing nature of the content.
- Type
- keyword_proximity
- Confidence
- low
- Jurisdictions
- au
- Regulations
- Coroners Act 2003 (Qld)
- Frameworks
- QGISCF
Detects draft government submissions to coronial inquests before filing. These submissions address deaths in government settings (custody, hospitals, child safety) and reveal the State's candid position on systemic failures before formal filing.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Coroners Act 2003 (Qld)
- Frameworks
- QGISCF
Detects pre-publication coronial investigation files including evidence, witness statements, and draft findings. Published coronial findings are SENS_Law, not PROT_Law.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Coroners Act 2003 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects documents containing prison intelligence reports including gang assessments, inmate risk ratings, informant identities within correctional facilities, and security threat group (STG) analyses. Disclosure endangers correctional staff, informant inmates, and undermines facility security.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Corrective Services Act 2006 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects documents containing terrorism threat assessments, persons of interest profiles, and counter-terrorism operational capabilities. Disclosure enables counter-surveillance by terrorist subjects and compromises national security monitoring. Includes JCTT (Joint Counter Terrorism Team) and QPS Security and Counter-Terrorism Group documents.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- QGISCF
Detects court filing references from Queensland courts (Magistrates Court, District Court, Supreme Court) containing proceeding numbers, party names, and registry details. Unpublished filings contain personal details of parties, allegations, and evidence that are not yet in the public domain.
- Type
- keyword_proximity
- Confidence
- low
- Jurisdictions
- au
- Regulations
- Criminal Code 1899 (Qld), UCPR 1999 (Qld)
- Frameworks
- QGISCF
Detects documents containing the true identities of undercover law enforcement officers deployed within criminal organisations. These records link assumed identities (legends) to real identities and are among the most life-critical records in law enforcement. Disclosure directly endangers the lives of deployed operatives and destroys years of infiltration work.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
- Frameworks
- QGISCF
Detects documents containing intelligence shared between Australian and international law enforcement agencies under formal exchange agreements. Disclosure damages international trust relationships, violates originator control (ORCON) principles, and compromises joint operations.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Mutual Assistance Act 1987 (Cth)
- Frameworks
- QGISCF
Detects privileged legal opinions issued by the Queensland Crown Solicitor or Office of the Crown Solicitor. These documents constitute the highest level of legal professional privilege in Queensland Government and their disclosure permanently waives privilege under Evidence Act 1977 (Qld) s.14.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects Cyprus driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- cy, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Δελτίο Ταυτότητας patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, cy
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Cyprus passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- cy, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Cyprus Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- cy, eu
- Regulations
- GDPR
Detects Cyprus Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- cy, eu
- Regulations
- gdpr
Detects cybercrime investigation technical evidence including digital forensics, malware analysis, cryptocurrency tracing, dark web investigations, and covert online personas. Disclosure enables cybercriminals to develop countermeasures.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code 1899 (Qld)
- Frameworks
- QGISCF
Detects Czech driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- cz, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Czech Republic passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- cz, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Rodné číslo patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, cz
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Czech Republic Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- cz, eu
- Regulations
- GDPR
Detects German driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- de, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Personalausweis patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, de
- Regulations
- GDPR
Detects German passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- de, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects German mobile telephone numbers per the Bundesnetzagentur's (BNetzA) Nummernplan für Mobile Dienste: the (0)15, (0)16, and (0)17 mobile sub-ranges, in both the domestic (leading trunk "0") and international (+49, leading 0 dropped) forms. BNetzA's own published length table shows the national significant number (the digits after the leading 0, including the "1" of "15/16/17") is 10 digits for most 016x/017x allocations and 11 digits for the 015x range and the 1609/176 exceptions — every quantifier below is bounded to this documented 10-11 digit span rather than left open-ended. The 10-11 bound is applied as a single envelope across all three ranges (the regex cannot pin 015x to exactly 11 and non-exception 016x/017x to exactly 10 without per-sub-range length alternation), so a 10-digit 015x or an 11-digit non-exception 016x/017x rendering is accepted — a deliberate, documented over-acceptance kept small by the envelope itself. Beyond the DIN 5008:2020 space-grouped form, two widespread legacy DIN 5008 renderings of the mobile prefix are covered: the slash form "0171/3920045" and the parenthesised form "(0171) 3920045" — both deprecated by the current DIN 5008 (which prescribes plain space grouping) but still common in signatures and letterheads — plus the "+49 (0)171 ..." letterhead form (nonstandard per ITU-T E.123, but ubiquitous). Geographic (Ortsnetz) landline numbers are intentionally out of scope (so the landline renderings "030/12345678" and "(030) 12345678" are likewise not matched): BNetzA states area codes run 2-5 digits and new allocations are capped at 11 significant digits (10 for the Berlin/Hamburg/Frankfurt/Munich two-digit-code exception), but does not publish a verified minimum length for the existing stock of legacy numbers, so a low-end bound would be invented rather than sourced — mirroring in-phone-number's decision to scope out India's similarly under-specified STD/landline numbers.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- de
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Germany Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- de, eu
- Regulations
- GDPR
Detects Steuer Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, de
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Germany Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- de, eu
- Regulations
- GDPR
Detects Denmark driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- dk, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Denmark passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- dk, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects CPR-nummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, dk
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Denmark Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- dk, eu
- Regulations
- GDPR
Detects domestic violence order applications and conditions under the Domestic and Family Violence Protection Act 2012 (Qld). These documents contain details of aggrieved persons, respondent details, allegations of domestic violence, ouster conditions, and protection order terms. Disclosure could endanger the aggrieved person.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- DFV Protection Act 2012 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects donor conception records including donor identity information, recipient details, offspring matching, and assisted reproductive technology treatment records under the Status of Children Act 1978 (Qld). These records contain the most sensitive reproductive information — donor identities, recipient medical details, and biological parentage links. Unauthorised disclosure can permanently alter family relationships and breach legal confidentiality protections.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), Status of Children Act 1978 (Qld)
- Frameworks
- QGISCF
Detects documents containing drug trafficking investigation intelligence including targets, supply chain mapping, precursor chemical tracking, clandestine laboratory intelligence, and cross-border interdiction plans. QPS Drug and Serious Crime Group is the primary unit. Disclosure enables traffickers to destroy evidence, alter supply routes, and eliminate informants.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Drugs Misuse Act 1986 (Qld)
- Frameworks
- QGISCF
Detects Cédula de Identidad patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ec
- Regulations
- LOPDP (EC)
- Frameworks
- ISO 27001, ISO 27701
Detects Estonia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ee, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Estonia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ee, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Isikukood patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- eu, ee
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Estonia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- ee, eu
- Regulations
- GDPR
Detects DNI patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, es
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Spain driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- es, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects NIE patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, es
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Spain passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- es, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Spanish national telephone numbers per Spain's closed 9-digit numbering plan (Plan Nacional de Numeración Telefónica, administered under CNMC oversight): mobile numbers (segment N=6 in full, plus N=7 partially opened for mobile use in the 71/72/73/74 sub-ranges by the SETSI Resolución de 12 de marzo de 2010, BOE-A-2010-5251; the first 7-prefixed mobile numbers entered service from late 2010/2011 once the then-regulator CMT assigned the new ranges to operators) and geographic numbers (leading 8 or 9, with the second digit constrained to never be 0 — a constraint that incidentally excludes the 900/901/902/905 toll-free and premium-rate service ranges, whose second digit is 0). Spain has no domestic trunk prefix, so the +34 international form carries the same 9 significant digits as the domestic form, just with the +34 prefix in place of nothing.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- es
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Spain Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- es, eu
- Regulations
- GDPR
Detects Número de la Seguridad Social patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, es
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Spain Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- es, eu
- Regulations
- GDPR
Detects EU declarations of conformity for high-risk AI systems under Article 47 and Annex V of the EU AI Act (Regulation (EU) 2024/1689). By drawing up the declaration the provider assumes responsibility for compliance; pre-signature drafts and the surrounding conformity-assessment correspondence reveal the provider's compliance posture, notified-body findings, and certificate details before market placement.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Regulation (EU) 2024/1689 (AI Act)
- Frameworks
- ISO/IEC 42001, ISO 27001
Detects deployer-side fundamental rights impact assessments (FRIA) under Article 27 of the EU AI Act (Regulation (EU) 2024/1689). A FRIA is performed before deploying certain high-risk AI systems by public bodies, private providers of public services, and deployers of credit-scoring and life/health-insurance pricing systems (Annex III points 5(b) and (c)). Completed FRIAs contain candid assessments of risks of harm to specific categories of natural persons and are sensitive before notification and remediation.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Regulation (EU) 2024/1689 (AI Act)
- Frameworks
- ISO/IEC 42001, ISO 27001
Detects general-purpose AI (GPAI) model provider documentation under Article 53 of the EU AI Act (Regulation (EU) 2024/1689): Annex XI technical documentation for the AI Office, Annex XII information packs for downstream providers, the Article 53(1)(d) public summary of training content, and Article 55 systemic-risk evaluation material (adversarial testing / red-teaming reports). Pre-publication drafts reveal model internals, training-data provenance, compute and energy figures, and systemic-risk findings.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Regulation (EU) 2024/1689 (AI Act)
- Frameworks
- ISO/IEC 42001, ISO 27001
Detects Article 11 / Annex IV technical documentation for high-risk AI systems under the EU AI Act (Regulation (EU) 2024/1689). This documentation must demonstrate compliance of the high-risk AI system before placing on the market and contains commercially sensitive material — system architecture, design specifications, training-data datasheets, risk management findings, and known limitations — whose uncontrolled disclosure exposes trade secrets and the provider's compliance posture.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Regulation (EU) 2024/1689 (AI Act)
- Frameworks
- ISO/IEC 42001, ISO 27001
Detects European debit and credit card numbers for Visa, Mastercard, and American Express networks. The pattern matches 13- to 16-digit card numbers based on the leading digits assigned to each network by the ISO/IEC 7812 standard. This is commonly used for PCI-DSS compliance scanning across EU-regulated financial data.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- eu
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects DORA Article 6 ICT risk management framework documentation and the digital operational resilience strategy of financial entities — board-approved framework documents, risk tolerance statements, and internal audit reviews of the framework. These documents describe the entity's defensive architecture, control gaps, and risk appetite; disclosure hands attackers a map of weaknesses.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Regulation (EU) 2022/2554 (DORA)
- Frameworks
- ISO 27001
Detects DORA Article 19 major ICT-related incident reports — the initial notification, intermediate report, and final report submitted to the competent authority under Delegated Regulation (EU) 2025/301 and Implementing Regulation (EU) 2025/302 — and voluntary notifications of significant cyber threats. These reports detail live vulnerabilities, affected services, and root causes; premature disclosure aids attackers and can move markets.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Regulation (EU) 2022/2554 (DORA), Delegated Regulation (EU) 2025/301, Implementing Regulation (EU) 2025/302
- Frameworks
- ISO 27001
Detects extracts and working copies of the DORA Article 28(3) register of information on contractual arrangements with ICT third-party service providers, including the ESAs' Implementing Regulation (EU) 2024/2956 template content (contractual arrangement reference numbers, provider LEIs, ICT service supply chain, critical or important function flags). The register maps a financial entity's entire ICT outsourcing estate and its concentration risk; disclosure exposes supplier dependencies and attack surface.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Regulation (EU) 2022/2554 (DORA), Implementing Regulation (EU) 2024/2956
- Frameworks
- ISO 27001
Detects EU driver's license number patterns across all EU member states. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- eu
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects International Bank Account Numbers (IBANs) used across European and global banking systems. IBANs consist of a two-letter country code, two check digits, and up to 30 alphanumeric characters representing the domestic bank account number. This pattern matches IBANs with or without space or hyphen delimiters between digit groups.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- eu
- Regulations
- GDPR, PSD2
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects European Union Classified Information (EUCI) protective markings as defined in Article 2(2) of Council Decision 2013/488/EU: the four bilingual French/English classification levels rendered together as a single marking — RESTREINT UE/EU RESTRICTED, CONFIDENTIEL UE/EU CONFIDENTIAL, SECRET UE/EU SECRET and TRÈS SECRET UE/EU TOP SECRET (the slash carries no surrounding spaces and TRÈS carries a grave accent, per the primary source). Named historically for RESTREINT but scopes the full EUCI ladder. The single-language French components (RESTREINT UE, CONFIDENTIEL UE, SECRET UE, TRÈS SECRET UE) are matched at a lower tier. Marking syntax verified directly against the Council Decision text; matched case-sensitively.
- Type
- regex
- Confidence
- high
- Jurisdictions
- eu
- Regulations
- Council Decision 2013/488/EU
- Frameworks
- EUCI
Detects references to EU National Identification Number using keyword matching. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- eu
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects NIS2 Article 21 cybersecurity risk-management measures documentation from essential and important entities — gap assessments, board approval papers, and the policies implementing the Article 21(2)(a)-(j) measures (incident handling, business continuity, supply chain security, cyber hygiene, cryptography, access control, multi-factor authentication). These documents catalogue an entity's security posture and unremediated gaps.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Directive (EU) 2022/2555 (NIS2)
- Frameworks
- ISO 27001
Detects NIS2 Article 23 significant-incident notifications from essential and important entities — the 24-hour early warning, 72-hour incident notification, intermediate report, final report, and progress report submitted to the CSIRT or competent authority. These filings contain live compromise details, indicators of compromise, and impact assessments; disclosure aids attackers and breaches supervisory confidentiality.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- eu
- Regulations
- Directive (EU) 2022/2555 (NIS2)
- Frameworks
- ISO 27001
Detects EU passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation. This is a broad, multi-country SIT that aggregates passport number detection across EU member states.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- eu
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects references to EU Social Security Number (SSN) or Equivalent ID using keyword matching. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- eu
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects EU Tax Identification Number (TIN) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. EU TIN formats vary by member state; this keyword list provides tax-related terminology for supplementary matching across EU jurisdictions.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- eu
- Regulations
- GDPR
Detects EU VAT identification numbers for all 27 member states in a single consolidated pattern, built branch-by-branch from the per-country structures published in the European Commission VIES FAQ (Q11). Covers the Greek quirk (Greece prefixes with EL, not GR) and Northern Ireland's XI prefix, which remains checkable in VIES for goods traders under the Windsor Framework — XI is included with the UK 9-digit, 12-digit and GD/HA government/health-authority forms; plain GB numbers are NOT included because Great Britain left the VIES scheme after Brexit. This pattern is a superset alongside the existing per-country detectors (at/be/de/fr/hu/it-vat-number), which stay untouched for deployed-GUID stability — the same document may fire both, following the global-iban / eu-iban precedent.
- Type
- regex
- Confidence
- high
- Jurisdictions
- eu
- Regulations
- GDPR, VAT Directive 2006/112/EC
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Finland driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- fi, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Finland European Health Insurance Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- fi, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Henkilötunnus (HETU) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, fi
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Finland passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- fi, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Finland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- fi, eu
- Regulations
- GDPR
Detects forensic evidence and chain-of-custody records for active criminal or security investigations, including exhibit registers, DNA/fingerprint/ballistics results, custody handovers, and formal chain-of-custody documentation.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects France driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- fr, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects France Health Insurance Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- fr, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Carte Nationale d'Identité patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, fr
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects NIR Insee patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, fr
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects France passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- fr, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects French national telephone numbers per ARCEP's numbering plan: 10-digit numbers in the "0X XX XX XX XX" form covering geographic (01-05), mobile/personal (06-07), and polyvalent (09) leading digits, plus the +33 international form (10-digit domestic number with the leading 0 dropped, per ARCEP convention), including the widespread "+33 (0)6 39 98 45 67" letterhead rendering (a common-but-nonstandard practice — ITU-T E.123 advises against the parenthesised trunk digit in international notation, but it is ubiquitous on French letterheads and email signatures, so it is matched for detection purposes). The 09 polyvalent range is in scope because it is predominantly personal PII in practice: 09 is the standard residential VoIP home-line range, auto-issued with consumer internet boxes to millions of French households; only the small 0937-0939 sub-range carries ARCEP's newer "technical platform" category (app-to-driver ephemeral numbers and similar). Numbers beginning 08 (value-added services) remain intentionally out of scope — organizational/service numbers rather than personal PII, mirroring how uk-phone-number scopes out non-geographic service ranges.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- fr
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects France Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- fr, eu
- Regulations
- GDPR
Detects France Tax Identification Number (numéro SPI.) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- fr, eu
- Regulations
- GDPR
Detects France Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- fr, eu
- Regulations
- GDPR
Detects medical records related to gender transition including hormone therapy prescriptions, surgical records, gender identity assessments, change of sex descriptor applications, and recognised sex certificates under Queensland law. These records reveal deeply personal information about gender identity that is subject to anti-discrimination protections — disclosure can cause severe harm including discrimination, harassment, and violence.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Anti-Discrimination Act 1991 (Qld), Births Deaths Marriages Act 2003 (Qld), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- QGISCF
Detects documents containing genetic or genomic test results linked to identifiable patients, including pathogenic variant findings, hereditary risk assessments, and pharmacogenomic reports. Genetic data reveals predisposition to diseases, carrier status, and family lineage — disclosure enables genetic discrimination in insurance, employment, and relationships.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Anti-Discrimination Act 1991 (Qld), Health Records Act 2001 (Vic), Privacy Act 1988 (Cth)
- Frameworks
- QGISCF
Detects Greenland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- gl
- Regulations
- Data Protection Act (Greenland)
Detects mobile advertising identifiers - Apple's IDFA and Google's Advertising ID (GAID, also called AAID) - when they appear labelled with an advertising-ID keyword. These IDs are UUIDs in the canonical 8-4-4-4-12 hexadecimal form. Although resettable, advertising IDs are persistent cross-app device identifiers treated as personal data under GDPR and CCPA/CPRA, and their disclosure enables cross-context tracking and re-identification.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701
Detects Australian Health Practitioner Regulation Agency (AHPRA) registration numbers used to identify registered health practitioners across 16 professions.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects references to AI training data, model datasets, and data provenance documentation in Australian contexts.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Detects documents containing credential-related terminology. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based bundled detector that aggregates multiple credential SITs. This keyword-based version flags documents that may contain credentials for further review.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Catalogue reference for the Microsoft Purview built-in All Full Names named-entity SIT. This YAML-only record supplies supplementary name-field vocabulary for registry search and testing; it does not reproduce Microsoft's opaque name-recognition resources.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- CCPA/CPRA, GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects All Medical Terms And Conditions patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Catalogue reference for the Microsoft Purview built-in All Physical Addresses bundled named-entity SIT, which contains country and region physical-address SITs including Australia physical addresses. This YAML-only record supplies supplementary address vocabulary for registry search and testing; it does not reproduce Microsoft's opaque named-entity resources and is not a custom XML clone.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- CCPA/CPRA, GDPR
Detects Anthropic (Claude) API keys. Standard keys use the sk-ant-api03- prefix followed by a long base64url body ending in AA; admin keys use sk-ant-admin01-. A leaked key grants billed access to the Anthropic API and any connected data.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects ASP.NET Machine Key patterns in configuration files. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Atlassian API tokens (ATATT3 prefix), used for Jira, Confluence and other Atlassian Cloud REST APIs. A leaked token grants the associated user's access to projects, issues, wiki content and attachments.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Auth0 client secrets. Auth0 issues an unprefixed 64-character base64url-style client secret, indistinguishable from other long random strings, so this pattern requires an adjacent Auth0 label plus an assignment separator to structurally qualify a match. A leaked client secret lets an attacker mint tokens as the application and impersonate it against every API it is authorized for.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects AWS Access Key patterns.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects AWS Secret Key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Service Bus Connection String patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
Detects Azure Storage Connection String patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Azure Storage Key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects JWT-shaped values presented with the Bearer authentication scheme. A bare scheme/value pair is discovery-only; an Authorization header enforces at medium confidence and a complete HTTP request or response context reaches high.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Binance API keys, which are 64-character case-sensitive alphanumeric strings with no distinctive prefix. Because a bare 64-char alphanumeric token is generic (it collides with any random token of that length), this pattern is context-gated: it requires a nearby Binance label and an assignment (= or :) before the value. A leaked key grants API access to the account (trading and, if enabled, withdrawal).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects references to biometric data including fingerprints, facial recognition, iris scans, and voiceprints in Australian documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects encoded biometric template artifacts rather than the word "fingerprint". Matches the ISO/IEC 19794 family modality magic markers (FMR\0 finger minutiae, FIR\0 finger image, FAC\0 face, IIR\0 iris — also the ANSI/INCITS 378 FMR header) and base64 blobs explicitly labelled as a biometric / fingerprint / iris / face template. Real biometric exfiltration moves as encoded templates, not plaintext.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global, eu
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects a BIP-39 mnemonic (crypto wallet recovery / seed phrase): a run of 11-24 space-separated lowercase words. Because the full 2048-word BIP-39 list cannot be embedded in a single regex, detection fires either when the word run is explicitly labelled as a seed/mnemonic/recovery phrase, or when the run contains one of a set of distinctive BIP-39 anchor words. A leaked seed phrase grants full, irreversible control of the wallet's funds.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects date-of-birth references across common date formats (numeric slash/dot/hyphen, written month, ISO) when birth-record labels or personal-record context are present. Covers Australian and global document styles; business dates (invoice, due, expiry) and template samples are suppressed.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects Bitcoin payment address candidates in both Bech32 (bc1…) and legacy Base58 (1…/3…) shapes. Checksums are not validated (Purview custom SITs lack Bech32/Base58Check functions), so matches are structural candidates and require Bitcoin/transfer context at enforce tiers.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Blood Test Terms patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects board papers, board memoranda, and governance documents prepared for board of directors consideration.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects Braintree (PayPal) OAuth access tokens, which use a distinctive literal dollar-delimited structure: access_token$<environment>$<merchant-id>$<token>. A leaked token allows payment processing and transaction-history access on the connected merchant's behalf.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Brand Medication Names patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects budget proposals, financial forecasts, and expenditure planning documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Identifies substantive Australian federal and state Cabinet submissions, memoranda, and approval papers. Topic phrases are retained for discovery; enforcement requires purpose, recommendation, financial, consultation, implementation, risk, regulatory, or decision-sought sections, and high confidence also requires a formal Cabinet marking, minute, decision, or submission identifier.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code 1899 (Qld), IPA 2009 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects a labelled card verification value: a CVV / CVV2 / CVC / CVC2 / CID / CSC keyword (or the spelled-out "card verification value/code" / "card security code") immediately followed by a 3 or 4 digit value. The CVV is sensitive authentication data that PCI DSS 4.0 Requirement 3.3.1 prohibits storing after authorization.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- PCI-DSS
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Cardano Shelley-era payment addresses: bech32-encoded with the mainnet human-readable prefix "addr1" (CIP-19 / CIP-5). The bech32 body varies with address type — enterprise (payment only) ~53 body chars, base (payment + stake) ~98 body chars, pointer in between — so the total ranges roughly 58-103 characters. The distinctive "addr1" prefix plus a long bech32 body is strong structure, gated at 85. Legacy Byron base58 (Ae2.../DdzFF...) and reward "stake1" addresses are not implemented (see report). Prefix/lengths verified against the CIP-19 test vectors.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- FATF Recommendations, AML/CTF Act (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects references to children's personal data requiring heightened protection under Australian privacy law.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects CircleCI personal access tokens (CCIPAT_ prefix). These tokens authenticate to the CircleCI API and can read/modify pipelines, contexts and project settings; a leak enables CI/CD compromise.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects documents containing client secret and API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad bundled detector. This keyword-based version flags documents that may contain client secrets or API keys for further review.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Cloudflare API tokens - 40-character tokens that authenticate to the Cloudflare API. Because the raw token has no distinctive prefix, this pattern gates on nearby Cloudflare context to keep false positives low.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Cohere API keys. Cohere issues an opaque 40-character alphanumeric token with no distinctive vendor prefix, so this pattern requires an adjacent Cohere label (cohere / CO_API_KEY / COHERE_API_KEY) to structurally qualify a match.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Coinbase Developer Platform (CDP) API key names, which use the distinctive resource-path form organizations/{org-uuid}/apiKeys/{key-uuid}. This key name is paired with an EC/ECDSA (or Ed25519) signing secret and is used to mint ES256 JWTs for the Coinbase API. A leaked CDP key can grant programmatic access to accounts, trading and funds. The associated EC PRIVATE KEY PEM secret is detected separately by global-ec-private.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects commercial lease agreements containing premises details, rental terms, and tenant obligations.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects control deficiency findings from internal audits and compliance assessments.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Detects credential combolist / infostealer-log lines: email:password pairs and host-or-url:user:pass triples, the format in which stolen credentials are aggregated and traded after info-stealer infections. These dumps fuel credential stuffing and account-takeover attacks. A lone email/password candidate is discovery-only; service-bound triples and multi-row dump structure support enforcement.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Datadog API keys, which are 32 hexadecimal characters with no fixed prefix. Because a bare 32-hex string is generic, this pattern requires a nearby Datadog label to confirm the match. A leaked key grants metric, log and event ingestion access.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects DigitalOcean personal access tokens (dop_v1_ prefix). These tokens authenticate to the DigitalOcean API and can manage droplets, databases, DNS and billing; a leak enables full account control.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects direct debit requests, BECS authorizations, and recurring payment arrangements under Australian banking standards.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects disaster recovery plans and operational recovery runbooks, including RTO/RPO targets, recovery procedures, failover steps, service restoration sequences, and infrastructure dependency detail used for continuity and incident recovery.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2
Detects Discord bot tokens: three dot-separated base64url segments where the first segment is the bot's numeric snowflake ID base64-encoded (always starting M, N, or O because it encodes an ASCII digit), the second is a 6-character timestamp, and the third is an HMAC of 27 to 38 characters. A leaked bot token grants full control of the bot account, including reading every channel the bot can see and sending messages as the bot.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Diseases patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects references to Defence Industry Security Program (DISP) membership and defence industry security markers in Australian documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Defence Act 1903 (Cth), Defence Trade Controls Act 2012 (Cth)
- Frameworks
- QGISCF
Detects Docker Hub personal access tokens (dckr_pat_ prefix). These tokens authenticate to Docker Hub and can pull/push images; a leak enables image tampering and supply-chain compromise.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Dogecoin mainnet addresses: Base58Check encoded, 34 characters long. Pay-to-Public-Key-Hash (P2PKH) addresses use version byte 0x1E and start with "D"; Pay-to-Script-Hash (P2SH) addresses use version byte 0x16 (22) and start with "A" (leading "9" is also possible for that version byte). A single leading letter is weak structure, so detection is context-gated. Prefix/version/length verified against libdogecoin and Dogecoin address-type docs.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- FATF Recommendations, AML/CTF Act (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Department of Veterans' Affairs (DVA) file numbers used to identify Australian veterans and eligible dependants for health and support services.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Detects SEC1 elliptic-curve private-key armor. The BEGIN marker is discovery-only, a SEC1-like Base64 body supports medium confidence, and a complete container with curve or signing context reaches high confidence.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Elasticsearch URI with Credentials patterns.
- Type
- regex
- Confidence
- high
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies electronic mail addresses in RFC-compatible local-part@domain.tld format. Requires valid top-level domain of 2+ characters. Uses word-boundary anchoring distinct from substring matching.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects email addresses in local-part@domain.tld form using a pragmatic RFC 5322 / WHATWG HTML Living Standard subset: bounded local-part and domain-label quantifiers, not the full RFC 5322 address-list grammar (no quoted-string local parts, no comments, no domain literals). Note one deliberate divergence from the WHATWG "valid e-mail address" definition: WHATWG accepts a single-label (dotless) domain such as user@localhost, whereas this pattern requires at least one dot-separated label after the host name — dotless domains are effectively intranet-only values and matching them would sharply raise false positives on code and asset tokens, so this is a subset of WHATWG on that axis, not an exact implementation. This is a genuine value-format identifier, distinct from the existing global-top500-044/045 concept patterns, which only match topic phrases such as "personal email" or "work email" and do not extract an actual address value.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects references to sensitive employment and human resources data including performance reviews, disciplinary actions, and workplace investigations.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects Ethereum Address patterns.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- FATF Recommendations
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects GCP Api Key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects GCP service-account JSON key files, distinguishing bare type=service_account record markers (discovery only) from complete keys whose object also carries an escaped PEM private_key and a .iam.gserviceaccount.com client_email (enforcing), with project_id/private_key_id as additional high-confidence evidence.
- Type
- regex
- Confidence
- low
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects general password patterns in documents and configuration files. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based detector. This keyword-based version flags documents that may contain passwords for further review.
- Type
- regex
- Confidence
- low
- Detection quality
- Mixed
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects general symmetric encryption key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based detector. This keyword-based version flags documents that may contain symmetric keys for further review.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects database connection URLs with embedded user:password@host credentials, restricted to database schemes (mongodb/mongodb+srv, postgres/postgresql, mysql, redis/rediss, mssql/sqlserver, oracle, jdbc). Placeholder passwords and localhost/example hosts are rejected; non-database credential URLs (AMQP, LDAP, FTP) belong to a separate service-URL credential classifier.
- Type
- regex
- Confidence
- low
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Generic Medication Names patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects GitHub Fine-Grained PAT patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Github Pat patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects GitLab deploy tokens (gldt- prefix). Deploy tokens grant read/write access to a project's repository, container registry and package registry; a leak enables artifact theft or tampering.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects GitLab personal access tokens (glpat- prefix). A leaked PAT grants repository, CI/CD pipeline and package-registry access scoped to the issuing user.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects GitLab pipeline trigger tokens (glptt- prefix). These tokens let external systems start CI/CD pipelines via the trigger API; a leak allows unauthorized pipeline execution.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects GitLab runner authentication tokens (glrt- prefix). These tokens authenticate a CI/CD runner to a GitLab instance; a leak lets an attacker impersonate a runner and capture job payloads.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects geographic coordinates written in degrees-minutes-seconds (DMS) form with a hemisphere letter (e.g. 40 deg 26' 46" N) and in Military Grid Reference System (MGRS) form (e.g. 4QFJ 12345 67890). The registry already covers decimal-degree coordinates; this adds the DMS and MGRS notations commonly found in mapping exports, surveying records, defence/geospatial documents and EXIF-derived location data.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects GPS Coordinates (Decimal Degrees) patterns. Requires location/GPS context keywords
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Grafana Cloud API tokens (glc_ prefix) and Grafana service account tokens (glsa_ prefix). A leaked token grants access to dashboards, data sources and, for Grafana Cloud, metrics/logs ingestion endpoints.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Groq (GroqCloud) API keys, which use a distinctive gsk_ prefix followed by a long alphanumeric body. A leaked key grants unauthorized, billed access to Groq's hosted inference API and any prompts or data routed through it.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects guarantor agreements and personal guarantee documents with indemnity obligations.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects HashiCorp Vault service tokens (hvs. prefix) and batch tokens (hvb. prefix). These tokens authenticate to a Vault server and can read secrets, keys and credentials. A bare prefixed candidate is discovery-only; binding fields and Vault auth-response metadata provide balanced and high-confidence enforcement.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Heroku platform API keys in the prefixed HRKU- form. These keys authenticate to the Heroku Platform API and can deploy apps, read config vars and manage add-ons; a leak enables full account compromise.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects HL7 Health Message patterns. Detects HL7v2 message headers and ADT event types
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects HTTP Authorization header patterns containing Bearer tokens, Basic credentials, and other authentication schemes. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Hugging Face user access tokens (hf_ prefix), used to authenticate to the Hugging Face Hub API. A leaked token grants access to private models, datasets and Spaces, and can incur inference billing.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects International Bank Account Numbers (IBANs) across the full ISO 13616 / SWIFT IBAN Registry country set, extending coverage beyond the EU-focused eu-iban pattern to non-EU IBAN countries verified against the SWIFT IBAN registry — at minimum United Kingdom (GB, 22 chars), Switzerland (CH, 21), Norway (NO, 15), Saudi Arabia (SA, 24), United Arab Emirates (AE, 23), and Turkey (TR, 26). The structural regex widens eu-iban's BBAN length range (12-36 alphanumeric characters) down to 8-32 specifically to also catch shorter formats such as Norway's 15-character IBAN (11-character BBAN), which falls below eu-iban's minimum and would not match it. This pattern intentionally co-fires with eu-iban for EU country codes, since neither pattern restricts the 2-letter prefix to a specific country allow-list — see false_positives.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects ICCID patterns.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects ICD-10 Cm patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects ICD-10 Pcs patterns.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects International Classification of Diseases (ICD-9-CM) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- low
- Detection quality
- Mixed
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects IMEI patterns.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects incident response plans containing containment procedures and escalation matrices.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2
Detects references to Aboriginal and Torres Strait Islander data requiring cultural sensitivity and community consent considerations.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects a labelled health-insurance member, subscriber, policy or group identifier: a member/subscriber/policy/group ID label followed by a 6-15 character alphanumeric value that contains at least one digit. Insurance identifiers are protected health information under HIPAA and are frequently exposed in breach disclosures.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- HIPAA
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects internal audit reports containing control assessments and organisational vulnerability findings.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects IPv4 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects IPv6 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects IT runbooks and operational playbooks containing procedures, credentials, and escalation paths.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2
Detects JSON Web Token candidates with three Base64url segments. A generic encoded-JSON candidate is discovery-only; a standard encoded algorithm header plus encoded JSON payload enforces at medium confidence, and HTTP or session transport binding raises the result to high confidence.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Kraken REST API credentials: the public API key (56 base64 characters) and the private key / API secret (86-88 base64 characters, base64 of 64 bytes). Because base64 strings have no distinctive prefix, this pattern is context-gated: it requires a nearby Kraken label and an assignment (= or :) before the value. A leaked private key allows signing authenticated requests to the account.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects embedded credentials inside a Kubernetes kubeconfig file - base64 client certificate / key data blocks and inline bearer tokens. A leaked kubeconfig grants cluster access at the scope of the embedded identity.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Kubernetes Internal Service URL patterns.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Lab Test Terms patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects LangSmith API keys (personal access tokens and service keys), which use a distinctive lsv2_pt_ or lsv2_sk_ prefix followed by a hyphenated hex body. A leaked key grants unauthorized access to LangSmith trace data -- which can include full LLM prompts and completions -- and billed access to the LangSmith/LangChain platform.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects ISO 17442 Legal Entity Identifiers (LEIs) — the 20-character uppercase alphanumeric codes issued under the Global LEI System (GLEIF) that uniquely identify legal entities in financial transactions. Structure: characters 1-4 are the LEI-issuer (LOU) prefix, characters 5-6 are reserved and set to "00", characters 7-18 are the entity-specific part, and characters 19-20 are numeric check digits (ISO 7064 MOD 97-10). Requiring the literal "00" at positions 5-6 and two digits at positions 19-20 makes the format far more distinctive than a generic 20-character alphanumeric run. Known recall cost: pre-2013 CICI-era legacy LEIs — interim identifiers issued before the "00" reservation, grandfathered into the GLEIF system and still live and checksum-valid — do not carry "00" at positions 5-6 and are NOT matched. This class includes major counterparties such as Microsoft (INR2EJN1ERAN0W5ZP974), Deutsche Bank (7LTWFZYICNSX8D621K86) and Apple (HWUPKR0MPOU8FGXBT394), so documents dealing with such entities' LEIs will be missed. This is a deliberate precision-over-recall trade-off: dropping the "00" anchor would widen the pattern to any 20-character uppercase alphanumeric run ending in two digits.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- MiFID II, EMIR, Dodd-Frank Act
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Litecoin addresses in two forms. Native SegWit bech32 addresses use the human-readable part "ltc1" (distinctive, 85-gated). Legacy base58 addresses are P2PKH with version byte 0x30 (leading "L") and P2SH with version byte 0x32 (leading "M"), 26-35 characters (most 34) — a single-letter prefix that is weaker (75-gated). Prefixes/version bytes/lengths verified against the Litecoin address-prefix docs and documented example addresses.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- FATF Recommendations, AML/CTF Act (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects LOINC laboratory observation codes in nnnnn-n form.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global, us
- Regulations
- HIPAA, CLIA
- Frameworks
- ISO 27001, ISO 27701
Detects Mac Address patterns.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Mailchimp API keys, formatted as 32 hex characters followed by -us and a 1-2 digit datacenter code. A leaked key grants access to audience lists, campaigns and subscriber PII.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Mailgun private API keys (key- prefix followed by 32 hex characters). A leaked key allows sending email and accessing logs and account data via the Mailgun API.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects management action plans documenting remediation timelines for audit findings and vulnerabilities.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects Lifestyles That Relate To Medical Conditions patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Medical Specialties patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Microsoft Bing Maps API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies substantive Australian ministerial, Director-General, secretary, and executive briefing documents. Topic phrases are retained for discovery; enforcement requires issue, recommendation, option, risk, financial, stakeholder, communications, decision, or implementation content, and high confidence also requires a formal brief reference or decision/approval signal.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects Monero (XMR) public addresses, encoded in Monero-specific base58 (same 58-character alphabet as standard base58, excluding 0 O I l). Standard addresses (mainnet network byte 18) and subaddresses (network byte 42) are 95 characters and begin with "4" or "8"; integrated addresses (network byte 19, standard address + encrypted 64-bit payment ID) are 106 characters and begin with "4". The fixed 95/106-char length is highly distinctive, gated at 85. Prefixes/lengths verified against the Monero standard-address and integrated-address docs.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- FATF Recommendations, AML/CTF Act (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Mongodb patterns.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Mysql patterns.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects National Metering Identifier (NMI) patterns used in the Australian energy market. A 10 or 11 digit number identifying electricity and gas connection points. Context-dependent: requires energy/meter keywords.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Detects references to nationality/citizenship/immigration-status disclosure: nationality fields, national origin, citizenship status, visa status, and naturalization records. Unlike the three sibling Art-9 patterns in this wave (sexual-orientation, religious-beliefs, racial-ethnic-origin), nationality is NOT a GDPR Article 9 special category — it is processed under GDPR's ordinary Article 6 lawful-basis regime. It is grouped with the Art-9 set here because it shares the same detection problem (an attribute value with no fixed format) and was bundled with them in the C3 deprecation/gap analysis, and because national origin carries real discrimination risk. Topic-grade detector, low confidence by design.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects US National Drug Codes (NDC) identifying drug products, including common dashed labeler formats (4-4-2, 5-3-2, 5-4-2) and HIPAA 11-digit zero-padded forms. Structural NDC candidates used in pharmacy, claims, and clinical product coding.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- us, global
- Regulations
- HIPAA, FD&C Act, CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701
Detects Netlify authentication tokens: the current nf-prefixed family announced by Netlify in November 2023 (nfp_ personal access tokens, nfc_ CLI tokens, nfo_ OAuth tokens, nfu_ app.netlify.com tokens, nfb_ build tokens) and, when labelled with Netlify context, the legacy unprefixed 43-45 character token form that remains valid. A leaked token grants control of the account's sites, deploys and environment variables.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Identifies substantive internal network-infrastructure design and topology documents. Topic phrases are retained for discovery; enforcement requires segmentation, trust-boundary, routing, VLAN, DMZ, data-flow, or firewall-design content, and high confidence also requires a populated address, VLAN, port, device, or rule detail.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2
Detects references to neural / neurotechnology data: brain-computer interface signals, EEG/EMG recordings, evoked potentials, neural decoding output and neurofeedback data. Colorado HB24-1058 and California SB 1223 both classify neural data as sensitive personal information. Topic-grade vocabulary detector, not a fixed-format detector.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global, us
- Regulations
- CCPA/CPRA, GDPR
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects New Relic user API keys (NRAK- prefix followed by 27 characters). A leaked key grants access to the New Relic GraphQL (NerdGraph) API and account telemetry.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Notion integration tokens in both live formats: the current ntn_ prefix (issued to all new integrations since 25 September 2024) and, when labelled with Notion context, the legacy secret_ prefix (existing tokens remain valid indefinitely). A leaked integration token grants API access to every page and database the integration has been connected to.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects bounded npm access-token values (npm_ prefix, fixed 36-character body) and credential-bearing .npmrc authToken assignments; documentation and placeholder examples remain excluded. These tokens authenticate to the npm registry and can publish, unpublish or grant access to packages; a leak enables supply-chain attacks via malicious publishes.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects NuGet.org API keys (oy2 prefix), used to push packages to the NuGet gallery. A leaked key lets an attacker publish or unlist packages under the owner's account.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Okta API-token candidates, which begin with 00 and are followed by 40 base64url characters. Okta or SSWS context is required for enforcement because the 42-character shape can represent unrelated identifiers; the bare value shape surfaces only as discovery inventory. A leaked token grants Okta admin API access.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Openai Key patterns.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects OpenSSH private-key armor. The fixed BEGIN line alone is discovery-only; the encoded openssh-key-v1 container magic supports medium confidence and normally wrapped near-header body lines support high confidence.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Oracle Connection String patterns.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies substantive operational-technology, SCADA, ICS, and industrial-control security assessments. Topic phrases are retained for discovery; enforcement requires findings, affected assets, evidence, remediation, attack paths, firmware, segmentation, credential, or remote-access weaknesses, and high confidence additionally requires a concrete technical indicator and severe exploit consequence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Identifies substantive Australian question-time briefs, Senate Estimates briefs, parliamentary question responses, and parliamentary correspondence briefs. Topic phrases are retained for discovery; enforcement requires likely-question, response, talking-point, media-line, key-fact, supplementary-question, answer, portfolio, or hearing content, and high confidence also requires draft, embargo, clearance, question-number, or other pre-release handling evidence.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects the Machine-Readable Zone (MRZ) of an ICAO 9303 travel document, the OCR-B text printed at the bottom of passport data pages and scanned at border control. This pattern focuses on the TD3 passport format (two lines of 44 characters): line 1 begins 'P' + document subtype + 3-letter issuing state + the holder's names, and line 2 packs the document number, check digits, nationality, date of birth, sex and expiry. MRZ leakage via scans, photocopies and OCR exports is one of the highest-value passport data exposure vectors because it concentrates every identity field in a single fixed-width block.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701
Detects Australian PayID payment addresses used on the New Payments Platform (NPP). A PayID is an email address, mobile phone number (+61 / 04xx format), ABN or organisation identifier registered as a real-time payment alias, detected when it appears near an explicit PayID label in a payment context.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies payment card Primary Account Numbers (PANs) for Visa, Mastercard (including 2-series BINs), American Express, Discover, JCB, Diners Club and UnionPay, in contiguous and space/hyphen-separated forms. Uses Func_credit_card Luhn validator with AllDigitsSameFilter.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- CCPA/CPRA, GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects ISO/IEC 7813 magnetic-stripe Track 1 (format code B) data for payment cards: a start sentinel %B, the primary account number, the cardholder name, expiry date, service code and discretionary data. Storing full track data after authorization is prohibited by PCI DSS 4.0 Requirement 3.3.1.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- PCI-DSS
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects ISO/IEC 7813 magnetic-stripe Track 2 data for payment cards: a start sentinel ;, the primary account number, a field separator =, expiry (YYMM), service code and discretionary data, end sentinel ?. Also detects the common no-sentinel database form PAN=YYMM... Storing full track data after authorization is prohibited by PCI DSS 4.0 Requirement 3.3.1.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- PCI-DSS
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects payment advices, remittance notices, and electronic funds transfer confirmations.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Perplexity API keys, which use a distinctive pplx- prefix followed by a 48-character alphanumeric body. A leaked key grants unauthorized, billed access to Perplexity's search and chat completion API and any prompts or data routed through it.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects the ASCII-armored header of an OpenPGP (PGP/GnuPG) private key block, as defined in RFC 4880 / RFC 9580. A leaked PGP private key allows an attacker to decrypt the holder's encrypted mail and files and to forge signatures in their name. The registry already covers RSA, EC, OpenSSH and PKCS#8 private keys; this adds the OpenPGP armor format. Header-only hits are discovery-only; armored packet data near the header provides the enforcement tiers.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects international telephone numbers in ITU-T E.164 form: a leading "+" (the international prefix symbol defined by ITU-T E.123, the companion notation recommendation) followed by a country code and national significant number totalling no more than 15 digits, per E.164's own numbering-space limit (country code 1-3 digits, subscriber number up to 12 digits, 15 digits maximum overall). This pattern covers only the "+"-prefixed international representation — it is the global counterpart to the country-specific domestic-format patterns (us-phone-number, ca-phone-number, uk-phone-number, in-phone-number, and the EU national patterns), which additionally match each country's bare domestic formatting conventions. Real-world renderings commonly use spaces or hyphens between digit groups even though E.123 formally prescribes spaces only; both are accepted here. The "+CC (0)..." letterhead rendering (e.g. "+44 (0)20 7946 0958") is deliberately NOT matched by this pattern: it is not an E.164 representation (E.123 explicitly advises against the parenthesised trunk digit in international notation), and the country-specific patterns whose plans actually use a trunk 0 (uk/de/fr/nl) each cover it themselves — keeping this global pattern strictly E.164-shaped.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Pinecone API keys in both current live formats: pcsk_ (the dominant format issued by the Pinecone console, CLI, and SDK key-creation flows) and pckey_ (the Enterprise-plan Admin API variant, format pckey_<public-label>_<unique-key>). A leaked key grants unauthorized access to a Pinecone vector database, including any embeddings or vectorised source data it stores.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects unencrypted PKCS#8 private-key armor. The generic BEGIN PRIVATE KEY marker is discovery-only; a DER algorithm prelude supports medium confidence, and near-header wrapped body data or an exact compact-key prelude reaches high.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Plaid API credentials: Item access tokens (access-sandbox-/access-production- followed by an RFC 4122 UUID) and, when labelled with Plaid context, the 30-character hex API secret. A leaked access token exposes a user's linked bank account data; a leaked secret compromises the whole Plaid integration.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects references to political opinions and party affiliation: party membership, voter registration by party, political donations and campaign contributions. GDPR Article 9 lists political opinions as a special category of personal data with no fixed format — it is detectable only by topic vocabulary. Topic-grade detector, low confidence by design.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global, eu
- Regulations
- GDPR
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects Postgresql patterns.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Personal Property Securities Register (PPSR) security agreements and related collateral documentation.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to internal project or initiative codenames in the "Project <CODENAME>" / "Operation <CODENAME>" labelling style. The public form of this pattern carries fictional example codenames only - it is a customisation skeleton: deployments substitute their organisation's live codename list via the declared customisation, which is what gives the pattern real detection value.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Frameworks
- ISO 27001
Detects the header line of a PuTTY private key file (.ppk), as produced by PuTTYgen. The header begins with 'PuTTY-User-Key-File-' followed by the format version (2 or 3) and the SSH key algorithm. A leaked .ppk grants SSH access to whatever hosts trust the corresponding public key. Header-only candidates are discovery-only; ordered PPK metadata and the first public-blob line support enforcement.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- GDPR, CCPA/CPRA
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects PyPI (Python Package Index) upload tokens. The fixed marker pypi-AgEIcHlwaS5vcmc is the base64 encoding of "pypi.org", making these tokens near-unmistakable. A leaked token lets an attacker publish malicious package releases.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects racial or ethnic origin information in person-linked demographic, workforce, intake, census, application, and case records. The detector recognises explicit racial/ethnic-origin phrases and structured race or ethnicity fields, then raises confidence only when the same span contains a data-subject record and a populated attribution. Racial or ethnic origin is protected under GDPR Article 9 and Australian anti-discrimination and privacy law. Topic-grade detector, low confidence by design.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global, au, eu
- Regulations
- GDPR, Privacy Act 1988 (Cth), Racial Discrimination Act 1975 (Cth)
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects red team assessment reports revealing proven attack paths and security blind spots.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS
Detects Redis patterns.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects religious or philosophical belief information in person-linked membership, patient, workforce, census, pastoral-care, and accommodation records. The detector recognises explicit belief, affiliation, observance, denomination, and structured religion-field terminology, then raises confidence only for person records and populated belief or accommodation statements. Religious or philosophical beliefs are protected under GDPR Article 9 and Australian anti-discrimination and privacy law. Topic-grade detector, low confidence by design.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global, au, eu
- Regulations
- GDPR, Privacy Act 1988 (Cth), Fair Work Act 2009 (Cth)
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects Replicate API tokens, which use a distinctive r8_ prefix followed by a fixed-length body of alphanumerics, underscores, and hyphens. A leaked token grants unauthorized, billed access to Replicate's hosted model inference API and any prompts, images, or data routed through it.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects references to reproductive and sexual-health data: pregnancy, abortion, contraception, fertility treatment, gender-affirming care and STI/HIV status. Washington's My Health My Data Act (and a wave of post-Dobbs state consumer-health-data laws) treat this as protected consumer health data. Topic-grade vocabulary detector.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global, us
- Regulations
- HIPAA, GDPR
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects residential tenancy agreements containing tenant PII, rental terms, and bond details.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects risk registers containing assessed vulnerabilities, likelihood ratings, and risk treatment plans.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects PKCS#1 RSA private-key armor. A BEGIN line is discovery-only, the first DER-like Base64 line supports medium confidence, and several normally wrapped body lines near the header support high confidence.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects RubyGems.org API keys (rubygems_ prefix), used to push gems. A leaked key lets an attacker publish or yank gems under the owner's account.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Identifies substantive SCADA and industrial-control-system documentation. Topic phrases are retained for discovery; enforcement requires point, tag, I/O, alarm, HMI, RTU, protocol-map, polling, or control-logic configuration content, and high confidence also requires a populated asset, node, address, register, outstation, or site detail.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects security audit reports including SOC 2, ISO 27001, and IRAP findings.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Detects references to Australian Government security clearances and personnel vetting status.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- 2006 MOU National Security, Criminal Code Act 1995 (Cth)
- Frameworks
- PSPF, QGISCF
Detects security incident reports containing forensic findings, root causes, and response gaps.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects SendGrid (Twilio SendGrid) API keys, formatted as SG. then a 22-character key id, a dot, and a 43-character secret. A leaked key allows sending email and reading account data through the SendGrid API.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Sentry auth tokens: organization tokens (sntrys_), user auth tokens (sntryu_), the user-app and internal-integration prefixes from Sentry's own token-type source (sntrya_, sntryi_), and, when labelled with Sentry context in an assignment, the legacy unprefixed 64-hex tokens issued before prefixing. A leaked token grants API access to error and performance data -- which routinely embeds further secrets, PII, and source context -- and to release/CI operations. Sentry DSNs are explicitly NOT matched: Sentry documents DSNs as safe to keep public.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects high-value session cookies by name-plus-value: framework and SSO session cookies (ESTSAUTH / ESTSAUTHPERSISTENT, JSESSIONID, PHPSESSID, connect.sid, _session_id, sessionid) assigned a long token value. A captured session cookie lets an attacker resume an authenticated session and bypass MFA entirely. Bare assignments are discovery-only; HTTP cookie framing and response attributes provide the enforcement tiers.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects sexual-orientation information in person-linked workforce, patient, survey, member, relationship, intake, and case records. The detector recognises the explicit sexual orientation phrase, orientation-specific identification statements, coming-out statements, and same-sex partner or spouse references, then raises confidence only for person records and populated attributions. It deliberately excludes transgender status, gender identity, and pronouns because those are distinct attributes. Sexual orientation is protected under GDPR Article 9 and Australian anti-discrimination and privacy law. Topic-grade detector, low confidence by design.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global, au, eu
- Regulations
- GDPR, Privacy Act 1988 (Cth), Sex Discrimination Act 1984 (Cth)
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects the Shopify access-token family: Admin API access tokens (shpat_), custom app access tokens (shpca_), legacy private app passwords (shppa_) and app shared secrets (shpss_), each followed by a 32-character hex body. A leaked token grants API access to a Shopify store, including customers, orders and payment-adjacent data.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Slack Token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Snowflake OAuth access and refresh tokens, which carry the recognizable ver:1-hint: / ver:2-hint: prefix used by Snowflake authentication. These tokens (and programmatic access tokens used in their place) grant query and data access to a Snowflake account.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Solana public wallet/account addresses: the base58 encoding of a 32-byte ed25519 public key, 32-44 characters long, with NO distinctive prefix. Because a prefix-less base58 run of this length collides heavily with random tokens, other base58 identifiers and prose, detection is context-gated: the single tier is AND-gated by cryptocurrency/wallet domain context and a template/sample noise exclusion. Length/charset bounds verified against the Solana account model (32-byte address displayed as a base58 string) and the base58 alphabet (excludes 0 O I l).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- FATF Recommendations, AML/CTF Act (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Sarbanes-Oxley (SOX) and COSO internal control framework compliance documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- us
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects SQL Server patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects Square credential formats: application secrets (sq0csp-, with sandbox- prefixed sandbox variants), legacy personal access tokens (sq0atp-), and current OAuth/personal access tokens (EAAA + 60-character body, context-gated on a nearby Square label because the EAAA base64 shape also occurs in non-Square tokens and encoded blobs). A leaked token or secret enables payment processing and transaction data access in the associated Square account.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects strategic plans, product roadmaps, and long-term business planning documents.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Detects Stripe Key patterns.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects subscription agreements, recurring billing terms, and SaaS licence documentation.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Supabase credentials: personal access tokens (sbp_), the new opaque secret API keys (sb_secret_) introduced in 2025 to replace the legacy service_role JWT, and, when labelled with Supabase context in an assignment, the legacy anon/service_role JWT keys that remain valid until late 2026. A leaked secret key or service_role JWT grants full admin access to the project's production Postgres database, bypassing Row Level Security; a leaked personal access token grants account-wide Management API control.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Surgical Procedures patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Swift Bic patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- PSD2
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects technical design documents, system architecture specifications, and API documentation.
- Type
- keyword_list
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2
Detects Telegram Bot API tokens: the numeric bot ID, a colon, and a 35-character [A-Za-z0-9_-] secret. A leaked bot token grants full control of the bot -- reading its message traffic, sending messages to every chat it belongs to, and hijacking any workflow automation built on it.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects HashiCorp Terraform Cloud / Terraform Enterprise API tokens (atlasv1 format). These tokens authenticate to the Terraform Cloud API and can read/write workspace state and variables; a leak can expose all infrastructure secrets.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Identifies documents containing references to legal full name in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to previous legal names and aliases in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to place of birth in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to citizenship status in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to biometric identifiers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to handwritten signatures in Australian contexts. This remains a concept detector over manual/wet/ink/specimen signature wording — it does not inspect handwriting pixels or capture a signature image. Bare "signed by" attribution (common in electronic/typed signature text) is corroborating evidence only, not a primary indicator.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to marital status in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to gender or sex marker in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to disability status in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to genetic data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to deceased-person records with cultural sensitivity in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to national identity number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to voter registration number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to birth certificate number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to death certificate number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to marriage certificate number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to military service number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to immigration file number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to visa grant number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to residence permit number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to refugee or asylum case number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to police identity number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to prisoner identification number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to firearm license number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to professional license number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to social benefits claimant number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to home address in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to mailing address in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to personal phone number in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Phrase-level concept detector: it matches contact-number wording, not telephone digits. Enforcing tiers require a personal/home qualifier (personal phone number, home phone, personal mobile, call-back number, phone contact). Bare mobile/cell/telephone/contact/SMS/direct-dial labels without that qualifier are discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to personal email address in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Phrase-level concept detector: it matches email-label wording, not populated mailbox addresses; generic email/contact/correspondence labels without a personal or private qualifier are discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to work email address in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to emergency contact details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to real-time geolocation in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to historical location trails in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to travel itinerary details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to vehicle registration details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to device imei numbers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Detection is phrase-level concept matching anchored on explicit IMEI, TAC, and equipment-identity vocabulary; it does not parse or Luhn-validate 15-digit IMEI values.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2
Identifies documents containing references to sim card identifiers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to mac addresses linked to users in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2
Identifies documents containing references to home utility account addresses in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to household composition details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to building access badge location logs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to hotel booking details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to frequent traveler numbers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to border crossing history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to commuting pattern data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to employment contracts in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to performance review reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to disciplinary records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to employee grievance reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to whistleblower identity records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to background check results in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to right-to-work verification documents in Australian contexts. Enforcement anchors on verification concepts (right to work, work entitlement, VEVO check, visa verification, employment eligibility); generic immigration/visa status, work permit, and visa holder wording describes immigration records generally and remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to union membership status in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to compensation adjustment history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to bonus and incentive allocations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to equity grant details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to manager assessment notes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to psychometric assessment results in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to interview evaluation notes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to succession planning files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to reduction-in-force planning lists in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to time and attendance records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to leave and absence records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to workplace investigation files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to exit interview records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects references to payroll bank account details in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Detects references to employee withholding elections in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to employer payroll tax filings in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to employee tax forms in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to contractor tax forms in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to payroll deduction records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to wage garnishment orders in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to retirement contribution records in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to pension account identifiers in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to dependent tax credit information in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to childcare benefit payroll claims in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to expense reimbursement claims in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to payroll journal entries in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to tax authority correspondence in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to payroll exception reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to superannuation identifiers in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to overpayment recovery records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to off-cycle payroll approvals in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to compensation arrears records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to payroll system access logs in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Detects references to consumer bank account numbers in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- PCI-DSS, GLBA
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to bank routing numbers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to IBAN and international bank account number topics in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Topic-level phrase detection only; it does not parse or mod-97-validate IBAN values.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to SWIFT or BIC codes in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Phrase-level payment-rail concept detection anchored on explicit SWIFT/BIC vocabulary; it does not parse 8- or 11-character BIC values.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to payment card primary account numbers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to card verification values in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Phrase-level concept detection anchored on explicit card-verification vocabulary; it does not parse 3- or 4-digit CVV values.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to card expiration dates in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Phrase-level concept detection anchored on card-specific expiry vocabulary; it does not parse MM/YY or month-year values.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to cardholder names linked to accounts in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to mobile payment account ids in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to merchant acquiring credentials in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, PCI-DSS, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Detects references to direct debit mandate data in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to ach company and originator ids in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to remittance instructions in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, PCI-DSS
Detects references to card dispute case records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to wire transfer instructions in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, PCI-DSS
Detects references to escrow account details in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to treasury cash position reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to cash flow forecast assumptions in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to payment fraud investigation files in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, PCI-DSS
Detects references to credit bureau reports in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to credit scores in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to loan application files in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to mortgage underwriting packets in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to collateral valuation reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to debt collection records in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to bankruptcy case records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to insurance policy records in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to insurance claim records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to underwriting decision rationales in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to know-your-customer profiles in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to anti-money-laundering alerts in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to suspicious activity reports in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to sanctions screening matches in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to beneficial ownership declarations in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to guarantor identity and financial data in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to loan covenant compliance records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to reinsurance contract terms in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Detects references to premium payment histories in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects references to claim settlement negotiation notes in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Identifies documents containing references to vendor master records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to supplier bank change requests in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to purchase order records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to bid and tender proposals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to contracted pricing schedules in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to supplier invoice records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to tax exemption certificates in international contexts. These are tax-compliance certificates that may contain entity or individual identifiers; the category is not blanket personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to third-party risk assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to supplier due diligence reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to customs declaration data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to bills of lading in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to shipping manifest details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to inventory valuation reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to bill-of-materials cost data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to service-level penalty records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to rebate agreement terms in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to channel partner margin agreements in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to procurement fraud investigation files in international contexts. These are investigative and procurement-sensitive records that may contain personal allegations; the category is not blanket personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to sole-source justification memos in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to supplier performance scorecards in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to board meeting minutes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to committee meeting minutes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to legal advice memoranda in international contexts. These are privileged or confidential legal advice records; the category is not personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to attorney-client privileged communications in international contexts. These are communications potentially subject to legal privilege; the category is not blanket personally identifiable information, and a match does not guarantee privilege applies.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to settlement agreement drafts in international contexts. These are confidential draft settlement instruments; the category is not personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies substantive responses and submissions addressing regulatory, supervisory, prudential, or compliance examinations and findings. Topic phrases are retained for discovery; enforcement requires response, finding, root-cause, remediation, ownership, due-date, evidence, dispute, or control-gap content, and high confidence also requires a formal examination/finding reference or response due date.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to antitrust legal analyses in international contexts. These are commercially and legally sensitive competition analyses; the category is not personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to ethics hotline case records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to policy violation findings in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to internal audit workpapers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to sox control deficiency records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to internal control exception logs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to policy exception approvals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to breach notification draft communications in international contexts. Sensitive pre-release breach communications may contain personal-impact data — incident scope, affected individuals and groups, regulator engagement, and unverified legal conclusions; the matched phrases are not themselves personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to license and royalty agreements in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to indemnity and liability schedules in international contexts. These are negotiated contractual risk schedules; the category is not personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to non-disclosure agreement repositories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to corporate records under seal in international contexts. This content represents formal corporate records and under-seal documentation (sealed records, company and common seals, statutory registers); it is not inherently personally identifiable information.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to m&a target lists in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to letters of intent in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to data room due diligence documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to valuation models in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to synergy realization plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to post-merger integration plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Identifies documents containing references to divestiture strategy documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to restructuring plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to strategic roadmap documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to market entry strategy papers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to competitive intelligence reports in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to pricing strategy models in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to customer profitability analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to product sunset plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to nonpublic investor presentations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to earnings guidance drafts in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to capital allocation strategy documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to fundraising term sheets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to activist defense plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to scenario planning models in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to proprietary algorithm designs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to chemical formulas in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to manufacturing process tolerances in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to prototype engineering designs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to patent draft claims in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to patentability assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to trademark strategy analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies inventories and registers of trade-secret assets — register, inventory-entry, and asset-record structures as well as the topic label — in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies documents containing references to research lab notebooks in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to unpublished research datasets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing circuit schematic or layout content in Australian contexts. Enforcement denotes actual schematic or layout artifacts (reference designators with pin/net/node/footprint relations, netlists, sheet numbers, EDA design files) — circuit-design topic language alone, i.e. the discipline of circuit design, is discovery-only. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to firmware internals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to cryptographic implementation details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to proprietary training datasets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies pricing-engine implementation logic in Australian contexts: executable pricing rules, formulas, thresholds, and named pricing variables used to calculate prices or discounts. Topic-only pricing references (dynamic pricing, pricing model) remain discovery-level context and do not enforce.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to recommendation model logic in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies private bidding-model parameters rather than online-advertising vocabulary generally: named parameter assignments (bid floors, pacing multipliers, objective weights, budget caps) enforce, while auction and programmatic-advertising topic terms remain discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to source process know-how manuals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies actionable design-process rules and constraints in Australian contexts: DR-numbered design rules carrying shall/must/prohibited/limit language. General design-guidance, engineering-standard, and intellectual-property topic references remain discovery-level context and do not enforce.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to unreleased product architecture in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to product requirement specifications in Australian contexts. Higher confidence identifies populated product requirement specifications (requirement identifiers with shall/acceptance/priority/owner/release fields, or user-story structures); generic quality, compliance, and specification vocabulary remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to unreleased feature specifications in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to defect backlog with customer impact in Australian contexts. Higher confidence identifies backlog records that connect product defects to concrete customer impact (BUG/DEFECT/ISSUE identifiers with affected customers/accounts, customer impact, workaround, severity, or release-target detail); defect and customer-impact vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to pre-release test result datasets in Australian contexts. Higher confidence identifies datasets of executed tests for not-yet-released builds (result rows with pass/fail outcomes tied to a candidate, RC, or unreleased build identifier); general QA and testing vocabulary remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to reliability and failure analysis in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to safety certification evidence in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to quality nonconformance reports in Australian contexts. Higher confidence identifies nonconformance records (NCR/NC/DEV identifiers with affected-item, observed-condition, disposition, owner, or closure detail) or the explicit nonconformance-report label; standalone corrective/preventive-action and quality-audit vocabulary remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to product recall decision files in Australian contexts. Higher confidence identifies internal files used to decide or authorise a recall (decision, recommendation, risk-benefit, affected-lot, approval, or unresolved-action evidence); public recall notices and generic recall vocabulary remain discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to supplier quality audit findings in Australian contexts. Higher confidence identifies populated supplier quality audit findings (finding/observation/NC identifiers with supplier context and severity, clause, evidence, or corrective-action detail) rather than audit administration; supplier-audit vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies populated serial/batch/lot traceability records in Australian contexts: a labelled non-placeholder identifier together with a manufacturing, movement, parent-child, or custody relationship. Covers single-item and batch records; bare serial-number field mentions remain discovery-level context only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to calibration records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to design verification plans in Australian contexts. Higher confidence identifies plans for future design verification activities (planned verification items with test IDs, methods, requirement traces, acceptance criteria, owners, or schedules); design-review and compliance-testing vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to design validation reports in Australian contexts. Higher confidence denotes reports of performed design validation (executed tests with observed results, pass/fail outcomes, deviations, conclusions, or approval), not plans or protocols; validation/review/protocol vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to field failure investigation reports in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to root-cause corrective action plans in Australian contexts. Higher confidence identifies populated plans linking an analysed root cause to assigned corrective work (owner, due date, containment, or effectiveness verification); standalone RCA/CAPA topic terms remain discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to warranty claim analytics in Australian contexts. Higher confidence identifies analysis of warranty populations (aggregate rates, counts, costs, or trends broken down by period, cohort, model, region, or failure category), not individual claim records; warranty/claim vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies records of management review of a quality management system in Australian contexts — management-review notes carrying review structure such as attendees, agenda/inputs, decisions, action items and owners, quality objectives, or recorded conclusions. ISO 9001/QMS topic language without that structure is discovery-only. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to manufacturing deviation records in Australian contexts. Higher confidence identifies records of actual manufacturing departures from requirement (deviation/OOS/NCR identifiers with affected batch or lot and expected-versus-actual, disposition, or approval detail); deviation and batch-record vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to product hazard analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to release approval records in Australian contexts. Higher confidence identifies actual approval or authorisation records for a release (release/batch/ build/version identifier with a decision and approver/date detail) or the explicit release-approval label; product-release and generic sign-off vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies private source code repositories patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies private code forks patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies system architecture diagrams patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies api interface specifications patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies ci/cd pipeline configurations patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies deployment manifests patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR
Identifies infrastructure-as-code templates patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies dependency vulnerability reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies static analysis findings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies dynamic testing findings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies threat model documents patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies penetration testing reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies red team findings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies bug bounty submissions patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies incident postmortem reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies operational runbooks patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies environment configuration files patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies feature flag configurations patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies telemetry schemas patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR
Identifies maps or inventories that trace personal-data movement between systems — populated source-to-destination flow edges naming personal-data categories. PII-processing topic language (privacy notices, data-processing prose) without flow/lineage structure is discovery-only. This is privacy architecture / data-lineage content, not credential material.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies plaintext passwords patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies password hash databases patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- low
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Detects password reset tokens and recovery URLs in documents, emails, and logs. Reset tokens are high-risk credentials — a leaked token enables account takeover without knowing the current password. No Microsoft built-in SIT exists for this pattern.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR, CCPA, HIPAA, PCI-DSS
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Identifies multi-factor authentication seeds patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies one-time recovery codes patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies oauth client secrets patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies session cookies patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies hsm key management metadata patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies key-recovery and escrow references, while reserving enforcement for records that contain a structured recovery value. A phrase alone is discovery-only; system identity and custody/escrow fields distinguish a high-confidence recovery-material record.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies references to secrets-vault exports and backups. Product or operation phrases are discovery-only; structured export-record fields support medium confidence and a populated secret entry plus export-manifest metadata supports high.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies database connection strings with credentials patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies kerberos ticket-granting artifacts patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies siem event data patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies endpoint detection telemetry patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies intrusion detection alerts patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies firewall rule configurations patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies sensitive network topology diagrams patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies vulnerability scan outputs patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies patch exception records patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies zero-day vulnerability details patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR
Identifies indicators of compromise patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies threat intelligence subscriptions patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies malware sample repositories patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR
Identifies sandbox detonation reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies phishing simulation results patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies purple team exercise plans patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies soc analyst case notes patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies incident timeline evidence patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies forensic disk images patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies volatile memory captures patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies insider threat investigation files patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies backup catalogs patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies business continuity plans patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies failover architecture details patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies capacity planning models patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies asset inventory records patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies cmdb relationship mappings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies privileged account inventories patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies endpoint management policy profiles patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies remote administration tool settings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies dns zone files patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies domain registrar credentials patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Identifies sla breach analysis reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies major outage root-cause analyses patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies support ticket conversation transcripts in security and access control contexts. Enforcement requires timestamped requester/agent message turns; ticket, help-desk, and service-desk references without conversational structure remain discovery inventory.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies change management records patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies scheduled maintenance plans patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies configuration baseline snapshots patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies service dependency maps patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies treatment plan details references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies medication histories references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies laboratory test results references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies diagnostic imaging data references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies pathology reports references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies clinician consultation notes references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies substance use treatment records references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies hiv status data references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies immunization records references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies genomic testing results references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies preauthorization records references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies hospital billing records references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Identifies provider identifier records references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies clinical trial participant data references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies adverse event reports references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies informed consent forms references in healthcare and patient records. Protected health information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to student enrollment records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to grade and assessment records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to academic transcripts in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to student disciplinary records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to student counseling records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to financial aid applications in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to scholarship evaluation files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to exam answer scripts in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to admissions review notes in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to recommendation letters in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to plagiarism investigation files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to campus incident reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to alumni donor records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to research participant consent files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies material submitted to, or decided by, a human-research review body rather than the body or compliance topic itself: submission artifacts (IRB submission, protocol amendment, adverse event report) enforce with a submission field, committee/governance anchors need two independent submission fields, and committee descriptions alone remain discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies pre-publication thesis manuscripts or thesis datasets, not preliminary results from unrelated operational work: direct thesis/draft/embargo anchors enforce with one thesis field, broad findings/results language needs two independent thesis fields, and topic vocabulary alone remains discovery-only.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies grant peer-review comments and assessment records containing substantive reviewer observations, scores, or funding outcomes. Grant-review and application phrases are retained for discovery at 65; populated assessment fields raise confidence to 75, while formal proposal or reviewer references plus an explicit funding outcome raise confidence to 85.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to laboratory protocol records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to export-controlled university research in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Enforcement is aimed at controlled university research and its technical data; ordinary import/export licensing language is discovery-only unless independent university-research or controlled-technical-data evidence is present.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to customer profile master data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to customer account credentials in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to purchase history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to browsing behavior logs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to loyalty program balances in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to call center audio recordings in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing captured customer messaging conversations in international contexts. Direct chat-transcript, customer-chat, live-chat, and chat-log anchors are retained; support-ticket wording is gated behind independent conversation-record context rather than treated as a transcript on its own, and generic customer-interaction, online-support, and customer-message phrasing no longer anchors detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to customer complaint case files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to churn propensity scores in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to fraud propensity scores in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to customer segmentation outputs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to marketing suppression lists in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to consent preference records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to contract usage analytics in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to invoice and payment history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to refund and chargeback history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to geofencing event histories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to ad attribution datasets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to personalization feature vectors in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to escalated support case notes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to taxpayer case management files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies individual welfare, social-assistance, and income-support eligibility decisions. Topic phrases are retained for discovery; enforcement requires applicant, household, income, dependant, means-test, benefit-category, outcome, review-right, or effective-date fields, and high confidence also requires a formal case/application reference or recorded eligibility decision.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies individual unemployment-benefit, unemployment-insurance, JobSeeker, and re-employment assistance claims and determinations. Topic phrases are retained for discovery; enforcement requires claimant, employer, separation, earnings, job-search, obligation, benefit-period, payment-rate, or sanction fields, and high confidence also requires a formal claim reference or recorded decision.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to public housing assistance files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to child protection case files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to foster care placement records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to disability assessment records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies individual pension entitlement records, benefit calculations, eligibility decisions, and payment determinations. Topic phrases are retained for discovery; enforcement requires member, service, retirement-date, salary, contribution, accrued-benefit, beneficiary, payment-frequency, gross-pension, or commutation fields, and high confidence also requires a formal member/claim reference or recorded entitlement decision.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to immigration interview transcripts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to asylum claim narratives in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to passport application packets in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies individual civil-status and vital-record amendments, including corrections to birth, death, marriage, and legal-name entries. Civil-registry topics are retained for discovery at 65; populated amendment fields raise confidence to 75, while a formal registry reference and personal status fields raise confidence to 85.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies land-title and cadastral ownership records containing populated proprietor, tenure, parcel, legal-description, or encumbrance fields. Land-registry topics are retained for discovery at 65; populated register fields raise confidence to 75, while a formal title or parcel reference plus substantive ownership-interest evidence raise confidence to 85.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to vehicle title and transfer records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies business and trade licence application records, including renewal and variation applications. Topic phrases are retained for discovery; enforcement requires at least two populated applicant, enterprise, premises, activity, or licence fields, and high confidence also requires a formal application, licence, or permit reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies building, construction, development/planning, occupancy, and site-operating permit application records across jurisdictions. Topic phrases are discovery-only; enforcement requires multiple application fields, while high confidence also requires a labelled application, permit, case, or file reference plus authority or decision context.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to inspection and enforcement records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to emergency aid request files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to constituent service case notes in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to criminal history records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to arrest records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to mugshot image repositories in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to witness identity records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to confidential informant identities in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to investigation case notes in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to lawful intercept transcripts in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to surveillance video evidence in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to automated plate reader data in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to call detail record datasets in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to ballistics evidence records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Coverage differentiates forensic ballistics records and findings from education and general firearms discussion; generic firearms-analysis language is discovery-only unless independent forensic case or examination-result evidence is present.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to forensic dna profile records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to probation and parole files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to detention custody records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to juvenile justice records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to sealed court filing records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic partial
- Jurisdictions
- global
- Regulations
- GDPR, IPA 2009 (Qld), Privacy Act 1988 (Cth)
Identifies documents containing references to plea negotiation documentation in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to victim impact statements in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to protective order application records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to evidence handling logs in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to classified operation plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to troop movement information in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to mission briefing packages in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to target package intelligence in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to signals intelligence reports in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to human intelligence source identities in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to geospatial intelligence products in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to satellite tasking and collection plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies cryptographic keying material patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
- Frameworks
- CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Identifies documents containing references to weapons system vulnerability data in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to command authentication code material in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to classified defense procurement specifications in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to security clearance adjudication files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to force readiness assessments in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to war-gaming simulation outputs in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to contingency operations plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to allied intelligence exchange records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to export-controlled defense technology docs in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to nuclear safeguards information in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to offensive cyber capability documentation in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies substantive SCADA, ICS, and OT network diagrams and topologies. Topic phrases are retained for discovery; enforcement requires control-zone, DMZ, trust-boundary, remote-site, communications, Purdue-level, field-network, or data-flow relationships, and high confidence also requires populated VLAN, address, HMI, RTU, PLC, DCS, or site detail.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive programmable-logic-controller programs and logic records. Topic phrases are retained for discovery; enforcement requires program structure such as rungs, contacts, coils, timers, function blocks, variables, or I/O addresses, and high confidence also requires a controller, rack, slot, production asset, or deployable I/O reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies substantive distributed-control-system configuration records. Topic phrases are retained for discovery; enforcement requires controller, module, I/O, tag, alarm, or control-loop configuration content, and high confidence also requires a deployable tag, value, node, rack, or site reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies substantive substation protection-relay settings and coordination records. Topic phrases are retained for discovery; enforcement requires a populated current, voltage, impedance, timing, or zone value, and high confidence also requires a substation, feeder, breaker, relay model, or device ID.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive pipeline pressure, flow, operating-limit, and control-setpoint records. Topic phrases are retained for discovery; enforcement requires a populated pressure or flow value, and high confidence also requires a pipeline segment, station, valve, control tag, or other live asset reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive water-treatment dosing formulas and control values. Topic phrases are retained for discovery; enforcement requires a populated dose, concentration, feed rate, or process value, and high confidence also requires a treatment-plant asset, process, or control-tag reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive electric-grid generation dispatch, unit-commitment, and power-system dispatch plans. Topic phrases are retained for discovery; enforcement requires populated generation, reserve, energy, or reactive-power quantities, and high confidence also requires current interval, generating unit, constraint, interconnector, or grid-operator detail.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive industrial plant shutdown, startup, emergency-shutdown, and turnaround procedures. Topic phrases are retained for discovery; enforcement requires ordered isolation, depressurisation, purge, valve, pump, permissive, interlock, handback, or verification actions, and high confidence also requires a populated equipment identifier, operating value, or timing.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive refinery process-control setpoint and operating-envelope records. Topic phrases are retained for discovery; enforcement requires an actual process value, and high confidence also requires a control-loop tag or named refinery process asset.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive rail-signalling and train-control configuration records. Topic phrases are retained for discovery; enforcement requires interlocking, route-table, block, track-circuit, aspect, point-machine, or route-locking configuration content, and high confidence also requires a deployed control area, route, signal, track-circuit, station, or software reference.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive air-traffic operational procedures. Topic phrases are retained for discovery; enforcement requires local runway, sector, waypoint, handoff, clearance, or airspace-procedure detail, and high confidence also requires an operational value such as a runway, flight level, distance, or radio frequency.
- Type
- regex
- Confidence
- medium
- Detection quality
- Not detected
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive port-facility security and access manifests. Topic phrases are retained for discovery; enforcement requires vessel, port-call, berth, cargo, crew, visitor, escort, access-zone, gate, or security-level manifest content, and high confidence also requires a populated IMO, port-call, manifest, berth, zone, or ISPS security-level identifier.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies substantive telecom core-network configuration records. Topic phrases are retained for discovery, while enforcement requires routing, subscriber, peering, node, or mobile-core configuration content; high confidence also requires evidence of a live network asset or identifier.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive emergency and critical-service restoration prioritisation plans. Topic phrases are retained for discovery; enforcement requires ranked assets/services, restoration sequence, dependencies, alternate supply, crew assignment, affected sites, service areas, or estimated restoration content, and high confidence also requires a populated priority, asset/site identifier, time, capacity, or customer-impact value.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies substantive critical and maintenance spare-parts inventories. Topic phrases are retained for discovery; enforcement requires part-number, stock-on-hand, reorder, lead-time, storage, compatible-asset, supplier, or minimum-stock fields, and high confidence also requires a populated part, quantity, reorder, warehouse, bin, or location value.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive operational-technology, ICS, SCADA, and industrial-control cyber incident reports. Topic phrases are retained for discovery; enforcement requires case facts such as affected assets, timelines, initial access, containment, indicators, root cause, recovery, or operational impact, and high confidence also requires a concrete indicator, vulnerability, address, or control asset identifier.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive physical badge and door access-control maps. Topic phrases are retained for discovery; enforcement requires floor-plan, reader-to-door, security-zone, access-level, restricted-area, entry-point, zone-boundary, or credential-group relationships, and high confidence also requires populated door, reader, zone, entry, credential-group, or access-level identifiers.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies substantive CCTV coverage, camera-placement, surveillance-map, and blind-spot analyses. Topic phrases are retained for discovery; enforcement requires site/camera analysis detail, and high confidence requires both a precise site asset and an identified coverage weakness.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies substantive hazardous-material, dangerous-goods, and chemical storage maps. Topic phrases are retained for discovery; enforcement requires storage-area, containment-zone, chemical-name, dangerous-goods-class, segregation, spill-containment, or emergency-isolation relationships, and high confidence also requires a populated UN number, tank/store/cabinet/area identifier, or quantity.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies substantive dam-safety, integrity, surveillance, failure, inundation, and consequence reports. Topic phrases are retained for discovery; enforcement requires condition or monitoring findings, and high confidence also requires a severe weakness, overdue remediation, emergency action, failure mode, or downstream consequence.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Identifies documents containing references to enterprise data inventories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to records of processing activities in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies matrices that map data or information categories to classification levels and handling controls. Topic phrases are retained for discovery; enforcement requires multiple matrix-column or control headings, and high confidence also requires a populated category-to-classification mapping.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic verified
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to data retention and deletion schedules in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to data protection impact assessments in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to cross-border transfer assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to standard contractual clause addenda in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to breach likelihood and impact assessments in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to vendor privacy due diligence reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to consent audit trail records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to data subject access request files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to deletion request case files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to privacy complaint investigations in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies pre-submission draft responses, reports, and submissions prepared for a regulator or supervisory authority. Topic phrases are retained for discovery; enforcement requires reporting-period, event, proposed-disclosure, affected-record, data-quality, control, corrective-action, legal-review, or outstanding-evidence content, and high confidence also requires approval, submission, clearance, comment, deadline, or regulator-reference workflow evidence.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to compliance monitoring outputs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to ethics committee decision records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to policy attestation records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to model risk assessment reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to algorithmic impact assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to third-party assurance attestations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to voter roll extract files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to absentee ballot tracking data in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to election incident response records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
Identifies documents containing references to campaign donor identity records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to politically exposed person assessment files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to diplomatic cable traffic in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to treaty negotiation drafts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to sanctions policy drafts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to export license decision files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001, ISO 27701
Identifies documents containing references to embargo enforcement case records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to pre-release national budget drafts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to cabinet briefing books in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
- Frameworks
- DISP, ISO 27001, NIST CSF
Identifies documents containing references to national emergency response plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to strategic communications plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies operational government media war-room plans used to coordinate monitoring, rapid response, approvals, rebuttals, and spokesperson activity. War-room plan topics are retained for discovery; enforcement requires independent government-office context and multiple operational workflow elements, and high confidence also requires populated assignments, times, or issue references.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to leak investigation records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Identifies documents containing references to whistleblower protection case records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to sovereign debt issuance plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- GDPR
Identifies documents containing references to central bank intervention plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Identifies documents containing references to census microdata in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.
- Type
- regex
- Confidence
- medium
- Detection quality
- Topic false positive
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
- Frameworks
- ISO 27001
Detects trade secret designations, proprietary information notices, and commercial-in-confidence markings.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001, NIST CSF, PCI-DSS
Detects references to trade union membership: union member status, union dues, shop stewards, collective bargaining unit membership and union local numbers. GDPR Article 9 lists trade union membership as a special category of personal data with no fixed format — detectable only by topic vocabulary. Topic-grade detector.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global, eu
- Regulations
- GDPR
- Frameworks
- ISO 27001, NIST CSF, SOC 2
Detects TRON (TRX) mainnet addresses: Base58Check encoding of a 21-byte payload (0x41 version byte + 20-byte address hash), always starting with the letter "T" and exactly 34 characters long. The 0x41 prefix byte fixes the leading character as "T" and the length at 34 (58^34 > 66*256^24; 58^33 insufficient). A single leading letter is weak structure, so detection is context-gated. Prefix/length/charset verified against TRON developer docs and the TRON protocol overview.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- FATF Recommendations, AML/CTF Act (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Twilio API key SIDs (SK prefix followed by 32 hex characters). Paired with its secret, a leaked Twilio API key allows sending SMS/voice and accessing account data and call logs.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Types Of Medication patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- global
- Regulations
- GDPR, HIPAA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects URL patterns.
- Type
- regex
- Confidence
- medium
- Detection quality
- Partial
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects user login credential patterns in documents and configuration files. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based detector. This keyword-based version flags documents that may contain login credentials for further review.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects vendor risk assessments revealing third-party security posture and supply chain vulnerabilities.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- DISP, ISO 27001, NIST CSF
Detects Vercel credentials: the current prefixed token family introduced in February 2026 (vcp_ personal access tokens, vci_ integration tokens, vca_ app access tokens, vcr_ app refresh tokens, vck_ API keys), Vercel Blob read-write tokens (vercel_blob_rw_), and, when labelled with Vercel context in an assignment, the legacy unprefixed 24-character token form. A leaked token grants control of the account's projects, deployments and environment variables; a leaked Blob token grants read/write access to the associated storage.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects Vehicle Identification Number patterns. Excludes I, O, Q characters
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- GDPR
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects vulnerability assessment reports containing CVE details and unpatched system findings.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS
Detects X.509 certificate private key PEM headers. This is a broad pattern covering RSA, EC, PKCS#8, and OpenSSH private key formats. This pattern is based on a Microsoft Purview built-in sensitive information type. For more specific detection, see global-rsa-private, global-ec-private, global-pkcs8-private, and global-openssh-private.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects xAI (Grok) API keys, which use a distinctive xai- prefix followed by a long alphanumeric body. A leaked key grants unauthorized, billed access to xAI's Grok models and any prompts or data routed through the API.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, SOC 2
Detects XRP Ledger classic addresses: base58-encoded, starting with the character "r", 25-35 characters long, encoding a 21-byte buffer (1-byte prefix value 0 + 160-bit account ID) with a 4-byte checksum. The XRP base58 dictionary excludes 0, capital O, capital I and lowercase l — the same 58-character set as standard base58, so a standard base58 class matches the charset. A single leading letter is weak structure, so detection is context-gated. Length/charset/prefix verified against xrpl.org address docs.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- FATF Recommendations, AML/CTF Act (Cth)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects internal or QAO (Queensland Audit Office) audit findings identifying material weaknesses in financial controls before public tabling. Disclosure enables exploitation of identified control gaps.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Auditor-General Act 2009 (Qld), Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects whole-of-government or agency-level insurance coverage schedules, self-insurance reserves, indemnity limits, and excess/deductible structures that reveal the State's financial exposure limits.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects sealed pricing schedules submitted by tenderers as part of government procurement processes, held in confidence until evaluation is complete.
- Type
- document_marker
- Confidence
- high
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects internal government revenue projections including tax revenue, royalties, mining/gas receipts, and stamp duty forecasts before public release in budget papers or MYFER.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects Greece driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- gr, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Αστυνομική Ταυτότητα patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, gr
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Greece passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- gr, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Greece Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- gr, eu
- Regulations
- GDPR
Detects ΑΜΚΑ patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, gr
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Greek Tax identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- gr, eu
- Regulations
- gdpr
Detects internal scoring sheets, panellist rankings, weighted criteria assessments, and funding recommendations for competitive government grant programs before public announcement.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects 香港身份證 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- hk
- Regulations
- PDPO (Hong Kong)
- Frameworks
- ISO 27001, ISO 27701
Detects Hong Kong Special Administrative Region (HKSAR) passport numbers issued by the Immigration Department under the HKSAR Passports Ordinance (Cap. 539). HKSAR passport numbers are nine characters: the current series is the letter H followed by 8 digits; earlier biometric series used K followed by 8 digits, and KJ (48-page jumbo booklets) followed by 7 digits.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- hk
- Regulations
- HKSAR Passports Ordinance (Cap. 539), PDPO (Hong Kong)
- Frameworks
- ISO 27001, ISO 27701
Detects Croatia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- hr, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Osobna iskaznica patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, hr
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Croatia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- hr, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Osobni identifikacijski broj (OIB) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, hr
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Croatia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- hr, eu
- Regulations
- GDPR
Detects Hungary driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- hu, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Hungary passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- hu, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Személyi szám patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, hu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Hungary Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- hu, eu
- Regulations
- GDPR
Detects TAJ szám patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, hu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Hungary Tax identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- hu, eu
- Regulations
- gdpr
Detects Hungarian Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- hu, eu
- Regulations
- GDPR
Detects Indonesia drivers license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- id
- Regulations
- PDP Law (Indonesia)
- Frameworks
- ISO 27001, ISO 27701
Detects Kartu Tanda Penduduk (KTP) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- id
- Regulations
- PDP Law (Indonesia)
- Frameworks
- ISO 27001, ISO 27701
Detects Indonesian taxpayer identification numbers (NPWP). Classic NPWP is 15 digits commonly formatted 01.234.567.8-012.000; newer 16-digit forms align with NIK for individuals under tax reform.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- id
- Regulations
- UU PDP (Indonesia), KUP Law (Indonesia)
- Frameworks
- ISO 27001, ISO 27701
Detects Indonesia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- id
- Regulations
- PDP Law (Indonesia)
- Frameworks
- ISO 27001, ISO 27701
Detects Ireland driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ie, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Ireland passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ie, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Ireland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- ie, eu
- Regulations
- GDPR
Detects Uimhir PSP patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, ie
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Israel Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- il
- Regulations
- Protection of Privacy Law (Israel), PCI-DSS
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Teudat Zehut patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- il
- Regulations
- Protection of Privacy Law (Israel)
- Frameworks
- ISO 27001, ISO 27701
Detects Aadhaar patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India)
- Frameworks
- ISO 27001, ISO 27701
Detects India driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- in
- Regulations
- DPDPA
- Frameworks
- ISO 27001, ISO 27701
Detects India GST Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Indian Financial System Codes (IFSC) used to identify bank branches on the NEFT/RTGS/IMPS networks. Format is four letters (bank code), a mandatory zero, then six alphanumeric characters (branch code), total length 11, typically uppercase.
- Type
- regex
- Confidence
- high
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India), Payment and Settlement Systems Act 2007
- Frameworks
- ISO 27001, ISO 27701
Detects PAN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India)
- Frameworks
- ISO 27001, ISO 27701
Detects Indian passport numbers issued by the Ministry of External Affairs. The standard format is a single letter (A-Z excluding Q, X and Z, which are not used as the leading character) followed by 7 digits, sometimes printed with a space between the letter and the digits (e.g. 'K1234567' or 'K 1234567'). Corroborative keyword proximity is strongly recommended because the body is only 7 digits.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- in
- Regulations
- DPDP Act 2023, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Indian mobile telephone numbers per the Department of Telecommunications' National Numbering Plan 2003 (as amended): 10-digit mobile numbers with a constrained leading digit (6-9, expanded from 7-9 to include 6 when DoT authorized 6-series allocation in 2017), in both the bare domestic form and the +91 international form (leading 0 dropped). Landline/STD (Subscriber Trunk Dialling) numbers are intentionally out of scope: STD codes vary 2-8 digits with no verified structural rule constraining their leading digit, so a regex loose enough to cover them (just "10 digits after a leading 0") would be barely tighter than matching any 11-digit sequence — far too high a digit-collision risk to ship without a genuinely verified constraint. See false_positives.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India), TCCCPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Employees Provident Fund Organisation (EPFO) Universal Account Numbers (UAN). UAN is a 12-digit number assigned to employees to link multiple PF member IDs across employers. Leading digit is non-zero.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India), EPF and MP Act 1952
- Frameworks
- ISO 27001, ISO 27701
Detects Unified Payments Interface (UPI) Virtual Payment Addresses (VPA / UPI ID) used in India. Format is a local part and a payment-service provider handle separated by @ (for example name@oksbi or business@ybl). Handles are alphabetic PSP codes; local parts allow letters, digits, dot, underscore and hyphen.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India), Payment and Settlement Systems Act 2007
- Frameworks
- ISO 27001, ISO 27701
Detects Electoral Photo Identity Card (EPIC) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- in
- Regulations
- DPDPA, IT Act 2000 (India)
- Frameworks
- ISO 27001, ISO 27701
Detects Iceland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- eu, is
- Regulations
- Data Protection Act (Iceland)
Detects Codice Fiscale patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, it
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Italy driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- it, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Italy passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- it, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Italian mobile telephone numbers per AGCOM's national numbering plan (Delibera n. 8/15/CIR, Allegato A): the mobile/personal-communications block, structurally defined as "3XYZ" plus six further digits (a 10-digit total for numbering assigned under the current plan), in both the domestic and +39 international forms. The delibera permits already-assigned legacy 9-digit mobile numbering to persist, so any surviving legacy 9-digit mobile numbers are a known potential false negative of this 10-digit regex — kept at 10 digits deliberately, since evidence that live 9-digit stock persists today is inconclusive and loosening the length bound would raise digit collision for every match. Geographic (landline) numbers are intentionally out of scope: the AGCOM plan family bounds geographic numbers at a 10-11 digit total (11 maximum), but within that bound the "0" block's second digit is structurally unconstrained and the minimum/per-prefix length variability across the legacy short-number stock is not verified from a primary source — a 0-prefixed regex spanning that length range with no second-digit constraint would be highly collision-prone — and Italian landline numbers are also the one well-known exception where the leading 0 is retained even in the +39 international form, a further formatting axis to model. Mobile numbers carry no such leading-0 quirk (they never had a leading 0 to begin with).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- it
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Italy Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- it, eu
- Regulations
- GDPR
Detects Italy Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- it, eu
- Regulations
- GDPR
Detects Japan Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Japan driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
- Frameworks
- ISO 27001, ISO 27701
Detects Japanese My Number Corporate patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. The Corporate Number (法人番号) is a 13-digit identifier assigned to corporations and organisations in Japan by the National Tax Agency.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
Detects My Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
- Frameworks
- ISO 27001, ISO 27701
Detects Japan passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
- Frameworks
- ISO 27001, ISO 27701
Detects Japan Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- jp
- Regulations
- APPI
Detects 在留カード番号 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
- Frameworks
- ISO 27001, ISO 27701
Detects 住民票コード patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
- Frameworks
- ISO 27001, ISO 27701
Detects 社会保険番号 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- jp
- Regulations
- APPI
- Frameworks
- ISO 27001, ISO 27701
Detects government defence materials for judicial review of administrative decisions. These files contain the State's candid assessment of decision-making deficiencies and legal vulnerabilities. Disclosure directly prejudices the State's defence and may establish precedent affecting thousands of similar decisions.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), Judicial Review Act 1991 (Qld)
- Frameworks
- QGISCF
Detects Kenya national identity card numbers (typically 7-8 digits).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ke
- Regulations
- Data Protection Act 2019 (Kenya)
- Frameworks
- ISO 27001, ISO 27701
Detects South Korea driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- kr
- Regulations
- PIPA
- Frameworks
- ISO 27001, ISO 27701
Detects South Korea passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- kr
- Regulations
- Personal Information Protection Act (Korea)
- Frameworks
- ISO 27001, ISO 27701
Detects Korea Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- kr
- Regulations
- PIPA (South Korea)
Detects RRN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- kr
- Regulations
- PIPA (South Korea)
- Frameworks
- ISO 27001, ISO 27701
Detects documents containing telecommunications interception warrants and stored communications warrants issued under the Telecommunications (Interception and Access) Act 1979 (Cth). Disclosure of the existence of an interception warrant is a criminal offence under s.63 of the TIA Act and alerts targets to switch to unmonitored channels.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- PPRA 2000 (Qld), TIA Act 1979 (Cth)
- Frameworks
- QGISCF
Detects Liechtenstein Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- li, eu
- Regulations
- GDPR
Detects internal assessments evaluating whether specific documents or communications attract legal professional privilege, including analysis of privilege vulnerabilities. These meta-privilege documents map where the State's privilege claims are strong and where they are vulnerable.
- Type
- keyword_proximity
- Confidence
- low
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects Lithuania driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- lt, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Lithuania passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- lt, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Asmens kodas patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, lt
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Lithuania Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- lt, eu
- Regulations
- GDPR
Detects Luxembourg driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- lu, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Numéro d'identification national (entités) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, lu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Numéro d'identification national patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, lu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Luxembourg passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- lu, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Luxembourg Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- lu, eu
- Regulations
- GDPR
Detects Latvia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- lv, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Latvia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- lv, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Personas kods patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- eu, lv
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Latvia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- lv, eu
- Regulations
- GDPR
Detects legal opinions and due diligence reports for mergers, acquisitions, or privatisations involving Government Owned Corporations (GOCs) or government assets. Disclosure is market-sensitive and commercially prejudicial, potentially breaching continuous disclosure obligations.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), GOC Act 1993 (Qld)
- Frameworks
- QGISCF
Detects privileged litigation strategy documents and related case strategy materials, including high-exposure matters (significant financial exposure or systemic policy impact), defence strategy content, prospects assessments, and settlement posture. Covers both formal major-matter strategy packs and general litigation strategy document references in Australian legal contexts.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects Malta driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- mt, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Karta tal-Identità patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, mt
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Malta passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- mt, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Malta Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- mt, eu
- Regulations
- GDPR
Detects Malta Tax ID Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- mt, eu
- Regulations
- gdpr
Detects Mexican CLABE (Clave Bancaria Estandarizada) numbers used for SPEI interbank transfers. CLABE is an 18-digit standardized bank account number including bank code, branch, account and check digit.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- mx
- Regulations
- LFPDPPP (Mexico), Fintech Law (Mexico)
- Frameworks
- ISO 27001, ISO 27701
Detects CURP patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- mx
- Regulations
- LFPDPPP (MX)
- Frameworks
- ISO 27001, ISO 27701
Detects Mexican passport numbers issued by the Secretaría de Relaciones Exteriores (SRE). Older passports use a single letter followed by 7-8 digits; newer books carry an 8-9 character alphanumeric serial. Mixed alphanumeric serials are broad candidates that also match order IDs, booking codes, and product serials — they are not treated as Mexican passport numbers without issuer or passport-document evidence. Because the format is short and loosely structured, corroborative keyword proximity is strongly recommended to reduce false positives.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- mx
- Regulations
- LFPDPPP, CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701
Detects Mexican RFC (Registro Federal de Contribuyentes) taxpayer identifiers in both official formats: the 13-character natural-person form (4-letter name stem + 6-digit date + 3-character homoclave) and the 12-character legal-entity form (3-character name stem, which may include Ñ or &, + 6-digit date + 3-character homoclave).
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- mx
- Regulations
- LFPDPPP (MX)
- Frameworks
- ISO 27001, ISO 27701
Detects MyKad patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- my
- Regulations
- PDPA (Malaysia)
- Frameworks
- ISO 27001, ISO 27701
Detects Malaysia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- my
- Regulations
- PDPA (Malaysia)
- Frameworks
- ISO 27001, ISO 27701
Detects Malaysian individual Tax Identification Numbers (TIN / Nombor Pengenalan Cukai) issued by the Inland Revenue Board of Malaysia (LHDN / HASiL). Since 2 January 2023 individual TINs use the prefix IG followed by 9-11 digits (11-13 characters total); the legacy individual prefixes SG (employment income) and OG (business income) with the same digit range remain in circulation in older records. Entity TINs (C, D, F, PT, TA and similar prefixes) are deliberately out of scope: single-letter prefixes over a digit run are too collision-prone and entity TINs are not personal data.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- my
- Regulations
- Income Tax Act 1967 (Malaysia), PDPA (Malaysia)
- Frameworks
- ISO 27001, ISO 27701
Detects legal strategy documents for native title negotiations, ILUAs, and compensation claims under the Native Title Act 1993 (Cth). Disclosure reveals the State's negotiation position on land rights with multi-generational consequences and multi-billion dollar implications.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Native Title Act 1993 (Cth)
- Frameworks
- QGISCF
Detects NATO security classification markings under the NATO security policy (C-M(2002)49): the spelled-out national-security levels NATO RESTRICTED (NR), NATO CONFIDENTIAL (NC) and NATO SECRET (NS), and the highest level COSMIC TOP SECRET (CTS) — where the codeword COSMIC attaches only to TOP SECRET. ATOMAL caveat markings (NATO CONFIDENTIAL ATOMAL, NATO SECRET ATOMAL, COSMIC TOP SECRET ATOMAL) are covered as suffixes of their parent level marking. Marking syntax verified directly against the International Programs Security Handbook (US-government primary source reproducing NATO security-directive marking rules) and corroborating NATO security briefings; matched case-sensitively so ordinary lowercase prose ("a nato secret") does not trigger it.
- Type
- regex
- Confidence
- high
- Jurisdictions
- nato
- Regulations
- NATO Security Policy C-M(2002)49
- Frameworks
- NATO Security Policy
Detects Nigeria National Identification Numbers (NIN) — 11 digits from NIMC.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ng
- Regulations
- NDPR (Nigeria), NIMC Act
- Frameworks
- ISO 27001, ISO 27701
Detects BSN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, nl
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Netherlands driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- nl, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Netherlands passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- nl, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Dutch national telephone numbers per the ACM-administered numbering plan: 10-digit numbers (leading trunk 0 included) covering geographic numbers (area code first significant digit 1-5 or 7, e.g. 020 Amsterdam, 010 Rotterdam, 070 Den Haag) and mobile numbers (06 prefix), plus the +31 international form (leading 0 dropped), including the widespread "+31 (0)6 12345678" letterhead rendering (a common-but-nonstandard practice — ITU-T E.123 advises against the parenthesised trunk digit in international notation, but it is ubiquitous on Dutch letterheads, so it is matched for detection purposes). Numbers beginning 08 (0800 free-of-charge service numbers, 088 non-geographic business lines) and 09 (0900/0906/0909 premium-rate information numbers) are intentionally out of scope — these are organizational/service numbers rather than personal PII, mirroring how uk-phone-number and fr-phone-number scope out their own non-geographic service ranges. Note this also excludes the 085 and 091 location-independent subscriber ranges (VoIP numbers ACM makes available to individuals as well as businesses): a personal 085/091 VoIP line is therefore a known false negative, accepted because the 085/088/091 block is predominantly organizational in practice and cannot be split from it structurally.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- nl
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Netherlands Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- nl, eu
- Regulations
- GDPR
Detects Netherlands Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- nl, eu
- Regulations
- GDPR
Detects Netherlands Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- nl, eu
- Regulations
- GDPR
Detects Fødselsnummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, no
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Norwegian passport numbers issued by the police (politiet). The 2020 series uses a nine-character document number: ordinary (C) and emergency (K) passports are one prefix letter plus two characters that may be letters or digits plus six digits (specimen CCC002251); diplomatic (FG), service (FH), special (FJ), travel-document (FK) and foreigner (FL) passports are a two-letter prefix plus one letter-or-digit plus six digits. Pre-2020 series passports (in circulation until October 2030) carry an eight-digit document number.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- no
- Regulations
- GDPR, Passport Act (Norway, passloven)
- Frameworks
- ISO 27001, ISO 27701
Detects Norway Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- eu, no
- Regulations
- Personal Data Act (Norway)
Detects New Zealand bank account number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects New Zealand driver license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- ISO 27001, ISO 27701
Detects New Zealand Inland Revenue number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects the New Zealand Government CONFIDENTIAL national-security classification under the Protective Security Requirements (PSR) classification system: the verified control/dissemination marking separator (CONFIDENTIAL//..., e.g. CONFIDENTIAL//NZEO) and a gated bracket form ([CONFIDENTIAL]). Deliberately narrow v1: no bare-word tier (CONFIDENTIAL is overwhelmingly common as generic business/legal boilerplate — NDAs, email footers, "STRICTLY CONFIDENTIAL", "PRIVATE AND CONFIDENTIAL" — and would swamp any bare-word detector), and the bracket tier is hard-gated by New Zealand government context because, unlike its sibling markings, [CONFIDENTIAL] is not a verified SEEMail trigger word. Regex logic verified directly against official PSR marking-format guidance (protectivesecurity.govt.nz); matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- PSR
Detects the New Zealand Government IN-CONFIDENCE protective marking under the Protective Security Requirements (PSR) classification system: endorsed forms (e.g. MEDICAL IN-CONFIDENCE, BUDGET: IN-CONFIDENCE), the legacy SEEMail bracket trigger-word convention ([IN-CONFIDENCE]), and the bare ALL-CAPS document-banner form. Regex logic verified against the official PSR Classification Handbook (protectivesecurity.govt.nz) and Cabinet Office Circular CO(08)1; matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- PSR
Detects the New Zealand Government RESTRICTED national-security classification under the Protective Security Requirements (PSR) classification system: the verified control/dissemination marking separator (RESTRICTED//..., e.g. RESTRICTED//REL TO NZL, GBR), the legacy SEEMail bracket trigger-word convention ([RESTRICTED]), and the bare ALL-CAPS document-banner form gated by New Zealand government context and a collocation-noise exclusion. Regex logic verified directly against official PSR marking-format guidance (protectivesecurity.govt.nz); matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- PSR
Detects the New Zealand Government SECRET and TOP SECRET national-security classifications under the Protective Security Requirements (PSR) classification system: the verified control/dissemination marking separator ((TOP )SECRET//..., e.g. SECRET//NZEO, TOP SECRET//REL TO NZL, FVEY), the TOP SECRET banner-words phrase (tolerant of a hyphen or PDF-line-wrap-inserted whitespace between TOP and SECRET), and a New Zealand government/PSR-context-gated bare SECRET banner. Deliberately omits a SEEMail square-bracket trigger-word tier: the complete SEEMail bracket trigger-word set is [SEEMAIL]/[TRUSTED]/[RESTRICTED]/[SENSITIVE]/[IN-CONFIDENCE], all at or below SEEMail's own RESTRICTED-tier service ceiling, so [SECRET]/[TOP SECRET] bracket forms are structurally implausible and unattested. Regex logic verified directly against official PSR marking-format guidance (protectivesecurity.govt.nz); matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- PSR
Detects the New Zealand Government SENSITIVE protective marking under the Protective Security Requirements (PSR) classification system: the legacy SEEMail bracket trigger-word convention ([SENSITIVE]), endorsed forms (e.g. BUDGET SENSITIVE, COMMERCIAL: SENSITIVE, CABINET SENSITIVE), and the bare ALL-CAPS document-banner form gated by New Zealand government context. Regex logic verified against the official PSR Classification Handbook (protectivesecurity.govt.nz) and Cabinet Office Circular CO(08)1; matched case-sensitively.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- PSR
Detects New Zealand Ministry of Health Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects New Zealand Business Numbers (NZBNs) — the 13-digit universal business identifier administered by MBIE. Every NZBN is a GS1 Global Location Number (GLN): the first two digits are 94 (the GS1 prefix identifying New Zealand entities), the next ten digits are the business entity identifier, and the final digit is a GS1 mod-10 check digit. A bare 13-digit run has a phone-number-sized collision surface (NZ mobile/landline numbers, card fragments, timestamps), so every tier requires the number to be directly attached to an NZBN label — label-embedded-in-regex counts as label gating per the D1 decision record. There is deliberately no bare unlabelled tier.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ), Companies Act 1993 (NZ)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects New Zealand Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
Detects New Zealand Social Welfare Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- nz
- Regulations
- Privacy Act 2020 (NZ)
- Frameworks
- ISO 27001, ISO 27701
Detects documents containing strategic and tactical intelligence on organised crime networks including network mapping, financial flow analysis, key facilitator identification, and cross-jurisdictional cooperation intelligence. QPS Taskforce Maxima handles OMCG investigations. Disclosure enables criminal organisations to restructure and eliminate suspected informants.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Crime and Corruption Act 2001 (Qld), PPRA 2000 (Qld)
- Frameworks
- QGISCF
Detects legal strategy for patent prosecution before filing, including prior art assessments, claim drafting strategy, and freedom-to-operate opinions. Disclosure destroys patent novelty or reveals prosecution strategy to competitors. Note: trainable classifier recommended for production deployment.
- Type
- keyword_proximity
- Confidence
- low
- Jurisdictions
- global
- Regulations
- Patents Act 1990 (Cth)
- Frameworks
- QGISCF
Detects bulk payroll data files containing employee names, Tax File Numbers (TFNs), bank account details, and salary information. Disclosure enables mass identity theft, fraudulent tax returns, and targeted social engineering.
- Type
- regex
- Confidence
- high
- Detection quality
- Error
- Jurisdictions
- au
- Regulations
- Criminal Code 1899 (Qld), Privacy Act 1988 (Cth), Tax Admin Act 1953 (Cth)
- Frameworks
- QGISCF
Detects Peru Documento Nacional de Identidad (DNI) numbers — 8 digits.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- pe
- Regulations
- Ley de Protección de Datos Personales (Peru)
- Frameworks
- ISO 27001, ISO 27701
Detects Philippine Identification System (PhilSys) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- ph
- Regulations
- Data Privacy Act of 2012 (Philippines)
- Frameworks
- ISO 27001, ISO 27701
Detects Philippines passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ph
- Regulations
- Data Privacy Act of 2012 (Philippines)
- Frameworks
- ISO 27001, ISO 27701
Detects Philippines PhilHealth Identification Numbers (PIN) in the common dashed format ##-#########-# (12 digits). Used for national health insurance membership and claims.
- Type
- regex
- Confidence
- high
- Jurisdictions
- ph
- Regulations
- Data Privacy Act 2012 (PH), Universal Health Care Act (PH)
- Frameworks
- ISO 27001, ISO 27701
Detects Philippines Social Security System (SSS) numbers in the common dashed format ##-#######-# (10 digits total). Continuous digit forms are intentionally out of scope to reduce collision with other national identifiers.
- Type
- regex
- Confidence
- high
- Jurisdictions
- ph
- Regulations
- Data Privacy Act 2012 (PH), SSS Act
- Frameworks
- ISO 27001, ISO 27701
Detects Philippine Taxpayer Identification Numbers (TIN) issued by the Bureau of Internal Revenue (BIR) under Section 236(j) of the National Internal Revenue Code. The base TIN is a 9-digit number (the 9th digit is a check digit), usually written XXX-XXX-XXX. Registered businesses append a branch code — historically 3 digits (000 for the head office, 12 digits total) and, since eBIRForms v7.9.6.0 (RMC No. 36-2026, April 2026), up to 5 digits (14 digits total).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ph
- Regulations
- National Internal Revenue Code of 1997 (Philippines), Data Privacy Act of 2012 (Philippines)
- Frameworks
- ISO 27001, ISO 27701
Detects UMID patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- ph
- Regulations
- Data Privacy Act of 2012 (Philippines)
- Frameworks
- ISO 27001, ISO 27701
Detects Poland driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- pl, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Dowód osobisty patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, pl
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Poland passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- pl, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects PESEL patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, pl
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Poland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- pl, eu
- Regulations
- GDPR
Detects REGON patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, pl
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Poland Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- pl, eu
- Regulations
- GDPR
Detects metadata records from police body-worn camera (BWC) systems including activation timestamps, officer identification, incident cross-references, and footage catalogue entries. This pattern targets the metadata and logs, NOT the footage itself. BWC metadata reveals which officers attended which incidents, activation patterns, and evidence chain-of-custody details.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
- Frameworks
- QGISCF
Detects internal investigation documents of police use of lethal or serious force, including compelled officer statements under s.7.2 PPRA and Ethical Standards Command evidence before investigation completion.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
- Frameworks
- QGISCF
Detects ministerial briefing notes or departmental submissions recommending specific grant funding decisions before public announcement.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects draft earnings guidance, profit warnings, or financial results before market disclosure. For QLD Government, this applies to GOCs subject to continuous disclosure obligations.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Corporations Act 2001 (Cth), Criminal Code 1899 (Qld)
- Frameworks
- QGISCF
Detects weighted evaluation matrices scoring tender responses, including commercial pricing from multiple bidders in government procurement processes.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects Cartão de Cidadão patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- eu, pt
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Portugal driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- pt, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Portugal passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- pt, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Portuguese Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- pt, eu
- Regulations
- GDPR
Detects Portugal Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- pt, eu
- Regulations
- GDPR
Detects بطاقة الهوية القطرية patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- qa
- Regulations
- PDPPL (QA)
- Frameworks
- ISO 27001, ISO 27701
Detects unreleased Queensland state budget allocation figures, forward estimates, and expenditure projections. These are market-moving documents that enable insider trading on government-linked securities if disclosed prematurely.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Corporations Act 2001 (Cth), Criminal Code 1899 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects Queensland Police Service (QPS) incident reports containing operational details about reported offences, informant information, and occurrence records. These are non-covert operational documents that are sensitive due to informant and victim details but do not involve covert methodology or life-safety risks.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
- Frameworks
- QGISCF
Detects legal defence strategy prepared in response to regulatory investigations by bodies such as ACCC, ASIC, APRA, OAIC, and Queensland regulators (CCC, OIA). Disclosure reveals the target's assessment of its own regulatory exposure and defence approach.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- QGISCF
Detects prosecution briefs prepared by Queensland regulatory bodies (Workplace Health and Safety, Environmental Protection Authority, Office of Fair Trading) for enforcement action. Disclosure compromises prosecution integrity and alerts enforcement targets.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Criminal Code 1899 (Qld), Environmental Protection Act 1994 (Qld), WHS Act 2011 (Qld)
- Frameworks
- QGISCF
Detects Romania driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ro, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Romania passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ro, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Cod Numeric Personal patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- eu, ro
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Romania Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- ro, eu
- Regulations
- GDPR
Detects draft submissions to Royal Commissions before formal tabling. Pre-tabling drafts reveal the State's narrative strategy, admissions under consideration, and positions not yet finalised. Disclosure prejudices the State's participation in proceedings of national significance.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Commissions of Inquiry Act 1950 (Qld)
- Frameworks
- QGISCF
Detects Russian domestic passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ru
- Regulations
- Federal Law No. 152-FZ (Russia)
- Frameworks
- ISO 27001, ISO 27701
Detects Russian international passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ru
- Regulations
- Federal Law on Personal Data (152-FZ) (Russia)
- Frameworks
- ISO 27001, ISO 27701
Detects Russia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- ru
- Regulations
- Federal Law 152-FZ (Russia)
Detects Russian Taxpayer Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ru
- Regulations
- Federal Law 152-FZ (Russia)
Detects Saudi Arabian Iqama (residence permit) numbers issued to expatriate residents. Iqama numbers are 10 digits and start with 2. Saudi national IDs start with 1 and are covered by sa-national-id.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- sa
- Regulations
- PDPL (Saudi Arabia)
- Frameworks
- ISO 27001, ISO 27701
Detects National Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Partial
- Jurisdictions
- sa
- Regulations
- PDPL (SA)
- Frameworks
- ISO 27001, ISO 27701
Detects internal legal assessments evaluating compliance with sanctions regimes (DFAT, OFAC, EU). Disclosure reveals identified compliance gaps, risk exposures, and remediation strategies before implementation, exposing the organisation to criminal prosecution under the Autonomous Sanctions Act 2011.
- Type
- keyword_proximity
- Confidence
- low
- Jurisdictions
- global
- Regulations
- Autonomous Sanctions Act 2011 (Cth)
- Frameworks
- QGISCF
Detects Sweden driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- se, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Sweden passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- se, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Personnummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, se
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Sweden Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- se, eu
- Regulations
- GDPR
Detects Sweden Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- se, eu
- Regulations
- gdpr
Detects documents authorising settlement ranges, negotiation floors/ceilings, and approved concession parameters. Disclosure reveals the State's maximum position, destroying negotiation leverage and potentially costing tens of millions in lost bargaining position.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects sexual assault counselling session records containing victim identifiers, forensic medical examination details, and trauma counselling notes. These records are subject to absolute privilege in Queensland and carry the highest privacy protections — disclosure can re-traumatise survivors, compromise criminal proceedings, and endanger safety.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Criminal Code 1899 (Qld), Evidence Act 1977 (Qld), IPA 2009 (Qld)
- Frameworks
- QGISCF
Detects Singapore driving license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- sg
- Regulations
- PDPA (SG)
- Frameworks
- ISO 27001, ISO 27701
Detects NRIC patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- sg
- Regulations
- PDPA (SG)
- Frameworks
- ISO 27001, ISO 27701
Detects Singapore passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- sg
- Regulations
- PDPA (SG)
- Frameworks
- ISO 27001, ISO 27701
Detects Singapore Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- sg
- Regulations
- PDPA (SG)
Detects Singapore Unique Entity Numbers (UEN) issued by ACRA and other agencies to businesses and other entities. Common forms are 8 or 9 digits plus a check letter (local companies) and the issued-year form TyyPQnnnnX / SyyPQnnnnX / RyyPQnnnnX used for other entities.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- sg
- Regulations
- PDPA (SG), ACRA Act
- Frameworks
- ISO 27001, ISO 27701
Detects Slovenia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- si, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Enotna matična številka občana (EMŠO) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, si
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Slovenia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- si, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Slovenia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- si, eu
- Regulations
- GDPR
Detects Slovenia Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- si, eu
- Regulations
- gdpr
Detects Slovakia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- sk, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Slovakia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- sk, eu
- Regulations
- BDSG, CNIL / LIL, GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects Rodné číslo patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- eu, sk
- Regulations
- gdpr
Detects Slovakia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- sk, eu
- Regulations
- GDPR
Detects credentials and sensitive configuration directives in Cisco IOS/NX-OS configuration files, including enable passwords/secrets, SNMP community strings with write access, PAC keys, and NVRAM/LDAP authentication indicators. Mirrors Snaffler rule KeepNetConfigCreds.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects credentials passed as command-line arguments in Windows batch scripts, PowerShell, and shell scripts. Covers net use /user:, schtasks /rp, psexec -p, cmdkey, and bare password= assignments. Mirrors Snaffler rule KeepCmdCredentials.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS
Detects Microsoft Defender for Identity (MDI) SensorConfiguration.json files containing DirectoryServicesAccount credentials and Microsoft Defender for Endpoint (MDE) mdatp_managed.json files containing onboardingInfo blobs, both of which represent high-value security tool configuration secrets. Mirrors Snaffler rule KeepDefenderConfigByName.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects Microsoft Deployment Toolkit (MDT) customsettings.ini files that embed domain join credentials, including DomainAdminPassword and DomainAdmin account values used during automated OS deployments. Mirrors Snaffler rule KeepDomainJoinCredsByName / KeepDomainJoinCredsByPath.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects Firefox logins.json encrypted password entries in the JSON format used by Firefox's NSS (Network Security Services) credential store. Mirrors Snaffler rule KeepFFRegexRed.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects passwords stored in FTP server and client configuration files, including FileZilla server/client recentservers.xml base64-encoded passwords, proftpd-style shadow passwd lines with hashed credentials, and sftp-config.json plaintext password fields. Mirrors Snaffler rules KeepFtpServerConfigByName and KeepFtpClientConfigConfigByName.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS
Detects embedded credentials (username:password) in Git repository URLs. Mirrors Snaffler rule KeepGitCredsByName.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects Apache htpasswd file entries containing hashed passwords in MD5 ($apr1$), bcrypt ($2y$, $2b$, $2a$), or SHA ({SHA}) formats. Mirrors Snaffler rule KeepConfigByName.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects secrets embedded in Infrastructure as Code files including Terraform/HCL variable assignments and Azure Cloud Service configuration (.cscfg) XML settings. Mirrors Snaffler rule KeepInfraAsCodeByExtension.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects Jenkins-encrypted credential values in the {base64...} format used by Jenkins credentials.xml and similar configuration files. Mirrors Snaffler rule KeepJenkinsByName.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects MediaWiki LocalSettings.php files containing database passwords ($wgDBpassword), secret keys ($wgSecretKey), and upgrade keys ($wgUpgradeKey). These are high-value secrets that grant database and administrative access to a MediaWiki installation. Mirrors Snaffler rule KeepPhpByName.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects credential list files — documents containing multiple username/password pairs in a structured, enumerated format (passwords.txt, secrets.*, BitlockerLAPSPasswords.csv, etc.). Distinguishes a credential roster from prose mentioning "password". Mirrors Snaffler rule KeepPasswordFilesByName.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects PostgreSQL .pgpass file entries containing hostname, port, database, username, and password in colon-separated format. Mirrors Snaffler rule KeepDbMgtConfigByName.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects PowerShell credential constructs that embed plaintext passwords, including ConvertTo-SecureString with -AsPlainText and [Net.NetworkCredential]::new() calls. Mirrors Snaffler rule KeepPsCredentials.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS
Detects secret credentials embedded in Ruby on Rails configuration files: secret_token/secret_key_base assignments (config/initializers/secret_token.rb, config/secrets.yml), database passwords (config/database.yml), and Chef knife client keys (knife.rb). These files are frequently committed to source control and expose application secrets and infrastructure access. Mirrors Snaffler rule KeepRubyByName.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- GDPR, Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2
Detects DPAPI-encrypted saved passwords stored in Windows Remote Desktop Protocol (.rdp) configuration files. The characteristic line "password 51:b:<base64-blob>" contains a DPAPI ciphertext blob representing a saved RDP credential. These files are frequently found on file shares, workstations, and in source-control repositories and represent a high-severity finding because the blob can be decrypted on the originating machine under the same user context. Mirrors Snaffler rule KeepRdpPasswords.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Computer Fraud and Abuse Act (CFAA), Criminal Code Act 1995 (Cth), Cybersecurity Maturity Model Certification (CMMC), Network and Information Systems (NIS) Directive
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects passwords and credentials stored in remote access configuration files including RDCMan .rdg files (logonCredentials blocks), mRemoteNG confCons.xml (Node Password attributes), and OpenVPN .ovpn files with embedded auth directives. MobaXterm .ini files are a Snaffler filename target only — passwords are stored obfuscated (proprietary XOR cipher) with no plaintext fingerprint detectable by content regex. Mirrors Snaffler rules KeepRemoteAccessConfByExtension and KeepRemoteAccessConfByName.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects S3 and S3A URI references in source code or configuration files when accompanied by AWS credential context. S3 URIs alone are high-FP enumeration signals; this pattern only fires at 75+ confidence when AWS credential evidence (access key, secret, AKIA prefix) is present within 300 characters. URI-only matches surface at 65 as discovery inventory. Mirrors Snaffler rule KeepS3UriPrefixInCode.
- Type
- regex
- Confidence
- low
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS
Detects credentials embedded in shell history files (.bash_history, .zsh_history, ConsoleHost_History.txt) including exported environment variable secrets, mysql command-line passwords, curl basic auth credentials, and sshpass invocations. Mirrors Snaffler rule KeepShellHistoryByName.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects database connection credentials embedded in source code across Java (JDBC), PHP, Perl, Ruby, and Python. Matches database driver connect() calls containing credentials inline. Mirrors Snaffler rules KeepJavaDbConnStrings, KeepPhpDbConnStrings, KeepPerlDbConnStrings, KeepRubyDbConnStrings, KeepPyDbConnStrings.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF, PCI-DSS
Detects SQL statements that create database user accounts or logins with embedded passwords, covering SQL Server CREATE LOGIN, MySQL CREATE USER IDENTIFIED BY, and PostgreSQL CREATE USER WITH PASSWORD. Mirrors Snaffler rule KeepSqlAccountCreation.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects plaintext passwords stored in Windows unattend.xml answer files, specifically the AdministratorPassword and AutoLogon <Value> XML elements used during Windows automated setup. These files frequently contain Administrator or auto-logon credentials in cleartext and represent a high severity finding when discovered on file shares or in software repositories. Mirrors Snaffler rule KeepUnattendXmlRegexRed.
- Type
- regex
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act (CFAA), Cybersecurity Maturity Model Certification (CMMC)
- Frameworks
- CIS Controls, ISO 27001, NIST CSF
Detects QTC (Queensland Treasury Corporation) borrowing strategies, debt issuance timelines, yield curve management plans, and refinancing schedules. Premature disclosure enables bond market front-running.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Corporations Act 2001 (Cth), Criminal Code 1899 (Qld)
- Frameworks
- QGISCF
Detects internal legal assessments quantifying the State's liability exposure on specific matters (tort, contract, statutory). Disclosure reveals the State's own estimate of its likely loss, undermining defence and settlement positions across multiple related matters. Note: trainable classifier recommended for production using liability document structural features.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
- Frameworks
- QGISCF
Detects bulk superannuation member data including individual balances, employer contributions, TFN-linked records, and beneficiary nominations from government super schemes such as QSuper.
- Type
- regex
- Confidence
- high
- Detection quality
- Error
- Jurisdictions
- au
- Regulations
- Privacy Act 1988 (Cth), SIS Act 1993 (Cth), Tax Admin Act 1953 (Cth)
- Frameworks
- QGISCF
Detects surrogacy arrangement records including parentage orders, surrogacy agreements, birth mother medical records, and intended parent assessments under the Surrogacy Act 2010 (Qld). These records contain deeply personal information about reproductive choices, medical procedures, and legal parentage transfers — disclosure can cause severe emotional distress and breach court-sealed parentage orders.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Status of Children Act 1978 (Qld), Surrogacy Act 2010 (Qld)
- Frameworks
- QGISCF
Detects documents containing physical and electronic surveillance operation plans including observation post positions, equipment deployments, team compositions, and target movement tracking plans. Disclosure enables counter-surveillance by criminal targets and compromises reusable surveillance positions and techniques.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- QGISCF
Detects terrorism and national security watchlist entries including risk ratings, monitoring status, intelligence basis, and border alert configurations. Disclosure enables subjects to evade monitoring and compromises border security.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- global
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- QGISCF
Detects Thai passport numbers issued by the Department of Consular Affairs, Ministry of Foreign Affairs of Thailand. Documented formats are one letter followed by six digits (older series, e.g. A123456), two letters followed by six digits (e.g. AA123456), or two letters followed by seven digits (current e-passport series, e.g. AA1234567, nine characters total matching the MRZ document-number field). Note: the legacy A123456 / AA123456 forms are documented by a single source (Thai Wikipedia); the current AA1234567 form is corroborated independently via the MRZ document-number field.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- th
- Regulations
- PDPA (TH)
- Frameworks
- ISO 27001, ISO 27701
Detects เลขประจำตัวประชาชน patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- th
- Regulations
- PDPA (TH)
- Frameworks
- ISO 27001, ISO 27701
Detects T.C. Kimlik Numarası patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- tr
- Regulations
- KVKK (Law No. 6698 on Protection of Personal Data) (Turkey)
- Frameworks
- ISO 27001, ISO 27701
Detects Turkish (Türkiye) ordinary ("umuma mahsus", bordo/burgundy) passport numbers. New-generation ordinary passports, issued by the General Directorate of Civil Registration and Citizenship (Nüfus ve Vatandaşlık İşleri Genel Müdürlüğü, NVİ) since 2018, carry a nine-character document number consisting of the series letter "U" followed by eight digits (e.g. U12345678), printed in the top-right corner of the data page. Turkish sources report different series letters for the special/green (hususi, "S") and service/grey (hizmet, "Z") passports; those series are NOT covered by this pattern because their letter-plus-digit shape could not be independently corroborated. Ordinary bordo passports are by far the dominant variant.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- tr
- Regulations
- KVKK (Law No. 6698 on Protection of Personal Data) (Turkey), Passport Law No. 5682 (Türkiye)
- Frameworks
- ISO 27001, ISO 27701
Detects Turkey Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- tr
- Regulations
- KVKK (Turkey)
Detects the Turkish tax identification number (Vergi Kimlik Numarası, VKN) issued by the Turkish Revenue Administration (Gelir İdaresi Başkanlığı, GİB). The VKN is a 10-digit number structured as a 3-digit alpha group code (001-999), a 6-digit sequence number and a single check digit. Since 1 July 2006 Turkish citizens use their 11-digit T.C. Kimlik Numarası as their tax number (covered by the separate tr-national-id pattern); the 10-digit VKN remains the tax identifier for legal entities, ordinary partnerships, foreign legal entities and foreign nationals without a Foreign Identity Number.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- tr
- Regulations
- KVKK (Law No. 6698 on Protection of Personal Data) (Turkey), Law No. 4358 on Expanding the Use of Tax Identification Numbers (Türkiye), Tax Procedure Law No. 213 (Türkiye)
- Frameworks
- ISO 27001, ISO 27701
Detects proprietary trading algorithms, quantitative investment strategies, or systematic risk models used by government investment vehicles such as QIC (Queensland Investment Corporation). This deployable record is the keyword/regex fallback detector (basis-points anchor with quantitative and proprietary-marker evidence); any trainable ML classifier is a separate tenant artifact with an external identity and is not represented in this record.
- Type
- trainable_classifier
- Confidence
- high
- Jurisdictions
- global
- Regulations
- Corporations Act 2001 (Cth)
- Frameworks
- QGISCF
Detects traffic camera and speed camera infringement records containing driver identification details, vehicle registration, and photographic evidence references. These records link specific individuals to traffic offences via camera evidence under the Transport Operations (Road Use Management) Act 1995 (Qld).
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- SPER Act 1999 (Qld), TORUM Act 1995 (Qld)
- Frameworks
- QGISCF
Detects 國民身分證統一編號 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- tw
- Regulations
- PDPA (Taiwan)
- Frameworks
- ISO 27001, ISO 27701
Detects Taiwan passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- tw
- Regulations
- PDPA (Taiwan)
- Frameworks
- ISO 27001, ISO 27701
Detects Taiwan Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- tw
- Regulations
- PDPA (Taiwan)
Detects 外僑居留證 / 台灣地區居留證 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- tw
- Regulations
- PDPA (Taiwan)
- Frameworks
- ISO 27001, ISO 27701
Detects Ukraine domestic passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ua
- Regulations
- Law on Personal Data Protection (Ukraine)
- Frameworks
- ISO 27001, ISO 27701
Detects Ukraine international passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- ua
- Regulations
- Law on Protection of Personal Data (Ukraine)
- Frameworks
- ISO 27001, ISO 27701
Detects Ukraine Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- ua
- Regulations
- Personal Data Protection Law (Ukraine)
Detects the Ukrainian individual tax number — the registration number of the taxpayer's account card (РНОКПП / RNOKPP, historically called RNTRC or ІПН), assigned by the State Tax Service of Ukraine to every individual taxpayer in the State Register of Individuals – Taxpayers. Per the OECD AEOI TIN description for Ukraine, the RNOKPP is a ten-digit numerical code (no letters, hyphens, or other symbols) with structure XXXXXNNNNK: a 5-digit birth-date registration sequence, a 4-digit account-card sequence, and a control digit.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- ua
- Regulations
- Tax Code of Ukraine, Law on Personal Data Protection (Ukraine)
- Frameworks
- ISO 27001, ISO 27701
Detects Scottish Community Health Index (CHI) 10-digit patient identifiers used by NHS Scotland.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- uk
- Regulations
- UK GDPR, Data Protection Act 2018
- Frameworks
- ISO 27001, ISO 27701
Detects UK Companies House company registration numbers (CRNs). A company number is always 8 characters: either 8 digits (England & Wales incorporations), a 2-letter jurisdiction/entity-type prefix followed by 6 digits (e.g. SC Scottish company, NI Northern Ireland company, OC/SO/NC LLPs, RC/SR/NR royal-charter bodies, FC overseas companies, OE overseas entities), or R0 + 6 digits (pre-partition Northern Ireland companies, registered under the R0 prefix). The prefix allow-list is taken from the Companies House Uniform Resource Identifiers (URI) Customer Guide plus the post-2011 additions CE/CS (charitable incorporated organisations), SG (Scottish qualifying partnerships), OE (Register of Overseas Entities, 2022), RS (registered societies, e.g. the live entry RS008375) and FE (further education / sixth form college corporations). Bare 8-digit runs collide heavily with invoice, order and account numbers, so the all-numeric form is only ever matched when directly attached to a company-number label; the more distinctive prefixed form additionally gets a keyword-gated tier without a directly-attached label. Two allow-list prefixes are excluded from that bare prefixed form because they collide with common document-number abbreviations — NO ("INVOICE NO123456") and SO (ERP sales-order numbers such as SO123456) — and are matched only via the label-attached regex.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- uk
- Regulations
- Companies Act 2006, UK GDPR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
>- This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation. Detects UK driving licence numbers. GB licences follow a 16-character format encoding surname, date of birth, and gender. Northern Ireland licences are 8-digit numbers.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- uk
- Regulations
- UK GDPR, Data Protection Act 2018 (UK)
- Frameworks
- ISO 27001, ISO 27701
Detects Electoral Roll Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- uk
- Regulations
- GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects the UK Government Security Classifications Policy (GSCP) OFFICIAL classification and its -SENSITIVE marking, written OFFICIAL-SENSITIVE and applied immediately after the OFFICIAL classification per the current policy. Matches the verified structured "CLASSIFICATION - HANDLING INSTRUCTION[- DESCRIPTOR]" format (e.g. OFFICIAL-SENSITIVE - RECIPIENTS ONLY, OFFICIAL-SENSITIVE - COMMERCIAL) using the centrally-defined GSCP handling-instruction and descriptor vocabulary, the bare OFFICIAL-SENSITIVE banner, and — at a lower, UK-government-context gated tier — bare OFFICIAL alone, which is a common English word. Regex logic verified directly against the current Government Security Classifications Policy (gov.uk, version 2.0, August 2024); matched case-sensitively so ordinary lowercase English use of "official"/"official-sensitive" does not trigger it.
- Type
- regex
- Confidence
- high
- Jurisdictions
- uk
- Regulations
- Official Secrets Act 1989
- Frameworks
- GSCP
Detects the UK Government Security Classifications Policy (GSCP) SECRET and TOP SECRET national-security classifications: the verified UK Prefix form (UK SECRET / UK TOP SECRET, applied to assets shared with foreign governments or international organisations), the classification followed by a verified National Caveat handling instruction (SECRET/TOP SECRET - UK EYES ONLY, - UK/US EYES ONLY, - FIVE EYES ONLY, per the GSCP's "CLASSIFICATION - HANDLING INSTRUCTION" additional-marking format — National Caveats apply only to SECRET and TOP SECRET, never OFFICIAL), the distinctive TOP SECRET banner-words phrase, and a UK-government-context-gated bare SECRET banner. Intended to surface content that should not reside on this platform. Regex logic verified directly against the current Government Security Classifications Policy (gov.uk, version 2.0, August 2024); matched case-sensitively.
- Type
- regex
- Confidence
- high
- Jurisdictions
- uk
- Regulations
- Official Secrets Act 1989
- Frameworks
- GSCP
Detects National Insurance Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- uk
- Regulations
- UK GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects NHS Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Mixed
- Jurisdictions
- uk
- Regulations
- UK GDPR, Data Protection Act 2018 (UK)
- Frameworks
- ISO 27001, ISO 27701
Detects Passport patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Partial
- Jurisdictions
- uk
- Regulations
- UK GDPR, Data Protection Act 2018 (UK)
- Frameworks
- ISO 27001, ISO 27701
Detects UK national telephone numbers per Ofcom's National Telephone Numbering Plan: geographic numbers (01/02 prefix) and mobile numbers (07 prefix, second digit restricted to 1-5 or 7-9, plus the 07624 Isle of Man mobile range — the one mobile block inside the otherwise-excluded 076 radiopaging range, allocated to Isle of Man operators under the UK plan; 070 personal-numbering and the rest of 076 remain excluded), both as 11-digit domestic strings (leading 0 + 10 significant digits), plus the +44 international form (10 significant digits, leading 0 dropped per ITU/Ofcom convention). Digit groups after the initial prefix use a flexible per-digit optional separator rather than a single fixed grouping, because Ofcom's numbering plan allows multiple valid group-length conventions (4+6, 3+7, 2+8, 5+5) that vary by area. Two additional conventional renderings are covered: the parenthesised-area-code national notation for geographic numbers, e.g. "(020) 7946 0958" / "(01632) 960960" (ITU-T E.123 national notation, parentheses marking the optionally-dialled area code, for 2-5 digit area codes), and the widespread "+44 (0)20 7946 0958" letterhead form (a common-but-nonstandard practice — E.123 advises against the parenthesised trunk digit in international notation, but it is ubiquitous in UK signatures and letterheads, so it is matched for detection purposes). Non-geographic service numbers (03/08/09) are intentionally out of scope — they are typically organizational/service numbers rather than personal PII, mirroring how au-fixed-line-telephone scopes to geographic numbers only.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- uk
- Regulations
- UK GDPR, PECR
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects U.K. Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- uk
- Regulations
- GDPR
Detects the paired UK domestic bank sort code (6 digits, written XX-XX-XX, XX XX XX, or XXXXXX) and account number (8 digits) as they normally appear together in UK bank-detail blocks (invoices, remittance advice, payroll/BACS instructions). Both digit groups must be directly attached to their own label ("sort code" / "account number" or "a/c no") in either order — bare unlabelled 6- or 8-digit sequences are never matched, because unlabelled digit sequences of this length collide heavily with dates, phone extensions, invoice numbers, and other structured identifiers.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- uk
- Regulations
- UK GDPR, Payment Services Regulations 2017
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects Unique Taxpayer Reference patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- uk
- Regulations
- UK GDPR
- Frameworks
- ISO 27001, ISO 27701
Detects United Kingdom (and Northern Ireland XI) Value Added Tax registration numbers. Standard trader numbers are GB followed by 9 digits; branch traders use GB plus 12 digits; government departments use GBGD### and health authorities GBHA###. Northern Ireland post-Brexit issues XI-prefixed numbers with the same body formats. Matching is uppercase letter prefixes as issued by HMRC.
- Type
- regex
- Confidence
- high
- Jurisdictions
- uk
- Regulations
- UK GDPR, Data Protection Act 2018, VATA 1994
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Us ABA Routing patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, FTC Act s5, GLBA, HIPAA, SOX, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects USCIS Alien Registration Numbers (A-Numbers). An A-Number is the unique identifier the Department of Homeland Security assigns to a noncitizen: the letter "A" followed by 7-9 digits, written compactly (A012345678) or grouped (A-123-456-789). A-Numbers appear on Green Cards, EADs, immigration court records, and Form I-9 / E-Verify data held by virtually every U.S. employer.
- Type
- regex
- Confidence
- high
- Jurisdictions
- us
- Regulations
- State Breach Laws (US), CCPA/CPRA, FTC Act s5
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects U.S. Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.
- Type
- regex
- Confidence
- low
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, FTC Act s5, GLBA, HIPAA, SOX, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects U.S. national-security classification banner and portion markings (per Executive Order 13526 and the Intelligence Community marking system): a classification level — TOP SECRET, SECRET, CONFIDENTIAL — followed by one or more "//"-separated control or dissemination markings (SI, TK, HCS, SCI, SAP, NOFORN, ORCON, REL TO ...), or a parenthetical portion mark such as (S//NF) or (TS//SI). The bare words "secret" and "confidential" are far too common to match alone, so a match requires the "//" control structure or a parenthetical portion mark.
- Type
- regex
- Confidence
- high
- Jurisdictions
- us
- Regulations
- Executive Order 13526, NIST SP 800-53, FISMA
- Frameworks
- NIST CSF, ISO 27001, SOC 2
Detects Controlled Unclassified Information (CUI) banner and portion markings as defined by 32 CFR 2002.20 and the NARA CUI Registry. A CUI banner is the control marking "CUI" optionally followed by category markings (CUI//SP-PRVCY) and limited-dissemination controls (//NOFORN, //FEDCON, //FED ONLY, //NOCON, //DL ONLY, //REL TO ...), with elements separated by double slashes. The bare token "CUI" is too common to match alone, so a match requires either the "//" banner structure or the spelled-out phrase "Controlled Unclassified Information".
- Type
- regex
- Confidence
- high
- Jurisdictions
- us
- Regulations
- NIST SP 800-171, 32 CFR 2002, FISMA
- Frameworks
- NIST CSF, ISO 27001, SOC 2
Detects DEA patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects Impairments Listed In The U.S. Disability Evaluation Under Social Security patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
A multi-state helper for detecting U.S. driver's license numbers using the real structural formats of several high-population states, rather than the broad "letter + 7-12 digits" catch-all. Covers California, New York, Texas, Florida, New Jersey, and Illinois. This is a companion to the generic us-drivers-license pattern (which it does not replace); use it when you want tighter, state-aware matching for those jurisdictions.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- us
- Regulations
- State Breach Laws (US), CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701
Detects U.S. driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701
Detects Employer Identification Number patterns.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701
Detects student identifiers that appear in education records protected under the Family Educational Rights and Privacy Act (FERPA). Student ID formats are institution-specific, so this pattern anchors on an explicit student/enrolment/SIS context label immediately preceding a 6-12 character alphanumeric ID, and relies on education-record keywords (transcript, GPA, enrollment, registrar) for corroboration.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- us
- Regulations
- FERPA, State Breach Laws (US), CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects US Individual Taxpayer Identification Numbers (ITINs) issued by the IRS to individuals who are required to have a US taxpayer identification number but are not eligible for a Social Security Number. ITINs always begin with the digit 9, and the fourth and fifth digits fall in the range 70-99, distinguishing them from SSNs. The pattern matches both formatted (9XX-7X-XXXX) and unformatted (9XX7XXXXX) variants.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, FTC Act s5, GLBA, HIPAA, SOX, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS, SOC 2
Detects labelled U.S. Medicaid member or recipient identification numbers. Medicaid ID formats are not standardised nationally — they vary by state in length and composition (typically 8-12 alphanumeric characters) — so this pattern anchors on an explicit Medicaid/recipient context label immediately preceding the ID rather than on a fixed structure.
- Type
- regex
- Confidence
- high
- Jurisdictions
- us
- Regulations
- HIPAA, State Breach Laws (US), CCPA/CPRA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
'Detects MBI patterns. Excluded letters: S, L, O, I, B, Z.' This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- high
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects US National Provider Identifier (NPI) values structurally: a ten-digit number beginning with 1 or 2. Detection is structural only — the NPI Luhn checksum (80840 prefix) is NOT enforced. Confidence comes from healthcare context tiers (NPI-specific terms at 85, broader provider/claims context at 75, bare shape discovery-only at 65), and an all-same-digit guard rejects repeated-digit values such as 1111111111.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects US passport numbers in exactly two accepted formats: a nine-digit numeric value (older US passports), or a single uppercase letter followed by exactly eight digits (newer passport books and cards). Bare eight-digit values and letter-plus-nine-digit values are not valid US passport numbers. Due to the relatively simple format, corroborative keyword proximity is strongly recommended to reduce false positives. Keywords are US-scoped (passport / US passport / State Department); foreign-passport labels are not treated as US passport evidence.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, HIPAA, State Breach Laws (US)
- Frameworks
- ISO 27001, ISO 27701
Detects North American Numbering Plan (NANP) telephone numbers in US contexts: the domestic NPA-NXX-XXXX form (bracketed, hyphenated, dotted, spaced, or bare, with an optional leading trunk "1") and the international +1 NPA-NXX-XXXX form. Area-code (NPA) and exchange-code (NXX) groups are constrained to a leading digit of 2-9 with the N11 service-code shape (211/311/411/511/611/711/811/911) excluded from both groups, per NANPA's published format rules. NANP area codes are drawn from a single pool shared by the US, Canada, and Caribbean member territories — the digit structure itself cannot distinguish a US number from a Canadian one (see ca-phone-number for the sibling pattern). Differentiation between the two patterns is by jurisdiction/regulation metadata and country-specific corroborative evidence keywords only, not by regex — this is the documented convention for the whole NANP pair.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, TCPA
- Frameworks
- ISO 27001, ISO 27701, SOC 2
Detects U.S. Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- us
- Regulations
- CCPA/CPRA
Detects US Social Security Numbers (SSNs) in both formatted (XXX-XX-XXXX) and unformatted (XXXXXXXXX) representations. The pattern excludes invalid SSN ranges including area numbers 000, 666, and 900-999, group numbers 00, and serial numbers 0000, in accordance with SSA assignment rules. SSNs are critical PII used across healthcare, financial, and government contexts.
- Type
- regex
- Confidence
- high
- Detection quality
- Mixed
- Jurisdictions
- us
- Regulations
- CCPA/CPRA, GLBA, HIPAA, SOX
- Frameworks
- ISO 27001, ISO 27701, PCI-DSS
Detects Vietnam Citizen Identity Card numbers (Căn cước công dân / CCCD). Modern chip-card numbers are 12 digits beginning with 0, embedding gender/century and place-of-birth codes.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- vn
- Regulations
- Cybersecurity Law (Vietnam), Personal Data Protection Decree 13/2023
- Frameworks
- ISO 27001, ISO 27701
Detects bulk payment authorisation files extracted from government ERP systems (SAP, Oracle, TechnologyOne) containing payee bank accounts, payment amounts, and authorisation codes for batch processing.
- Type
- regex
- Confidence
- high
- Detection quality
- Error
- Jurisdictions
- au
- Regulations
- Financial Accountability Act 2009 (Qld)
- Frameworks
- QGISCF
Detects documents containing witness protection program records including new identities, relocation details, and safe house locations for protected witnesses. Disclosure directly endangers the lives of witnesses and their families who have testified against violent criminals.
- Type
- keyword_proximity
- Confidence
- medium
- Jurisdictions
- au
- Regulations
- PPRA 2000 (Qld), Witness Protection Act 2000 (Qld)
- Frameworks
- QGISCF
Detects Id Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.
- Type
- regex
- Confidence
- medium
- Detection quality
- Verified
- Jurisdictions
- za
- Regulations
- POPIA
- Frameworks
- ISO 27001, ISO 27701
Detects South African passport numbers issued by the Department of Home Affairs under the South African Passports and Travel Documents Act 4 of 1994. Passport numbers are nine characters: one uppercase prefix letter identifying the passport type — A (normal/tourist), M (maxi), E (official), D (diplomatic), T (travel document) — followed by eight digits (SARS documents current issuance as starting A0, M0, E0).
- Type
- regex
- Confidence
- medium
- Jurisdictions
- za
- Regulations
- POPIA, South African Passports and Travel Documents Act 4 of 1994
- Frameworks
- ISO 27001, ISO 27701
Detects South Africa Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.
- Type
- keyword_list
- Confidence
- low
- Jurisdictions
- za
- Regulations
- POPIA
Detects South African income tax reference numbers (TIN) allocated by the South African Revenue Service (SARS) under section 24 of the Tax Administration Act, 2011. The number is ten digits, may only start with 0, 1, 2, 3 or 9, and its tenth digit is a check digit computed with a modulus-10 (Luhn-style) algorithm documented by SARS.
- Type
- regex
- Confidence
- medium
- Jurisdictions
- za
- Regulations
- POPIA, Tax Administration Act 2011 (South Africa)
- Frameworks
- ISO 27001, ISO 27701