Australian Marking - SENSITIVE
Detects the Australian Government SENSITIVE tier in both email and document forms: Commonwealth OFFICIAL: Sensitive (including its IMM/caveat variants such as Personal-Privacy, Legal-Privilege, Legislative-Secrecy) and the Queensland (QGISCF) standalone SENSITIVE marking. Regex logic ported from Microsoft's canonical PSPF SIT guidance; matched case-sensitively.
- Type
- regex
- Engine
- boost_regex
- Confidence
- high
- Confidence justification
- High confidence on the OFFICIAL: Sensitive stem (case-sensitive, structured + banner). Standalone SENSITIVE (QLD) is lower confidence (75) and requires government context to control false positives.
- Jurisdictions
- au
- Regulations
- Criminal Code Act 1995 (Cth)
- Frameworks
- PSPF, QGISCF
- Data categories
- government, security-classification
- Scope
- narrow
- Risk rating
- 8
- Platform compatibility
- Purview: Compatible, GCP DLP: Compatible, Macie: Compatible, Zscaler: Compatible, Palo Alto: Compatible, Netskope: Unsupported
Pattern
\bOFFICIAL(?:[ ]|:[ ]?|[ ]?//[ ]?)Sensitive
Corroborative evidence keywords
Queensland, QGISCF, Australian Government, PSPF
Proximity: 300 characters
Should match
Report [SEC=OFFICIAL:Sensitive]— Email subject markingThis page is OFFICIAL: Sensitive— Document banner[SEC=OFFICIAL:Sensitive, ACCESS=Legal-Privilege]— IMM variant swept into the SENSITIVE bucketQueensland record marked SENSITIVE under QGISCF— QLD standalone SENSITIVE with context
Should not match
this is a sensitive topic for discussion— lowercase English word (case-sensitive exclusion)Memo [SEC=OFFICIAL]— plain OFFICIAL belongs to au-marking-officialBriefing [SEC=PROTECTED]— PROTECTED belongs to au-marking-protected
Known false positives
- Uppercase SENSITIVE in non-marking headings (e.g. "COMMERCIALLY SENSITIVE"). Mitigation: QLD tier requires Australian-government corroborative evidence within 300 characters.