DLP Detection Patterns

1284 community-built patterns for detecting sensitive data across 77 jurisdictions.

All patterns

Active Investigation Target Package

Detects documents containing intelligence holdings, surveillance methods, evidence gaps, and investigative strategy against active criminal investigation targets. These target packages reveal the full picture of what police know and do not know about a suspect, enabling counter-surveillance and evidence destruction if disclosed.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
Frameworks
QGISCF

Adoption Records Pre-Release

Detects pre-release adoption records including birth parent identities, adoptee matching assessments, placement recommendations, relinquishment consents, and contact vetoes under the Adoption Act 2009 (Qld). These records contain information that individuals have a legal right to control — premature or unauthorised disclosure can cause profound emotional harm and breach court-sealed orders.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Adoption Act 2009 (Qld), Child Protection Act 1999 (Qld), IPA 2009 (Qld)
Frameworks
QGISCF

Emirates Id

Detects Emirates Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ae
Regulations
UAE PDPL
Frameworks
ISO 27001, ISO 27701

UAE Passport Number

Detects UAE passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ae
Regulations
UAE PDPL
Frameworks
ISO 27001, ISO 27701

AI Agent Action Misuse

Detects agent tool-misuse / high-risk action instructions in AI/agent context: destructive or irreversible action language coupled with a high-impact target or an approval-bypass clause (OWASP LLM06 / Agentic Top 10). The action verb and target must co-occur to suppress IT-runbook false positives.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Data-Exfiltration Marker

Detects data-exfiltration carriers in AI/LLM output: markdown images or links and HTML img tags whose URL points off-tenant and carries an encoded data payload in the path or query. This is an EchoLeak-style (cf. CVE-2025-32711) generic markdown/HTML exfiltration-carrier marker - it flags the carrier shape, not the full CVE mechanism (which also involves XPIA evasion and a Teams proxy/CSP bypass).

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Indirect Injection - Hidden Content

Detects hidden or encoded content carriers used for indirect prompt injection (OWASP LLM01): zero-width / bidirectional / homoglyph Unicode control characters that conceal instructions in otherwise benign prose, and abnormally long base64 strings embedded inline in text. These carriers smuggle attacker instructions into documents, emails, and web content that an LLM later ingests.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Jailbreak & Roleplay-Persona

Detects overt jailbreak / roleplay-persona framings in AI/LLM input (OWASP LLM01): persona-override framings (DAN, developer mode), restriction-removal roleplay, and "for research/educational purposes" pretexts. Curated from public jailbreak taxonomies; no novel jailbreaks authored.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI MCP / Connector Risk

Detects risky MCP / plugin / connector descriptors: tool manifests requesting over-broad or unexplained scopes, or encouraging autonomous action that bypasses user approval (OWASP LLM06 / Agentic Top 10). Phrase detection is corroborated by AI-context markers.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Memory / Context Poisoning

Detects directives intended to persist across sessions or to be written into model memory that change the assistant's role, priority or policy (OWASP LLM08 persistent-context poisoning). Phrase detection is corroborated by AI-context markers.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Output Sensitive Disclosure

Marks AI-generated output context (responses, generated files, chat exports) so existing PII/secret SITs can be re-scoped to it. Detection of the sensitive data itself is delegated to those SITs via the ai-threat-classifiers collection; this pattern supplies the AI-output context signal.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Prompt Injection & Goal Hijack

Detects direct prompt-injection / goal-hijack attempts in AI/LLM input: imperative phrases that try to override higher-priority (system) instructions, change the model's role or goal, or bypass approval guardrails (OWASP LLM01). Phrase detection is corroborated by AI-context markers.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI RAG Source Poisoning

Detects instruction-like content embedded inside reference / retrieval material (RAG sources): directives addressed to a retrieval AI, high-imperative density, or sudden authority claims that attempt to steer downstream model behaviour (OWASP LLM08 retrieval poisoning). Phrase detection is corroborated by AI-context markers.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Repo-Borne Instruction Risk

Detects instructions embedded in repository text (README, AGENTS.md, comments, issues) that target an AI coding agent and direct it to take risky action - skipping review/tests, exfiltrating data, or committing secrets (OWASP LLM01 indirect injection via source control).

Type
regex
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Secrets & Credentials in AI Context

Detects secrets and credentials surfaced in AI/LLM context: private-key headers (RSA / EC / OpenSSH / generic) and connection-string passwords (password= / pwd=) pasted into prompts, chat exports, or AI-generated output. Reuses the intent of built-in credential SITs, re-scoped to the AI surface.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Sensitive Data in Prompts

Supplies the AI-prompt context signal (typed prompts, Copilot/Copilot Chat/Studio, uploaded files) so existing PII/regulated-data SITs can be re-scoped to AI prompts via the ai-threat-classifiers collection. Known coverage gap (from the library): native DLP scans typed prompt text, not uploaded file contents, in the Copilot location.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI Shadow / External AI Data Share

Marks the context of data being submitted to external / unapproved AI services (shadow AI destination domains) so existing PII/secret SITs can be re-scoped to it. Detection of the sensitive data itself is delegated to those SITs via the ai-threat-classifiers collection; this pattern supplies the external-AI destination context signal.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

AI System Prompt / Policy / Tool Schema Disclosure

Detects overt attempts to elicit disclosure of an assistant's system prompt, policies, guidelines, or tool schema (OWASP LLM02/LLM07): "reveal/print/show/repeat your system prompt/instructions" and similar extraction phrasings.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
OWASP LLM Top 10 2025, NIST AI RMF GenAI Profile
Frameworks
ISO 27001

Cuit Cuil

Detects Cuit Cuil patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ar
Regulations
PDPL (AR)
Frameworks
ISO 27001, ISO 27701

Documento Nacional de Identidad

Detects Documento Nacional de Identidad patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ar
Regulations
PDPL (AR)
Frameworks
ISO 27001, ISO 27701

Argentina Passport Number

Detects Argentine passport numbers issued by the Registro Nacional de las Personas (RENAPER). Since the 2012 biometric passport series, every booklet carries a unique alphanumeric number of exactly three uppercase letters followed by six digits (e.g. AAC382190). The number is independent of the holder's DNI. Special three-letter series are reserved for travel documents issued to stateless persons (ZZA) and refugees (ZZX) under RENAPER Disposicion 904/2021.

Type
regex
Confidence
medium
Jurisdictions
ar
Regulations
PDPL (AR)
Frameworks
ISO 27001, ISO 27701

Austria Driver's License Number

Detects Austria driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
at, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Personalausweis

Detects Personalausweis patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, at
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Austria Passport Number

Detects Austria passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
at, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Austria Physical Addresses

Detects Austria Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
at, eu
Regulations
GDPR

Sozialversicherungsnummer

Detects Sozialversicherungsnummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, at
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Austria Tax Identification Number

Detects Austria Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
at, eu
Regulations
GDPR

Austria Value Added Tax (VAT) Number

Detects Austria Value Added Tax (VAT) Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
at, eu
Regulations
GDPR

ACT Driver Licence Number

Detects Australian Capital Territory driver licence numbers in the established eight-to-ten-digit shape. Enforceable tiers require an explicit driver-licence-number label and ACT context; the strict tier additionally requires Access Canberra or ACT Road Transport Authority evidence.

Type
regex
Confidence
medium
Jurisdictions
au-act
Regulations
Information Privacy Act 2014 (ACT), Privacy Act 1988 (Cth), Road Transport (Driver Licensing) Act 1999 (ACT)
Frameworks
ISO 27001

AFSL Number (Australian Financial Services Licence)

Detects Australian Financial Services Licence (AFSL) numbers issued by ASIC to authorised financial services providers.

Type
regex
Confidence
low
Jurisdictions
au
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

ASIC Registered Agent Number

Detects ASIC registered agent numbers used by agents who lodge company documents with the Australian Securities and Investments Commission. The number is a short (typically 3-6 digit) identifier issued to a registered agent and quoted on ASIC forms and lodgements.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Corporations Act 2001 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Director Identification Number (Director ID)

Detects Australian Director Identification Numbers (director IDs / DIN) issued by the Australian Business Registry Services (ABRS). A director ID is a 15-digit number beginning with Australia's ISO 3166 country code 036, followed by an 11-digit unique identifier and a single check digit, often written with spaces or hyphens between groups.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Corporations Act 2001 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Australian Branch Routing Code

Identifies Australian Bank State Branch (BSB) routing codes in 3-digit dash 3-digit or continuous 6-digit formats. Supports space separator. Requires corroborative financial-institution keywords.

Type
regex
Confidence
low
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Australian Business Number

Detects Australian Business Numbers (ABNs), which are unique 11-digit identifiers issued by the Australian Business Register to entities carrying on a business in Australia. ABNs are commonly formatted as groups of 2-3-3-3 digits separated by spaces or hyphens. The ABN includes a check digit mechanism, but this pattern relies on format matching combined with corroborative evidence rather than algorithmic validation.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Australian Mobile Number

Identifies Australian mobile telephone numbers in domestic (04XX) and international (+614XX) notation. Uses lookaround boundaries to prevent embedded numeric matches. Supports space-only separation between digit groups for high precision.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Centrelink Customer Reference Number

Detects candidate Centrelink Customer Reference Numbers consisting of 9 digits followed by a letter. The bare shape is not unique and requires a CRN/Centrelink label for enforcement.

Type
regex
Confidence
low
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Australian Citizenship Certificate

Detects Australian Citizenship Certificate number patterns including prefixed formats (ACC, CDM, ACS, CAS followed by 4-8 digits) and numeric-only formats (0 + 10 digits).

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Australian Company Number

Detects Australian Company Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Compliance Assessment Report

Detects compliance assessment reports identifying regulatory gaps and non-compliance findings.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Critical Infrastructure Design

Identifies substantive critical-infrastructure and essential-service network or control-system designs. Topic phrases are retained for discovery; enforcement requires segmentation, data-flow, trust-boundary, VLAN, DMZ, firewall, or OT-zone design content, and high confidence also requires a populated address, VLAN, port, device, or rule detail.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Data Breach Report

Detects data breach reports including breach details, affected individuals, and OAIC notifications.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Australian Deposit Account Reference

Identifies references to Australian consumer deposit account numbers in financial and compliance documents. Uses structural anchors with proximity constraints.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Australia Driver's License Number

Catalogue reference for the Microsoft Purview built-in Australia Driver's License Number sensitive information type. Microsoft recommends medium confidence (75) for the built-in entity. This YAML-only record supports registry search and discovery without reproducing Microsoft's built-in regular expressions, keyword dictionaries, or XML.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Australian Drug and Alcohol Test Result

Detects Australian workplace drug and alcohol testing records - screening and confirmatory results under AS/NZS 4308 (urine) and AS/NZS 4760 (oral fluid), laboratory result phrasing (non-negative, cut-off concentrations in ng/mL), and breath/blood alcohol readings recorded in fitness-for-work programs.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Privacy Act 1988 (Cth) - health information, Work Health and Safety Act 2011
Frameworks
ISO 27001

Australian Electricity Derivative / PPA Confirmation

Detects Australian OTC electricity derivative and power purchase agreement confirmation content - documentation under the June 2006 Australian Electricity Addendum and 2005 ISDA Commodity Definitions, electricity swap/cap/floor/swaption confirmations settled against the AEMO regional reference price, and PPA confirmation phrasing with $/MWh fixed prices.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Corporations Act 2001 (Cth) - derivatives, Competition and Consumer Act 2010 (Cth)
Frameworks
ISO 27001

Australian Enterprise Agreement Document

Detects Australian enterprise agreement and enterprise bargaining content under the Fair Work Act 2009 - agreement text and drafts (single-enterprise and greenfields agreements, nominal expiry, better off overall test), Fair Work Commission agreement codes (AE followed by six digits), and bargaining process artefacts (notice of employee representational rights, protected action ballots, logs of claims).

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Fair Work Act 2009 (Cth)
Frameworks
ISO 27001

Financial Statement

Detects financial statements including profit and loss, balance sheets, and income statements.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, NIST CSF, PCI-DSS

Australian Landline Number

Identifies Australian fixed-line telephone numbers across domestic bracketed, unbracketed, and international formats for area codes 02, 03, 07, and 08. Uses lookaround boundaries and supports hyphen separators within digit groups.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

FOI Exemption Section References

Detects Freedom of Information Act exemption section references (sections 33-38 and 42-47) in Australian government documents. Requires FOI/freedom of information keyword context.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
au
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Australian Electricity Forward Curve Artefact

Detects Australian electricity forward/broker curve exports - forward or broker curve phrasing tied to NEM regional reference identifiers (QLD1, NSW1, VIC1, SA1, TAS1), load shape terms (flat/peak/off-peak), or calendar/quarter strip notation (Cal27, Q1-27, CY2027, FY27) with $/MWh values. Internal curve marks reveal a participant's price expectations and valuation basis.

Type
regex
Confidence
low
Jurisdictions
au
Regulations
Corporations Act 2001 (Cth) - market integrity
Frameworks
ISO 27001

Healthcare Provider Identifier - Individual

Detects Healthcare Provider Identifier - Individual (HPI-I) patterns. The HPI-I is a 16-digit number starting with the prefix 800361. No checksum validation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Individual Healthcare Identifier

Detects Individual Healthcare Identifier (IHI) patterns. The IHI is a 16-digit number starting with the prefix 800360; the official format carries a Luhn check digit (not enforced here).

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Australian Individual Name Record

Identifies Australian personal names using capitalised name structure with controlled evidence from the consolidated Australian forename and surname dictionaries. Supports the multicultural name coverage represented in Australian birth, immigration, and administrative sources.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Australian Loan Agreement

Detects loan agreement documents containing borrower details, interest rates, and repayment terms.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Australian Marking - OFFICIAL

Detects the Australian Government OFFICIAL protective marking (PSPF / QGISCF) in both email forms ([SEC=OFFICIAL] subject markings, X-Protective-Marking headers) and visible document banners. Excludes UNOFFICIAL and OFFICIAL: Sensitive (handled by au-marking-sensitive). Regex logic ported from Microsoft's canonical PSPF SIT guidance; matched case-sensitively so the lowercase English word "official" does not trigger.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
au
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
PSPF, QGISCF

Australian Marking - PROTECTED

Detects the Australian Government PROTECTED protective marking (PSPF / QGISCF) in both email and document forms, sweeping up its IMM/caveat variants (Personal-Privacy, Legal-Privilege, Legislative-Secrecy, CABINET, NATIONAL-CABINET). SECRET and TOP SECRET roll up here so they receive at-least-PROTECTED handling. Regex logic ported from Microsoft's canonical PSPF SIT guidance; matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
au
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
PSPF, QGISCF

Australian Marking - SECRET / TOP SECRET

Detects the Australian Government SECRET and TOP SECRET security classifications in both email and document forms. Intended to surface content that should not be stored on the platform (these classifications roll up to the PROTECTED label in au-marking-protected for handling, while this SIT flags them for remediation). Matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
au
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
PSPF

Australian Marking - SENSITIVE

Detects the Australian Government SENSITIVE tier in both email and document forms: Commonwealth OFFICIAL: Sensitive (including its IMM/caveat variants such as Personal-Privacy, Legal-Privilege, Legislative-Secrecy) and the Queensland (QGISCF) standalone SENSITIVE marking. Regex logic ported from Microsoft's canonical PSPF SIT guidance; matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
au
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
PSPF, QGISCF

Australia Medicare Card Identifier

Identifies Australian Medicare card numbers (10-11 digits, first digit 2-6). Filters same-digit sequences. Requires corroborative health-scheme keywords for reliable detection.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Australian Medicare Number

Detects Australian Medicare card numbers, which are issued to Australian citizens and permanent residents for access to subsidised healthcare under the Medicare system. The number consists of 10 digits: the first digit is between 2 and 6, followed by 8 additional digits and a single check digit. Numbers are commonly formatted as groups of 4-5-1 digits separated by spaces or hyphens.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Medicare Provider Number

Detects Medicare Provider Number patterns. An 8-character code consisting of 6 digits, a location character, and a check character. Validated by location and check character sets.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Australian Mining Geotechnical and Reserves Data

Detects Australian mining technical records - JORC Code resource and reserve estimates (Measured/Indicated/Inferred resources, Proved/Probable reserves, Competent Person statements), drill-and-blast design parameters (blast patterns, powder factor, maximum instantaneous charge, stemming), pit geotechnical stability assessments, and spelled-out mining tenement grants.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Security of Critical Infrastructure Act 2018 (Cth), Mineral Resources Act 1989 (Qld), Explosives Act 1999 (Qld)
Frameworks
ISO 27001

Australian Mortgage Document

Detects mortgage documents containing property security details, LVR ratios, and borrower financial information.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Australian Driver's Licence Number

Discovery-only compatibility coverage for Australian driver's licence number candidates across all states and territories. The stable au-motor-vehicle-permit slug is retained for catalogue, collection, workbook, and package compatibility. State and territory enforcement belongs to the eight au-*-driver-licence-number SITs. Microsoft Purview tenants can instead select the free built-in Australia Driver's License Number entity (1cbbc8f5-9216-4392-9eb5-5ac2298d1356); this compatibility pattern is not a custom clone of that built-in.

Type
regex
Confidence
low
Detection quality
Mixed
Jurisdictions
au
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

MSATS / B2B Retail Market Transaction

Detects AEMO MSATS retail-market transaction content - aseXML transaction names (CATSChangeRequest, NMIDiscoveryRequest/Response, ServiceOrderRequest/Response, MeterDataNotification), CATS change-request codes (e.g. CR1000/CR1060, CR4050/1, CR5050/1), and role-coded NMI standing data (FRMP/LNSP/MDP with an NMI). These artefacts carry customer transfer, metering and consumption context regulated under the retail market procedures.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
National Energy Retail Rules / NER Ch 7 (metering), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Nationality and National Origin (Australia)

Detects references to nationality/citizenship/immigration-status disclosure in Australian documents: nationality fields, national origin, citizenship status, visa status, and naturalization records. Not framed as an Art-9-style special category (Australia has no equivalent regime) — sensitivity here rests on immigration-status/visa risk under the Migration Act 1958 (Cth) and on the "national origin" limb of the Racial Discrimination Act 1975 (Cth), distinct from that Act's race/ethnicity limb covered by the sibling au-racial-ethnic-origin pattern. Topic-grade detector, low confidence by design.

Type
keyword_list
Confidence
low
Jurisdictions
au
Regulations
Migration Act 1958 (Cth), Racial Discrimination Act 1975 (Cth), Privacy Act 1988 (Cth), NDB Scheme (Cth)
Frameworks
ISO 27001, NIST CSF, SOC 2

NDIS Participant Number

Detects NDIS Participant Number patterns. A 9-digit number starting with the prefix 43.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

NEM Energy/FCAS Bid Submission

Detects AEMO NEM dispatch bid/offer submission artefacts - the MMS bidding table vocabulary (BIDDAYOFFER, BIDOFFERPERIOD, BIDOFFERFILETRK, MNSP day-offer tables), the Dispatch Bid/Offer Submissions JSON payload fields (energyBids, fcasBids, mnspBids, rebidExplanation), and the participant FTP bid filename convention (<PARTICIPANTID>_<x>BID<x>_<timestamp>.zip/.json). Pre-dispatch bids, price bands and rebid reasoning are commercially critical trading data for market participants.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
National Electricity Rules cl 3.8 (bidding and dispatch), Competition and Consumer Act 2010 (Cth)
Frameworks
ISO 27001, SOCI Act 2018 (Cth)

NEM Dispatchable Unit Identifier (DUID) Context

Detects AEMO Dispatchable Unit Identifiers (DUIDs) when labelled as such. DUIDs are short (max 8 character) unit codes - modern IDs are alphanumeric, legacy IDs may contain '#', '/' or '-' (e.g. BARRON-1, W/HOE#1, ER01, LOYYB1). IMPORTANT: DUIDs are fully PUBLIC identifiers (published in the AEMO NEM Registration and Exemption List and in five-minute NEMWEB dispatch data). This pattern is a discovery-only context marker and corroborative building block for sensitive-content patterns (bids, availability, curves) - it must never enforce on its own. A bare DUID token is indistinguishable from ordinary text, so the pattern requires the DUID label (or dispatchable-unit phrasing) immediately before the code.

Type
regex
Confidence
low
Jurisdictions
au
Regulations
National Electricity Rules Ch 2 (registration) and cl 3.8 (dispatch)
Frameworks
ISO 27001, SOCI Act 2018 (Cth)

NSW Driver Licence Number

Detects New South Wales driver licence numbers in the established eight-digit or four-digit-plus-two-letter shapes. Enforceable tiers require an explicit driver-licence-number label and NSW context; the strict tier additionally requires Transport for NSW, Service NSW, or a legacy NSW road authority.

Type
regex
Confidence
medium
Jurisdictions
au-nsw
Regulations
Privacy Act 1988 (Cth), Privacy and Personal Information Protection Act 1998 (NSW), Road Transport Act 2013 (NSW)
Frameworks
ISO 27001

NT Driver Licence Number

Detects Northern Territory driver licence numbers in the established six-to-eight-digit shape. Enforceable tiers require an explicit driver-licence-number label and NT context; the strict tier additionally requires Motor Vehicle Registry authority evidence.

Type
regex
Confidence
medium
Jurisdictions
au-nt
Regulations
Information Act 2002 (NT), Motor Vehicles Act 1949 (NT), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Australian Number Plate

Detects five implemented Australian standard number-plate shapes for NSW, Victoria, Queensland, South Australia, and Western Australia. It does not validate issuance and excludes personalised plate formats; registration and transport-agency evidence controls enforcement.

Type
regex
Confidence
low
Detection quality
Partial
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Patent/IP Reference

Detects references to patents, intellectual property registrations, and IP Australia filings.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, NIST CSF, PCI-DSS

PBS Prescriber Number

Detects PBS Prescriber Number patterns. A 7-digit number whose check digit uses weights [0,5,8,4,2,1], mod 11 (checksum NOT enforced in this regex-only pattern; structural detection only).

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Australian Person-Linked Residential Address

Detects a populated Australian residential street address linked to a labelled person. Bare address structure is available for discovery, the balanced tier requires person and residential context plus Australian geography, and the strict tier requires state and postcode corroboration.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Australia Physical Addresses

Catalogue reference for the Microsoft Purview built-in Australia physical addresses named-entity SIT. Microsoft rates the built-in at medium confidence and includes it in All Physical Addresses. This YAML-only record supplies supplementary Australian address vocabulary for registry search and testing; it does not reproduce Microsoft's opaque named-entity engine and is not a custom XML clone.

Type
keyword_list
Confidence
low
Jurisdictions
au
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

National Police Check Reference

Detects Nationally Coordinated Criminal History Check (National Police Check) certificate and application reference numbers issued through the ACIC National Police Checking Service. Matches a police check phrase near a reference / certificate / receipt value that identifies a specific check.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Australian Property Title Reference (Lot/Plan)

Detects Australian property title and plan references used across state and territory land-title systems, including Lot/DP, Lot/SP, Lot/PS, Lot/LP, Lot/CP, title references, and folio identifiers. Requires land-registry context for enforcing tiers.

Type
regex
Confidence
low
Detection quality
Partial
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

QLD Blue Card Application

Detects QLD Blue Card working with children check applications and screening documents.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

QLD Bond Loan Application

Detects QLD Bond Loan applications for rental assistance and financial hardship support.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

QLD Building Approval

Identifies Queensland building approvals, permits, certifications, development applications, and occupancy/compliance records. Topic phrases are retained for discovery; enforcement requires actual decision, condition, assessment, certification, or approved-work content, and high confidence also requires a formal application identifier and Queensland authority context.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

QLD Driver Licence Form

Detects QLD Transport and Main Roads driver licence application and renewal forms.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

QLD Driver Licence Number

Detects Queensland driver licence numbers in the established eight-to-nine-digit shape. This identifier SIT is separate from au-qld-driver-licence-form, which detects application and renewal documents rather than populated licence numbers.

Type
regex
Confidence
medium
Jurisdictions
au-qld
Regulations
Information Privacy Act 2009 (Qld), Privacy Act 1988 (Cth), Transport Operations (Road Use Management) Act 1995 (Qld)
Frameworks
ISO 27001

QLD Government Tender Document

Detects QLD Government tender documents including procurement evaluations, pricing schedules, and evaluation criteria.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

QLD Health Clinical Handover

Detects QLD Health clinical handover documents containing patient status, medications, and treatment plans.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

QLD Health Medical Record

Detects QLD Health medical record references including MRN/URN identifiers and clinical documentation.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

QLD Health Patient Consent

Detects QLD Health patient consent forms including advance directives and enduring power of attorney documents.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

QLD Heavy Vehicle Permit

Identifies Queensland heavy-vehicle access permit applications and issued permit records for oversize, overmass, Class 1, B-double, and road-train movements. Queensland topic context is discovery-only; enforcement requires operator, vehicle, route, or access-condition fields, while high confidence also requires a labelled permit/application reference and NHVR authority context.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

QLD Home Education Registration

Detects QLD home education registration documents for homeschooled children.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

QLD Housing Application

Detects QLD social housing applications and housing assistance eligibility documents.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

QLD Marine Registration

Detects QLD marine vessel registration documents and operator licence details.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

QLD Mental Health Assessment and Involuntary Treatment

Detects Queensland mental health assessment and involuntary treatment records, including psychiatric evaluations, Mental Health Act 2016 (Qld) involuntary treatment orders (ITOs), treatment authority documents, and Mental Health Review Tribunal decisions affecting compulsory treatment.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

QLD Notifiable Condition Report

Detects QLD notifiable condition reports for public health surveillance and disease notifications.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

QLD School Incident Report

Detects QLD school incident reports containing student behavioural and disciplinary details.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Special Education and Special Needs Learning Plans

Detects special education and special needs learning plans, including Queensland individual education / special needs plans with children's disability and learning-support details, goals, adjustments, and review dates, and equivalent special education plan records in Australian education contexts.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

QLD Student Enrolment Form

Detects QLD student enrolment forms containing children's personal information and family details.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

QLD Vehicle Registration Form

Identifies Queensland vehicle registration application, transfer, renewal, and certificate forms. Queensland form topics are discovery-only; enforcement requires multiple registration-record fields, while high confidence also requires an official F3518/F3520 form number and a populated VIN, registration-number, or plate-number field.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

SA Driver Licence Number

Detects South Australian driver licence and learner permit numbers in the established one-letter-plus-five-or-six- digit shape. Enforceable tiers require an explicit licence-number label and South Australian context; the strict tier additionally requires Service SA or Department for Infrastructure and Transport authority evidence.

Type
regex
Confidence
medium
Jurisdictions
au-sa
Regulations
Motor Vehicles Act 1959 (SA), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

SOCI Act Compliance Document

Identifies substantive Security of Critical Infrastructure Act, CIRMP, and AESCSF compliance assessments. Topic phrases are retained for discovery; enforcement requires obligation status, compliance findings, maturity ratings, control gaps, risk-management-program content, or remediation actions, and high confidence additionally requires a critical-asset/responsible-entity context and an adverse finding.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Criminal Code 1899 (Qld), SOCI Act 2018 (Cth)
Frameworks
QGISCF

Australian Street Locality Reference

Identifies Australian physical addresses using structural street-number + street-name regex combined with road-type, state/territory, and postcode corroborative evidence. Covers the implemented road-type endings: the standard abbreviated set plus the declared extended endings (Rise, View, Gardens, Loop, Trail, Track, Pass, Heights) — not the full GNAF classification list.

Type
regex
Confidence
low
Detection quality
Mixed
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Australian Superannuation Fund Number

Detects Australian Superannuation Fund Number (RSE) patterns. An R prefix followed by 7 digits, registered with APRA.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

TAS Driver Licence Number

Detects Tasmanian driver licence numbers in the established seven-digit or one-letter-plus-five-or-six-digit shapes. Enforceable tiers require an explicit licence-number label and Tasmanian context; the strict tier additionally requires Transport Services, Service Tasmania, or Department of State Growth authority evidence.

Type
regex
Confidence
medium
Jurisdictions
au-tas
Regulations
Personal Information Protection Act 2004 (Tas), Privacy Act 1988 (Cth), Vehicle and Traffic Act 1999 (Tas)
Frameworks
ISO 27001

Australian Tax Invoice

Detects Australian tax invoices containing GST, ABN, and payment details as required by ATO regulations.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Australian Taxation Identifier

Identifies Australian Tax File Numbers (TFNs) — unique nine-digit identifiers issued by the Australian Taxation Office. Uses an inline mod-11 Checksum validator with AllDigitsSameFilter and TextMatchFilter to exclude known test values.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Titled Person Reference

Identifies personal names preceded by salutations (Mr, Mrs, Ms, Dr, Prof, etc.) in Australian documents. Uses structural regex for honorific + capitalised name components with corroborative evidence from the consolidated Australian forename and surname dictionaries.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Legal full name

Identifies documents containing references to legal full name in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Previous legal names and aliases

Identifies documents containing references to previous legal names and aliases in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Citizenship status

Identifies documents containing references to citizenship status in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Social security number

Identifies documents containing references to social security number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Taxpayer identification number

Identifies documents containing references to taxpayer identification number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
low
Detection quality
Topic partial
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Voter registration number

Identifies documents containing references to voter registration number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Military service number

Identifies documents containing references to military service number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988. Phrase-level concept detector: it matches defence-qualified service-number wording, not an issued numeric value; bare service number without defence context is out of the primary.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Social benefits claimant number

Identifies documents containing references to social benefits claimant number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Home address

Detects populated Australian residential street addresses. Bare street structure is retained for discovery, while enforcing tiers require Australian geographic evidence and home/residential context; the strict tier also requires a labelled person linked to the address.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Mailing address

Detects populated Australian mailing addresses, including street delivery addresses, PO/GPO boxes, locked bags, and private bags. Enforcing tiers require mailing/correspondence context and Australian geography; the strict tier also requires a labelled recipient.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Home utility account addresses

Detects populated Australian residential utility service addresses. Enforcing tiers require utility service context, account or metering context, and Australian geography; the strict tier also requires a labelled account holder.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Employee withholding elections

Detects references to employee withholding elections in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Employer payroll tax filings

Detects references to employer payroll tax filings in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Employee tax forms

Detects references to employee tax forms in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Contractor tax forms

Detects references to contractor tax forms in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Wage garnishment orders

Detects references to wage garnishment orders in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Retirement contribution records

Detects references to retirement contribution records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Pension account identifiers

Detects references to pension account identifiers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Childcare benefit payroll claims

Detects references to childcare benefit payroll claims in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Tax authority correspondence

Detects references to tax authority correspondence in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Superannuation identifiers

Detects references to superannuation identifiers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Remittance instructions

Detects references to remittance instructions in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Wire transfer instructions

Detects references to wire transfer instructions in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Payment fraud investigation files

Detects references to payment fraud investigation files in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Credit bureau reports

Detects references to credit bureau reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Credit scores

Detects references to credit scores in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Debt collection records

Detects references to debt collection records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Insurance policy records

Detects references to insurance policy records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Underwriting decision rationales

Detects references to underwriting decision rationales in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Know-your-customer profiles

Detects references to know-your-customer profiles in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Anti-money-laundering alerts

Detects references to anti-money-laundering alerts in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Suspicious activity reports

Detects references to suspicious activity reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Beneficial ownership declarations

Detects references to beneficial ownership declarations in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Reinsurance contract terms

Detects references to reinsurance contract terms in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Supplier invoice records

Identifies documents containing references to supplier invoice records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Tax exemption certificates

Identifies documents containing references to tax exemption certificates in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Rebate agreement terms

Identifies documents containing references to rebate agreement terms in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Regulatory examination responses

Identifies Australian regulator-facing responses and submissions addressing examinations, supervisory or prudential reviews, inquiries, and findings, including matters involving APRA, ASIC, AUSTRAC, ACCC, OAIC, and Queensland regulators. Topic phrases are discovery-only; enforcement requires Australian authority context and substantive management-response evidence, while high confidence also requires a structured regulator matter reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701, QGISCF

Antitrust legal analyses

Identifies documents containing references to antitrust legal analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Breach notification draft communications

Identifies documents containing references to breach notification draft communications in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Corporate records under seal

Identifies documents containing references to corporate records under seal in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Patent draft claims

Identifies documents containing references to patent draft claims in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Provider identifier records

Identifies provider identifier records references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Financial aid applications

Identifies documents containing references to financial aid applications in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Grant peer review comments

Identifies Australian grant peer-review comments and assessment records containing substantive assessor observations, scores, or funding outcomes. Grant-review and application phrases are retained for discovery at 65; Australian funding context plus populated assessment fields raise confidence to 75, while a formal record reference and explicit funding outcome raise it to 85.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Customer complaint case files

Identifies documents containing references to customer complaint case files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Taxpayer case management files

Identifies documents containing references to taxpayer case management files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Welfare eligibility determinations

Identifies documents containing references to welfare eligibility determinations in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Unemployment benefit records

Identifies documents containing references to unemployment benefit records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Pension entitlement records

Identifies documents containing references to pension entitlement records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Business licensing applications

Identifies documents containing references to business licensing applications in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Lawful intercept transcripts

Identifies documents containing references to lawful intercept transcripts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

SCADA network diagrams

Identifies documents containing references to scada network diagrams in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Substation protection relay settings

Identifies documents containing references to substation protection relay settings in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Pipeline pressure and flow setpoints

Identifies documents containing references to pipeline pressure and flow setpoints in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Water treatment dosing formulas

Identifies substantive water-treatment dosing formulas and control values. Topic phrases are retained for discovery; enforcement requires a populated dose, concentration, feed rate, or process value, and high confidence also requires a treatment-plant asset, process, or control-tag reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Electric grid dispatch plans

Identifies documents containing references to electric grid dispatch plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Plant shutdown and startup procedures

Identifies documents containing references to plant shutdown and startup procedures in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Refinery process control setpoints

Identifies documents containing references to refinery process control setpoints in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Rail signaling configurations

Identifies documents containing references to rail signaling configurations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Air traffic operational procedures

Identifies documents containing references to air traffic operational procedures in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Telecom core network configurations

Identifies documents containing references to telecom core network configurations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Critical spare parts inventories

Identifies documents containing references to critical spare parts inventories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

OT cyber incident reports

Identifies documents containing references to ot cyber incident reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

CCTV coverage and blind spot analyses

Identifies documents containing references to cctv coverage and blind spot analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Data classification matrices

Identifies Australian government data-classification matrices that map information categories to classification levels and handling controls. Matrix topics are retained for discovery at 65; Australian PSPF or QGISCF context plus multiple schema fields raises confidence to 75, while a populated category-to-Australian-marking row raises it to 85.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Data protection impact assessments

Identifies documents containing references to data protection impact assessments in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Breach likelihood and impact assessments

Identifies documents containing references to breach likelihood and impact assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Privacy complaint investigations

Identifies documents containing references to privacy complaint investigations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Regulatory reporting draft responses

Identifies pre-submission draft responses, submissions, and reports prepared for Australian regulators, including APRA, ASIC, AUSTRAC, ACCC, OAIC, and Queensland regulators. Topic phrases are discovery-only; enforcement requires Australian authority context and substantive reporting content, while high confidence also requires a structured regulator matter or submission reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
au
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701, QGISCF

Politically exposed person assessment files

Identifies documents containing references to politically exposed person assessment files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

National emergency response plans

Identifies documents containing references to national emergency response plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Whistleblower protection case records

Identifies documents containing references to whistleblower protection case records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Sovereign debt issuance plans

Identifies documents containing references to sovereign debt issuance plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Australian Passport Number

Identifies candidate Australian passport numbers using a broad one- or two-letter prefix followed by seven digits. The regex does not validate an issued passport series; Australian travel-document and issuing-nation evidence are required for enforcement.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Unique Student Identifier

Detects Unique Student Identifier (USI) patterns. A 10-character alphanumeric code (uppercase letters and digits) mandatory since January 2023 for higher education in Australia. The Purview design inventories the broad bare shape at 65, enforces a labelled value in education context at 75, and reserves 85 for labelled values with authoritative USI/VET record context.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

VIC Driver Licence Number

Detects Victorian driver licence and learner permit numbers in the established eight-to-ten-digit shape. Enforceable tiers require an explicit licence-number label and Victorian context; the strict tier additionally requires VicRoads authority evidence.

Type
regex
Confidence
medium
Jurisdictions
au-vic
Regulations
Privacy Act 1988 (Cth), Privacy and Data Protection Act 2014 (Vic), Road Safety Act 1986 (Vic)
Frameworks
ISO 27001

WA Driver Licence Number

Detects Western Australian driver licence numbers in the established seven-digit shape. Enforceable tiers require an explicit driver-licence-number label and WA context; the strict tier additionally requires WA transport or Driver and Vehicle Services authority evidence.

Type
regex
Confidence
medium
Jurisdictions
au-wa
Regulations
Privacy Act 1988 (Cth), Road Traffic (Authorisation to Drive) Act 2008 (WA)
Frameworks
ISO 27001

Water Quality Data Reference

Detects references to water quality monitoring data, compliance reports, and environmental water testing results.

Type
keyword_list
Confidence
medium
Jurisdictions
au
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Working With Children Check Number (NSW / VIC / WA)

Detects Working With Children Check (WWCC) clearance numbers across Australian states. Covers the NSW structural format (WWC + 7 digits + check letter, e.g. WWC1234567E) and the labelled VIC / WA / generic forms where a WWCC or working-with-children phrase precedes a card or clearance number. The Queensland Blue Card is handled by a separate classifier.

Type
regex
Confidence
medium
Jurisdictions
au
Regulations
Child Protection (Working with Children) Act 2012 (NSW), HRIPA (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), Working with Children Act 2005 (Vic)
Frameworks
ISO 27001, ISO 27701

Azure App Service Deployment Password

Detects Azure App Service deployment passwords in configuration files and publish profiles. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Batch Shared Access Key

Detects Azure Batch account shared access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Bot Framework Secret Key

Detects Azure Bot Framework secret key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Bot Service App Secret

Detects Azure Bot Service application secret patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Cognitive Search API Key

Detects Azure Cognitive Search (AI Search) API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Cognitive Service Key

Detects Azure Cognitive Services subscription key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Container Registry Access Key

Detects Azure Container Registry (ACR) access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Cosmos DB Account Access Key

Detects Azure Cosmos DB account access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Databricks Personal Access Token

Detects Azure Databricks personal access token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure DevOps App Secret

Detects Azure DevOps application secret patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure DevOps Personal Access Token

Detects Azure DevOps personal access token (PAT) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Mixed
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure DocumentDB Auth Key

Detects Azure DocumentDB (now Cosmos DB) authentication key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Microsoft Entra Client Access Token

Detects Microsoft Entra (formerly Azure AD) client access token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Microsoft Entra Client Secret

Detects Microsoft Entra (formerly Azure AD) client secret patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Microsoft Entra User Credentials

Detects Microsoft Entra (formerly Azure AD) user credential patterns including username/password combinations targeting Microsoft login endpoints. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure EventGrid Access Key

Detects Azure Event Grid access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Function Master / API Key

Detects Azure Functions master key and API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure IAAS Database Connection String and Azure SQL Connection String

Detects Azure IaaS database and Azure SQL connection string patterns containing credentials. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Topic verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure IoT Connection String

Detects Azure IoT Hub connection string patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure IoT Shared Access Key

Detects Azure IoT Hub shared access key patterns outside of connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Logic App Shared Access Signature

Detects Azure Logic App shared access signature (SAS) URL patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Machine Learning Web Service API Key

Detects Azure Machine Learning web service API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Maps Subscription Key

Detects Azure Maps subscription key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Publish Setting Password

Detects Azure publish settings file password patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Redis Cache Connection String Password

Detects Azure Cache for Redis connection string password patterns extracted from connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Redis Cache Connection String

Detects Azure Cache for Redis connection string patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure SAS

Detects Azure Shared Access Signature (SAS) token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Service Bus Connection String

Detects Azure Service Bus connection string patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Service Bus Shared Access Signature

Detects Azure Service Bus Shared Access Signature (SAS) token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Shared Access Key / Web Hook Token

Detects Azure shared access key and webhook token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure SignalR Access Key

Detects Azure SignalR Service access key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure SQL Connection String

Detects Azure SQL Database connection string patterns specifically targeting the .database.windows.net domain. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Topic verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Storage Account Access Key

Detects Azure Storage account access key patterns in connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Storage Account Key (Generic)

Detects generic Azure Storage account key patterns including keys assigned to variables or configuration properties. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Storage Account Key

Detects Azure Storage account key patterns outside of full connection strings. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Mixed
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Storage Account Shared Access Signature for High Risk Resources

Detects Azure Storage Account Shared Access Signature (SAS) patterns for high-risk resources with write or delete permissions. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Storage Account Shared Access Signature

Detects Azure Storage Account Shared Access Signature (SAS) patterns for standard resources. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Subscription Management Certificate

Detects Azure subscription management certificate patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Bail Condition Document

Detects bail condition documents including bail undertakings, surety arrangements, and conditions imposed on accused persons under the Bail Act 1980 (Qld). These documents contain personal details of accused persons, reporting obligations, curfew details, exclusion zones, and no-contact conditions.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Bail Act 1980 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

Bank Account with Payment Authorisation Token

Detects government bank account details (BSB + account number) combined with payment authorisation credentials, approval tokens, or signing authorities that together enable the initiation of payments.

Type
regex
Confidence
medium
Detection quality
Error
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Belgium Driver's License Number

Detects Belgium driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
be, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Rijksregisternummer

Detects Rijksregisternummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, be
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Belgium Passport Number

Detects Belgium passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
be, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Belgium Physical Addresses

Detects Belgium Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
be, eu
Regulations
GDPR

Belgium Value Added Tax Number

Detects Belgium Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
be, eu
Regulations
GDPR

Bulgaria Driver's License Number

Detects Bulgaria driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
bg, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Bulgaria Passport Number

Detects Bulgaria passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
bg, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Bulgaria Physical Addresses

Detects Bulgaria Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
bg, eu
Regulations
GDPR

Единен граждански номер (ЕГН)

Detects Единен граждански номер (ЕГН) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, bg
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Brazil CNH Number

Detects Brazilian driver licence numbers (CNH - Carteira Nacional de Habilitação). The CNH register number is 11 digits. Structural detection alone is ambiguous with CPF length, so corroborative CNH keywords are required for reliable use.

Type
regex
Confidence
medium
Jurisdictions
br
Regulations
LGPD, CTB (Brazil)
Frameworks
ISO 27001, ISO 27701

CNPJ

Detects CNPJ patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
br
Regulations
LGPD
Frameworks
ISO 27001, ISO 27701

CPF

Detects CPF patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
br
Regulations
LGPD
Frameworks
ISO 27001, ISO 27701

Registro Geral

Detects Registro Geral patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
br
Regulations
LGPD
Frameworks
ISO 27001, ISO 27701

Brazil Physical Addresses

Detects Brazil Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
br
Regulations
LGPD

Brazil PIX Key

Detects Brazilian PIX keys in email, +55 mobile, or EVP UUID forms.

Type
regex
Confidence
medium
Jurisdictions
br
Regulations
LGPD, BCB PIX regulations
Frameworks
ISO 27001, ISO 27701

Canada Bank Account Number

Detects Canada Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
ca
Regulations
Law 25 (QC), PIPEDA
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Canada Business Number

Detects Canada Revenue Agency (CRA) Business Numbers (BN). The core BN is nine digits assigned to a business. Program accounts append a two-letter program identifier (RC, RM, RP, or RT) and a four-digit reference, for example 123456789RC0001 for a corporate income-tax account.

Type
regex
Confidence
medium
Jurisdictions
ca
Regulations
PIPEDA, Law 25 (QC), Excise Tax Act (CA)
Frameworks
ISO 27001, ISO 27701

Canada Driver's License Number

Detects Canada driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ca
Regulations
Law 25 (QC), PIPEDA
Frameworks
ISO 27001, ISO 27701

Canada Health Service Number

Detects Canada Health Service Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ca
Regulations
FIPPA, Law 25 (QC), PHIPA, PIPEDA
Frameworks
ISO 27001, ISO 27701, SOC 2

Canada Marking - Protected A/B/C + Classified

Detects Government of Canada protective markings under the Treasury Board Standard on Security Categorization (Appendix J of the Directive on Security Management): the Canada-distinctive "Protected" designations Protected A / Protected B / Protected C (information whose compromise could injure interests outside the national interest), and the classified levels Confidential / Secret / Top Secret (injury to the national interest). "Protected A/B/C" is unique to Canada and matched at high confidence in both title-case and ALL-CAPS renderings; the classified words are shared vocabulary with other nations and are matched only at lower, Canada-government-context-gated tiers. Rendering verified directly against the Treasury Board Standard on Security Categorization; matched case-sensitively.

Type
regex
Confidence
high
Jurisdictions
ca
Regulations
Directive on Security Management (Canada)
Frameworks
Policy on Government Security

Canada OHIP Number

Detects Ontario Health Insurance Plan (OHIP) numbers: 10 digits often grouped 4-3-3 with a two-letter version code.

Type
regex
Confidence
medium
Jurisdictions
ca
Regulations
PIPEDA, PHIPA (Ontario)
Frameworks
ISO 27001, ISO 27701

Canada Passport Number

Detects Canada passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ca
Regulations
Law 25 (QC), PIPEDA
Frameworks
ISO 27001, ISO 27701

Canada Personal Health Identification Number (PHIN)

Detects Canada Personal Health Identification Number (PHIN) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ca
Regulations
FIPPA, Law 25 (QC), PHIPA, PIPEDA
Frameworks
ISO 27001, ISO 27701, SOC 2

Canadian Phone Number

Detects North American Numbering Plan (NANP) telephone numbers in Canadian contexts: the domestic NPA-NXX-XXXX form (bracketed, hyphenated, dotted, spaced, or bare, with an optional leading trunk "1") and the international +1 NPA-NXX-XXXX form. Area-code (NPA) and exchange-code (NXX) groups are constrained to a leading digit of 2-9 with the N11 service-code shape (211/311/411/511/611/711/811/911) excluded from both groups, per NANPA's published format rules. This pattern is structurally identical to us-phone-number because NANP area codes are drawn from a single pool shared by the US, Canada, and Caribbean member territories — the digit sequence itself cannot distinguish a Canadian number from a US one. This is the sibling of us-phone-number; the two are differentiated by jurisdiction/regulation metadata and country-specific corroborative evidence keywords only, not by regex — see us-phone-number's description for the documented family convention.

Type
regex
Confidence
medium
Jurisdictions
ca
Regulations
PIPEDA, Law 25 (QC), Unsolicited Telecommunications Rules (CRTC)
Frameworks
ISO 27001, ISO 27701, SOC 2

Canada Physical Addresses

Detects Canada Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
ca
Regulations
PIPEDA

SIN

Detects SIN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
ca
Regulations
Law 25 (QC), PIPEDA
Frameworks
ISO 27001, ISO 27701

Cabinet Budget Review Committee Submission

Detects financial submissions to the QLD Cabinet Budget Review Committee (CBRC) containing agency funding bids, savings proposals, capital expenditure requests, and fiscal strategy options.

Type
document_marker
Confidence
high
Jurisdictions
au
Regulations
Corporations Act 2001 (Cth), Criminal Code 1899 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Cabinet Legal Briefing

Detects legal annexures to Cabinet submissions containing privileged legal analysis supporting Cabinet decision-making. These documents carry dual protection: Cabinet confidentiality (Westminster convention) and legal professional privilege. Disclosure breaches both simultaneously with no remediation possible.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Crime and Corruption Act 2001 (Qld), Criminal Code 1899 (Qld), Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Central Bank Monetary Policy Pre-Decision

Detects draft monetary policy decisions, interest rate recommendations, or central bank board deliberation papers before public announcement. Covers RBA board papers and Treasury analysis of expected RBA decisions.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Reserve Bank Act 1959 (Cth)
Frameworks
QGISCF

Switzerland Passport Number

Detects Swiss passport numbers issued by fedpol (Federal Office of Police). Passports of the 2003, 2006 and 2010 series carry an eight-character number consisting of one uppercase letter followed by seven digits (e.g. E1234567); the 2010 series always begins with the letter X. The letters O and I are never used, to avoid confusion with the digits 0 and 1. The 2022 series (the only series issued since October 2022) has no published fixed structure — fedpol deliberately keeps the numbering rules non-public — so 2022-series numbers may not match this shape. Only the documented 2010-and-earlier format is covered.

Type
regex
Confidence
medium
Jurisdictions
ch
Regulations
FADP (Switzerland), Identity Documents Act (Switzerland, SR 143.1)
Frameworks
ISO 27001, ISO 27701

Switzerland Physical Addresses

Detects Switzerland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
ch
Regulations
FADP (Switzerland)

AHV-Nummer

Detects AHV-Nummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
ch
Regulations
FADP (Switzerland)
Frameworks
ISO 27001, ISO 27701

Child Exploitation Investigation File

Detects documents containing child exploitation investigation case files including victim identification data, offender network intelligence, and investigative techniques used against CSAM distribution networks. QPS Task Force Argos is the primary Queensland unit. Disclosure re-victimises children and compromises active rescue operations.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Criminal Code 1899 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

Child Safety Investigation File

Detects child safety investigation case files containing child identifiers, harm notifications, investigation outcomes, child protection orders, and out-of-home care placements under the Child Protection Act 1999 (Qld). These files contain highly sensitive information about vulnerable children including substantiated abuse details — unauthorised disclosure endangers child safety and compromises ongoing investigations.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Child Protection Act 1999 (Qld), Human Rights Act 2019 (Qld), IPA 2009 (Qld)
Frameworks
QGISCF

RUT

Detects RUT patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
cl
Regulations
PDPL (CL)
Frameworks
ISO 27001, ISO 27701

Class Action Defence Strategy

Detects defence strategy documents for class action proceedings against the State or State entities. These documents reveal the State's vulnerability assessment and defence approach for claims potentially affecting thousands of claimants. Note: trainable classifier recommended for production using class action document structural features.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Civil Proceedings Act 2011 (Qld)
Frameworks
QGISCF

China Passport Number

Detects People's Republic of China passport numbers. The current ordinary (e-)passport uses an 'E' prefix followed by one letter (excluding I and O) and 7 digits, or 'E' plus 8 digits. Older series use a 'G' prefix plus 8 digits, and earlier passports used 'P', 'D' (diplomatic) or 'S' (service) prefixes plus 8 digits. The short, loosely structured format means corroborative keyword proximity is strongly recommended.

Type
regex
Confidence
medium
Jurisdictions
cn
Regulations
PIPL, GDPR
Frameworks
ISO 27001, ISO 27701

China Physical Addresses

Detects China Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
cn
Regulations
PIPL

Resident Id

Detects Resident Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
cn
Regulations
PIPL
Frameworks
ISO 27001, ISO 27701

China Unified Social Credit Code

Detects Mainland China Unified Social Credit Codes (统一社会信用代码) assigned to legal persons and other organisations. The code is 18 characters using a restricted alphabet (digits and selected letters excluding I, O, Z, S, V), with an embedded administrative division code in positions 3-8.

Type
regex
Confidence
medium
Jurisdictions
cn
Regulations
PIPL (China), Cybersecurity Law (China)
Frameworks
ISO 27001, ISO 27701

Cédula de Ciudadanía

Detects Cédula de Ciudadanía patterns. Detects this pattern using regex with corroborative keyword evidence.

Type
regex
Confidence
low
Detection quality
Mixed
Jurisdictions
co
Regulations
PDPL (CO)
Frameworks
ISO 27001, ISO 27701

Colombia Tax Identification Number

Detects Colombia Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
co
Regulations
Habeas Data Law (Colombia)

Commission of Inquiry Legal Submission

Detects draft legal submissions to Commissions of Inquiry established under the Commissions of Inquiry Act 1950 (Qld). Disclosure prejudices the State's participation and may breach statutory confidentiality.

Type
keyword_proximity
Confidence
low
Jurisdictions
au
Regulations
QGISCF, Commissions of Inquiry Act 1950 (Qld)

Community Corrections Order

Detects community-based corrections orders including probation orders, parole conditions, and community service orders issued under the Corrective Services Act 2006 (Qld). These documents contain offender details, supervision conditions, approved addresses, and compliance assessments by Queensland Corrective Services.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Corrective Services Act 2006 (Qld), Penalties and Sentences Act 1992 (Qld)
Frameworks
QGISCF

Confidential Human Source Identity

Detects documents containing the identities of police informants (confidential human sources) embedded within criminal organisations. Informant identity is the single most sensitive category of law enforcement information globally. Disclosure has historically resulted in murders and creates immediate lethal risk.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Confidential M&A Financial Model

Detects financial models for mergers, acquisitions, or divestments containing actual valuations, synergy estimates, deal structures, and price ranges. Disclosure constitutes insider information under securities law.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Corporations Act 2001 (Cth), Criminal Code 1899 (Qld)
Frameworks
QGISCF

Controlled Operation Authorisation

Detects controlled operation authorisations under PPRA 2000 (Qld) Part 5. Controlled operations involve officers in criminal activity under legal authority. Disclosure reveals officers and operational scope.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Crime and Corruption Act 2001 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

Coronial Finding Published

Detects published coronial findings and recommendations under the Coroners Act 2003 (Qld). Although coronial findings are public documents, they contain sensitive details about the circumstances and cause of death, manner of death, and identity of deceased persons. Government agencies handling these documents should classify them as SENSITIVE Legal due to the distressing nature of the content.

Type
keyword_proximity
Confidence
low
Jurisdictions
au
Regulations
Coroners Act 2003 (Qld)
Frameworks
QGISCF

Coronial Inquest Draft Submission

Detects draft government submissions to coronial inquests before filing. These submissions address deaths in government settings (custody, hospitals, child safety) and reveal the State's candid position on systemic failures before formal filing.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Coroners Act 2003 (Qld)
Frameworks
QGISCF

Coronial Investigation File (Pre-Findings)

Detects pre-publication coronial investigation files including evidence, witness statements, and draft findings. Published coronial findings are SENS_Law, not PROT_Law.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Coroners Act 2003 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

Corrective Services Intelligence Report

Detects documents containing prison intelligence reports including gang assessments, inmate risk ratings, informant identities within correctional facilities, and security threat group (STG) analyses. Disclosure endangers correctional staff, informant inmates, and undermines facility security.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Corrective Services Act 2006 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

Counter-Terrorism Assessment File

Detects documents containing terrorism threat assessments, persons of interest profiles, and counter-terrorism operational capabilities. Disclosure enables counter-surveillance by terrorist subjects and compromises national security monitoring. Includes JCTT (Joint Counter Terrorism Team) and QPS Security and Counter-Terrorism Group documents.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
QGISCF

Court Filing Reference

Detects court filing references from Queensland courts (Magistrates Court, District Court, Supreme Court) containing proceeding numbers, party names, and registry details. Unpublished filings contain personal details of parties, allegations, and evidence that are not yet in the public domain.

Type
keyword_proximity
Confidence
low
Jurisdictions
au
Regulations
Criminal Code 1899 (Qld), UCPR 1999 (Qld)
Frameworks
QGISCF

Covert Operative Identity Record

Detects documents containing the true identities of undercover law enforcement officers deployed within criminal organisations. These records link assumed identities (legends) to real identities and are among the most life-critical records in law enforcement. Disclosure directly endangers the lives of deployed operatives and destroys years of infiltration work.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
Frameworks
QGISCF

Cross-Border Law Enforcement Intel Exchange

Detects documents containing intelligence shared between Australian and international law enforcement agencies under formal exchange agreements. Disclosure damages international trust relationships, violates originator control (ORCON) principles, and compromises joint operations.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Mutual Assistance Act 1987 (Cth)
Frameworks
QGISCF

Crown Solicitor Legal Opinion

Detects privileged legal opinions issued by the Queensland Crown Solicitor or Office of the Crown Solicitor. These documents constitute the highest level of legal professional privilege in Queensland Government and their disclosure permanently waives privilege under Evidence Act 1977 (Qld) s.14.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Cyprus Driver's License Number

Detects Cyprus driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
cy, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Δελτίο Ταυτότητας

Detects Δελτίο Ταυτότητας patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, cy
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Cyprus Passport Number

Detects Cyprus passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
cy, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Cyprus Physical Addresses

Detects Cyprus Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
cy, eu
Regulations
GDPR

Cyprus Tax Identification Number

Detects Cyprus Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
cy, eu
Regulations
gdpr

Cybercrime Technical Evidence Package

Detects cybercrime investigation technical evidence including digital forensics, malware analysis, cryptocurrency tracing, dark web investigations, and covert online personas. Disclosure enables cybercriminals to develop countermeasures.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code 1899 (Qld)
Frameworks
QGISCF

Czech Driver's License Number

Detects Czech driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
cz, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Czech Republic Passport Number

Detects Czech Republic passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
cz, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Rodné číslo

Detects Rodné číslo patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, cz
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Czech Republic Physical Addresses

Detects Czech Republic Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
cz, eu
Regulations
GDPR

German Driver's License Number

Detects German driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
de, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Personalausweis

Detects Personalausweis patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, de
Regulations
GDPR

German Passport Number

Detects German passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
de, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

German Phone Number

Detects German mobile telephone numbers per the Bundesnetzagentur's (BNetzA) Nummernplan für Mobile Dienste: the (0)15, (0)16, and (0)17 mobile sub-ranges, in both the domestic (leading trunk "0") and international (+49, leading 0 dropped) forms. BNetzA's own published length table shows the national significant number (the digits after the leading 0, including the "1" of "15/16/17") is 10 digits for most 016x/017x allocations and 11 digits for the 015x range and the 1609/176 exceptions — every quantifier below is bounded to this documented 10-11 digit span rather than left open-ended. The 10-11 bound is applied as a single envelope across all three ranges (the regex cannot pin 015x to exactly 11 and non-exception 016x/017x to exactly 10 without per-sub-range length alternation), so a 10-digit 015x or an 11-digit non-exception 016x/017x rendering is accepted — a deliberate, documented over-acceptance kept small by the envelope itself. Beyond the DIN 5008:2020 space-grouped form, two widespread legacy DIN 5008 renderings of the mobile prefix are covered: the slash form "0171/3920045" and the parenthesised form "(0171) 3920045" — both deprecated by the current DIN 5008 (which prescribes plain space grouping) but still common in signatures and letterheads — plus the "+49 (0)171 ..." letterhead form (nonstandard per ITU-T E.123, but ubiquitous). Geographic (Ortsnetz) landline numbers are intentionally out of scope (so the landline renderings "030/12345678" and "(030) 12345678" are likewise not matched): BNetzA states area codes run 2-5 digits and new allocations are capped at 11 significant digits (10 for the Berlin/Hamburg/Frankfurt/Munich two-digit-code exception), but does not publish a verified minimum length for the existing stock of legacy numbers, so a low-end bound would be invented rather than sourced — mirroring in-phone-number's decision to scope out India's similarly under-specified STD/landline numbers.

Type
regex
Confidence
medium
Jurisdictions
de
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

Germany Physical Addresses

Detects Germany Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
de, eu
Regulations
GDPR

Steuer Id

Detects Steuer Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, de
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Germany Value Added Tax Number

Detects Germany Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
de, eu
Regulations
GDPR

Denmark Driver's License Number

Detects Denmark driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
dk, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Denmark Passport Number

Detects Denmark passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
dk, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

CPR-nummer

Detects CPR-nummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, dk
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Denmark Physical Addresses

Detects Denmark Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
dk, eu
Regulations
GDPR

Domestic Violence Order Application

Detects domestic violence order applications and conditions under the Domestic and Family Violence Protection Act 2012 (Qld). These documents contain details of aggrieved persons, respondent details, allegations of domestic violence, ouster conditions, and protection order terms. Disclosure could endanger the aggrieved person.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
DFV Protection Act 2012 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

Donor Conception Record

Detects donor conception records including donor identity information, recipient details, offspring matching, and assisted reproductive technology treatment records under the Status of Children Act 1978 (Qld). These records contain the most sensitive reproductive information — donor identities, recipient medical details, and biological parentage links. Unauthorised disclosure can permanently alter family relationships and breach legal confidentiality protections.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), Status of Children Act 1978 (Qld)
Frameworks
QGISCF

Drug Trafficking Investigation Intelligence

Detects documents containing drug trafficking investigation intelligence including targets, supply chain mapping, precursor chemical tracking, clandestine laboratory intelligence, and cross-border interdiction plans. QPS Drug and Serious Crime Group is the primary unit. Disclosure enables traffickers to destroy evidence, alter supply routes, and eliminate informants.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Drugs Misuse Act 1986 (Qld)
Frameworks
QGISCF

Cédula de Identidad

Detects Cédula de Identidad patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ec
Regulations
LOPDP (EC)
Frameworks
ISO 27001, ISO 27701

Estonia Driver's License Number

Detects Estonia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ee, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Estonia Passport Number

Detects Estonia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ee, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Isikukood

Detects Isikukood patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
eu, ee
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Estonia Physical Addresses

Detects Estonia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
ee, eu
Regulations
GDPR

DNI

Detects DNI patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, es
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Spain Driver's License Number

Detects Spain driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
es, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

NIE

Detects NIE patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, es
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Spain Passport Number

Detects Spain passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
es, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Spanish Phone Number

Detects Spanish national telephone numbers per Spain's closed 9-digit numbering plan (Plan Nacional de Numeración Telefónica, administered under CNMC oversight): mobile numbers (segment N=6 in full, plus N=7 partially opened for mobile use in the 71/72/73/74 sub-ranges by the SETSI Resolución de 12 de marzo de 2010, BOE-A-2010-5251; the first 7-prefixed mobile numbers entered service from late 2010/2011 once the then-regulator CMT assigned the new ranges to operators) and geographic numbers (leading 8 or 9, with the second digit constrained to never be 0 — a constraint that incidentally excludes the 900/901/902/905 toll-free and premium-rate service ranges, whose second digit is 0). Spain has no domestic trunk prefix, so the +34 international form carries the same 9 significant digits as the domestic form, just with the +34 prefix in place of nothing.

Type
regex
Confidence
medium
Jurisdictions
es
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

Spain Physical Addresses

Detects Spain Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
es, eu
Regulations
GDPR

Número de la Seguridad Social

Detects Número de la Seguridad Social patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, es
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Spain Tax Identification Number

Detects Spain Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
es, eu
Regulations
GDPR

EU AI Act Declaration of Conformity (High-Risk AI System)

Detects EU declarations of conformity for high-risk AI systems under Article 47 and Annex V of the EU AI Act (Regulation (EU) 2024/1689). By drawing up the declaration the provider assumes responsibility for compliance; pre-signature drafts and the surrounding conformity-assessment correspondence reveal the provider's compliance posture, notified-body findings, and certificate details before market placement.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Regulation (EU) 2024/1689 (AI Act)
Frameworks
ISO/IEC 42001, ISO 27001

EU AI Act Fundamental Rights Impact Assessment (FRIA)

Detects deployer-side fundamental rights impact assessments (FRIA) under Article 27 of the EU AI Act (Regulation (EU) 2024/1689). A FRIA is performed before deploying certain high-risk AI systems by public bodies, private providers of public services, and deployers of credit-scoring and life/health-insurance pricing systems (Annex III points 5(b) and (c)). Completed FRIAs contain candid assessments of risks of harm to specific categories of natural persons and are sensitive before notification and remediation.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Regulation (EU) 2024/1689 (AI Act)
Frameworks
ISO/IEC 42001, ISO 27001

EU AI Act GPAI Model Documentation

Detects general-purpose AI (GPAI) model provider documentation under Article 53 of the EU AI Act (Regulation (EU) 2024/1689): Annex XI technical documentation for the AI Office, Annex XII information packs for downstream providers, the Article 53(1)(d) public summary of training content, and Article 55 systemic-risk evaluation material (adversarial testing / red-teaming reports). Pre-publication drafts reveal model internals, training-data provenance, compute and energy figures, and systemic-risk findings.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Regulation (EU) 2024/1689 (AI Act)
Frameworks
ISO/IEC 42001, ISO 27001

EU AI Act Technical Documentation (High-Risk AI System)

Detects Article 11 / Annex IV technical documentation for high-risk AI systems under the EU AI Act (Regulation (EU) 2024/1689). This documentation must demonstrate compliance of the high-risk AI system before placing on the market and contains commercially sensitive material — system architecture, design specifications, training-data datasheets, risk management findings, and known limitations — whose uncontrolled disclosure exposes trade secrets and the provider's compliance posture.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Regulation (EU) 2024/1689 (AI Act)
Frameworks
ISO/IEC 42001, ISO 27001

European Debit Card Number

Detects European debit and credit card numbers for Visa, Mastercard, and American Express networks. The pattern matches 13- to 16-digit card numbers based on the leading digits assigned to each network by the ISO/IEC 7812 standard. This is commonly used for PCI-DSS compliance scanning across EU-regulated financial data.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
eu
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

EU DORA ICT Risk Management Framework

Detects DORA Article 6 ICT risk management framework documentation and the digital operational resilience strategy of financial entities — board-approved framework documents, risk tolerance statements, and internal audit reviews of the framework. These documents describe the entity's defensive architecture, control gaps, and risk appetite; disclosure hands attackers a map of weaknesses.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Regulation (EU) 2022/2554 (DORA)
Frameworks
ISO 27001

EU DORA Major ICT-Related Incident Report

Detects DORA Article 19 major ICT-related incident reports — the initial notification, intermediate report, and final report submitted to the competent authority under Delegated Regulation (EU) 2025/301 and Implementing Regulation (EU) 2025/302 — and voluntary notifications of significant cyber threats. These reports detail live vulnerabilities, affected services, and root causes; premature disclosure aids attackers and can move markets.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Regulation (EU) 2022/2554 (DORA), Delegated Regulation (EU) 2025/301, Implementing Regulation (EU) 2025/302
Frameworks
ISO 27001

EU DORA Register of Information

Detects extracts and working copies of the DORA Article 28(3) register of information on contractual arrangements with ICT third-party service providers, including the ESAs' Implementing Regulation (EU) 2024/2956 template content (contractual arrangement reference numbers, provider LEIs, ICT service supply chain, critical or important function flags). The register maps a financial entity's entire ICT outsourcing estate and its concentration risk; disclosure exposes supplier dependencies and attack surface.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Regulation (EU) 2022/2554 (DORA), Implementing Regulation (EU) 2024/2956
Frameworks
ISO 27001

EU Driver's License Number

Detects EU driver's license number patterns across all EU member states. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
eu
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701

International Bank Account Number (IBAN)

Detects International Bank Account Numbers (IBANs) used across European and global banking systems. IBANs consist of a two-letter country code, two check digits, and up to 30 alphanumeric characters representing the domestic bank account number. This pattern matches IBANs with or without space or hyphen delimiters between digit groups.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
eu
Regulations
GDPR, PSD2
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

EU Marking - RESTREINT UE/EU RESTRICTED (EUCI ladder)

Detects European Union Classified Information (EUCI) protective markings as defined in Article 2(2) of Council Decision 2013/488/EU: the four bilingual French/English classification levels rendered together as a single marking — RESTREINT UE/EU RESTRICTED, CONFIDENTIEL UE/EU CONFIDENTIAL, SECRET UE/EU SECRET and TRÈS SECRET UE/EU TOP SECRET (the slash carries no surrounding spaces and TRÈS carries a grave accent, per the primary source). Named historically for RESTREINT but scopes the full EUCI ladder. The single-language French components (RESTREINT UE, CONFIDENTIEL UE, SECRET UE, TRÈS SECRET UE) are matched at a lower tier. Marking syntax verified directly against the Council Decision text; matched case-sensitively.

Type
regex
Confidence
high
Jurisdictions
eu
Regulations
Council Decision 2013/488/EU
Frameworks
EUCI

EU National Identification Number

Detects references to EU National Identification Number using keyword matching. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
eu
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701

EU NIS2 Cybersecurity Risk-Management Measures

Detects NIS2 Article 21 cybersecurity risk-management measures documentation from essential and important entities — gap assessments, board approval papers, and the policies implementing the Article 21(2)(a)-(j) measures (incident handling, business continuity, supply chain security, cyber hygiene, cryptography, access control, multi-factor authentication). These documents catalogue an entity's security posture and unremediated gaps.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Directive (EU) 2022/2555 (NIS2)
Frameworks
ISO 27001

EU NIS2 Significant Incident Notification

Detects NIS2 Article 23 significant-incident notifications from essential and important entities — the 24-hour early warning, 72-hour incident notification, intermediate report, final report, and progress report submitted to the CSIRT or competent authority. These filings contain live compromise details, indicators of compromise, and impact assessments; disclosure aids attackers and breaches supervisory confidentiality.

Type
keyword_proximity
Confidence
medium
Jurisdictions
eu
Regulations
Directive (EU) 2022/2555 (NIS2)
Frameworks
ISO 27001

EU Passport Number

Detects EU passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation. This is a broad, multi-country SIT that aggregates passport number detection across EU member states.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
eu
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701

EU Social Security Number (SSN) or Equivalent ID

Detects references to EU Social Security Number (SSN) or Equivalent ID using keyword matching. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
eu
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701

EU Tax Identification Number (TIN)

Detects EU Tax Identification Number (TIN) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. EU TIN formats vary by member state; this keyword list provides tax-related terminology for supplementary matching across EU jurisdictions.

Type
keyword_list
Confidence
low
Jurisdictions
eu
Regulations
GDPR

EU VAT Identification Number - All Member States

Detects EU VAT identification numbers for all 27 member states in a single consolidated pattern, built branch-by-branch from the per-country structures published in the European Commission VIES FAQ (Q11). Covers the Greek quirk (Greece prefixes with EL, not GR) and Northern Ireland's XI prefix, which remains checkable in VIES for goods traders under the Windsor Framework — XI is included with the UK 9-digit, 12-digit and GD/HA government/health-authority forms; plain GB numbers are NOT included because Great Britain left the VIES scheme after Brexit. This pattern is a superset alongside the existing per-country detectors (at/be/de/fr/hu/it-vat-number), which stay untouched for deployed-GUID stability — the same document may fire both, following the global-iban / eu-iban precedent.

Type
regex
Confidence
high
Jurisdictions
eu
Regulations
GDPR, VAT Directive 2006/112/EC
Frameworks
ISO 27001, ISO 27701, SOC 2

Finland Driver's License Number

Detects Finland driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
fi, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Finland European Health Insurance Number

Detects Finland European Health Insurance Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
fi, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

Henkilötunnus (HETU)

Detects Henkilötunnus (HETU) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, fi
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Finland Passport Number

Detects Finland passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
fi, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Finland Physical Addresses

Detects Finland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
fi, eu
Regulations
GDPR

Forensic Evidence and Chain-of-Custody Records

Detects forensic evidence and chain-of-custody records for active criminal or security investigations, including exhibit registers, DNA/fingerprint/ballistics results, custody handovers, and formal chain-of-custody documentation.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

France Driver's License Number

Detects France driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
fr, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

France Health Insurance Number

Detects France Health Insurance Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
fr, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

Carte Nationale d'Identité

Detects Carte Nationale d'Identité patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, fr
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

NIR Insee

Detects NIR Insee patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, fr
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

France Passport Number

Detects France passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
fr, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

French Phone Number

Detects French national telephone numbers per ARCEP's numbering plan: 10-digit numbers in the "0X XX XX XX XX" form covering geographic (01-05), mobile/personal (06-07), and polyvalent (09) leading digits, plus the +33 international form (10-digit domestic number with the leading 0 dropped, per ARCEP convention), including the widespread "+33 (0)6 39 98 45 67" letterhead rendering (a common-but-nonstandard practice — ITU-T E.123 advises against the parenthesised trunk digit in international notation, but it is ubiquitous on French letterheads and email signatures, so it is matched for detection purposes). The 09 polyvalent range is in scope because it is predominantly personal PII in practice: 09 is the standard residential VoIP home-line range, auto-issued with consumer internet boxes to millions of French households; only the small 0937-0939 sub-range carries ARCEP's newer "technical platform" category (app-to-driver ephemeral numbers and similar). Numbers beginning 08 (value-added services) remain intentionally out of scope — organizational/service numbers rather than personal PII, mirroring how uk-phone-number scopes out non-geographic service ranges.

Type
regex
Confidence
medium
Jurisdictions
fr
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

France Physical Addresses

Detects France Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
fr, eu
Regulations
GDPR

France Tax Identification Number (numéro SPI.)

Detects France Tax Identification Number (numéro SPI.) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
fr, eu
Regulations
GDPR

France Value Added Tax Number

Detects France Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
fr, eu
Regulations
GDPR

Gender Reassignment Medical Record

Detects medical records related to gender transition including hormone therapy prescriptions, surgical records, gender identity assessments, change of sex descriptor applications, and recognised sex certificates under Queensland law. These records reveal deeply personal information about gender identity that is subject to anti-discrimination protections — disclosure can cause severe harm including discrimination, harassment, and violence.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Anti-Discrimination Act 1991 (Qld), Births Deaths Marriages Act 2003 (Qld), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
QGISCF

Genetic Test Results with Patient Identifiers

Detects documents containing genetic or genomic test results linked to identifiable patients, including pathogenic variant findings, hereditary risk assessments, and pharmacogenomic reports. Genetic data reveals predisposition to diseases, carrier status, and family lineage — disclosure enables genetic discrimination in insurance, employment, and relationships.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Anti-Discrimination Act 1991 (Qld), Health Records Act 2001 (Vic), Privacy Act 1988 (Cth)
Frameworks
QGISCF

Greenland Physical Addresses

Detects Greenland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
gl
Regulations
Data Protection Act (Greenland)

Mobile Advertising ID (IDFA / GAID / AAID)

Detects mobile advertising identifiers - Apple's IDFA and Google's Advertising ID (GAID, also called AAID) - when they appear labelled with an advertising-ID keyword. These IDs are UUIDs in the canonical 8-4-4-4-12 hexadecimal form. Although resettable, advertising IDs are persistent cross-app device identifiers treated as personal data under GDPR and CCPA/CPRA, and their disclosure enables cross-context tracking and re-identification.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR, CCPA/CPRA
Frameworks
ISO 27001, ISO 27701

AHPRA Registration Number

Detects Australian Health Practitioner Regulation Agency (AHPRA) registration numbers used to identify registered health practitioners across 16 professions.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

AI Training Data Reference

Detects references to AI training data, model datasets, and data provenance documentation in Australian contexts.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, NIST CSF, PCI-DSS

All Credential Types

Detects documents containing credential-related terminology. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based bundled detector that aggregates multiple credential SITs. This keyword-based version flags documents that may contain credentials for further review.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

All Full Names

Catalogue reference for the Microsoft Purview built-in All Full Names named-entity SIT. This YAML-only record supplies supplementary name-field vocabulary for registry search and testing; it does not reproduce Microsoft's opaque name-recognition resources.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
CCPA/CPRA, GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

All Medical Terms And Conditions

Detects All Medical Terms And Conditions patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

All Physical Addresses

Catalogue reference for the Microsoft Purview built-in All Physical Addresses bundled named-entity SIT, which contains country and region physical-address SITs including Australia physical addresses. This YAML-only record supplies supplementary address vocabulary for registry search and testing; it does not reproduce Microsoft's opaque named-entity resources and is not a custom XML clone.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
CCPA/CPRA, GDPR

Anthropic API Key

Detects Anthropic (Claude) API keys. Standard keys use the sk-ant-api03- prefix followed by a long base64url body ending in AA; admin keys use sk-ant-admin01-. A leaked key grants billed access to the Anthropic API and any connected data.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

ASP.NET Machine Key

Detects ASP.NET Machine Key patterns in configuration files. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Atlassian API Token

Detects Atlassian API tokens (ATATT3 prefix), used for Jira, Confluence and other Atlassian Cloud REST APIs. A leaked token grants the associated user's access to projects, issues, wiki content and attachments.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Auth0 Token

Detects Auth0 client secrets. Auth0 issues an unprefixed 64-character base64url-style client secret, indistinguishable from other long random strings, so this pattern requires an adjacent Auth0 label plus an assignment separator to structurally qualify a match. A leaked client secret lets an attacker mint tokens as the application and impersonate it against every API it is authorized for.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

AWS Access Key

Detects AWS Access Key patterns.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

AWS Secret Key

Detects AWS Secret Key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Service Bus Connection String

Detects Azure Service Bus Connection String patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR

Azure Storage Connection String

Detects Azure Storage Connection String patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Azure Storage Key

Detects Azure Storage Key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Bearer

Detects JWT-shaped values presented with the Bearer authentication scheme. A bare scheme/value pair is discovery-only; an Authorization header enforces at medium confidence and a complete HTTP request or response context reaches high.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Binance API Key

Detects Binance API keys, which are 64-character case-sensitive alphanumeric strings with no distinctive prefix. Because a bare 64-char alphanumeric token is generic (it collides with any random token of that length), this pattern is context-gated: it requires a nearby Binance label and an assignment (= or :) before the value. A leaked key grants API access to the account (trading and, if enabled, withdrawal).

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Biometric Data Reference

Detects references to biometric data including fingerprints, facial recognition, iris scans, and voiceprints in Australian documents.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Encoded Biometric Template

Detects encoded biometric template artifacts rather than the word "fingerprint". Matches the ISO/IEC 19794 family modality magic markers (FMR\0 finger minutiae, FIR\0 finger image, FAC\0 face, IIR\0 iris — also the ANSI/INCITS 378 FMR header) and base64 blobs explicitly labelled as a biometric / fingerprint / iris / face template. Real biometric exfiltration moves as encoded templates, not plaintext.

Type
regex
Confidence
high
Jurisdictions
global, eu
Regulations
GDPR, CCPA/CPRA
Frameworks
ISO 27001, NIST CSF, SOC 2

BIP-39 Crypto Wallet Seed Phrase

Detects a BIP-39 mnemonic (crypto wallet recovery / seed phrase): a run of 11-24 space-separated lowercase words. Because the full 2048-word BIP-39 list cannot be embedded in a single regex, detection fires either when the word run is explicitly labelled as a seed/mnemonic/recovery phrase, or when the run contains one of a set of distinctive BIP-39 anchor words. A leaked seed phrase grants full, irreversible control of the wallet's funds.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Date of Birth

Detects date-of-birth references across common date formats (numeric slash/dot/hyphen, written month, ISO) when birth-record labels or personal-record context are present. Covers Australian and global document styles; business dates (invoice, due, expiry) and template samples are suppressed.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Bitcoin Address

Detects Bitcoin payment address candidates in both Bech32 (bc1…) and legacy Base58 (1…/3…) shapes. Checksums are not validated (Purview custom SITs lack Bech32/Base58Check functions), so matches are structural candidates and require Bitcoin/transfer context at enforce tiers.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
AML/CTF Act (Cth), PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Blood Test Terms

Detects Blood Test Terms patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

Board Paper

Detects board papers, board memoranda, and governance documents prepared for board of directors consideration.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Braintree Access Token

Detects Braintree (PayPal) OAuth access tokens, which use a distinctive literal dollar-delimited structure: access_token$<environment>$<merchant-id>$<token>. A leaked token allows payment processing and transaction-history access on the connected merchant's behalf.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Brand Medication Names

Detects Brand Medication Names patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

Budget/Forecast Document

Detects budget proposals, financial forecasts, and expenditure planning documents.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Cabinet Submission

Identifies substantive Australian federal and state Cabinet submissions, memoranda, and approval papers. Topic phrases are retained for discovery; enforcement requires purpose, recommendation, financial, consultation, implementation, risk, regulatory, or decision-sought sections, and high confidence also requires a formal Cabinet marking, minute, decision, or submission identifier.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code 1899 (Qld), IPA 2009 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Card Verification Value (Labelled)

Detects a labelled card verification value: a CVV / CVV2 / CVC / CVC2 / CID / CSC keyword (or the spelled-out "card verification value/code" / "card security code") immediately followed by a 3 or 4 digit value. The CVV is sensitive authentication data that PCI DSS 4.0 Requirement 3.3.1 prohibits storing after authorization.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
PCI-DSS
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Cardano Address

Detects Cardano Shelley-era payment addresses: bech32-encoded with the mainnet human-readable prefix "addr1" (CIP-19 / CIP-5). The bech32 body varies with address type — enterprise (payment only) ~53 body chars, base (payment + stake) ~98 body chars, pointer in between — so the total ranges roughly 58-103 characters. The distinctive "addr1" prefix plus a long bech32 body is strong structure, gated at 85. Legacy Byron base58 (Ae2.../DdzFF...) and reward "stake1" addresses are not implemented (see report). Prefix/lengths verified against the CIP-19 test vectors.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
FATF Recommendations, AML/CTF Act (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Children's Data Reference

Detects references to children's personal data requiring heightened protection under Australian privacy law.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

CircleCI Personal Access Token

Detects CircleCI personal access tokens (CCIPAT_ prefix). These tokens authenticate to the CircleCI API and can read/modify pipelines, contexts and project settings; a leak enables CI/CD compromise.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Client Secret / Api Key

Detects documents containing client secret and API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad bundled detector. This keyword-based version flags documents that may contain client secrets or API keys for further review.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Cloudflare API Token

Detects Cloudflare API tokens - 40-character tokens that authenticate to the Cloudflare API. Because the raw token has no distinctive prefix, this pattern gates on nearby Cloudflare context to keep false positives low.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Cohere API Key

Detects Cohere API keys. Cohere issues an opaque 40-character alphanumeric token with no distinctive vendor prefix, so this pattern requires an adjacent Cohere label (cohere / CO_API_KEY / COHERE_API_KEY) to structurally qualify a match.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Coinbase API Key

Detects Coinbase Developer Platform (CDP) API key names, which use the distinctive resource-path form organizations/{org-uuid}/apiKeys/{key-uuid}. This key name is paired with an EC/ECDSA (or Ed25519) signing secret and is used to mint ES256 JWTs for the Coinbase API. A leaked CDP key can grant programmatic access to accounts, trading and funds. The associated EC PRIVATE KEY PEM secret is detected separately by global-ec-private.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Commercial Lease Agreement

Detects commercial lease agreements containing premises details, rental terms, and tenant obligations.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Control Deficiency Finding

Detects control deficiency findings from internal audits and compliance assessments.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, NIST CSF, PCI-DSS

Credential Combolist / Stealer-Log Line

Detects credential combolist / infostealer-log lines: email:password pairs and host-or-url:user:pass triples, the format in which stolen credentials are aggregated and traded after info-stealer infections. These dumps fuel credential stuffing and account-takeover attacks. A lone email/password candidate is discovery-only; service-bound triples and multi-row dump structure support enforcement.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Datadog API Key

Detects Datadog API keys, which are 32 hexadecimal characters with no fixed prefix. Because a bare 32-hex string is generic, this pattern requires a nearby Datadog label to confirm the match. A leaked key grants metric, log and event ingestion access.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

DigitalOcean Personal Access Token

Detects DigitalOcean personal access tokens (dop_v1_ prefix). These tokens authenticate to the DigitalOcean API and can manage droplets, databases, DNS and billing; a leak enables full account control.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Direct Debit Request (DDR/BECS)

Detects direct debit requests, BECS authorizations, and recurring payment arrangements under Australian banking standards.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Disaster Recovery Plans and Runbooks

Detects disaster recovery plans and operational recovery runbooks, including RTO/RPO targets, recovery procedures, failover steps, service restoration sequences, and infrastructure dependency detail used for continuity and incident recovery.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2

Discord Bot Token

Detects Discord bot tokens: three dot-separated base64url segments where the first segment is the bot's numeric snowflake ID base64-encoded (always starting M, N, or O because it encodes an ASCII digit), the second is a 6-character timestamp, and the third is an HMAC of 27 to 38 characters. A leaked bot token grants full control of the bot account, including reading every channel the bot can see and sending messages as the bot.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Diseases

Detects Diseases patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

DISP/Defence Industry Marker

Detects references to Defence Industry Security Program (DISP) membership and defence industry security markers in Australian documents.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Defence Act 1903 (Cth), Defence Trade Controls Act 2012 (Cth)
Frameworks
QGISCF

Docker Hub Personal Access Token

Detects Docker Hub personal access tokens (dckr_pat_ prefix). These tokens authenticate to Docker Hub and can pull/push images; a leak enables image tampering and supply-chain compromise.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Dogecoin Address

Detects Dogecoin mainnet addresses: Base58Check encoded, 34 characters long. Pay-to-Public-Key-Hash (P2PKH) addresses use version byte 0x1E and start with "D"; Pay-to-Script-Hash (P2SH) addresses use version byte 0x16 (22) and start with "A" (leading "9" is also possible for that version byte). A single leading letter is weak structure, so detection is context-gated. Prefix/version/length verified against libdogecoin and Dogecoin address-type docs.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
FATF Recommendations, AML/CTF Act (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

DVA File Number

Detects Department of Veterans' Affairs (DVA) file numbers used to identify Australian veterans and eligible dependants for health and support services.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

EC Private Key Header

Detects SEC1 elliptic-curve private-key armor. The BEGIN marker is discovery-only, a SEC1-like Base64 body supports medium confidence, and a complete container with curve or signing context reaches high confidence.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Elasticsearch URI with Credentials

Detects Elasticsearch URI with Credentials patterns.

Type
regex
Confidence
high
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Electronic Mail Address

Identifies electronic mail addresses in RFC-compatible local-part@domain.tld format. Requires valid top-level domain of 2+ characters. Uses word-boundary anchoring distinct from substring matching.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
global
Regulations
AML/CTF Act (Cth), GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Email Address

Detects email addresses in local-part@domain.tld form using a pragmatic RFC 5322 / WHATWG HTML Living Standard subset: bounded local-part and domain-label quantifiers, not the full RFC 5322 address-list grammar (no quoted-string local parts, no comments, no domain literals). Note one deliberate divergence from the WHATWG "valid e-mail address" definition: WHATWG accepts a single-label (dotless) domain such as user@localhost, whereas this pattern requires at least one dot-separated label after the host name — dotless domains are effectively intranet-only values and matching them would sharply raise false positives on code and asset tokens, so this is a subset of WHATWG on that axis, not an exact implementation. This is a genuine value-format identifier, distinct from the existing global-top500-044/045 concept patterns, which only match topic phrases such as "personal email" or "work email" and do not extract an actual address value.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR, CCPA/CPRA
Frameworks
ISO 27001, ISO 27701, SOC 2

Employment/HR Sensitive Data

Detects references to sensitive employment and human resources data including performance reviews, disciplinary actions, and workplace investigations.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)
Frameworks
ISO 27001, ISO 27701

Ethereum Address

Detects Ethereum Address patterns.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
FATF Recommendations
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

GCP Api Key

Detects GCP Api Key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

GCP Service Account JSON Key

Detects GCP service-account JSON key files, distinguishing bare type=service_account record markers (discovery only) from complete keys whose object also carries an escaped PEM private_key and a .iam.gserviceaccount.com client_email (enforcing), with project_id/private_key_id as additional high-confidence evidence.

Type
regex
Confidence
low
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

General Password

Detects general password patterns in documents and configuration files. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based detector. This keyword-based version flags documents that may contain passwords for further review.

Type
regex
Confidence
low
Detection quality
Mixed
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

General Symmetric Key

Detects general symmetric encryption key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based detector. This keyword-based version flags documents that may contain symmetric keys for further review.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Generic Database Credentials in URL

Detects database connection URLs with embedded user:password@host credentials, restricted to database schemes (mongodb/mongodb+srv, postgres/postgresql, mysql, redis/rediss, mssql/sqlserver, oracle, jdbc). Placeholder passwords and localhost/example hosts are rejected; non-database credential URLs (AMQP, LDAP, FTP) belong to a separate service-URL credential classifier.

Type
regex
Confidence
low
Detection quality
Partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Generic Medication Names

Detects Generic Medication Names patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

GitHub Fine-Grained PAT

Detects GitHub Fine-Grained PAT patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Github Pat

Detects Github Pat patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

GitLab Deploy Token

Detects GitLab deploy tokens (gldt- prefix). Deploy tokens grant read/write access to a project's repository, container registry and package registry; a leak enables artifact theft or tampering.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

GitLab Personal Access Token

Detects GitLab personal access tokens (glpat- prefix). A leaked PAT grants repository, CI/CD pipeline and package-registry access scoped to the issuing user.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

GitLab Pipeline Trigger Token

Detects GitLab pipeline trigger tokens (glptt- prefix). These tokens let external systems start CI/CD pipelines via the trigger API; a leak allows unauthorized pipeline execution.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

GitLab Runner Authentication Token

Detects GitLab runner authentication tokens (glrt- prefix). These tokens authenticate a CI/CD runner to a GitLab instance; a leak lets an attacker impersonate a runner and capture job payloads.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Geographic Coordinates (DMS / MGRS)

Detects geographic coordinates written in degrees-minutes-seconds (DMS) form with a hemisphere letter (e.g. 40 deg 26' 46" N) and in Military Grid Reference System (MGRS) form (e.g. 4QFJ 12345 67890). The registry already covers decimal-degree coordinates; this adds the DMS and MGRS notations commonly found in mapping exports, surveying records, defence/geospatial documents and EXIF-derived location data.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701

GPS Coordinates (Decimal Degrees)

Detects GPS Coordinates (Decimal Degrees) patterns. Requires location/GPS context keywords

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701

Grafana API Key

Detects Grafana Cloud API tokens (glc_ prefix) and Grafana service account tokens (glsa_ prefix). A leaked token grants access to dashboards, data sources and, for Grafana Cloud, metrics/logs ingestion endpoints.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Groq API Key

Detects Groq (GroqCloud) API keys, which use a distinctive gsk_ prefix followed by a long alphanumeric body. A leaked key grants unauthorized, billed access to Groq's hosted inference API and any prompts or data routed through it.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Guarantor Agreement

Detects guarantor agreements and personal guarantee documents with indemnity obligations.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

HashiCorp Vault Service / Batch Token

Detects HashiCorp Vault service tokens (hvs. prefix) and batch tokens (hvb. prefix). These tokens authenticate to a Vault server and can read secrets, keys and credentials. A bare prefixed candidate is discovery-only; binding fields and Vault auth-response metadata provide balanced and high-confidence enforcement.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Heroku API Key

Detects Heroku platform API keys in the prefixed HRKU- form. These keys authenticate to the Heroku Platform API and can deploy apps, read config vars and manage add-ons; a leak enables full account compromise.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

HL7 Health Message

Detects HL7 Health Message patterns. Detects HL7v2 message headers and ADT event types

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

Http Authorization Header

Detects HTTP Authorization header patterns containing Bearer tokens, Basic credentials, and other authentication schemes. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Hugging Face Access Token

Detects Hugging Face user access tokens (hf_ prefix), used to authenticate to the Hugging Face Hub API. A leaked token grants access to private models, datasets and Spaces, and can incur inference billing.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

International Bank Account Number (IBAN) - Global

Detects International Bank Account Numbers (IBANs) across the full ISO 13616 / SWIFT IBAN Registry country set, extending coverage beyond the EU-focused eu-iban pattern to non-EU IBAN countries verified against the SWIFT IBAN registry — at minimum United Kingdom (GB, 22 chars), Switzerland (CH, 21), Norway (NO, 15), Saudi Arabia (SA, 24), United Arab Emirates (AE, 23), and Turkey (TR, 26). The structural regex widens eu-iban's BBAN length range (12-36 alphanumeric characters) down to 8-32 specifically to also catch shorter formats such as Norway's 15-character IBAN (11-character BBAN), which falls below eu-iban's minimum and would not match it. This pattern intentionally co-fires with eu-iban for EU country codes, since neither pattern restricts the 2-letter prefix to a specific country allow-list — see false_positives.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
GDPR, CCPA/CPRA
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

ICCID

Detects ICCID patterns.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

ICD-10 Cm

Detects ICD-10 Cm patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

ICD-10 Pcs

Detects ICD-10 Pcs patterns.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

International Classification of Diseases (ICD-9-CM)

Detects International Classification of Diseases (ICD-9-CM) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
low
Detection quality
Mixed
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

IMEI

Detects IMEI patterns.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Incident Response Plan

Detects incident response plans containing containment procedures and escalation matrices.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2

Indigenous Data Reference

Detects references to Aboriginal and Torres Strait Islander data requiring cultural sensitivity and community consent considerations.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Health Insurance Member / Subscriber ID (Labelled)

Detects a labelled health-insurance member, subscriber, policy or group identifier: a member/subscriber/policy/group ID label followed by a 6-15 character alphanumeric value that contains at least one digit. Insurance identifiers are protected health information under HIPAA and are frequently exposed in breach disclosures.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
HIPAA
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Internal Audit Report

Detects internal audit reports containing control assessments and organisational vulnerability findings.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

IPv4

Detects IPv4 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

IPv6

Detects IPv6 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

IT Runbook/Playbook

Detects IT runbooks and operational playbooks containing procedures, credentials, and escalation paths.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2

JWT

Detects JSON Web Token candidates with three Base64url segments. A generic encoded-JSON candidate is discovery-only; a standard encoded algorithm header plus encoded JSON payload enforces at medium confidence, and HTTP or session transport binding raises the result to high confidence.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Kraken API Key

Detects Kraken REST API credentials: the public API key (56 base64 characters) and the private key / API secret (86-88 base64 characters, base64 of 64 bytes). Because base64 strings have no distinctive prefix, this pattern is context-gated: it requires a nearby Kraken label and an assignment (= or :) before the value. A leaked private key allows signing authenticated requests to the account.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Kubernetes Config Credential

Detects embedded credentials inside a Kubernetes kubeconfig file - base64 client certificate / key data blocks and inline bearer tokens. A leaked kubeconfig grants cluster access at the scope of the embedded identity.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Kubernetes Internal Service URL

Detects Kubernetes Internal Service URL patterns.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Lab Test Terms

Detects Lab Test Terms patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

LangSmith API Key

Detects LangSmith API keys (personal access tokens and service keys), which use a distinctive lsv2_pt_ or lsv2_sk_ prefix followed by a hyphenated hex body. A leaked key grants unauthorized access to LangSmith trace data -- which can include full LLM prompts and completions -- and billed access to the LangSmith/LangChain platform.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Legal Entity Identifier (LEI) - Global

Detects ISO 17442 Legal Entity Identifiers (LEIs) — the 20-character uppercase alphanumeric codes issued under the Global LEI System (GLEIF) that uniquely identify legal entities in financial transactions. Structure: characters 1-4 are the LEI-issuer (LOU) prefix, characters 5-6 are reserved and set to "00", characters 7-18 are the entity-specific part, and characters 19-20 are numeric check digits (ISO 7064 MOD 97-10). Requiring the literal "00" at positions 5-6 and two digits at positions 19-20 makes the format far more distinctive than a generic 20-character alphanumeric run. Known recall cost: pre-2013 CICI-era legacy LEIs — interim identifiers issued before the "00" reservation, grandfathered into the GLEIF system and still live and checksum-valid — do not carry "00" at positions 5-6 and are NOT matched. This class includes major counterparties such as Microsoft (INR2EJN1ERAN0W5ZP974), Deutsche Bank (7LTWFZYICNSX8D621K86) and Apple (HWUPKR0MPOU8FGXBT394), so documents dealing with such entities' LEIs will be missed. This is a deliberate precision-over-recall trade-off: dropping the "00" anchor would widen the pattern to any 20-character uppercase alphanumeric run ending in two digits.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
MiFID II, EMIR, Dodd-Frank Act
Frameworks
ISO 27001, ISO 27701, SOC 2

Litecoin Address

Detects Litecoin addresses in two forms. Native SegWit bech32 addresses use the human-readable part "ltc1" (distinctive, 85-gated). Legacy base58 addresses are P2PKH with version byte 0x30 (leading "L") and P2SH with version byte 0x32 (leading "M"), 26-35 characters (most 34) — a single-letter prefix that is weaker (75-gated). Prefixes/version bytes/lengths verified against the Litecoin address-prefix docs and documented example addresses.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
FATF Recommendations, AML/CTF Act (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Global LOINC Code

Detects LOINC laboratory observation codes in nnnnn-n form.

Type
regex
Confidence
medium
Jurisdictions
global, us
Regulations
HIPAA, CLIA
Frameworks
ISO 27001, ISO 27701

Mac Address

Detects Mac Address patterns.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Mailchimp API Key

Detects Mailchimp API keys, formatted as 32 hex characters followed by -us and a 1-2 digit datacenter code. A leaked key grants access to audience lists, campaigns and subscriber PII.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Mailgun API Key

Detects Mailgun private API keys (key- prefix followed by 32 hex characters). A leaked key allows sending email and accessing logs and account data via the Mailgun API.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Management Action Plan

Detects management action plans documenting remediation timelines for audit findings and vulnerabilities.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Lifestyles That Relate To Medical Conditions

Detects Lifestyles That Relate To Medical Conditions patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

Medical Specialties

Detects Medical Specialties patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

Microsoft Bing Maps Key

Detects Microsoft Bing Maps API key patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Ministerial/Executive Briefing

Identifies substantive Australian ministerial, Director-General, secretary, and executive briefing documents. Topic phrases are retained for discovery; enforcement requires issue, recommendation, option, risk, financial, stakeholder, communications, decision, or implementation content, and high confidence also requires a formal brief reference or decision/approval signal.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Monero Address

Detects Monero (XMR) public addresses, encoded in Monero-specific base58 (same 58-character alphabet as standard base58, excluding 0 O I l). Standard addresses (mainnet network byte 18) and subaddresses (network byte 42) are 95 characters and begin with "4" or "8"; integrated addresses (network byte 19, standard address + encrypted 64-bit payment ID) are 106 characters and begin with "4". The fixed 95/106-char length is highly distinctive, gated at 85. Prefixes/lengths verified against the Monero standard-address and integrated-address docs.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
FATF Recommendations, AML/CTF Act (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Mongodb

Detects Mongodb patterns.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Mysql

Detects Mysql patterns.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

National Metering Identifier

Detects National Metering Identifier (NMI) patterns used in the Australian energy market. A 10 or 11 digit number identifying electricity and gas connection points. Context-dependent: requires energy/meter keywords.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Nationality and National Origin

Detects references to nationality/citizenship/immigration-status disclosure: nationality fields, national origin, citizenship status, visa status, and naturalization records. Unlike the three sibling Art-9 patterns in this wave (sexual-orientation, religious-beliefs, racial-ethnic-origin), nationality is NOT a GDPR Article 9 special category — it is processed under GDPR's ordinary Article 6 lawful-basis regime. It is grouped with the Art-9 set here because it shares the same detection problem (an attribute value with no fixed format) and was bundled with them in the C3 deprecation/gap analysis, and because national origin carries real discrimination risk. Topic-grade detector, low confidence by design.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR
Frameworks
ISO 27001, NIST CSF, SOC 2

US NDC Drug Code

Detects US National Drug Codes (NDC) identifying drug products, including common dashed labeler formats (4-4-2, 5-3-2, 5-4-2) and HIPAA 11-digit zero-padded forms. Structural NDC candidates used in pharmacy, claims, and clinical product coding.

Type
regex
Confidence
medium
Jurisdictions
us, global
Regulations
HIPAA, FD&C Act, CCPA/CPRA
Frameworks
ISO 27001, ISO 27701

Netlify Access Token

Detects Netlify authentication tokens: the current nf-prefixed family announced by Netlify in November 2023 (nfp_ personal access tokens, nfc_ CLI tokens, nfo_ OAuth tokens, nfu_ app.netlify.com tokens, nfb_ build tokens) and, when labelled with Netlify context, the legacy unprefixed 43-45 character token form that remains valid. A leaked token grants control of the account's sites, deploys and environment variables.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Network Infrastructure Document

Identifies substantive internal network-infrastructure design and topology documents. Topic phrases are retained for discovery; enforcement requires segmentation, trust-boundary, routing, VLAN, DMZ, data-flow, or firewall-design content, and high confidence also requires a populated address, VLAN, port, device, or rule detail.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2

Neural & Neurotechnology Data

Detects references to neural / neurotechnology data: brain-computer interface signals, EEG/EMG recordings, evoked potentials, neural decoding output and neurofeedback data. Colorado HB24-1058 and California SB 1223 both classify neural data as sensitive personal information. Topic-grade vocabulary detector, not a fixed-format detector.

Type
keyword_list
Confidence
low
Jurisdictions
global, us
Regulations
CCPA/CPRA, GDPR
Frameworks
ISO 27001, NIST CSF, SOC 2

New Relic API Key

Detects New Relic user API keys (NRAK- prefix followed by 27 characters). A leaked key grants access to the New Relic GraphQL (NerdGraph) API and account telemetry.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Notion Token

Detects Notion integration tokens in both live formats: the current ntn_ prefix (issued to all new integrations since 25 September 2024) and, when labelled with Notion context, the legacy secret_ prefix (existing tokens remain valid indefinitely). A leaked integration token grants API access to every page and database the integration has been connected to.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

npm Access Token

Detects bounded npm access-token values (npm_ prefix, fixed 36-character body) and credential-bearing .npmrc authToken assignments; documentation and placeholder examples remain excluded. These tokens authenticate to the npm registry and can publish, unpublish or grant access to packages; a leak enables supply-chain attacks via malicious publishes.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

NuGet API Key

Detects NuGet.org API keys (oy2 prefix), used to push packages to the NuGet gallery. A leaked key lets an attacker publish or unlist packages under the owner's account.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Okta API Token

Detects Okta API-token candidates, which begin with 00 and are followed by 40 base64url characters. Okta or SSWS context is required for enforcement because the 42-character shape can represent unrelated identifiers; the bare value shape surfaces only as discovery inventory. A leaked token grants Okta admin API access.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Openai Key

Detects Openai Key patterns.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

OpenSSH Private Key Header

Detects OpenSSH private-key armor. The fixed BEGIN line alone is discovery-only; the encoded openssh-key-v1 container magic supports medium confidence and normally wrapped near-header body lines support high confidence.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Oracle Connection String

Detects Oracle Connection String patterns.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

OT Security Assessment

Identifies substantive operational-technology, SCADA, ICS, and industrial-control security assessments. Topic phrases are retained for discovery; enforcement requires findings, affected assets, evidence, remediation, attack paths, firmware, segmentation, credential, or remote-access weaknesses, and high confidence additionally requires a concrete technical indicator and severe exploit consequence.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Parliamentary Document

Identifies substantive Australian question-time briefs, Senate Estimates briefs, parliamentary question responses, and parliamentary correspondence briefs. Topic phrases are retained for discovery; enforcement requires likely-question, response, talking-point, media-line, key-fact, supplementary-question, answer, portfolio, or hearing content, and high confidence also requires draft, embargo, clearance, question-number, or other pre-release handling evidence.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Passport Machine-Readable Zone (MRZ, ICAO 9303)

Detects the Machine-Readable Zone (MRZ) of an ICAO 9303 travel document, the OCR-B text printed at the bottom of passport data pages and scanned at border control. This pattern focuses on the TD3 passport format (two lines of 44 characters): line 1 begins 'P' + document subtype + 3-letter issuing state + the holder's names, and line 2 packs the document number, check digits, nationality, date of birth, sex and expiry. MRZ leakage via scans, photocopies and OCR exports is one of the highest-value passport data exposure vectors because it concentrates every identity field in a single fixed-width block.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
GDPR, CCPA/CPRA
Frameworks
ISO 27001, ISO 27701

PayID (New Payments Platform)

Detects Australian PayID payment addresses used on the New Payments Platform (NPP). A PayID is an email address, mobile phone number (+61 / 04xx format), ABN or organisation identifier registered as a real-time payment alias, detected when it appears near an explicit PayID label in a payment context.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Payment Card PAN

Identifies payment card Primary Account Numbers (PANs) for Visa, Mastercard (including 2-series BINs), American Express, Discover, JCB, Diners Club and UnionPay, in contiguous and space/hyphen-separated forms. Uses Func_credit_card Luhn validator with AllDigitsSameFilter.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
CCPA/CPRA, GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Payment Card Magnetic Stripe Track 1

Detects ISO/IEC 7813 magnetic-stripe Track 1 (format code B) data for payment cards: a start sentinel %B, the primary account number, the cardholder name, expiry date, service code and discretionary data. Storing full track data after authorization is prohibited by PCI DSS 4.0 Requirement 3.3.1.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
PCI-DSS
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Payment Card Magnetic Stripe Track 2

Detects ISO/IEC 7813 magnetic-stripe Track 2 data for payment cards: a start sentinel ;, the primary account number, a field separator =, expiry (YYMM), service code and discretionary data, end sentinel ?. Also detects the common no-sentinel database form PAN=YYMM... Storing full track data after authorization is prohibited by PCI DSS 4.0 Requirement 3.3.1.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
PCI-DSS
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Payment/Remittance Advice

Detects payment advices, remittance notices, and electronic funds transfer confirmations.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Perplexity API Key

Detects Perplexity API keys, which use a distinctive pplx- prefix followed by a 48-character alphanumeric body. A leaked key grants unauthorized, billed access to Perplexity's search and chat completion API and any prompts or data routed through it.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

PGP Private Key Block

Detects the ASCII-armored header of an OpenPGP (PGP/GnuPG) private key block, as defined in RFC 4880 / RFC 9580. A leaked PGP private key allows an attacker to decrypt the holder's encrypted mail and files and to forge signatures in their name. The registry already covers RSA, EC, OpenSSH and PKCS#8 private keys; this adds the OpenPGP armor format. Header-only hits are discovery-only; armored packet data near the header provides the enforcement tiers.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
GDPR, CCPA/CPRA
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Global Phone Number (E.164)

Detects international telephone numbers in ITU-T E.164 form: a leading "+" (the international prefix symbol defined by ITU-T E.123, the companion notation recommendation) followed by a country code and national significant number totalling no more than 15 digits, per E.164's own numbering-space limit (country code 1-3 digits, subscriber number up to 12 digits, 15 digits maximum overall). This pattern covers only the "+"-prefixed international representation — it is the global counterpart to the country-specific domestic-format patterns (us-phone-number, ca-phone-number, uk-phone-number, in-phone-number, and the EU national patterns), which additionally match each country's bare domestic formatting conventions. Real-world renderings commonly use spaces or hyphens between digit groups even though E.123 formally prescribes spaces only; both are accepted here. The "+CC (0)..." letterhead rendering (e.g. "+44 (0)20 7946 0958") is deliberately NOT matched by this pattern: it is not an E.164 representation (E.123 explicitly advises against the parenthesised trunk digit in international notation), and the country-specific patterns whose plans actually use a trunk 0 (uk/de/fr/nl) each cover it themselves — keeping this global pattern strictly E.164-shaped.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR, CCPA/CPRA
Frameworks
ISO 27001, ISO 27701, SOC 2

Pinecone API Key

Detects Pinecone API keys in both current live formats: pcsk_ (the dominant format issued by the Pinecone console, CLI, and SDK key-creation flows) and pckey_ (the Enterprise-plan Admin API variant, format pckey_<public-label>_<unique-key>). A leaked key grants unauthorized access to a Pinecone vector database, including any embeddings or vectorised source data it stores.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

PKCS#8 Private Key Header

Detects unencrypted PKCS#8 private-key armor. The generic BEGIN PRIVATE KEY marker is discovery-only; a DER algorithm prelude supports medium confidence, and near-header wrapped body data or an exact compact-key prelude reaches high.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Plaid Access Token

Detects Plaid API credentials: Item access tokens (access-sandbox-/access-production- followed by an RFC 4122 UUID) and, when labelled with Plaid context, the 30-character hex API secret. A leaked access token exposes a user's linked bank account data; a leaked secret compromises the whole Plaid integration.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Political Opinion & Affiliation

Detects references to political opinions and party affiliation: party membership, voter registration by party, political donations and campaign contributions. GDPR Article 9 lists political opinions as a special category of personal data with no fixed format — it is detectable only by topic vocabulary. Topic-grade detector, low confidence by design.

Type
keyword_list
Confidence
low
Jurisdictions
global, eu
Regulations
GDPR
Frameworks
ISO 27001, NIST CSF, SOC 2

Postgresql

Detects Postgresql patterns.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

PPSR Security Agreement

Detects Personal Property Securities Register (PPSR) security agreements and related collateral documentation.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Internal Project Codename Reference

Detects references to internal project or initiative codenames in the "Project <CODENAME>" / "Operation <CODENAME>" labelling style. The public form of this pattern carries fictional example codenames only - it is a customisation skeleton: deployments substitute their organisation's live codename list via the declared customisation, which is what gives the pattern real detection value.

Type
regex
Confidence
low
Jurisdictions
global
Frameworks
ISO 27001

PuTTY Private Key (PPK)

Detects the header line of a PuTTY private key file (.ppk), as produced by PuTTYgen. The header begins with 'PuTTY-User-Key-File-' followed by the format version (2 or 3) and the SSH key algorithm. A leaked .ppk grants SSH access to whatever hosts trust the corresponding public key. Header-only candidates are discovery-only; ordered PPK metadata and the first public-blob line support enforcement.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
GDPR, CCPA/CPRA
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

PyPI API Token

Detects PyPI (Python Package Index) upload tokens. The fixed marker pypi-AgEIcHlwaS5vcmc is the base64 encoding of "pypi.org", making these tokens near-unmistakable. A leaked token lets an attacker publish malicious package releases.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Racial or Ethnic Origin

Detects racial or ethnic origin information in person-linked demographic, workforce, intake, census, application, and case records. The detector recognises explicit racial/ethnic-origin phrases and structured race or ethnicity fields, then raises confidence only when the same span contains a data-subject record and a populated attribution. Racial or ethnic origin is protected under GDPR Article 9 and Australian anti-discrimination and privacy law. Topic-grade detector, low confidence by design.

Type
keyword_list
Confidence
low
Jurisdictions
global, au, eu
Regulations
GDPR, Privacy Act 1988 (Cth), Racial Discrimination Act 1975 (Cth)
Frameworks
ISO 27001, NIST CSF, SOC 2

Red Team Assessment

Detects red team assessment reports revealing proven attack paths and security blind spots.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS

Redis

Detects Redis patterns.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Religious or Philosophical Beliefs

Detects religious or philosophical belief information in person-linked membership, patient, workforce, census, pastoral-care, and accommodation records. The detector recognises explicit belief, affiliation, observance, denomination, and structured religion-field terminology, then raises confidence only for person records and populated belief or accommodation statements. Religious or philosophical beliefs are protected under GDPR Article 9 and Australian anti-discrimination and privacy law. Topic-grade detector, low confidence by design.

Type
keyword_list
Confidence
low
Jurisdictions
global, au, eu
Regulations
GDPR, Privacy Act 1988 (Cth), Fair Work Act 2009 (Cth)
Frameworks
ISO 27001, NIST CSF, SOC 2

Replicate API Key

Detects Replicate API tokens, which use a distinctive r8_ prefix followed by a fixed-length body of alphanumerics, underscores, and hyphens. A leaked token grants unauthorized, billed access to Replicate's hosted model inference API and any prompts, images, or data routed through it.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Reproductive & Sexual Health Data

Detects references to reproductive and sexual-health data: pregnancy, abortion, contraception, fertility treatment, gender-affirming care and STI/HIV status. Washington's My Health My Data Act (and a wave of post-Dobbs state consumer-health-data laws) treat this as protected consumer health data. Topic-grade vocabulary detector.

Type
keyword_list
Confidence
low
Jurisdictions
global, us
Regulations
HIPAA, GDPR
Frameworks
ISO 27001, NIST CSF, SOC 2

Residential Tenancy Agreement

Detects residential tenancy agreements containing tenant PII, rental terms, and bond details.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Risk Register

Detects risk registers containing assessed vulnerabilities, likelihood ratings, and risk treatment plans.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

RSA Private Key Header

Detects PKCS#1 RSA private-key armor. A BEGIN line is discovery-only, the first DER-like Base64 line supports medium confidence, and several normally wrapped body lines near the header support high confidence.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

RubyGems API Key

Detects RubyGems.org API keys (rubygems_ prefix), used to push gems. A leaked key lets an attacker publish or yank gems under the owner's account.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

SCADA/ICS System Documentation

Identifies substantive SCADA and industrial-control-system documentation. Topic phrases are retained for discovery; enforcement requires point, tag, I/O, alarm, HMI, RTU, protocol-map, polling, or control-logic configuration content, and high confidence also requires a populated asset, node, address, register, outstation, or site detail.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Security Audit Report

Detects security audit reports including SOC 2, ISO 27001, and IRAP findings.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, NIST CSF, PCI-DSS

Security Clearance Reference

Detects references to Australian Government security clearances and personnel vetting status.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
2006 MOU National Security, Criminal Code Act 1995 (Cth)
Frameworks
PSPF, QGISCF

Security Incident Report

Detects security incident reports containing forensic findings, root causes, and response gaps.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

SendGrid API Key

Detects SendGrid (Twilio SendGrid) API keys, formatted as SG. then a 22-character key id, a dot, and a 43-character secret. A leaked key allows sending email and reading account data through the SendGrid API.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Sentry Token

Detects Sentry auth tokens: organization tokens (sntrys_), user auth tokens (sntryu_), the user-app and internal-integration prefixes from Sentry's own token-type source (sntrya_, sntryi_), and, when labelled with Sentry context in an assignment, the legacy unprefixed 64-hex tokens issued before prefixing. A leaked token grants API access to error and performance data -- which routinely embeds further secrets, PII, and source context -- and to release/CI operations. Sentry DSNs are explicitly NOT matched: Sentry documents DSNs as safe to keep public.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

High-Value Session Cookie Token

Detects high-value session cookies by name-plus-value: framework and SSO session cookies (ESTSAUTH / ESTSAUTHPERSISTENT, JSESSIONID, PHPSESSID, connect.sid, _session_id, sessionid) assigned a long token value. A captured session cookie lets an attacker resume an authenticated session and bypass MFA entirely. Bare assignments are discovery-only; HTTP cookie framing and response attributes provide the enforcement tiers.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Sexual Orientation

Detects sexual-orientation information in person-linked workforce, patient, survey, member, relationship, intake, and case records. The detector recognises the explicit sexual orientation phrase, orientation-specific identification statements, coming-out statements, and same-sex partner or spouse references, then raises confidence only for person records and populated attributions. It deliberately excludes transgender status, gender identity, and pronouns because those are distinct attributes. Sexual orientation is protected under GDPR Article 9 and Australian anti-discrimination and privacy law. Topic-grade detector, low confidence by design.

Type
keyword_list
Confidence
low
Jurisdictions
global, au, eu
Regulations
GDPR, Privacy Act 1988 (Cth), Sex Discrimination Act 1984 (Cth)
Frameworks
ISO 27001, NIST CSF, SOC 2

Shopify Access Token

Detects the Shopify access-token family: Admin API access tokens (shpat_), custom app access tokens (shpca_), legacy private app passwords (shppa_) and app shared secrets (shpss_), each followed by a 32-character hex body. A leaked token grants API access to a Shopify store, including customers, orders and payment-adjacent data.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Slack Token

Detects Slack Token patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Snowflake Token

Detects Snowflake OAuth access and refresh tokens, which carry the recognizable ver:1-hint: / ver:2-hint: prefix used by Snowflake authentication. These tokens (and programmatic access tokens used in their place) grant query and data access to a Snowflake account.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Solana Address

Detects Solana public wallet/account addresses: the base58 encoding of a 32-byte ed25519 public key, 32-44 characters long, with NO distinctive prefix. Because a prefix-less base58 run of this length collides heavily with random tokens, other base58 identifiers and prose, detection is context-gated: the single tier is AND-gated by cryptocurrency/wallet domain context and a template/sample noise exclusion. Length/charset bounds verified against the Solana account model (32-byte address displayed as a base58 string) and the base58 alphabet (excludes 0 O I l).

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
FATF Recommendations, AML/CTF Act (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

SOX/COSO Compliance Document

Detects Sarbanes-Oxley (SOX) and COSO internal control framework compliance documents.

Type
keyword_list
Confidence
medium
Jurisdictions
us
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

SQL Server

Detects SQL Server patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Topic partial
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Square Access Token

Detects Square credential formats: application secrets (sq0csp-, with sandbox- prefixed sandbox variants), legacy personal access tokens (sq0atp-), and current OAuth/personal access tokens (EAAA + 60-character body, context-gated on a nearby Square label because the EAAA base64 shape also occurs in non-Square tokens and encoded blobs). A leaked token or secret enables payment processing and transaction data access in the associated Square account.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Strategic Plan/Roadmap

Detects strategic plans, product roadmaps, and long-term business planning documents.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, NIST CSF, PCI-DSS

Stripe Key

Detects Stripe Key patterns.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Subscription Agreement

Detects subscription agreements, recurring billing terms, and SaaS licence documentation.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Supabase Key

Detects Supabase credentials: personal access tokens (sbp_), the new opaque secret API keys (sb_secret_) introduced in 2025 to replace the legacy service_role JWT, and, when labelled with Supabase context in an assignment, the legacy anon/service_role JWT keys that remain valid until late 2026. A leaked secret key or service_role JWT grants full admin access to the project's production Postgres database, bypassing Row Level Security; a leaked personal access token grants account-wide Management API control.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Surgical Procedures

Detects Surgical Procedures patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

Swift Bic

Detects Swift Bic patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
PSD2
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Technical Design Document

Detects technical design documents, system architecture specifications, and API documentation.

Type
keyword_list
Confidence
medium
Jurisdictions
global
Regulations
SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2

Telegram Bot Token

Detects Telegram Bot API tokens: the numeric bot ID, a colon, and a 35-character [A-Za-z0-9_-] secret. A leaked bot token grants full control of the bot -- reading its message traffic, sending messages to every chat it belongs to, and hijacking any workflow automation built on it.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Terraform Cloud / Enterprise API Token

Detects HashiCorp Terraform Cloud / Terraform Enterprise API tokens (atlasv1 format). These tokens authenticate to the Terraform Cloud API and can read/write workspace state and variables; a leak can expose all infrastructure secrets.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Legal full name

Identifies documents containing references to legal full name in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Previous legal names and aliases

Identifies documents containing references to previous legal names and aliases in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Place of birth

Identifies documents containing references to place of birth in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Citizenship status

Identifies documents containing references to citizenship status in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Biometric identifiers

Identifies documents containing references to biometric identifiers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Handwritten signatures

Identifies documents containing references to handwritten signatures in Australian contexts. This remains a concept detector over manual/wet/ink/specimen signature wording — it does not inspect handwriting pixels or capture a signature image. Bare "signed by" attribution (common in electronic/typed signature text) is corroborating evidence only, not a primary indicator.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Marital status

Identifies documents containing references to marital status in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Gender or sex marker

Identifies documents containing references to gender or sex marker in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Disability status

Identifies documents containing references to disability status in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Genetic data

Identifies documents containing references to genetic data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Deceased-person records with cultural sensitivity

Identifies documents containing references to deceased-person records with cultural sensitivity in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

National identity number

Identifies documents containing references to national identity number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Voter registration number

Identifies documents containing references to voter registration number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Birth certificate number

Identifies documents containing references to birth certificate number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Death certificate number

Identifies documents containing references to death certificate number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Marriage certificate number

Identifies documents containing references to marriage certificate number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Military service number

Identifies documents containing references to military service number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Immigration file number

Identifies documents containing references to immigration file number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Visa grant number

Identifies documents containing references to visa grant number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Residence permit number

Identifies documents containing references to residence permit number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Refugee or asylum case number

Identifies documents containing references to refugee or asylum case number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Police identity number

Identifies documents containing references to police identity number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Prisoner identification number

Identifies documents containing references to prisoner identification number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Firearm license number

Identifies documents containing references to firearm license number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Professional license number

Identifies documents containing references to professional license number in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Social benefits claimant number

Identifies documents containing references to social benefits claimant number in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Home address

Identifies documents containing references to home address in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Mailing address

Identifies documents containing references to mailing address in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Personal phone number

Identifies documents containing references to personal phone number in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Phrase-level concept detector: it matches contact-number wording, not telephone digits. Enforcing tiers require a personal/home qualifier (personal phone number, home phone, personal mobile, call-back number, phone contact). Bare mobile/cell/telephone/contact/SMS/direct-dial labels without that qualifier are discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Personal email address

Identifies documents containing references to personal email address in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Phrase-level concept detector: it matches email-label wording, not populated mailbox addresses; generic email/contact/correspondence labels without a personal or private qualifier are discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Work email address

Identifies documents containing references to work email address in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Emergency contact details

Identifies documents containing references to emergency contact details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Real-time geolocation

Identifies documents containing references to real-time geolocation in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Historical location trails

Identifies documents containing references to historical location trails in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Travel itinerary details

Identifies documents containing references to travel itinerary details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Vehicle registration details

Identifies documents containing references to vehicle registration details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Device IMEI numbers

Identifies documents containing references to device imei numbers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Detection is phrase-level concept matching anchored on explicit IMEI, TAC, and equipment-identity vocabulary; it does not parse or Luhn-validate 15-digit IMEI values.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2

SIM card identifiers

Identifies documents containing references to sim card identifiers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

MAC addresses linked to users

Identifies documents containing references to mac addresses linked to users in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, SOC 2

Home utility account addresses

Identifies documents containing references to home utility account addresses in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Household composition details

Identifies documents containing references to household composition details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Building access badge location logs

Identifies documents containing references to building access badge location logs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Hotel booking details

Identifies documents containing references to hotel booking details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Frequent traveler numbers

Identifies documents containing references to frequent traveler numbers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Border crossing history

Identifies documents containing references to border crossing history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Commuting pattern data

Identifies documents containing references to commuting pattern data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Employment contracts

Identifies documents containing references to employment contracts in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Performance review reports

Identifies documents containing references to performance review reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Disciplinary records

Identifies documents containing references to disciplinary records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Employee grievance reports

Identifies documents containing references to employee grievance reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Whistleblower identity records

Identifies documents containing references to whistleblower identity records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Background check results

Identifies documents containing references to background check results in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Right-to-work verification documents

Identifies documents containing references to right-to-work verification documents in Australian contexts. Enforcement anchors on verification concepts (right to work, work entitlement, VEVO check, visa verification, employment eligibility); generic immigration/visa status, work permit, and visa holder wording describes immigration records generally and remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Union membership status

Identifies documents containing references to union membership status in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Compensation adjustment history

Identifies documents containing references to compensation adjustment history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Bonus and incentive allocations

Identifies documents containing references to bonus and incentive allocations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Equity grant details

Identifies documents containing references to equity grant details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Manager assessment notes

Identifies documents containing references to manager assessment notes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Psychometric assessment results

Identifies documents containing references to psychometric assessment results in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Interview evaluation notes

Identifies documents containing references to interview evaluation notes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Succession planning files

Identifies documents containing references to succession planning files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Reduction-in-force planning lists

Identifies documents containing references to reduction-in-force planning lists in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Time and attendance records

Identifies documents containing references to time and attendance records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Leave and absence records

Identifies documents containing references to leave and absence records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Workplace investigation files

Identifies documents containing references to workplace investigation files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Exit interview records

Identifies documents containing references to exit interview records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Payroll bank account details

Detects references to payroll bank account details in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)

Employee withholding elections

Detects references to employee withholding elections in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Employer payroll tax filings

Detects references to employer payroll tax filings in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Employee tax forms

Detects references to employee tax forms in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Contractor tax forms

Detects references to contractor tax forms in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Payroll deduction records

Detects references to payroll deduction records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Wage garnishment orders

Detects references to wage garnishment orders in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Retirement contribution records

Detects references to retirement contribution records in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Pension account identifiers

Detects references to pension account identifiers in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Dependent tax credit information

Detects references to dependent tax credit information in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Childcare benefit payroll claims

Detects references to childcare benefit payroll claims in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Expense reimbursement claims

Detects references to expense reimbursement claims in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Payroll journal entries

Detects references to payroll journal entries in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Tax authority correspondence

Detects references to tax authority correspondence in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Payroll exception reports

Detects references to payroll exception reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Superannuation identifiers

Detects references to superannuation identifiers in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Overpayment recovery records

Detects references to overpayment recovery records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Off-cycle payroll approvals

Detects references to off-cycle payroll approvals in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Compensation arrears records

Detects references to compensation arrears records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Payroll system access logs

Detects references to payroll system access logs in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)

Consumer bank account numbers

Detects references to consumer bank account numbers in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
PCI-DSS, GLBA
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Bank routing numbers

Detects references to bank routing numbers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

IBAN values

Detects references to IBAN and international bank account number topics in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Topic-level phrase detection only; it does not parse or mod-97-validate IBAN values.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

SWIFT or BIC codes

Detects references to SWIFT or BIC codes in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Phrase-level payment-rail concept detection anchored on explicit SWIFT/BIC vocabulary; it does not parse 8- or 11-character BIC values.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Payment card primary account numbers

Detects references to payment card primary account numbers in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Card verification values

Detects references to card verification values in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Phrase-level concept detection anchored on explicit card-verification vocabulary; it does not parse 3- or 4-digit CVV values.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Card expiration dates

Detects references to card expiration dates in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation. Phrase-level concept detection anchored on card-specific expiry vocabulary; it does not parse MM/YY or month-year values.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Cardholder names linked to accounts

Detects references to cardholder names linked to accounts in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Mobile payment account IDs

Detects references to mobile payment account ids in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Merchant acquiring credentials

Detects references to merchant acquiring credentials in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, PCI-DSS, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)

Direct debit mandate data

Detects references to direct debit mandate data in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

ACH company and originator IDs

Detects references to ach company and originator ids in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Remittance instructions

Detects references to remittance instructions in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, PCI-DSS

Card dispute case records

Detects references to card dispute case records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Wire transfer instructions

Detects references to wire transfer instructions in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, PCI-DSS

Escrow account details

Detects references to escrow account details in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Treasury cash position reports

Detects references to treasury cash position reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Cash flow forecast assumptions

Detects references to cash flow forecast assumptions in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR, PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Payment fraud investigation files

Detects references to payment fraud investigation files in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, PCI-DSS

Credit bureau reports

Detects references to credit bureau reports in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Credit scores

Detects references to credit scores in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR

Loan application files

Detects references to loan application files in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Mortgage underwriting packets

Detects references to mortgage underwriting packets in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Collateral valuation reports

Detects references to collateral valuation reports in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Debt collection records

Detects references to debt collection records in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Bankruptcy case records

Detects references to bankruptcy case records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Insurance policy records

Detects references to insurance policy records in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Insurance claim records

Detects references to insurance claim records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Underwriting decision rationales

Detects references to underwriting decision rationales in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Know-your-customer profiles

Detects references to know-your-customer profiles in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Anti-money-laundering alerts

Detects references to anti-money-laundering alerts in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Suspicious activity reports

Detects references to suspicious activity reports in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Sanctions screening matches

Detects references to sanctions screening matches in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Beneficial ownership declarations

Detects references to beneficial ownership declarations in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Guarantor identity and financial data

Detects references to guarantor identity and financial data in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Loan covenant compliance records

Detects references to loan covenant compliance records in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Reinsurance contract terms

Detects references to reinsurance contract terms in financial and compliance documents. Commonly found in international regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Premium payment histories

Detects references to premium payment histories in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Claim settlement negotiation notes

Detects references to claim settlement negotiation notes in financial and compliance documents. Commonly found in Australian regulatory filings, transaction records, and audit documentation.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Vendor master records

Identifies documents containing references to vendor master records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Supplier bank change requests

Identifies documents containing references to supplier bank change requests in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Purchase order records

Identifies documents containing references to purchase order records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Bid and tender proposals

Identifies documents containing references to bid and tender proposals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Contracted pricing schedules

Identifies documents containing references to contracted pricing schedules in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Supplier invoice records

Identifies documents containing references to supplier invoice records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Tax exemption certificates

Identifies documents containing references to tax exemption certificates in international contexts. These are tax-compliance certificates that may contain entity or individual identifiers; the category is not blanket personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Third-party risk assessments

Identifies documents containing references to third-party risk assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Supplier due diligence reports

Identifies documents containing references to supplier due diligence reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Customs declaration data

Identifies documents containing references to customs declaration data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Bills of lading

Identifies documents containing references to bills of lading in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Shipping manifest details

Identifies documents containing references to shipping manifest details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Inventory valuation reports

Identifies documents containing references to inventory valuation reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Bill-of-materials cost data

Identifies documents containing references to bill-of-materials cost data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Service-level penalty records

Identifies documents containing references to service-level penalty records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Rebate agreement terms

Identifies documents containing references to rebate agreement terms in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Channel partner margin agreements

Identifies documents containing references to channel partner margin agreements in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Procurement fraud investigation files

Identifies documents containing references to procurement fraud investigation files in international contexts. These are investigative and procurement-sensitive records that may contain personal allegations; the category is not blanket personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Sole-source justification memos

Identifies documents containing references to sole-source justification memos in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Supplier performance scorecards

Identifies documents containing references to supplier performance scorecards in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Board meeting minutes

Identifies documents containing references to board meeting minutes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Committee meeting minutes

Identifies documents containing references to committee meeting minutes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Legal advice memoranda

Identifies documents containing references to legal advice memoranda in international contexts. These are privileged or confidential legal advice records; the category is not personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Attorney-client privileged communications

Identifies documents containing references to attorney-client privileged communications in international contexts. These are communications potentially subject to legal privilege; the category is not blanket personally identifiable information, and a match does not guarantee privilege applies.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Settlement agreement drafts

Identifies documents containing references to settlement agreement drafts in international contexts. These are confidential draft settlement instruments; the category is not personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Regulatory examination responses

Identifies substantive responses and submissions addressing regulatory, supervisory, prudential, or compliance examinations and findings. Topic phrases are retained for discovery; enforcement requires response, finding, root-cause, remediation, ownership, due-date, evidence, dispute, or control-gap content, and high confidence also requires a formal examination/finding reference or response due date.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Antitrust legal analyses

Identifies documents containing references to antitrust legal analyses in international contexts. These are commercially and legally sensitive competition analyses; the category is not personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Ethics hotline case records

Identifies documents containing references to ethics hotline case records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Policy violation findings

Identifies documents containing references to policy violation findings in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Internal audit workpapers

Identifies documents containing references to internal audit workpapers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

SOX control deficiency records

Identifies documents containing references to sox control deficiency records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Internal control exception logs

Identifies documents containing references to internal control exception logs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Policy exception approvals

Identifies documents containing references to policy exception approvals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Breach notification draft communications

Identifies documents containing references to breach notification draft communications in international contexts. Sensitive pre-release breach communications may contain personal-impact data — incident scope, affected individuals and groups, regulator engagement, and unverified legal conclusions; the matched phrases are not themselves personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

License and royalty agreements

Identifies documents containing references to license and royalty agreements in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Indemnity and liability schedules

Identifies documents containing references to indemnity and liability schedules in international contexts. These are negotiated contractual risk schedules; the category is not personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Non-disclosure agreement repositories

Identifies documents containing references to non-disclosure agreement repositories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Corporate records under seal

Identifies documents containing references to corporate records under seal in international contexts. This content represents formal corporate records and under-seal documentation (sealed records, company and common seals, statutory registers); it is not inherently personally identifiable information.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

M&A target lists

Identifies documents containing references to m&a target lists in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Letters of intent

Identifies documents containing references to letters of intent in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Data room due diligence documents

Identifies documents containing references to data room due diligence documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Valuation models

Identifies documents containing references to valuation models in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Synergy realization plans

Identifies documents containing references to synergy realization plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Post-merger integration plans

Identifies documents containing references to post-merger integration plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, NIST CSF, PCI-DSS

Divestiture strategy documents

Identifies documents containing references to divestiture strategy documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Restructuring plans

Identifies documents containing references to restructuring plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Strategic roadmap documents

Identifies documents containing references to strategic roadmap documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Market entry strategy papers

Identifies documents containing references to market entry strategy papers in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Competitive intelligence reports

Identifies documents containing references to competitive intelligence reports in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Pricing strategy models

Identifies documents containing references to pricing strategy models in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Customer profitability analyses

Identifies documents containing references to customer profitability analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Product sunset plans

Identifies documents containing references to product sunset plans in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Nonpublic investor presentations

Identifies documents containing references to nonpublic investor presentations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Earnings guidance drafts

Identifies documents containing references to earnings guidance drafts in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Capital allocation strategy documents

Identifies documents containing references to capital allocation strategy documents in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Fundraising term sheets

Identifies documents containing references to fundraising term sheets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Activist defense plans

Identifies documents containing references to activist defense plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Scenario planning models

Identifies documents containing references to scenario planning models in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Proprietary algorithm designs

Identifies documents containing references to proprietary algorithm designs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Chemical formulas

Identifies documents containing references to chemical formulas in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Manufacturing process tolerances

Identifies documents containing references to manufacturing process tolerances in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Prototype engineering designs

Identifies documents containing references to prototype engineering designs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Patent draft claims

Identifies documents containing references to patent draft claims in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Patentability assessments

Identifies documents containing references to patentability assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Trademark strategy analyses

Identifies documents containing references to trademark strategy analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Trade secret inventories

Identifies inventories and registers of trade-secret assets — register, inventory-entry, and asset-record structures as well as the topic label — in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Research lab notebooks

Identifies documents containing references to research lab notebooks in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Unpublished research datasets

Identifies documents containing references to unpublished research datasets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Circuit schematics

Identifies documents containing circuit schematic or layout content in Australian contexts. Enforcement denotes actual schematic or layout artifacts (reference designators with pin/net/node/footprint relations, netlists, sheet numbers, EDA design files) — circuit-design topic language alone, i.e. the discipline of circuit design, is discovery-only. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Firmware internals

Identifies documents containing references to firmware internals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Cryptographic implementation details

Identifies documents containing references to cryptographic implementation details in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Proprietary training datasets

Identifies documents containing references to proprietary training datasets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Pricing engine logic

Identifies pricing-engine implementation logic in Australian contexts: executable pricing rules, formulas, thresholds, and named pricing variables used to calculate prices or discounts. Topic-only pricing references (dynamic pricing, pricing model) remain discovery-level context and do not enforce.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Recommendation model logic

Identifies documents containing references to recommendation model logic in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Ad bidding model parameters

Identifies private bidding-model parameters rather than online-advertising vocabulary generally: named parameter assignments (bid floors, pacing multipliers, objective weights, budget caps) enforce, while auction and programmatic-advertising topic terms remain discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Source process know-how manuals

Identifies documents containing references to source process know-how manuals in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Design process rules

Identifies actionable design-process rules and constraints in Australian contexts: DR-numbered design rules carrying shall/must/prohibited/limit language. General design-guidance, engineering-standard, and intellectual-property topic references remain discovery-level context and do not enforce.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Unreleased product architecture

Identifies documents containing references to unreleased product architecture in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Product requirement specifications

Identifies documents containing references to product requirement specifications in Australian contexts. Higher confidence identifies populated product requirement specifications (requirement identifiers with shall/acceptance/priority/owner/release fields, or user-story structures); generic quality, compliance, and specification vocabulary remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Unreleased feature specifications

Identifies documents containing references to unreleased feature specifications in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Defect backlog with customer impact

Identifies documents containing references to defect backlog with customer impact in Australian contexts. Higher confidence identifies backlog records that connect product defects to concrete customer impact (BUG/DEFECT/ISSUE identifiers with affected customers/accounts, customer impact, workaround, severity, or release-target detail); defect and customer-impact vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Pre-release test result datasets

Identifies documents containing references to pre-release test result datasets in Australian contexts. Higher confidence identifies datasets of executed tests for not-yet-released builds (result rows with pass/fail outcomes tied to a candidate, RC, or unreleased build identifier); general QA and testing vocabulary remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Reliability and failure analysis

Identifies documents containing references to reliability and failure analysis in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Safety certification evidence

Identifies documents containing references to safety certification evidence in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Quality nonconformance reports

Identifies documents containing references to quality nonconformance reports in Australian contexts. Higher confidence identifies nonconformance records (NCR/NC/DEV identifiers with affected-item, observed-condition, disposition, owner, or closure detail) or the explicit nonconformance-report label; standalone corrective/preventive-action and quality-audit vocabulary remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Product recall decision files

Identifies documents containing references to product recall decision files in Australian contexts. Higher confidence identifies internal files used to decide or authorise a recall (decision, recommendation, risk-benefit, affected-lot, approval, or unresolved-action evidence); public recall notices and generic recall vocabulary remain discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Supplier quality audit findings

Identifies documents containing references to supplier quality audit findings in Australian contexts. Higher confidence identifies populated supplier quality audit findings (finding/observation/NC identifiers with supplier context and severity, clause, evidence, or corrective-action detail) rather than audit administration; supplier-audit vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Serial number traceability records

Identifies populated serial/batch/lot traceability records in Australian contexts: a labelled non-placeholder identifier together with a manufacturing, movement, parent-child, or custody relationship. Covers single-item and batch records; bare serial-number field mentions remain discovery-level context only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Calibration records

Identifies documents containing references to calibration records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Design verification plans

Identifies documents containing references to design verification plans in Australian contexts. Higher confidence identifies plans for future design verification activities (planned verification items with test IDs, methods, requirement traces, acceptance criteria, owners, or schedules); design-review and compliance-testing vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Design validation reports

Identifies documents containing references to design validation reports in Australian contexts. Higher confidence denotes reports of performed design validation (executed tests with observed results, pass/fail outcomes, deviations, conclusions, or approval), not plans or protocols; validation/review/protocol vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Field failure investigation reports

Identifies documents containing references to field failure investigation reports in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Root-cause corrective action plans

Identifies documents containing references to root-cause corrective action plans in Australian contexts. Higher confidence identifies populated plans linking an analysed root cause to assigned corrective work (owner, due date, containment, or effectiveness verification); standalone RCA/CAPA topic terms remain discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Warranty claim analytics

Identifies documents containing references to warranty claim analytics in Australian contexts. Higher confidence identifies analysis of warranty populations (aggregate rates, counts, costs, or trends broken down by period, cohort, model, region, or failure category), not individual claim records; warranty/claim vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Quality management review notes

Identifies records of management review of a quality management system in Australian contexts — management-review notes carrying review structure such as attendees, agenda/inputs, decisions, action items and owners, quality objectives, or recorded conclusions. ISO 9001/QMS topic language without that structure is discovery-only. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Manufacturing deviation records

Identifies documents containing references to manufacturing deviation records in Australian contexts. Higher confidence identifies records of actual manufacturing departures from requirement (deviation/OOS/NCR identifiers with affected batch or lot and expected-versus-actual, disposition, or approval detail); deviation and batch-record vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Product hazard analyses

Identifies documents containing references to product hazard analyses in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Release approval records

Identifies documents containing references to release approval records in Australian contexts. Higher confidence identifies actual approval or authorisation records for a release (release/batch/ build/version identifier with a decision and approver/date detail) or the explicit release-approval label; product-release and generic sign-off vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Private source code repositories

Identifies private source code repositories patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Private code forks

Identifies private code forks patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

System architecture diagrams

Identifies system architecture diagrams patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

API interface specifications

Identifies api interface specifications patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

CI/CD pipeline configurations

Identifies ci/cd pipeline configurations patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Deployment manifests

Identifies deployment manifests patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR

Infrastructure-as-code templates

Identifies infrastructure-as-code templates patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Dependency vulnerability reports

Identifies dependency vulnerability reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Static analysis findings

Identifies static analysis findings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Dynamic testing findings

Identifies dynamic testing findings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Threat model documents

Identifies threat model documents patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Penetration testing reports

Identifies penetration testing reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Red team findings

Identifies red team findings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Bug bounty submissions

Identifies bug bounty submissions patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Incident postmortem reports

Identifies incident postmortem reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Operational runbooks

Identifies operational runbooks patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Environment configuration files

Identifies environment configuration files patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Feature flag configurations

Identifies feature flag configurations patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Telemetry schemas

Identifies telemetry schemas patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR

PII data-flow maps

Identifies maps or inventories that trace personal-data movement between systems — populated source-to-destination flow edges naming personal-data categories. PII-processing topic language (privacy notices, data-processing prose) without flow/lineage structure is discovery-only. This is privacy architecture / data-lineage content, not credential material.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Plaintext passwords

Identifies plaintext passwords patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

Password hash databases

Identifies password hash databases patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
low
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

Password reset tokens

Detects password reset tokens and recovery URLs in documents, emails, and logs. Reset tokens are high-risk credentials — a leaked token enables account takeover without knowing the current password. No Microsoft built-in SIT exists for this pattern.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR, CCPA, HIPAA, PCI-DSS
Frameworks
ISO 27001, NIST CSF, SOC 2

Multi-factor authentication seeds

Identifies multi-factor authentication seeds patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

One-time recovery codes

Identifies one-time recovery codes patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

OAuth client secrets

Identifies oauth client secrets patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

Session cookies

Identifies session cookies patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

HSM key management metadata

Identifies hsm key management metadata patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Key recovery material

Identifies key-recovery and escrow references, while reserving enforcement for records that contain a structured recovery value. A phrase alone is discovery-only; system identity and custody/escrow fields distinguish a high-confidence recovery-material record.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

Secrets vault exports

Identifies references to secrets-vault exports and backups. Product or operation phrases are discovery-only; structured export-record fields support medium confidence and a populated secret entry plus export-manifest metadata supports high.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Database connection strings with credentials

Identifies database connection strings with credentials patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

Kerberos ticket-granting artifacts

Identifies kerberos ticket-granting artifacts patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

SIEM event data

Identifies siem event data patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Endpoint detection telemetry

Identifies endpoint detection telemetry patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Intrusion detection alerts

Identifies intrusion detection alerts patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Firewall rule configurations

Identifies firewall rule configurations patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Sensitive network topology diagrams

Identifies sensitive network topology diagrams patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Vulnerability scan outputs

Identifies vulnerability scan outputs patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Patch exception records

Identifies patch exception records patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Zero-day vulnerability details

Identifies zero-day vulnerability details patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR

Indicators of compromise

Identifies indicators of compromise patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Threat intelligence subscriptions

Identifies threat intelligence subscriptions patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Malware sample repositories

Identifies malware sample repositories patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR

Sandbox detonation reports

Identifies sandbox detonation reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Phishing simulation results

Identifies phishing simulation results patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Purple team exercise plans

Identifies purple team exercise plans patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

SOC analyst case notes

Identifies soc analyst case notes patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Incident timeline evidence

Identifies incident timeline evidence patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Forensic disk images

Identifies forensic disk images patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Volatile memory captures

Identifies volatile memory captures patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Insider threat investigation files

Identifies insider threat investigation files patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Backup catalogs

Identifies backup catalogs patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Business continuity plans

Identifies business continuity plans patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Failover architecture details

Identifies failover architecture details patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Capacity planning models

Identifies capacity planning models patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Asset inventory records

Identifies asset inventory records patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

CMDB relationship mappings

Identifies cmdb relationship mappings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Privileged account inventories

Identifies privileged account inventories patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Endpoint management policy profiles

Identifies endpoint management policy profiles patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Remote administration tool settings

Identifies remote administration tool settings patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

DNS zone files

Identifies dns zone files patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Domain registrar credentials

Identifies domain registrar credentials patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)

SLA breach analysis reports

Identifies sla breach analysis reports patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Major outage root-cause analyses

Identifies major outage root-cause analyses patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Support ticket transcripts

Identifies support ticket conversation transcripts in security and access control contexts. Enforcement requires timestamped requester/agent message turns; ticket, help-desk, and service-desk references without conversational structure remain discovery inventory.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Change management records

Identifies change management records patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Scheduled maintenance plans

Identifies scheduled maintenance plans patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Configuration baseline snapshots

Identifies configuration baseline snapshots patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Service dependency maps

Identifies service dependency maps patterns in security and access control contexts. Detects potential exposure of sensitive security information in international systems.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Treatment plan details

Identifies treatment plan details references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Medication histories

Identifies medication histories references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Laboratory test results

Identifies laboratory test results references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Diagnostic imaging data

Identifies diagnostic imaging data references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Pathology reports

Identifies pathology reports references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Clinician consultation notes

Identifies clinician consultation notes references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Substance use treatment records

Identifies substance use treatment records references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

HIV status data

Identifies hiv status data references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Immunization records

Identifies immunization records references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Genomic testing results

Identifies genomic testing results references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Preauthorization records

Identifies preauthorization records references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Hospital billing records

Identifies hospital billing records references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

Provider identifier records

Identifies provider identifier records references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Clinical trial participant data

Identifies clinical trial participant data references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Adverse event reports

Identifies adverse event reports references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Informed consent forms

Identifies informed consent forms references in healthcare and patient records. Protected health information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Student enrollment records

Identifies documents containing references to student enrollment records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Grade and assessment records

Identifies documents containing references to grade and assessment records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Academic transcripts

Identifies documents containing references to academic transcripts in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Student disciplinary records

Identifies documents containing references to student disciplinary records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Student counseling records

Identifies documents containing references to student counseling records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Financial aid applications

Identifies documents containing references to financial aid applications in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Scholarship evaluation files

Identifies documents containing references to scholarship evaluation files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Exam answer scripts

Identifies documents containing references to exam answer scripts in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Admissions review notes

Identifies documents containing references to admissions review notes in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Recommendation letters

Identifies documents containing references to recommendation letters in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Plagiarism investigation files

Identifies documents containing references to plagiarism investigation files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Campus incident reports

Identifies documents containing references to campus incident reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Alumni donor records

Identifies documents containing references to alumni donor records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Research participant consent files

Identifies documents containing references to research participant consent files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Institutional review board submissions

Identifies material submitted to, or decided by, a human-research review body rather than the body or compliance topic itself: submission artifacts (IRB submission, protocol amendment, adverse event report) enforce with a submission field, committee/governance anchors need two independent submission fields, and committee descriptions alone remain discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Unpublished thesis data

Identifies pre-publication thesis manuscripts or thesis datasets, not preliminary results from unrelated operational work: direct thesis/draft/embargo anchors enforce with one thesis field, broad findings/results language needs two independent thesis fields, and topic vocabulary alone remains discovery-only.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Grant peer review comments

Identifies grant peer-review comments and assessment records containing substantive reviewer observations, scores, or funding outcomes. Grant-review and application phrases are retained for discovery at 65; populated assessment fields raise confidence to 75, while formal proposal or reviewer references plus an explicit funding outcome raise confidence to 85.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Laboratory protocol records

Identifies documents containing references to laboratory protocol records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Export-controlled university research

Identifies documents containing references to export-controlled university research in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Enforcement is aimed at controlled university research and its technical data; ordinary import/export licensing language is discovery-only unless independent university-research or controlled-technical-data evidence is present.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Customer profile master data

Identifies documents containing references to customer profile master data in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Customer account credentials

Identifies documents containing references to customer account credentials in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Purchase history

Identifies documents containing references to purchase history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Browsing behavior logs

Identifies documents containing references to browsing behavior logs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Loyalty program balances

Identifies documents containing references to loyalty program balances in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Call center audio recordings

Identifies documents containing references to call center audio recordings in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Customer chat transcripts

Identifies documents containing captured customer messaging conversations in international contexts. Direct chat-transcript, customer-chat, live-chat, and chat-log anchors are retained; support-ticket wording is gated behind independent conversation-record context rather than treated as a transcript on its own, and generic customer-interaction, online-support, and customer-message phrasing no longer anchors detection.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Customer complaint case files

Identifies documents containing references to customer complaint case files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Churn propensity scores

Identifies documents containing references to churn propensity scores in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Fraud propensity scores

Identifies documents containing references to fraud propensity scores in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Customer segmentation outputs

Identifies documents containing references to customer segmentation outputs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Marketing suppression lists

Identifies documents containing references to marketing suppression lists in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Consent preference records

Identifies documents containing references to consent preference records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Contract usage analytics

Identifies documents containing references to contract usage analytics in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Invoice and payment history

Identifies documents containing references to invoice and payment history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Refund and chargeback history

Identifies documents containing references to refund and chargeback history in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Geofencing event histories

Identifies documents containing references to geofencing event histories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Ad attribution datasets

Identifies documents containing references to ad attribution datasets in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Personalization feature vectors

Identifies documents containing references to personalization feature vectors in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Escalated support case notes

Identifies documents containing references to escalated support case notes in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Taxpayer case management files

Identifies documents containing references to taxpayer case management files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Welfare eligibility determinations

Identifies individual welfare, social-assistance, and income-support eligibility decisions. Topic phrases are retained for discovery; enforcement requires applicant, household, income, dependant, means-test, benefit-category, outcome, review-right, or effective-date fields, and high confidence also requires a formal case/application reference or recorded eligibility decision.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Unemployment benefit records

Identifies individual unemployment-benefit, unemployment-insurance, JobSeeker, and re-employment assistance claims and determinations. Topic phrases are retained for discovery; enforcement requires claimant, employer, separation, earnings, job-search, obligation, benefit-period, payment-rate, or sanction fields, and high confidence also requires a formal claim reference or recorded decision.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Public housing assistance files

Identifies documents containing references to public housing assistance files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Child protection case files

Identifies documents containing references to child protection case files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Foster care placement records

Identifies documents containing references to foster care placement records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Disability assessment records

Identifies documents containing references to disability assessment records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Pension entitlement records

Identifies individual pension entitlement records, benefit calculations, eligibility decisions, and payment determinations. Topic phrases are retained for discovery; enforcement requires member, service, retirement-date, salary, contribution, accrued-benefit, beneficiary, payment-frequency, gross-pension, or commutation fields, and high confidence also requires a formal member/claim reference or recorded entitlement decision.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Immigration interview transcripts

Identifies documents containing references to immigration interview transcripts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Asylum claim narratives

Identifies documents containing references to asylum claim narratives in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Passport application packets

Identifies documents containing references to passport application packets in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Civil registry amendment records

Identifies individual civil-status and vital-record amendments, including corrections to birth, death, marriage, and legal-name entries. Civil-registry topics are retained for discovery at 65; populated amendment fields raise confidence to 75, while a formal registry reference and personal status fields raise confidence to 85.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Land registry ownership files

Identifies land-title and cadastral ownership records containing populated proprietor, tenure, parcel, legal-description, or encumbrance fields. Land-registry topics are retained for discovery at 65; populated register fields raise confidence to 75, while a formal title or parcel reference plus substantive ownership-interest evidence raise confidence to 85.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Vehicle title and transfer records

Identifies documents containing references to vehicle title and transfer records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Business licensing applications

Identifies business and trade licence application records, including renewal and variation applications. Topic phrases are retained for discovery; enforcement requires at least two populated applicant, enterprise, premises, activity, or licence fields, and high confidence also requires a formal application, licence, or permit reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Building and operating permit applications

Identifies building, construction, development/planning, occupancy, and site-operating permit application records across jurisdictions. Topic phrases are discovery-only; enforcement requires multiple application fields, while high confidence also requires a labelled application, permit, case, or file reference plus authority or decision context.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Inspection and enforcement records

Identifies documents containing references to inspection and enforcement records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Emergency aid request files

Identifies documents containing references to emergency aid request files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Constituent service case notes

Identifies documents containing references to constituent service case notes in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Criminal history records

Identifies documents containing references to criminal history records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Arrest records

Identifies documents containing references to arrest records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Mugshot image repositories

Identifies documents containing references to mugshot image repositories in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Witness identity records

Identifies documents containing references to witness identity records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Confidential informant identities

Identifies documents containing references to confidential informant identities in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Investigation case notes

Identifies documents containing references to investigation case notes in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Lawful intercept transcripts

Identifies documents containing references to lawful intercept transcripts in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Surveillance video evidence

Identifies documents containing references to surveillance video evidence in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Automated plate reader data

Identifies documents containing references to automated plate reader data in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Call detail record datasets

Identifies documents containing references to call detail record datasets in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Ballistics evidence records

Identifies documents containing references to ballistics evidence records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations. Coverage differentiates forensic ballistics records and findings from education and general firearms discussion; generic firearms-analysis language is discovery-only unless independent forensic case or examination-result evidence is present.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Forensic DNA profile records

Identifies documents containing references to forensic dna profile records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, ISO 27701

Probation and parole files

Identifies documents containing references to probation and parole files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Detention custody records

Identifies documents containing references to detention custody records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Juvenile justice records

Identifies documents containing references to juvenile justice records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Sealed court filing records

Identifies documents containing references to sealed court filing records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic partial
Jurisdictions
global
Regulations
GDPR, IPA 2009 (Qld), Privacy Act 1988 (Cth)

Plea negotiation documentation

Identifies documents containing references to plea negotiation documentation in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Victim impact statements

Identifies documents containing references to victim impact statements in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Protective order application records

Identifies documents containing references to protective order application records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Evidence handling logs

Identifies documents containing references to evidence handling logs in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Classified operation plans

Identifies documents containing references to classified operation plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Troop movement information

Identifies documents containing references to troop movement information in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Mission briefing packages

Identifies documents containing references to mission briefing packages in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Target package intelligence

Identifies documents containing references to target package intelligence in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Signals intelligence reports

Identifies documents containing references to signals intelligence reports in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Human intelligence source identities

Identifies documents containing references to human intelligence source identities in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Geospatial intelligence products

Identifies documents containing references to geospatial intelligence products in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Satellite tasking and collection plans

Identifies documents containing references to satellite tasking and collection plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Cryptographic keying material

Identifies cryptographic keying material patterns in security and access control contexts. Detects potential exposure of sensitive security information in Australian systems.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), NDB Scheme (Cth), SOCI Act 2018 (Cth), TIA Act 1979 (Cth)
Frameworks
CIS Controls, DISP, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Weapons system vulnerability data

Identifies documents containing references to weapons system vulnerability data in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Command authentication code material

Identifies documents containing references to command authentication code material in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Classified defense procurement specifications

Identifies documents containing references to classified defense procurement specifications in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Security clearance adjudication files

Identifies documents containing references to security clearance adjudication files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Force readiness assessments

Identifies documents containing references to force readiness assessments in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

War-gaming simulation outputs

Identifies documents containing references to war-gaming simulation outputs in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Contingency operations plans

Identifies documents containing references to contingency operations plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Allied intelligence exchange records

Identifies documents containing references to allied intelligence exchange records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Export-controlled defense technology docs

Identifies documents containing references to export-controlled defense technology docs in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Nuclear safeguards information

Identifies documents containing references to nuclear safeguards information in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Offensive cyber capability documentation

Identifies documents containing references to offensive cyber capability documentation in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

SCADA network diagrams

Identifies substantive SCADA, ICS, and OT network diagrams and topologies. Topic phrases are retained for discovery; enforcement requires control-zone, DMZ, trust-boundary, remote-site, communications, Purdue-level, field-network, or data-flow relationships, and high confidence also requires populated VLAN, address, HMI, RTU, PLC, DCS, or site detail.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR

PLC logic programs

Identifies substantive programmable-logic-controller programs and logic records. Topic phrases are retained for discovery; enforcement requires program structure such as rungs, contacts, coils, timers, function blocks, variables, or I/O addresses, and high confidence also requires a controller, rack, slot, production asset, or deployable I/O reference.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Distributed control system configurations

Identifies substantive distributed-control-system configuration records. Topic phrases are retained for discovery; enforcement requires controller, module, I/O, tag, alarm, or control-loop configuration content, and high confidence also requires a deployable tag, value, node, rack, or site reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Substation protection relay settings

Identifies substantive substation protection-relay settings and coordination records. Topic phrases are retained for discovery; enforcement requires a populated current, voltage, impedance, timing, or zone value, and high confidence also requires a substation, feeder, breaker, relay model, or device ID.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Pipeline pressure and flow setpoints

Identifies substantive pipeline pressure, flow, operating-limit, and control-setpoint records. Topic phrases are retained for discovery; enforcement requires a populated pressure or flow value, and high confidence also requires a pipeline segment, station, valve, control tag, or other live asset reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Water treatment dosing formulas

Identifies substantive water-treatment dosing formulas and control values. Topic phrases are retained for discovery; enforcement requires a populated dose, concentration, feed rate, or process value, and high confidence also requires a treatment-plant asset, process, or control-tag reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Electric grid dispatch plans

Identifies substantive electric-grid generation dispatch, unit-commitment, and power-system dispatch plans. Topic phrases are retained for discovery; enforcement requires populated generation, reserve, energy, or reactive-power quantities, and high confidence also requires current interval, generating unit, constraint, interconnector, or grid-operator detail.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Plant shutdown and startup procedures

Identifies substantive industrial plant shutdown, startup, emergency-shutdown, and turnaround procedures. Topic phrases are retained for discovery; enforcement requires ordered isolation, depressurisation, purge, valve, pump, permissive, interlock, handback, or verification actions, and high confidence also requires a populated equipment identifier, operating value, or timing.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Refinery process control setpoints

Identifies substantive refinery process-control setpoint and operating-envelope records. Topic phrases are retained for discovery; enforcement requires an actual process value, and high confidence also requires a control-loop tag or named refinery process asset.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Rail signaling configurations

Identifies substantive rail-signalling and train-control configuration records. Topic phrases are retained for discovery; enforcement requires interlocking, route-table, block, track-circuit, aspect, point-machine, or route-locking configuration content, and high confidence also requires a deployed control area, route, signal, track-circuit, station, or software reference.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Air traffic operational procedures

Identifies substantive air-traffic operational procedures. Topic phrases are retained for discovery; enforcement requires local runway, sector, waypoint, handoff, clearance, or airspace-procedure detail, and high confidence also requires an operational value such as a runway, flight level, distance, or radio frequency.

Type
regex
Confidence
medium
Detection quality
Not detected
Jurisdictions
global
Regulations
GDPR

Port facility security manifests

Identifies substantive port-facility security and access manifests. Topic phrases are retained for discovery; enforcement requires vessel, port-call, berth, cargo, crew, visitor, escort, access-zone, gate, or security-level manifest content, and high confidence also requires a populated IMO, port-call, manifest, berth, zone, or ISPS security-level identifier.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Telecom core network configurations

Identifies substantive telecom core-network configuration records. Topic phrases are retained for discovery, while enforcement requires routing, subscriber, peering, node, or mobile-core configuration content; high confidence also requires evidence of a live network asset or identifier.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Emergency restoration prioritization plans

Identifies substantive emergency and critical-service restoration prioritisation plans. Topic phrases are retained for discovery; enforcement requires ranked assets/services, restoration sequence, dependencies, alternate supply, crew assignment, affected sites, service areas, or estimated restoration content, and high confidence also requires a populated priority, asset/site identifier, time, capacity, or customer-impact value.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Critical spare parts inventories

Identifies substantive critical and maintenance spare-parts inventories. Topic phrases are retained for discovery; enforcement requires part-number, stock-on-hand, reorder, lead-time, storage, compatible-asset, supplier, or minimum-stock fields, and high confidence also requires a populated part, quantity, reorder, warehouse, bin, or location value.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

OT cyber incident reports

Identifies substantive operational-technology, ICS, SCADA, and industrial-control cyber incident reports. Topic phrases are retained for discovery; enforcement requires case facts such as affected assets, timelines, initial access, containment, indicators, root cause, recovery, or operational impact, and high confidence also requires a concrete indicator, vulnerability, address, or control asset identifier.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Physical badge access maps

Identifies substantive physical badge and door access-control maps. Topic phrases are retained for discovery; enforcement requires floor-plan, reader-to-door, security-zone, access-level, restricted-area, entry-point, zone-boundary, or credential-group relationships, and high confidence also requires populated door, reader, zone, entry, credential-group, or access-level identifiers.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

CCTV coverage and blind spot analyses

Identifies substantive CCTV coverage, camera-placement, surveillance-map, and blind-spot analyses. Topic phrases are retained for discovery; enforcement requires site/camera analysis detail, and high confidence requires both a precise site asset and an identified coverage weakness.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Hazardous material storage maps

Identifies substantive hazardous-material, dangerous-goods, and chemical storage maps. Topic phrases are retained for discovery; enforcement requires storage-area, containment-zone, chemical-name, dangerous-goods-class, segregation, spill-containment, or emergency-isolation relationships, and high confidence also requires a populated UN number, tank/store/cabinet/area identifier, or quantity.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Dam safety and integrity reports

Identifies substantive dam-safety, integrity, surveillance, failure, inundation, and consequence reports. Topic phrases are retained for discovery; enforcement requires condition or monitoring findings, and high confidence also requires a severe weakness, overdue remediation, emergency action, failure mode, or downstream consequence.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth)

Enterprise data inventories

Identifies documents containing references to enterprise data inventories in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Records of processing activities

Identifies documents containing references to records of processing activities in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Data classification matrices

Identifies matrices that map data or information categories to classification levels and handling controls. Topic phrases are retained for discovery; enforcement requires multiple matrix-column or control headings, and high confidence also requires a populated category-to-classification mapping.

Type
regex
Confidence
medium
Detection quality
Topic verified
Jurisdictions
global
Regulations
GDPR

Data retention and deletion schedules

Identifies documents containing references to data retention and deletion schedules in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Data protection impact assessments

Identifies documents containing references to data protection impact assessments in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Cross-border transfer assessments

Identifies documents containing references to cross-border transfer assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Standard contractual clause addenda

Identifies documents containing references to standard contractual clause addenda in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Breach likelihood and impact assessments

Identifies documents containing references to breach likelihood and impact assessments in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Vendor privacy due diligence reports

Identifies documents containing references to vendor privacy due diligence reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Consent audit trail records

Identifies documents containing references to consent audit trail records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Data subject access request files

Identifies documents containing references to data subject access request files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Deletion request case files

Identifies documents containing references to deletion request case files in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Privacy complaint investigations

Identifies documents containing references to privacy complaint investigations in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Regulatory reporting draft responses

Identifies pre-submission draft responses, reports, and submissions prepared for a regulator or supervisory authority. Topic phrases are retained for discovery; enforcement requires reporting-period, event, proposed-disclosure, affected-record, data-quality, control, corrective-action, legal-review, or outstanding-evidence content, and high confidence also requires approval, submission, clearance, comment, deadline, or regulator-reference workflow evidence.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Compliance monitoring outputs

Identifies documents containing references to compliance monitoring outputs in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Ethics committee decision records

Identifies documents containing references to ethics committee decision records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Policy attestation records

Identifies documents containing references to policy attestation records in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Model risk assessment reports

Identifies documents containing references to model risk assessment reports in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Algorithmic impact assessments

Identifies documents containing references to algorithmic impact assessments in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Third-party assurance attestations

Identifies documents containing references to third-party assurance attestations in Australian contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), HRIPA (Cth), IPA 2009 (Qld), My Health Records Act 2012 (Cth), NDB Scheme (Cth), Privacy Act 1988 (Cth), TIA Act 1979 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Voter roll extract files

Identifies documents containing references to voter roll extract files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Absentee ballot tracking data

Identifies documents containing references to absentee ballot tracking data in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Election incident response records

Identifies documents containing references to election incident response records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)
Frameworks
ISO 27001

Campaign donor identity records

Identifies documents containing references to campaign donor identity records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Politically exposed person assessment files

Identifies documents containing references to politically exposed person assessment files in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Diplomatic cable traffic

Identifies documents containing references to diplomatic cable traffic in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Treaty negotiation drafts

Identifies documents containing references to treaty negotiation drafts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Sanctions policy drafts

Identifies documents containing references to sanctions policy drafts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Export license decision files

Identifies documents containing references to export license decision files in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001, ISO 27701

Embargo enforcement case records

Identifies documents containing references to embargo enforcement case records in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Pre-release national budget drafts

Identifies documents containing references to pre-release national budget drafts in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Cabinet briefing books

Identifies documents containing references to cabinet briefing books in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth), GDPR
Frameworks
DISP, ISO 27001, NIST CSF

National emergency response plans

Identifies documents containing references to national emergency response plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Strategic communications plans

Identifies documents containing references to strategic communications plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Government media war-room plans

Identifies operational government media war-room plans used to coordinate monitoring, rapid response, approvals, rebuttals, and spokesperson activity. War-room plan topics are retained for discovery; enforcement requires independent government-office context and multiple operational workflow elements, and high confidence also requires populated assignments, times, or issue references.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Leak investigation records

Identifies documents containing references to leak investigation records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR, AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth)

Whistleblower protection case records

Identifies documents containing references to whistleblower protection case records in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Sovereign debt issuance plans

Identifies documents containing references to sovereign debt issuance plans in international contexts. This information type is classified as personally identifiable information under applicable data protection regulations.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
GDPR

Central bank intervention plans

Identifies documents containing references to central bank intervention plans in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Census microdata

Identifies documents containing references to census microdata in Australian contexts. This information type is classified as personally identifiable information under the Privacy Act 1988.

Type
regex
Confidence
medium
Detection quality
Topic false positive
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), NDB Scheme (Cth), Privacy Act 1988 (Cth), GDPR
Frameworks
ISO 27001

Trade Secret/Proprietary Notice

Detects trade secret designations, proprietary information notices, and commercial-in-confidence markings.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
AML/CTF Act (Cth), IPA 2009 (Qld), Privacy Act 1988 (Cth)
Frameworks
ISO 27001, NIST CSF, PCI-DSS

Trade Union Membership

Detects references to trade union membership: union member status, union dues, shop stewards, collective bargaining unit membership and union local numbers. GDPR Article 9 lists trade union membership as a special category of personal data with no fixed format — detectable only by topic vocabulary. Topic-grade detector.

Type
keyword_list
Confidence
low
Jurisdictions
global, eu
Regulations
GDPR
Frameworks
ISO 27001, NIST CSF, SOC 2

TRON Address

Detects TRON (TRX) mainnet addresses: Base58Check encoding of a 21-byte payload (0x41 version byte + 20-byte address hash), always starting with the letter "T" and exactly 34 characters long. The 0x41 prefix byte fixes the leading character as "T" and the length at 34 (58^34 > 66*256^24; 58^33 insufficient). A single leading letter is weak structure, so detection is context-gated. Prefix/length/charset verified against TRON developer docs and the TRON protocol overview.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
FATF Recommendations, AML/CTF Act (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Twilio API Key

Detects Twilio API key SIDs (SK prefix followed by 32 hex characters). Paired with its secret, a leaked Twilio API key allows sending SMS/voice and accessing account data and call logs.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Types Of Medication

Detects Types Of Medication patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
global
Regulations
GDPR, HIPAA
Frameworks
ISO 27001, ISO 27701, SOC 2

URL

Detects URL patterns.

Type
regex
Confidence
medium
Detection quality
Partial
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

User Login Credentials

Detects user login credential patterns in documents and configuration files. This pattern is based on a Microsoft Purview built-in sensitive information type. In Purview, this is a broad, function-based detector. This keyword-based version flags documents that may contain login credentials for further review.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Vendor Risk Assessment

Detects vendor risk assessments revealing third-party security posture and supply chain vulnerabilities.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
IPA 2009 (Qld), Privacy Act 1988 (Cth), SOCI Act 2018 (Cth)
Frameworks
DISP, ISO 27001, NIST CSF

Vercel Access Token

Detects Vercel credentials: the current prefixed token family introduced in February 2026 (vcp_ personal access tokens, vci_ integration tokens, vca_ app access tokens, vcr_ app refresh tokens, vck_ API keys), Vercel Blob read-write tokens (vercel_blob_rw_), and, when labelled with Vercel context in an assignment, the legacy unprefixed 24-character token form. A leaked token grants control of the account's projects, deployments and environment variables; a leaked Blob token grants read/write access to the associated storage.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Vehicle Identification Number

Detects Vehicle Identification Number patterns. Excludes I, O, Q characters

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
GDPR
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

Vulnerability Assessment Report

Detects vulnerability assessment reports containing CVE details and unpatched system findings.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), SOCI Act 2018 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS

X.509 Certificate Private Key

Detects X.509 certificate private key PEM headers. This is a broad pattern covering RSA, EC, PKCS#8, and OpenSSH private key formats. This pattern is based on a Microsoft Purview built-in sensitive information type. For more specific detection, see global-rsa-private, global-ec-private, global-pkcs8-private, and global-openssh-private.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

xAI API Key

Detects xAI (Grok) API keys, which use a distinctive xai- prefix followed by a long alphanumeric body. A leaked key grants unauthorized, billed access to xAI's Grok models and any prompts or data routed through the API.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, SOC 2

XRP Ledger Address

Detects XRP Ledger classic addresses: base58-encoded, starting with the character "r", 25-35 characters long, encoding a 21-byte buffer (1-byte prefix value 0 + 160-bit account ID) with a 4-byte checksum. The XRP base58 dictionary excludes 0, capital O, capital I and lowercase l — the same 58-character set as standard base58, so a standard base58 class matches the charset. A single leading letter is weak structure, so detection is context-gated. Length/charset/prefix verified against xrpl.org address docs.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
FATF Recommendations, AML/CTF Act (Cth)
Frameworks
ISO 27001, ISO 27701, SOC 2

Government Financial Audit - Material Weakness

Detects internal or QAO (Queensland Audit Office) audit findings identifying material weaknesses in financial controls before public tabling. Disclosure enables exploitation of identified control gaps.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Auditor-General Act 2009 (Qld), Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Government Insurance and Indemnity Schedule

Detects whole-of-government or agency-level insurance coverage schedules, self-insurance reserves, indemnity limits, and excess/deductible structures that reveal the State's financial exposure limits.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Government Procurement Pricing Schedule - Sealed

Detects sealed pricing schedules submitted by tenderers as part of government procurement processes, held in confidence until evaluation is complete.

Type
document_marker
Confidence
high
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Government Revenue Forecast Model

Detects internal government revenue projections including tax revenue, royalties, mining/gas receipts, and stamp duty forecasts before public release in budget papers or MYFER.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Greece Driver's License Number

Detects Greece driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
gr, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Αστυνομική Ταυτότητα

Detects Αστυνομική Ταυτότητα patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, gr
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Greece Passport Number

Detects Greece passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
gr, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Greece Physical Addresses

Detects Greece Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
gr, eu
Regulations
GDPR

ΑΜΚΑ

Detects ΑΜΚΑ patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, gr
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Greek Tax identification Number

Detects Greek Tax identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
gr, eu
Regulations
gdpr

Grant Assessment Scoring Matrix

Detects internal scoring sheets, panellist rankings, weighted criteria assessments, and funding recommendations for competitive government grant programs before public announcement.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

香港身份證

Detects 香港身份證 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
hk
Regulations
PDPO (Hong Kong)
Frameworks
ISO 27001, ISO 27701

HKSAR Passport Number

Detects Hong Kong Special Administrative Region (HKSAR) passport numbers issued by the Immigration Department under the HKSAR Passports Ordinance (Cap. 539). HKSAR passport numbers are nine characters: the current series is the letter H followed by 8 digits; earlier biometric series used K followed by 8 digits, and KJ (48-page jumbo booklets) followed by 7 digits.

Type
regex
Confidence
medium
Jurisdictions
hk
Regulations
HKSAR Passports Ordinance (Cap. 539), PDPO (Hong Kong)
Frameworks
ISO 27001, ISO 27701

Croatia Driver's License Number

Detects Croatia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
hr, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Osobna iskaznica

Detects Osobna iskaznica patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, hr
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Croatia Passport Number

Detects Croatia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
hr, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Osobni identifikacijski broj (OIB)

Detects Osobni identifikacijski broj (OIB) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, hr
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Croatia Physical Addresses

Detects Croatia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
hr, eu
Regulations
GDPR

Hungary Driver's License Number

Detects Hungary driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
hu, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Hungary Passport Number

Detects Hungary passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
hu, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Személyi szám

Detects Személyi szám patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, hu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Hungary Physical Addresses

Detects Hungary Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
hu, eu
Regulations
GDPR

TAJ szám

Detects TAJ szám patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, hu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Hungary Tax identification Number

Detects Hungary Tax identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
hu, eu
Regulations
gdpr

Hungarian Value Added Tax Number

Detects Hungarian Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
hu, eu
Regulations
GDPR

Indonesia Drivers License Number

Detects Indonesia drivers license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
id
Regulations
PDP Law (Indonesia)
Frameworks
ISO 27001, ISO 27701

Kartu Tanda Penduduk (KTP)

Detects Kartu Tanda Penduduk (KTP) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
id
Regulations
PDP Law (Indonesia)
Frameworks
ISO 27001, ISO 27701

Indonesia NPWP

Detects Indonesian taxpayer identification numbers (NPWP). Classic NPWP is 15 digits commonly formatted 01.234.567.8-012.000; newer 16-digit forms align with NIK for individuals under tax reform.

Type
regex
Confidence
medium
Jurisdictions
id
Regulations
UU PDP (Indonesia), KUP Law (Indonesia)
Frameworks
ISO 27001, ISO 27701

Indonesia Passport Number

Detects Indonesia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
id
Regulations
PDP Law (Indonesia)
Frameworks
ISO 27001, ISO 27701

Ireland Driver's License Number

Detects Ireland driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ie, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Ireland Passport Number

Detects Ireland passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ie, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Ireland Physical Addresses

Detects Ireland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
ie, eu
Regulations
GDPR

Uimhir PSP

Detects Uimhir PSP patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, ie
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Israel Bank Account Number

Detects Israel Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
il
Regulations
Protection of Privacy Law (Israel), PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Teudat Zehut

Detects Teudat Zehut patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
il
Regulations
Protection of Privacy Law (Israel)
Frameworks
ISO 27001, ISO 27701

Aadhaar

Detects Aadhaar patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India)
Frameworks
ISO 27001, ISO 27701

India Driver's License Number

Detects India driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
in
Regulations
DPDPA
Frameworks
ISO 27001, ISO 27701

India GST Number

Detects India GST Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

India IFSC Code

Detects Indian Financial System Codes (IFSC) used to identify bank branches on the NEFT/RTGS/IMPS networks. Format is four letters (bank code), a mandatory zero, then six alphanumeric characters (branch code), total length 11, typically uppercase.

Type
regex
Confidence
high
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India), Payment and Settlement Systems Act 2007
Frameworks
ISO 27001, ISO 27701

PAN

Detects PAN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India)
Frameworks
ISO 27001, ISO 27701

India Passport Number

Detects Indian passport numbers issued by the Ministry of External Affairs. The standard format is a single letter (A-Z excluding Q, X and Z, which are not used as the leading character) followed by 7 digits, sometimes printed with a space between the letter and the digits (e.g. 'K1234567' or 'K 1234567'). Corroborative keyword proximity is strongly recommended because the body is only 7 digits.

Type
regex
Confidence
medium
Jurisdictions
in
Regulations
DPDP Act 2023, GDPR
Frameworks
ISO 27001, ISO 27701

India Phone Number

Detects Indian mobile telephone numbers per the Department of Telecommunications' National Numbering Plan 2003 (as amended): 10-digit mobile numbers with a constrained leading digit (6-9, expanded from 7-9 to include 6 when DoT authorized 6-series allocation in 2017), in both the bare domestic form and the +91 international form (leading 0 dropped). Landline/STD (Subscriber Trunk Dialling) numbers are intentionally out of scope: STD codes vary 2-8 digits with no verified structural rule constraining their leading digit, so a regex loose enough to cover them (just "10 digits after a leading 0") would be barely tighter than matching any 11-digit sequence — far too high a digit-collision risk to ship without a genuinely verified constraint. See false_positives.

Type
regex
Confidence
medium
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India), TCCCPR
Frameworks
ISO 27001, ISO 27701, SOC 2

India EPFO Universal Account Number

Detects Employees Provident Fund Organisation (EPFO) Universal Account Numbers (UAN). UAN is a 12-digit number assigned to employees to link multiple PF member IDs across employers. Leading digit is non-zero.

Type
regex
Confidence
medium
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India), EPF and MP Act 1952
Frameworks
ISO 27001, ISO 27701

India UPI Virtual Payment Address

Detects Unified Payments Interface (UPI) Virtual Payment Addresses (VPA / UPI ID) used in India. Format is a local part and a payment-service provider handle separated by @ (for example name@oksbi or business@ybl). Handles are alphabetic PSP codes; local parts allow letters, digits, dot, underscore and hyphen.

Type
regex
Confidence
medium
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India), Payment and Settlement Systems Act 2007
Frameworks
ISO 27001, ISO 27701

Electoral Photo Identity Card (EPIC)

Detects Electoral Photo Identity Card (EPIC) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
in
Regulations
DPDPA, IT Act 2000 (India)
Frameworks
ISO 27001, ISO 27701

Iceland Physical Addresses

Detects Iceland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
eu, is
Regulations
Data Protection Act (Iceland)

Codice Fiscale

Detects Codice Fiscale patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, it
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Italy Driver's License Number

Detects Italy driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
it, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Italy Passport Number

Detects Italy passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
it, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Italian Phone Number

Detects Italian mobile telephone numbers per AGCOM's national numbering plan (Delibera n. 8/15/CIR, Allegato A): the mobile/personal-communications block, structurally defined as "3XYZ" plus six further digits (a 10-digit total for numbering assigned under the current plan), in both the domestic and +39 international forms. The delibera permits already-assigned legacy 9-digit mobile numbering to persist, so any surviving legacy 9-digit mobile numbers are a known potential false negative of this 10-digit regex — kept at 10 digits deliberately, since evidence that live 9-digit stock persists today is inconclusive and loosening the length bound would raise digit collision for every match. Geographic (landline) numbers are intentionally out of scope: the AGCOM plan family bounds geographic numbers at a 10-11 digit total (11 maximum), but within that bound the "0" block's second digit is structurally unconstrained and the minimum/per-prefix length variability across the legacy short-number stock is not verified from a primary source — a 0-prefixed regex spanning that length range with no second-digit constraint would be highly collision-prone — and Italian landline numbers are also the one well-known exception where the leading 0 is retained even in the +39 international form, a further formatting axis to model. Mobile numbers carry no such leading-0 quirk (they never had a leading 0 to begin with).

Type
regex
Confidence
medium
Jurisdictions
it
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

Italy Physical Addresses

Detects Italy Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
it, eu
Regulations
GDPR

Italy Value Added Tax Number

Detects Italy Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
it, eu
Regulations
GDPR

Japan Bank Account Number

Detects Japan Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Japan Driver's License Number

Detects Japan driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI
Frameworks
ISO 27001, ISO 27701

Japanese My Number Corporate

Detects Japanese My Number Corporate patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. The Corporate Number (法人番号) is a 13-digit identifier assigned to corporations and organisations in Japan by the National Tax Agency.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI

My Number

Detects My Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI
Frameworks
ISO 27001, ISO 27701

Japan Passport Number

Detects Japan passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI
Frameworks
ISO 27001, ISO 27701

Japan Physical Addresses

Detects Japan Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
jp
Regulations
APPI

在留カード番号

Detects 在留カード番号 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI
Frameworks
ISO 27001, ISO 27701

住民票コード

Detects 住民票コード patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI
Frameworks
ISO 27001, ISO 27701

社会保険番号

Detects 社会保険番号 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
jp
Regulations
APPI
Frameworks
ISO 27001, ISO 27701

Judicial Review Defence File

Detects government defence materials for judicial review of administrative decisions. These files contain the State's candid assessment of decision-making deficiencies and legal vulnerabilities. Disclosure directly prejudices the State's defence and may establish precedent affecting thousands of similar decisions.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), Judicial Review Act 1991 (Qld)
Frameworks
QGISCF

Kenya National ID

Detects Kenya national identity card numbers (typically 7-8 digits).

Type
regex
Confidence
medium
Jurisdictions
ke
Regulations
Data Protection Act 2019 (Kenya)
Frameworks
ISO 27001, ISO 27701

South Korea Driver's License Number

Detects South Korea driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
kr
Regulations
PIPA
Frameworks
ISO 27001, ISO 27701

South Korea Passport Number

Detects South Korea passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
kr
Regulations
Personal Information Protection Act (Korea)
Frameworks
ISO 27001, ISO 27701

Korea Physical Addresses

Detects Korea Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
kr
Regulations
PIPA (South Korea)

RRN

Detects RRN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
kr
Regulations
PIPA (South Korea)
Frameworks
ISO 27001, ISO 27701

Lawful Interception Warrant

Detects documents containing telecommunications interception warrants and stored communications warrants issued under the Telecommunications (Interception and Access) Act 1979 (Cth). Disclosure of the existence of an interception warrant is a criminal offence under s.63 of the TIA Act and alerts targets to switch to unmonitored channels.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
PPRA 2000 (Qld), TIA Act 1979 (Cth)
Frameworks
QGISCF

Liechtenstein Physical Addresses

Detects Liechtenstein Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
li, eu
Regulations
GDPR

LPP Claim Assessment

Detects internal assessments evaluating whether specific documents or communications attract legal professional privilege, including analysis of privilege vulnerabilities. These meta-privilege documents map where the State's privilege claims are strong and where they are vulnerable.

Type
keyword_proximity
Confidence
low
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Lithuania Driver's License Number

Detects Lithuania driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
lt, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Lithuania Passport Number

Detects Lithuania passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
lt, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Asmens kodas

Detects Asmens kodas patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, lt
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Lithuania Physical Addresses

Detects Lithuania Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
lt, eu
Regulations
GDPR

Luxembourg Driver's License Number

Detects Luxembourg driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
lu, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Numéro d'identification national (entités)

Detects Numéro d'identification national (entités) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, lu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Numéro d'identification national

Detects Numéro d'identification national patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, lu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Luxembourg Passport Number

Detects Luxembourg passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
lu, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Luxembourg Physical Addresses

Detects Luxembourg Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
lu, eu
Regulations
GDPR

Latvia Driver's License Number

Detects Latvia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
lv, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Latvia Passport Number

Detects Latvia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
lv, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Personas kods

Detects Personas kods patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
eu, lv
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Latvia Physical Addresses

Detects Latvia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
lv, eu
Regulations
GDPR

M&A Legal Due Diligence for GOCs

Detects legal opinions and due diligence reports for mergers, acquisitions, or privatisations involving Government Owned Corporations (GOCs) or government assets. Disclosure is market-sensitive and commercially prejudicial, potentially breaching continuous disclosure obligations.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), GOC Act 1993 (Qld)
Frameworks
QGISCF

Litigation Strategy Document

Detects privileged litigation strategy documents and related case strategy materials, including high-exposure matters (significant financial exposure or systemic policy impact), defence strategy content, prospects assessments, and settlement posture. Covers both formal major-matter strategy packs and general litigation strategy document references in Australian legal contexts.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Malta Driver's License Number

Detects Malta driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
mt, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Karta tal-Identità

Detects Karta tal-Identità patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, mt
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Malta Passport Number

Detects Malta passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
mt, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Malta Physical Addresses

Detects Malta Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
mt, eu
Regulations
GDPR

Malta Tax ID Number

Detects Malta Tax ID Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
mt, eu
Regulations
gdpr

Mexico CLABE

Detects Mexican CLABE (Clave Bancaria Estandarizada) numbers used for SPEI interbank transfers. CLABE is an 18-digit standardized bank account number including bank code, branch, account and check digit.

Type
regex
Confidence
medium
Jurisdictions
mx
Regulations
LFPDPPP (Mexico), Fintech Law (Mexico)
Frameworks
ISO 27001, ISO 27701

CURP

Detects CURP patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
mx
Regulations
LFPDPPP (MX)
Frameworks
ISO 27001, ISO 27701

Mexico Passport Number

Detects Mexican passport numbers issued by the Secretaría de Relaciones Exteriores (SRE). Older passports use a single letter followed by 7-8 digits; newer books carry an 8-9 character alphanumeric serial. Mixed alphanumeric serials are broad candidates that also match order IDs, booking codes, and product serials — they are not treated as Mexican passport numbers without issuer or passport-document evidence. Because the format is short and loosely structured, corroborative keyword proximity is strongly recommended to reduce false positives.

Type
regex
Confidence
medium
Jurisdictions
mx
Regulations
LFPDPPP, CCPA/CPRA
Frameworks
ISO 27001, ISO 27701

RFC

Detects Mexican RFC (Registro Federal de Contribuyentes) taxpayer identifiers in both official formats: the 13-character natural-person form (4-letter name stem + 6-digit date + 3-character homoclave) and the 12-character legal-entity form (3-character name stem, which may include Ñ or &, + 6-digit date + 3-character homoclave).

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
mx
Regulations
LFPDPPP (MX)
Frameworks
ISO 27001, ISO 27701

MyKad

Detects MyKad patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
my
Regulations
PDPA (Malaysia)
Frameworks
ISO 27001, ISO 27701

Malaysia Passport Number

Detects Malaysia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
my
Regulations
PDPA (Malaysia)
Frameworks
ISO 27001, ISO 27701

Malaysia Tax Identification Number (TIN)

Detects Malaysian individual Tax Identification Numbers (TIN / Nombor Pengenalan Cukai) issued by the Inland Revenue Board of Malaysia (LHDN / HASiL). Since 2 January 2023 individual TINs use the prefix IG followed by 9-11 digits (11-13 characters total); the legacy individual prefixes SG (employment income) and OG (business income) with the same digit range remain in circulation in older records. Entity TINs (C, D, F, PT, TA and similar prefixes) are deliberately out of scope: single-letter prefixes over a digit run are too collision-prone and entity TINs are not personal data.

Type
regex
Confidence
medium
Jurisdictions
my
Regulations
Income Tax Act 1967 (Malaysia), PDPA (Malaysia)
Frameworks
ISO 27001, ISO 27701

Native Title Negotiation Strategy

Detects legal strategy documents for native title negotiations, ILUAs, and compensation claims under the Native Title Act 1993 (Cth). Disclosure reveals the State's negotiation position on land rights with multi-generational consequences and multi-billion dollar implications.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Native Title Act 1993 (Cth)
Frameworks
QGISCF

NATO Marking - RESTRICTED / CONFIDENTIAL / SECRET / COSMIC TOP SECRET

Detects NATO security classification markings under the NATO security policy (C-M(2002)49): the spelled-out national-security levels NATO RESTRICTED (NR), NATO CONFIDENTIAL (NC) and NATO SECRET (NS), and the highest level COSMIC TOP SECRET (CTS) — where the codeword COSMIC attaches only to TOP SECRET. ATOMAL caveat markings (NATO CONFIDENTIAL ATOMAL, NATO SECRET ATOMAL, COSMIC TOP SECRET ATOMAL) are covered as suffixes of their parent level marking. Marking syntax verified directly against the International Programs Security Handbook (US-government primary source reproducing NATO security-directive marking rules) and corroborating NATO security briefings; matched case-sensitively so ordinary lowercase prose ("a nato secret") does not trigger it.

Type
regex
Confidence
high
Jurisdictions
nato
Regulations
NATO Security Policy C-M(2002)49
Frameworks
NATO Security Policy

Nigeria NIN

Detects Nigeria National Identification Numbers (NIN) — 11 digits from NIMC.

Type
regex
Confidence
medium
Jurisdictions
ng
Regulations
NDPR (Nigeria), NIMC Act
Frameworks
ISO 27001, ISO 27701

BSN

Detects BSN patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, nl
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Netherlands Driver's License Number

Detects Netherlands driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
nl, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Netherlands Passport Number

Detects Netherlands passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
nl, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Netherlands Phone Number

Detects Dutch national telephone numbers per the ACM-administered numbering plan: 10-digit numbers (leading trunk 0 included) covering geographic numbers (area code first significant digit 1-5 or 7, e.g. 020 Amsterdam, 010 Rotterdam, 070 Den Haag) and mobile numbers (06 prefix), plus the +31 international form (leading 0 dropped), including the widespread "+31 (0)6 12345678" letterhead rendering (a common-but-nonstandard practice — ITU-T E.123 advises against the parenthesised trunk digit in international notation, but it is ubiquitous on Dutch letterheads, so it is matched for detection purposes). Numbers beginning 08 (0800 free-of-charge service numbers, 088 non-geographic business lines) and 09 (0900/0906/0909 premium-rate information numbers) are intentionally out of scope — these are organizational/service numbers rather than personal PII, mirroring how uk-phone-number and fr-phone-number scope out their own non-geographic service ranges. Note this also excludes the 085 and 091 location-independent subscriber ranges (VoIP numbers ACM makes available to individuals as well as businesses): a personal 085/091 VoIP line is therefore a known false negative, accepted because the 085/088/091 block is predominantly organizational in practice and cannot be split from it structurally.

Type
regex
Confidence
medium
Jurisdictions
nl
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

Netherlands Physical Addresses

Detects Netherlands Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
nl, eu
Regulations
GDPR

Netherlands Tax Identification Number

Detects Netherlands Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
nl, eu
Regulations
GDPR

Netherlands Value Added Tax Number

Detects Netherlands Value Added Tax Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. VAT numbers have country-specific prefixes that aid detection accuracy.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
nl, eu
Regulations
GDPR

Fødselsnummer

Detects Fødselsnummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, no
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Norway Passport Number

Detects Norwegian passport numbers issued by the police (politiet). The 2020 series uses a nine-character document number: ordinary (C) and emergency (K) passports are one prefix letter plus two characters that may be letters or digits plus six digits (specimen CCC002251); diplomatic (FG), service (FH), special (FJ), travel-document (FK) and foreigner (FL) passports are a two-letter prefix plus one letter-or-digit plus six digits. Pre-2020 series passports (in circulation until October 2030) carry an eight-digit document number.

Type
regex
Confidence
medium
Jurisdictions
no
Regulations
GDPR, Passport Act (Norway, passloven)
Frameworks
ISO 27001, ISO 27701

Norway Physical Addresses

Detects Norway Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
eu, no
Regulations
Personal Data Act (Norway)

New Zealand bank account number

Detects New Zealand bank account number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

New Zealand Driver License Number

Detects New Zealand driver license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
ISO 27001, ISO 27701

New Zealand Inland Revenue number

Detects New Zealand Inland Revenue number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

New Zealand Marking - CONFIDENTIAL

Detects the New Zealand Government CONFIDENTIAL national-security classification under the Protective Security Requirements (PSR) classification system: the verified control/dissemination marking separator (CONFIDENTIAL//..., e.g. CONFIDENTIAL//NZEO) and a gated bracket form ([CONFIDENTIAL]). Deliberately narrow v1: no bare-word tier (CONFIDENTIAL is overwhelmingly common as generic business/legal boilerplate — NDAs, email footers, "STRICTLY CONFIDENTIAL", "PRIVATE AND CONFIDENTIAL" — and would swamp any bare-word detector), and the bracket tier is hard-gated by New Zealand government context because, unlike its sibling markings, [CONFIDENTIAL] is not a verified SEEMail trigger word. Regex logic verified directly against official PSR marking-format guidance (protectivesecurity.govt.nz); matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
PSR

New Zealand Marking - IN-CONFIDENCE

Detects the New Zealand Government IN-CONFIDENCE protective marking under the Protective Security Requirements (PSR) classification system: endorsed forms (e.g. MEDICAL IN-CONFIDENCE, BUDGET: IN-CONFIDENCE), the legacy SEEMail bracket trigger-word convention ([IN-CONFIDENCE]), and the bare ALL-CAPS document-banner form. Regex logic verified against the official PSR Classification Handbook (protectivesecurity.govt.nz) and Cabinet Office Circular CO(08)1; matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
PSR

New Zealand Marking - RESTRICTED

Detects the New Zealand Government RESTRICTED national-security classification under the Protective Security Requirements (PSR) classification system: the verified control/dissemination marking separator (RESTRICTED//..., e.g. RESTRICTED//REL TO NZL, GBR), the legacy SEEMail bracket trigger-word convention ([RESTRICTED]), and the bare ALL-CAPS document-banner form gated by New Zealand government context and a collocation-noise exclusion. Regex logic verified directly against official PSR marking-format guidance (protectivesecurity.govt.nz); matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
PSR

New Zealand Marking - SECRET / TOP SECRET

Detects the New Zealand Government SECRET and TOP SECRET national-security classifications under the Protective Security Requirements (PSR) classification system: the verified control/dissemination marking separator ((TOP )SECRET//..., e.g. SECRET//NZEO, TOP SECRET//REL TO NZL, FVEY), the TOP SECRET banner-words phrase (tolerant of a hyphen or PDF-line-wrap-inserted whitespace between TOP and SECRET), and a New Zealand government/PSR-context-gated bare SECRET banner. Deliberately omits a SEEMail square-bracket trigger-word tier: the complete SEEMail bracket trigger-word set is [SEEMAIL]/[TRUSTED]/[RESTRICTED]/[SENSITIVE]/[IN-CONFIDENCE], all at or below SEEMail's own RESTRICTED-tier service ceiling, so [SECRET]/[TOP SECRET] bracket forms are structurally implausible and unattested. Regex logic verified directly against official PSR marking-format guidance (protectivesecurity.govt.nz); matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
PSR

New Zealand Marking - SENSITIVE

Detects the New Zealand Government SENSITIVE protective marking under the Protective Security Requirements (PSR) classification system: the legacy SEEMail bracket trigger-word convention ([SENSITIVE]), endorsed forms (e.g. BUDGET SENSITIVE, COMMERCIAL: SENSITIVE, CABINET SENSITIVE), and the bare ALL-CAPS document-banner form gated by New Zealand government context. Regex logic verified against the official PSR Classification Handbook (protectivesecurity.govt.nz) and Cabinet Office Circular CO(08)1; matched case-sensitively.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
PSR

New Zealand Ministry of Health Number

Detects New Zealand Ministry of Health Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
ISO 27001, ISO 27701, SOC 2

New Zealand Business Number (NZBN)

Detects New Zealand Business Numbers (NZBNs) — the 13-digit universal business identifier administered by MBIE. Every NZBN is a GS1 Global Location Number (GLN): the first two digits are 94 (the GS1 prefix identifying New Zealand entities), the next ten digits are the business entity identifier, and the final digit is a GS1 mod-10 check digit. A bare 13-digit run has a phone-number-sized collision surface (NZ mobile/landline numbers, card fragments, timestamps), so every tier requires the number to be directly attached to an NZBN label — label-embedded-in-regex counts as label gating per the D1 decision record. There is deliberately no bare unlabelled tier.

Type
regex
Confidence
medium
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ), Companies Act 1993 (NZ)
Frameworks
ISO 27001, ISO 27701, SOC 2

New Zealand Physical Addresses

Detects New Zealand Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)

New Zealand Social Welfare Number

Detects New Zealand Social Welfare Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the generic numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
nz
Regulations
Privacy Act 2020 (NZ)
Frameworks
ISO 27001, ISO 27701

Organised Crime Task Force Intelligence

Detects documents containing strategic and tactical intelligence on organised crime networks including network mapping, financial flow analysis, key facilitator identification, and cross-jurisdictional cooperation intelligence. QPS Taskforce Maxima handles OMCG investigations. Disclosure enables criminal organisations to restructure and eliminate suspected informants.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Crime and Corruption Act 2001 (Qld), PPRA 2000 (Qld)
Frameworks
QGISCF

Patent Prosecution Strategy Pre-Filing

Detects legal strategy for patent prosecution before filing, including prior art assessments, claim drafting strategy, and freedom-to-operate opinions. Disclosure destroys patent novelty or reveals prosecution strategy to competitors. Note: trainable classifier recommended for production deployment.

Type
keyword_proximity
Confidence
low
Jurisdictions
global
Regulations
Patents Act 1990 (Cth)
Frameworks
QGISCF

Payroll Master File with Tax File Numbers

Detects bulk payroll data files containing employee names, Tax File Numbers (TFNs), bank account details, and salary information. Disclosure enables mass identity theft, fraudulent tax returns, and targeted social engineering.

Type
regex
Confidence
high
Detection quality
Error
Jurisdictions
au
Regulations
Criminal Code 1899 (Qld), Privacy Act 1988 (Cth), Tax Admin Act 1953 (Cth)
Frameworks
QGISCF

Peru DNI

Detects Peru Documento Nacional de Identidad (DNI) numbers — 8 digits.

Type
regex
Confidence
medium
Jurisdictions
pe
Regulations
Ley de Protección de Datos Personales (Peru)
Frameworks
ISO 27001, ISO 27701

Philippine Identification System (PhilSys)

Detects Philippine Identification System (PhilSys) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
ph
Regulations
Data Privacy Act of 2012 (Philippines)
Frameworks
ISO 27001, ISO 27701

Philippines Passport Number

Detects Philippines passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ph
Regulations
Data Privacy Act of 2012 (Philippines)
Frameworks
ISO 27001, ISO 27701

Philippines PhilHealth Number

Detects Philippines PhilHealth Identification Numbers (PIN) in the common dashed format ##-#########-# (12 digits). Used for national health insurance membership and claims.

Type
regex
Confidence
high
Jurisdictions
ph
Regulations
Data Privacy Act 2012 (PH), Universal Health Care Act (PH)
Frameworks
ISO 27001, ISO 27701

Philippines SSS Number

Detects Philippines Social Security System (SSS) numbers in the common dashed format ##-#######-# (10 digits total). Continuous digit forms are intentionally out of scope to reduce collision with other national identifiers.

Type
regex
Confidence
high
Jurisdictions
ph
Regulations
Data Privacy Act 2012 (PH), SSS Act
Frameworks
ISO 27001, ISO 27701

Philippine Taxpayer Identification Number (TIN)

Detects Philippine Taxpayer Identification Numbers (TIN) issued by the Bureau of Internal Revenue (BIR) under Section 236(j) of the National Internal Revenue Code. The base TIN is a 9-digit number (the 9th digit is a check digit), usually written XXX-XXX-XXX. Registered businesses append a branch code — historically 3 digits (000 for the head office, 12 digits total) and, since eBIRForms v7.9.6.0 (RMC No. 36-2026, April 2026), up to 5 digits (14 digits total).

Type
regex
Confidence
medium
Jurisdictions
ph
Regulations
National Internal Revenue Code of 1997 (Philippines), Data Privacy Act of 2012 (Philippines)
Frameworks
ISO 27001, ISO 27701

UMID

Detects UMID patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
ph
Regulations
Data Privacy Act of 2012 (Philippines)
Frameworks
ISO 27001, ISO 27701

Poland Driver's License Number

Detects Poland driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
pl, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Dowód osobisty

Detects Dowód osobisty patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, pl
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Poland Passport

Detects Poland passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
pl, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

PESEL

Detects PESEL patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, pl
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Poland Physical Addresses

Detects Poland Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
pl, eu
Regulations
GDPR

REGON

Detects REGON patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, pl
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Poland Tax Identification Number

Detects Poland Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
pl, eu
Regulations
GDPR

Police Body Worn Camera Metadata

Detects metadata records from police body-worn camera (BWC) systems including activation timestamps, officer identification, incident cross-references, and footage catalogue entries. This pattern targets the metadata and logs, NOT the footage itself. BWC metadata reveals which officers attended which incidents, activation patterns, and evidence chain-of-custody details.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
Frameworks
QGISCF

Police Use-of-Force Investigation (Internal)

Detects internal investigation documents of police use of lethal or serious force, including compelled officer statements under s.7.2 PPRA and Ethical Standards Command evidence before investigation completion.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
Frameworks
QGISCF

Pre-Announcement Grant Funding Recommendation

Detects ministerial briefing notes or departmental submissions recommending specific grant funding decisions before public announcement.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Pre-Release Earnings Guidance with Financials

Detects draft earnings guidance, profit warnings, or financial results before market disclosure. For QLD Government, this applies to GOCs subject to continuous disclosure obligations.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Corporations Act 2001 (Cth), Criminal Code 1899 (Qld)
Frameworks
QGISCF

Procurement Tender Evaluation with Pricing

Detects weighted evaluation matrices scoring tender responses, including commercial pricing from multiple bidders in government procurement processes.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Cartão de Cidadão

Detects Cartão de Cidadão patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
eu, pt
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Portugal Driver's License Number

Detects Portugal driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
pt, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Portugal Passport Number

Detects Portugal passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
pt, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Portuguese Physical Addresses

Detects Portuguese Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
pt, eu
Regulations
GDPR

Portugal Tax Identification Number

Detects Portugal Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
pt, eu
Regulations
GDPR

بطاقة الهوية القطرية

Detects بطاقة الهوية القطرية patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
qa
Regulations
PDPPL (QA)
Frameworks
ISO 27001, ISO 27701

QLD Treasury Pre-Release Budget Allocation

Detects unreleased Queensland state budget allocation figures, forward estimates, and expenditure projections. These are market-moving documents that enable insider trading on government-linked securities if disclosed prematurely.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Corporations Act 2001 (Cth), Criminal Code 1899 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

QPS Incident Report

Detects Queensland Police Service (QPS) incident reports containing operational details about reported offences, informant information, and occurrence records. These are non-covert operational documents that are sensitive due to informant and victim details but do not involve covert methodology or life-safety risks.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
PPRA 2000 (Qld), Police Service Admin Act 1990 (Qld)
Frameworks
QGISCF

Regulatory Investigation Defence Strategy

Detects legal defence strategy prepared in response to regulatory investigations by bodies such as ACCC, ASIC, APRA, OAIC, and Queensland regulators (CCC, OIA). Disclosure reveals the target's assessment of its own regulatory exposure and defence approach.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
QGISCF

Regulatory Prosecution Brief

Detects prosecution briefs prepared by Queensland regulatory bodies (Workplace Health and Safety, Environmental Protection Authority, Office of Fair Trading) for enforcement action. Disclosure compromises prosecution integrity and alerts enforcement targets.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Criminal Code 1899 (Qld), Environmental Protection Act 1994 (Qld), WHS Act 2011 (Qld)
Frameworks
QGISCF

Romania Driver's License Number

Detects Romania driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ro, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Romania Passport Number

Detects Romania passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ro, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Cod Numeric Personal

Detects Cod Numeric Personal patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
eu, ro
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Romania Physical Addresses

Detects Romania Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
ro, eu
Regulations
GDPR

Royal Commission Draft Submission

Detects draft submissions to Royal Commissions before formal tabling. Pre-tabling drafts reveal the State's narrative strategy, admissions under consideration, and positions not yet finalised. Disclosure prejudices the State's participation in proceedings of national significance.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Commissions of Inquiry Act 1950 (Qld)
Frameworks
QGISCF

Russian Passport Number (Domestic)

Detects Russian domestic passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ru
Regulations
Federal Law No. 152-FZ (Russia)
Frameworks
ISO 27001, ISO 27701

Russian Passport Number (International)

Detects Russian international passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ru
Regulations
Federal Law on Personal Data (152-FZ) (Russia)
Frameworks
ISO 27001, ISO 27701

Russia Physical Addresses

Detects Russia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
ru
Regulations
Federal Law 152-FZ (Russia)

Russian Taxpayer Identification Number

Detects Russian Taxpayer Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ru
Regulations
Federal Law 152-FZ (Russia)

Saudi Iqama Number

Detects Saudi Arabian Iqama (residence permit) numbers issued to expatriate residents. Iqama numbers are 10 digits and start with 2. Saudi national IDs start with 1 and are covered by sa-national-id.

Type
regex
Confidence
medium
Jurisdictions
sa
Regulations
PDPL (Saudi Arabia)
Frameworks
ISO 27001, ISO 27701

National Id

Detects National Id patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Partial
Jurisdictions
sa
Regulations
PDPL (SA)
Frameworks
ISO 27001, ISO 27701

Sanctions Compliance Legal Assessment

Detects internal legal assessments evaluating compliance with sanctions regimes (DFAT, OFAC, EU). Disclosure reveals identified compliance gaps, risk exposures, and remediation strategies before implementation, exposing the organisation to criminal prosecution under the Autonomous Sanctions Act 2011.

Type
keyword_proximity
Confidence
low
Jurisdictions
global
Regulations
Autonomous Sanctions Act 2011 (Cth)
Frameworks
QGISCF

Sweden Driver's License Number

Detects Sweden driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
se, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Sweden Passport Number

Detects Sweden passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
se, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Personnummer

Detects Personnummer patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, se
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Sweden Physical Addresses

Detects Sweden Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
se, eu
Regulations
GDPR

Sweden Tax Identification Number

Detects Sweden Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
se, eu
Regulations
gdpr

Settlement Authority and Negotiation Mandate

Detects documents authorising settlement ranges, negotiation floors/ceilings, and approved concession parameters. Disclosure reveals the State's maximum position, destroying negotiation leverage and potentially costing tens of millions in lost bargaining position.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Sexual Assault Counselling Record

Detects sexual assault counselling session records containing victim identifiers, forensic medical examination details, and trauma counselling notes. These records are subject to absolute privilege in Queensland and carry the highest privacy protections — disclosure can re-traumatise survivors, compromise criminal proceedings, and endanger safety.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Criminal Code 1899 (Qld), Evidence Act 1977 (Qld), IPA 2009 (Qld)
Frameworks
QGISCF

Singapore Driving License Number

Detects Singapore driving license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
sg
Regulations
PDPA (SG)
Frameworks
ISO 27001, ISO 27701

NRIC

Detects NRIC patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
sg
Regulations
PDPA (SG)
Frameworks
ISO 27001, ISO 27701

Singapore Passport Number

Detects Singapore passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
sg
Regulations
PDPA (SG)
Frameworks
ISO 27001, ISO 27701

Singapore Physical Addresses

Detects Singapore Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
sg
Regulations
PDPA (SG)

Singapore Unique Entity Number

Detects Singapore Unique Entity Numbers (UEN) issued by ACRA and other agencies to businesses and other entities. Common forms are 8 or 9 digits plus a check letter (local companies) and the issued-year form TyyPQnnnnX / SyyPQnnnnX / RyyPQnnnnX used for other entities.

Type
regex
Confidence
medium
Jurisdictions
sg
Regulations
PDPA (SG), ACRA Act
Frameworks
ISO 27001, ISO 27701

Slovenia Driver's License Number

Detects Slovenia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
si, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Enotna matična številka občana (EMŠO)

Detects Enotna matična številka občana (EMŠO) patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, si
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Slovenia Passport Number

Detects Slovenia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
si, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Slovenia Physical Addresses

Detects Slovenia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
si, eu
Regulations
GDPR

Slovenia Tax Identification Number

Detects Slovenia Tax Identification Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Due to the numeric format, corroborative evidence keywords are essential for reliable detection.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
si, eu
Regulations
gdpr

Slovakia Driver's License Number

Detects Slovakia driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
sk, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Slovakia Passport Number

Detects Slovakia passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
sk, eu
Regulations
BDSG, CNIL / LIL, GDPR
Frameworks
ISO 27001, ISO 27701

Rodné číslo

Detects Rodné číslo patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
eu, sk
Regulations
gdpr

Slovakia Physical Addresses

Detects Slovakia Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
sk, eu
Regulations
GDPR

Cisco Network Config Credentials

Detects credentials and sensitive configuration directives in Cisco IOS/NX-OS configuration files, including enable passwords/secrets, SNMP community strings with write access, PAC keys, and NVRAM/LDAP authentication indicators. Mirrors Snaffler rule KeepNetConfigCreds.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act, Computer Misuse Act 1990
Frameworks
CIS Controls, ISO 27001, NIST CSF

Command-Line Credential Strings

Detects credentials passed as command-line arguments in Windows batch scripts, PowerShell, and shell scripts. Covers net use /user:, schtasks /rp, psexec -p, cmdkey, and bare password= assignments. Mirrors Snaffler rule KeepCmdCredentials.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS

Microsoft Defender Sensor Configuration with Credentials

Detects Microsoft Defender for Identity (MDI) SensorConfiguration.json files containing DirectoryServicesAccount credentials and Microsoft Defender for Endpoint (MDE) mdatp_managed.json files containing onboardingInfo blobs, both of which represent high-value security tool configuration secrets. Mirrors Snaffler rule KeepDefenderConfigByName.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

MDT Domain Join Credentials in CustomSettings.ini

Detects Microsoft Deployment Toolkit (MDT) customsettings.ini files that embed domain join credentials, including DomainAdminPassword and DomainAdmin account values used during automated OS deployments. Mirrors Snaffler rule KeepDomainJoinCredsByName / KeepDomainJoinCredsByPath.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Firefox Encrypted Login Entry

Detects Firefox logins.json encrypted password entries in the JSON format used by Firefox's NSS (Network Security Services) credential store. Mirrors Snaffler rule KeepFFRegexRed.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

FTP Server and Client Credential Files

Detects passwords stored in FTP server and client configuration files, including FileZilla server/client recentservers.xml base64-encoded passwords, proftpd-style shadow passwd lines with hashed credentials, and sftp-config.json plaintext password fields. Mirrors Snaffler rules KeepFtpServerConfigByName and KeepFtpClientConfigConfigByName.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS

Git Credentials in URL

Detects embedded credentials (username:password) in Git repository URLs. Mirrors Snaffler rule KeepGitCredsByName.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Apache htpasswd Hashed Credential

Detects Apache htpasswd file entries containing hashed passwords in MD5 ($apr1$), bcrypt ($2y$, $2b$, $2a$), or SHA ({SHA}) formats. Mirrors Snaffler rule KeepConfigByName.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

IaC Secrets in Terraform and Azure CSCfg

Detects secrets embedded in Infrastructure as Code files including Terraform/HCL variable assignments and Azure Cloud Service configuration (.cscfg) XML settings. Mirrors Snaffler rule KeepInfraAsCodeByExtension.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Jenkins Encrypted Credentials

Detects Jenkins-encrypted credential values in the {base64...} format used by Jenkins credentials.xml and similar configuration files. Mirrors Snaffler rule KeepJenkinsByName.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

MediaWiki LocalSettings Credentials

Detects MediaWiki LocalSettings.php files containing database passwords ($wgDBpassword), secret keys ($wgSecretKey), and upgrade keys ($wgUpgradeKey). These are high-value secrets that grant database and administrative access to a MediaWiki installation. Mirrors Snaffler rule KeepPhpByName.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

Password File Credential List

Detects credential list files — documents containing multiple username/password pairs in a structured, enumerated format (passwords.txt, secrets.*, BitlockerLAPSPasswords.csv, etc.). Distinguishes a credential roster from prose mentioning "password". Mirrors Snaffler rule KeepPasswordFilesByName.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

PostgreSQL Password File Entry

Detects PostgreSQL .pgpass file entries containing hostname, port, database, username, and password in colon-separated format. Mirrors Snaffler rule KeepDbMgtConfigByName.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

PowerShell Credential Objects with Plaintext Password

Detects PowerShell credential constructs that embed plaintext passwords, including ConvertTo-SecureString with -AsPlainText and [Net.NetworkCredential]::new() calls. Mirrors Snaffler rule KeepPsCredentials.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS

Ruby on Rails Secret Credentials

Detects secret credentials embedded in Ruby on Rails configuration files: secret_token/secret_key_base assignments (config/initializers/secret_token.rb, config/secrets.yml), database passwords (config/database.yml), and Chef knife client keys (knife.rb). These files are frequently committed to source control and expose application secrets and infrastructure access. Mirrors Snaffler rule KeepRubyByName.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
GDPR, Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS, SOC 2

RDP Saved Password (.rdp file)

Detects DPAPI-encrypted saved passwords stored in Windows Remote Desktop Protocol (.rdp) configuration files. The characteristic line "password 51:b:<base64-blob>" contains a DPAPI ciphertext blob representing a saved RDP credential. These files are frequently found on file shares, workstations, and in source-control repositories and represent a high-severity finding because the blob can be decrypted on the originating machine under the same user context. Mirrors Snaffler rule KeepRdpPasswords.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Computer Fraud and Abuse Act (CFAA), Criminal Code Act 1995 (Cth), Cybersecurity Maturity Model Certification (CMMC), Network and Information Systems (NIS) Directive
Frameworks
CIS Controls, ISO 27001, NIST CSF

Remote Access Tool Credential Files

Detects passwords and credentials stored in remote access configuration files including RDCMan .rdg files (logonCredentials blocks), mRemoteNG confCons.xml (Node Password attributes), and OpenVPN .ovpn files with embedded auth directives. MobaXterm .ini files are a Snaffler filename target only — passwords are stored obfuscated (proprietary XOR cipher) with no plaintext fingerprint detectable by content regex. Mirrors Snaffler rules KeepRemoteAccessConfByExtension and KeepRemoteAccessConfByName.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

S3 URI in Source Code with AWS Credential Context

Detects S3 and S3A URI references in source code or configuration files when accompanied by AWS credential context. S3 URIs alone are high-FP enumeration signals; this pattern only fires at 75+ confidence when AWS credential evidence (access key, secret, AKIA prefix) is present within 300 characters. URI-only matches surface at 65 as discovery inventory. Mirrors Snaffler rule KeepS3UriPrefixInCode.

Type
regex
Confidence
low
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS

Shell History Files with Embedded Credentials

Detects credentials embedded in shell history files (.bash_history, .zsh_history, ConsoleHost_History.txt) including exported environment variable secrets, mysql command-line passwords, curl basic auth credentials, and sshpass invocations. Mirrors Snaffler rule KeepShellHistoryByName.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Source Code Database Credentials

Detects database connection credentials embedded in source code across Java (JDBC), PHP, Perl, Ruby, and Python. Matches database driver connect() calls containing credentials inline. Mirrors Snaffler rules KeepJavaDbConnStrings, KeepPhpDbConnStrings, KeepPerlDbConnStrings, KeepRubyDbConnStrings, KeepPyDbConnStrings.

Type
regex
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF, PCI-DSS

SQL Account Creation with Password

Detects SQL statements that create database user accounts or logins with embedded passwords, covering SQL Server CREATE LOGIN, MySQL CREATE USER IDENTIFIED BY, and PostgreSQL CREATE USER WITH PASSWORD. Mirrors Snaffler rule KeepSqlAccountCreation.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
CIS Controls, ISO 27001, NIST CSF

Unattend.xml Administrator/AutoLogon Password

Detects plaintext passwords stored in Windows unattend.xml answer files, specifically the AdministratorPassword and AutoLogon <Value> XML elements used during Windows automated setup. These files frequently contain Administrator or auto-logon credentials in cleartext and represent a high severity finding when discovered on file shares or in software repositories. Mirrors Snaffler rule KeepUnattendXmlRegexRed.

Type
regex
Confidence
high
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth), Computer Fraud and Abuse Act (CFAA), Cybersecurity Maturity Model Certification (CMMC)
Frameworks
CIS Controls, ISO 27001, NIST CSF

State Borrowing and Debt Issuance Strategy

Detects QTC (Queensland Treasury Corporation) borrowing strategies, debt issuance timelines, yield curve management plans, and refinancing schedules. Premature disclosure enables bond market front-running.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Corporations Act 2001 (Cth), Criminal Code 1899 (Qld)
Frameworks
QGISCF

State Legal Liability Assessment

Detects internal legal assessments quantifying the State's liability exposure on specific matters (tort, contract, statutory). Disclosure reveals the State's own estimate of its likely loss, undermining defence and settlement positions across multiple related matters. Note: trainable classifier recommended for production using liability document structural features.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
Evidence Act 1977 (Qld), RTI Act 2009 (Qld)
Frameworks
QGISCF

Superannuation Fund Member Statement - Bulk

Detects bulk superannuation member data including individual balances, employer contributions, TFN-linked records, and beneficiary nominations from government super schemes such as QSuper.

Type
regex
Confidence
high
Detection quality
Error
Jurisdictions
au
Regulations
Privacy Act 1988 (Cth), SIS Act 1993 (Cth), Tax Admin Act 1953 (Cth)
Frameworks
QGISCF

Surrogacy Arrangement Record

Detects surrogacy arrangement records including parentage orders, surrogacy agreements, birth mother medical records, and intended parent assessments under the Surrogacy Act 2010 (Qld). These records contain deeply personal information about reproductive choices, medical procedures, and legal parentage transfers — disclosure can cause severe emotional distress and breach court-sealed parentage orders.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
IPA 2009 (Qld), Status of Children Act 1978 (Qld), Surrogacy Act 2010 (Qld)
Frameworks
QGISCF

Surveillance Operation Plan

Detects documents containing physical and electronic surveillance operation plans including observation post positions, equipment deployments, team compositions, and target movement tracking plans. Disclosure enables counter-surveillance by criminal targets and compromises reusable surveillance positions and techniques.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
QGISCF

Terrorism Watchlist Entry

Detects terrorism and national security watchlist entries including risk ratings, monitoring status, intelligence basis, and border alert configurations. Disclosure enables subjects to evade monitoring and compromises border security.

Type
keyword_proximity
Confidence
medium
Jurisdictions
global
Regulations
Criminal Code Act 1995 (Cth)
Frameworks
QGISCF

Thailand Passport Number

Detects Thai passport numbers issued by the Department of Consular Affairs, Ministry of Foreign Affairs of Thailand. Documented formats are one letter followed by six digits (older series, e.g. A123456), two letters followed by six digits (e.g. AA123456), or two letters followed by seven digits (current e-passport series, e.g. AA1234567, nine characters total matching the MRZ document-number field). Note: the legacy A123456 / AA123456 forms are documented by a single source (Thai Wikipedia); the current AA1234567 form is corroborated independently via the MRZ document-number field.

Type
regex
Confidence
medium
Jurisdictions
th
Regulations
PDPA (TH)
Frameworks
ISO 27001, ISO 27701

เลขประจำตัวประชาชน

Detects เลขประจำตัวประชาชน patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
th
Regulations
PDPA (TH)
Frameworks
ISO 27001, ISO 27701

T.C. Kimlik Numarası

Detects T.C. Kimlik Numarası patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
tr
Regulations
KVKK (Law No. 6698 on Protection of Personal Data) (Turkey)
Frameworks
ISO 27001, ISO 27701

Turkish Passport Number

Detects Turkish (Türkiye) ordinary ("umuma mahsus", bordo/burgundy) passport numbers. New-generation ordinary passports, issued by the General Directorate of Civil Registration and Citizenship (Nüfus ve Vatandaşlık İşleri Genel Müdürlüğü, NVİ) since 2018, carry a nine-character document number consisting of the series letter "U" followed by eight digits (e.g. U12345678), printed in the top-right corner of the data page. Turkish sources report different series letters for the special/green (hususi, "S") and service/grey (hizmet, "Z") passports; those series are NOT covered by this pattern because their letter-plus-digit shape could not be independently corroborated. Ordinary bordo passports are by far the dominant variant.

Type
regex
Confidence
medium
Jurisdictions
tr
Regulations
KVKK (Law No. 6698 on Protection of Personal Data) (Turkey), Passport Law No. 5682 (Türkiye)
Frameworks
ISO 27001, ISO 27701

Turkey Physical Addresses

Detects Turkey Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
tr
Regulations
KVKK (Turkey)

Vergi Kimlik Numarası (Turkish Tax Identification Number)

Detects the Turkish tax identification number (Vergi Kimlik Numarası, VKN) issued by the Turkish Revenue Administration (Gelir İdaresi Başkanlığı, GİB). The VKN is a 10-digit number structured as a 3-digit alpha group code (001-999), a 6-digit sequence number and a single check digit. Since 1 July 2006 Turkish citizens use their 11-digit T.C. Kimlik Numarası as their tax number (covered by the separate tr-national-id pattern); the 10-digit VKN remains the tax identifier for legal entities, ordinary partnerships, foreign legal entities and foreign nationals without a Foreign Identity Number.

Type
regex
Confidence
medium
Jurisdictions
tr
Regulations
KVKK (Law No. 6698 on Protection of Personal Data) (Turkey), Law No. 4358 on Expanding the Use of Tax Identification Numbers (Türkiye), Tax Procedure Law No. 213 (Türkiye)
Frameworks
ISO 27001, ISO 27701

Trading Algorithm or Quantitative Strategy

Detects proprietary trading algorithms, quantitative investment strategies, or systematic risk models used by government investment vehicles such as QIC (Queensland Investment Corporation). This deployable record is the keyword/regex fallback detector (basis-points anchor with quantitative and proprietary-marker evidence); any trainable ML classifier is a separate tenant artifact with an external identity and is not represented in this record.

Type
trainable_classifier
Confidence
high
Jurisdictions
global
Regulations
Corporations Act 2001 (Cth)
Frameworks
QGISCF

Traffic Camera Record

Detects traffic camera and speed camera infringement records containing driver identification details, vehicle registration, and photographic evidence references. These records link specific individuals to traffic offences via camera evidence under the Transport Operations (Road Use Management) Act 1995 (Qld).

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
SPER Act 1999 (Qld), TORUM Act 1995 (Qld)
Frameworks
QGISCF

國民身分證統一編號

Detects 國民身分證統一編號 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
tw
Regulations
PDPA (Taiwan)
Frameworks
ISO 27001, ISO 27701

Taiwan Passport Number

Detects Taiwan passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
tw
Regulations
PDPA (Taiwan)
Frameworks
ISO 27001, ISO 27701

Taiwan Physical Addresses

Detects Taiwan Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
tw
Regulations
PDPA (Taiwan)

外僑居留證 / 台灣地區居留證

Detects 外僑居留證 / 台灣地區居留證 patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
tw
Regulations
PDPA (Taiwan)
Frameworks
ISO 27001, ISO 27701

Ukraine Passport Number (Domestic)

Detects Ukraine domestic passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ua
Regulations
Law on Personal Data Protection (Ukraine)
Frameworks
ISO 27001, ISO 27701

Ukraine Passport Number (International)

Detects Ukraine international passport number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
ua
Regulations
Law on Protection of Personal Data (Ukraine)
Frameworks
ISO 27001, ISO 27701

Ukraine Physical Addresses

Detects Ukraine Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
ua
Regulations
Personal Data Protection Law (Ukraine)

Ukrainian Individual Tax Number (RNOKPP)

Detects the Ukrainian individual tax number — the registration number of the taxpayer's account card (РНОКПП / RNOKPP, historically called RNTRC or ІПН), assigned by the State Tax Service of Ukraine to every individual taxpayer in the State Register of Individuals – Taxpayers. Per the OECD AEOI TIN description for Ukraine, the RNOKPP is a ten-digit numerical code (no letters, hyphens, or other symbols) with structure XXXXXNNNNK: a 5-digit birth-date registration sequence, a 4-digit account-card sequence, and a control digit.

Type
regex
Confidence
medium
Jurisdictions
ua
Regulations
Tax Code of Ukraine, Law on Personal Data Protection (Ukraine)
Frameworks
ISO 27001, ISO 27701

UK CHI Number (Scotland)

Detects Scottish Community Health Index (CHI) 10-digit patient identifiers used by NHS Scotland.

Type
regex
Confidence
medium
Jurisdictions
uk
Regulations
UK GDPR, Data Protection Act 2018
Frameworks
ISO 27001, ISO 27701

UK Companies House Company Number

Detects UK Companies House company registration numbers (CRNs). A company number is always 8 characters: either 8 digits (England & Wales incorporations), a 2-letter jurisdiction/entity-type prefix followed by 6 digits (e.g. SC Scottish company, NI Northern Ireland company, OC/SO/NC LLPs, RC/SR/NR royal-charter bodies, FC overseas companies, OE overseas entities), or R0 + 6 digits (pre-partition Northern Ireland companies, registered under the R0 prefix). The prefix allow-list is taken from the Companies House Uniform Resource Identifiers (URI) Customer Guide plus the post-2011 additions CE/CS (charitable incorporated organisations), SG (Scottish qualifying partnerships), OE (Register of Overseas Entities, 2022), RS (registered societies, e.g. the live entry RS008375) and FE (further education / sixth form college corporations). Bare 8-digit runs collide heavily with invoice, order and account numbers, so the all-numeric form is only ever matched when directly attached to a company-number label; the more distinctive prefixed form additionally gets a keyword-gated tier without a directly-attached label. Two allow-list prefixes are excluded from that bare prefixed form because they collide with common document-number abbreviations — NO ("INVOICE NO123456") and SO (ERP sales-order numbers such as SO123456) — and are matched only via the label-attached regex.

Type
regex
Confidence
medium
Jurisdictions
uk
Regulations
Companies Act 2006, UK GDPR
Frameworks
ISO 27001, ISO 27701, SOC 2

UK Driving Licence Number

>- This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation. Detects UK driving licence numbers. GB licences follow a 16-character format encoding surname, date of birth, and gender. Northern Ireland licences are 8-digit numbers.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
uk
Regulations
UK GDPR, Data Protection Act 2018 (UK)
Frameworks
ISO 27001, ISO 27701

Electoral Roll Number

Detects Electoral Roll Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
uk
Regulations
GDPR
Frameworks
ISO 27001, ISO 27701

UK Marking - OFFICIAL / OFFICIAL-SENSITIVE

Detects the UK Government Security Classifications Policy (GSCP) OFFICIAL classification and its -SENSITIVE marking, written OFFICIAL-SENSITIVE and applied immediately after the OFFICIAL classification per the current policy. Matches the verified structured "CLASSIFICATION - HANDLING INSTRUCTION[- DESCRIPTOR]" format (e.g. OFFICIAL-SENSITIVE - RECIPIENTS ONLY, OFFICIAL-SENSITIVE - COMMERCIAL) using the centrally-defined GSCP handling-instruction and descriptor vocabulary, the bare OFFICIAL-SENSITIVE banner, and — at a lower, UK-government-context gated tier — bare OFFICIAL alone, which is a common English word. Regex logic verified directly against the current Government Security Classifications Policy (gov.uk, version 2.0, August 2024); matched case-sensitively so ordinary lowercase English use of "official"/"official-sensitive" does not trigger it.

Type
regex
Confidence
high
Jurisdictions
uk
Regulations
Official Secrets Act 1989
Frameworks
GSCP

UK Marking - SECRET / TOP SECRET

Detects the UK Government Security Classifications Policy (GSCP) SECRET and TOP SECRET national-security classifications: the verified UK Prefix form (UK SECRET / UK TOP SECRET, applied to assets shared with foreign governments or international organisations), the classification followed by a verified National Caveat handling instruction (SECRET/TOP SECRET - UK EYES ONLY, - UK/US EYES ONLY, - FIVE EYES ONLY, per the GSCP's "CLASSIFICATION - HANDLING INSTRUCTION" additional-marking format — National Caveats apply only to SECRET and TOP SECRET, never OFFICIAL), the distinctive TOP SECRET banner-words phrase, and a UK-government-context-gated bare SECRET banner. Intended to surface content that should not reside on this platform. Regex logic verified directly against the current Government Security Classifications Policy (gov.uk, version 2.0, August 2024); matched case-sensitively.

Type
regex
Confidence
high
Jurisdictions
uk
Regulations
Official Secrets Act 1989
Frameworks
GSCP

National Insurance Number

Detects National Insurance Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
uk
Regulations
UK GDPR
Frameworks
ISO 27001, ISO 27701

NHS Number

Detects NHS Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Mixed
Jurisdictions
uk
Regulations
UK GDPR, Data Protection Act 2018 (UK)
Frameworks
ISO 27001, ISO 27701

Passport

Detects Passport patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Partial
Jurisdictions
uk
Regulations
UK GDPR, Data Protection Act 2018 (UK)
Frameworks
ISO 27001, ISO 27701

UK Phone Number

Detects UK national telephone numbers per Ofcom's National Telephone Numbering Plan: geographic numbers (01/02 prefix) and mobile numbers (07 prefix, second digit restricted to 1-5 or 7-9, plus the 07624 Isle of Man mobile range — the one mobile block inside the otherwise-excluded 076 radiopaging range, allocated to Isle of Man operators under the UK plan; 070 personal-numbering and the rest of 076 remain excluded), both as 11-digit domestic strings (leading 0 + 10 significant digits), plus the +44 international form (10 significant digits, leading 0 dropped per ITU/Ofcom convention). Digit groups after the initial prefix use a flexible per-digit optional separator rather than a single fixed grouping, because Ofcom's numbering plan allows multiple valid group-length conventions (4+6, 3+7, 2+8, 5+5) that vary by area. Two additional conventional renderings are covered: the parenthesised-area-code national notation for geographic numbers, e.g. "(020) 7946 0958" / "(01632) 960960" (ITU-T E.123 national notation, parentheses marking the optionally-dialled area code, for 2-5 digit area codes), and the widespread "+44 (0)20 7946 0958" letterhead form (a common-but-nonstandard practice — E.123 advises against the parenthesised trunk digit in international notation, but it is ubiquitous in UK signatures and letterheads, so it is matched for detection purposes). Non-geographic service numbers (03/08/09) are intentionally out of scope — they are typically organizational/service numbers rather than personal PII, mirroring how au-fixed-line-telephone scopes to geographic numbers only.

Type
regex
Confidence
medium
Jurisdictions
uk
Regulations
UK GDPR, PECR
Frameworks
ISO 27001, ISO 27701, SOC 2

U.K. Physical Addresses

Detects U.K. Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
uk
Regulations
GDPR

UK Sort Code and Account Number

Detects the paired UK domestic bank sort code (6 digits, written XX-XX-XX, XX XX XX, or XXXXXX) and account number (8 digits) as they normally appear together in UK bank-detail blocks (invoices, remittance advice, payroll/BACS instructions). Both digit groups must be directly attached to their own label ("sort code" / "account number" or "a/c no") in either order — bare unlabelled 6- or 8-digit sequences are never matched, because unlabelled digit sequences of this length collide heavily with dates, phone extensions, invoice numbers, and other structured identifiers.

Type
regex
Confidence
medium
Jurisdictions
uk
Regulations
UK GDPR, Payment Services Regulations 2017
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

Unique Taxpayer Reference

Detects Unique Taxpayer Reference patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
uk
Regulations
UK GDPR
Frameworks
ISO 27001, ISO 27701

UK VAT Number

Detects United Kingdom (and Northern Ireland XI) Value Added Tax registration numbers. Standard trader numbers are GB followed by 9 digits; branch traders use GB plus 12 digits; government departments use GBGD### and health authorities GBHA###. Northern Ireland post-Brexit issues XI-prefixed numbers with the same body formats. Matching is uppercase letter prefixes as issued by HMRC.

Type
regex
Confidence
high
Jurisdictions
uk
Regulations
UK GDPR, Data Protection Act 2018, VATA 1994
Frameworks
ISO 27001, ISO 27701, SOC 2

Us ABA Routing

Detects Us ABA Routing patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA, FTC Act s5, GLBA, HIPAA, SOX, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

U.S. Alien Registration Number (A-Number)

Detects USCIS Alien Registration Numbers (A-Numbers). An A-Number is the unique identifier the Department of Homeland Security assigns to a noncitizen: the letter "A" followed by 7-9 digits, written compactly (A012345678) or grouped (A-123-456-789). A-Numbers appear on Green Cards, EADs, immigration court records, and Form I-9 / E-Verify data held by virtually every U.S. employer.

Type
regex
Confidence
high
Jurisdictions
us
Regulations
State Breach Laws (US), CCPA/CPRA, FTC Act s5
Frameworks
ISO 27001, ISO 27701, SOC 2

U.S. Bank Account Number

Detects U.S. Bank Account Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Financial account numbers require corroborative evidence for reliable detection due to their generic numeric format.

Type
regex
Confidence
low
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA, FTC Act s5, GLBA, HIPAA, SOX, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

U.S. National Security Classification Banner

Detects U.S. national-security classification banner and portion markings (per Executive Order 13526 and the Intelligence Community marking system): a classification level — TOP SECRET, SECRET, CONFIDENTIAL — followed by one or more "//"-separated control or dissemination markings (SI, TK, HCS, SCI, SAP, NOFORN, ORCON, REL TO ...), or a parenthetical portion mark such as (S//NF) or (TS//SI). The bare words "secret" and "confidential" are far too common to match alone, so a match requires the "//" control structure or a parenthetical portion mark.

Type
regex
Confidence
high
Jurisdictions
us
Regulations
Executive Order 13526, NIST SP 800-53, FISMA
Frameworks
NIST CSF, ISO 27001, SOC 2

U.S. CUI Banner Marking (32 CFR 2002)

Detects Controlled Unclassified Information (CUI) banner and portion markings as defined by 32 CFR 2002.20 and the NARA CUI Registry. A CUI banner is the control marking "CUI" optionally followed by category markings (CUI//SP-PRVCY) and limited-dissemination controls (//NOFORN, //FEDCON, //FED ONLY, //NOCON, //DL ONLY, //REL TO ...), with elements separated by double slashes. The bare token "CUI" is too common to match alone, so a match requires either the "//" banner structure or the spelled-out phrase "Controlled Unclassified Information".

Type
regex
Confidence
high
Jurisdictions
us
Regulations
NIST SP 800-171, 32 CFR 2002, FISMA
Frameworks
NIST CSF, ISO 27001, SOC 2

DEA

Detects DEA patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701, SOC 2

Impairments Listed In The U.S. Disability Evaluation Under Social Security

Detects Impairments Listed In The U.S. Disability Evaluation Under Social Security patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that identifies health and medical terminology in documents. Keyword matching is used to flag content containing medical language.

Type
keyword_list
Confidence
low
Jurisdictions
us
Regulations
CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701, SOC 2

U.S. Driver's License Number (Multi-State)

A multi-state helper for detecting U.S. driver's license numbers using the real structural formats of several high-population states, rather than the broad "letter + 7-12 digits" catch-all. Covers California, New York, Texas, Florida, New Jersey, and Illinois. This is a companion to the generic us-drivers-license pattern (which it does not replace); use it when you want tighter, state-aware matching for those jurisdictions.

Type
regex
Confidence
medium
Jurisdictions
us
Regulations
State Breach Laws (US), CCPA/CPRA
Frameworks
ISO 27001, ISO 27701

U.S. Driver's License Number

Detects U.S. driver's license number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701

Employer Identification Number

Detects Employer Identification Number patterns.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA
Frameworks
ISO 27001, ISO 27701

U.S. FERPA Student Education Record ID

Detects student identifiers that appear in education records protected under the Family Educational Rights and Privacy Act (FERPA). Student ID formats are institution-specific, so this pattern anchors on an explicit student/enrolment/SIS context label immediately preceding a 6-12 character alphanumeric ID, and relies on education-record keywords (transcript, GPA, enrollment, registrar) for corroboration.

Type
regex
Confidence
medium
Jurisdictions
us
Regulations
FERPA, State Breach Laws (US), CCPA/CPRA
Frameworks
ISO 27001, ISO 27701, SOC 2

US Individual Taxpayer Identification Number (ITIN)

Detects US Individual Taxpayer Identification Numbers (ITINs) issued by the IRS to individuals who are required to have a US taxpayer identification number but are not eligible for a Social Security Number. ITINs always begin with the digit 9, and the fourth and fifth digits fall in the range 70-99, distinguishing them from SSNs. The pattern matches both formatted (9XX-7X-XXXX) and unformatted (9XX7XXXXX) variants.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
us
Regulations
CCPA/CPRA, FTC Act s5, GLBA, HIPAA, SOX, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2

U.S. Medicaid Member / Recipient ID

Detects labelled U.S. Medicaid member or recipient identification numbers. Medicaid ID formats are not standardised nationally — they vary by state in length and composition (typically 8-12 alphanumeric characters) — so this pattern anchors on an explicit Medicaid/recipient context label immediately preceding the ID rather than on a fixed structure.

Type
regex
Confidence
high
Jurisdictions
us
Regulations
HIPAA, State Breach Laws (US), CCPA/CPRA
Frameworks
ISO 27001, ISO 27701, SOC 2

MBI

'Detects MBI patterns. Excluded letters: S, L, O, I, B, Z.' This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
high
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701, SOC 2

NPI

Detects US National Provider Identifier (NPI) values structurally: a ten-digit number beginning with 1 or 2. Detection is structural only — the NPI Luhn checksum (80840 prefix) is NOT enforced. Confidence comes from healthcare context tiers (NPI-specific terms at 85, broader provider/claims context at 75, bare shape discovery-only at 65), and an all-same-digit guard rejects repeated-digit values such as 1111111111.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA, FTC Act s5, HIPAA, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701, SOC 2

US Passport Number

Detects US passport numbers in exactly two accepted formats: a nine-digit numeric value (older US passports), or a single uppercase letter followed by exactly eight digits (newer passport books and cards). Bare eight-digit values and letter-plus-nine-digit values are not valid US passport numbers. Due to the relatively simple format, corroborative keyword proximity is strongly recommended to reduce false positives. Keywords are US-scoped (passport / US passport / State Department); foreign-passport labels are not treated as US passport evidence.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
us
Regulations
CCPA/CPRA, HIPAA, State Breach Laws (US)
Frameworks
ISO 27001, ISO 27701

US Phone Number

Detects North American Numbering Plan (NANP) telephone numbers in US contexts: the domestic NPA-NXX-XXXX form (bracketed, hyphenated, dotted, spaced, or bare, with an optional leading trunk "1") and the international +1 NPA-NXX-XXXX form. Area-code (NPA) and exchange-code (NXX) groups are constrained to a leading digit of 2-9 with the N11 service-code shape (211/311/411/511/611/711/811/911) excluded from both groups, per NANPA's published format rules. NANP area codes are drawn from a single pool shared by the US, Canada, and Caribbean member territories — the digit structure itself cannot distinguish a US number from a Canadian one (see ca-phone-number for the sibling pattern). Differentiation between the two patterns is by jurisdiction/regulation metadata and country-specific corroborative evidence keywords only, not by regex — this is the documented convention for the whole NANP pair.

Type
regex
Confidence
medium
Jurisdictions
us
Regulations
CCPA/CPRA, TCPA
Frameworks
ISO 27001, ISO 27701, SOC 2

U.S. Physical Addresses

Detects U.S. Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
us
Regulations
CCPA/CPRA

US Social Security Number

Detects US Social Security Numbers (SSNs) in both formatted (XXX-XX-XXXX) and unformatted (XXXXXXXXX) representations. The pattern excludes invalid SSN ranges including area numbers 000, 666, and 900-999, group numbers 00, and serial numbers 0000, in accordance with SSA assignment rules. SSNs are critical PII used across healthcare, financial, and government contexts.

Type
regex
Confidence
high
Detection quality
Mixed
Jurisdictions
us
Regulations
CCPA/CPRA, GLBA, HIPAA, SOX
Frameworks
ISO 27001, ISO 27701, PCI-DSS

Vietnam Citizen Identity Card Number

Detects Vietnam Citizen Identity Card numbers (Căn cước công dân / CCCD). Modern chip-card numbers are 12 digits beginning with 0, embedding gender/century and place-of-birth codes.

Type
regex
Confidence
medium
Jurisdictions
vn
Regulations
Cybersecurity Law (Vietnam), Personal Data Protection Decree 13/2023
Frameworks
ISO 27001, ISO 27701

Whole-of-Government ERP Payment Authorisation File

Detects bulk payment authorisation files extracted from government ERP systems (SAP, Oracle, TechnologyOne) containing payee bank accounts, payment amounts, and authorisation codes for batch processing.

Type
regex
Confidence
high
Detection quality
Error
Jurisdictions
au
Regulations
Financial Accountability Act 2009 (Qld)
Frameworks
QGISCF

Witness Protection Program Record

Detects documents containing witness protection program records including new identities, relocation details, and safe house locations for protected witnesses. Disclosure directly endangers the lives of witnesses and their families who have testified against violent criminals.

Type
keyword_proximity
Confidence
medium
Jurisdictions
au
Regulations
PPRA 2000 (Qld), Witness Protection Act 2000 (Qld)
Frameworks
QGISCF

Id Number

Detects Id Number patterns. This pattern is based on a Microsoft Purview built-in sensitive information type. Users already running Purview may prefer to enable the built-in SIT directly, or use this version as a starting point for customisation.

Type
regex
Confidence
medium
Detection quality
Verified
Jurisdictions
za
Regulations
POPIA
Frameworks
ISO 27001, ISO 27701

South Africa Passport Number

Detects South African passport numbers issued by the Department of Home Affairs under the South African Passports and Travel Documents Act 4 of 1994. Passport numbers are nine characters: one uppercase prefix letter identifying the passport type — A (normal/tourist), M (maxi), E (official), D (diplomatic), T (travel document) — followed by eight digits (SARS documents current issuance as starting A0, M0, E0).

Type
regex
Confidence
medium
Jurisdictions
za
Regulations
POPIA, South African Passports and Travel Documents Act 4 of 1994
Frameworks
ISO 27001, ISO 27701

South Africa Physical Addresses

Detects South Africa Physical Addresses patterns. This pattern is based on a Microsoft Purview built-in sensitive information type that uses machine learning and function-based detection for physical address identification. This keyword list provides address-related terms for supplementary matching.

Type
keyword_list
Confidence
low
Jurisdictions
za
Regulations
POPIA

South Africa Tax Reference Number

Detects South African income tax reference numbers (TIN) allocated by the South African Revenue Service (SARS) under section 24 of the Tax Administration Act, 2011. The number is ten digits, may only start with 0, 1, 2, 3 or 9, and its tenth digit is a check digit computed with a modulus-10 (Luhn-style) algorithm documented by SARS.

Type
regex
Confidence
medium
Jurisdictions
za
Regulations
POPIA, Tax Administration Act 2011 (South Africa)
Frameworks
ISO 27001, ISO 27701