Bitcoin Address

Detects Bitcoin payment address candidates in both Bech32 (bc1…) and legacy Base58 (1…/3…) shapes. Checksums are not validated (Purview custom SITs lack Bech32/Base58Check functions), so matches are structural candidates and require Bitcoin/transfer context at enforce tiers.

Type
regex
Engine
universal
Confidence
medium
Confidence justification
Medium confidence: pattern has structural constraints but corroborative keywords are recommended to reduce false positive rates. Added context gating and exclusion rules improve precision and reduce incidental matches.
Detection quality
Verified
Jurisdictions
global
Regulations
AML/CTF Act (Cth), PCI-DSS
Frameworks
ISO 27001, ISO 27701, PCI-DSS, SOC 2
Data categories
financial
Scope
narrow
Risk rating
5
Platform compatibility
Purview: Compatible, GCP DLP: Compatible, Macie: Compatible, Zscaler: Compatible, Palo Alto: Compatible, Netskope: Unsupported

Pattern

(?:\bbc1[a-z0-9]{25,39}\b|\b[13][a-km-zA-HJ-NP-Z1-9]{24,33}\b)

Corroborative evidence keywords

identifier, number, ID, transaction, transfer, payment, deposit, withdrawal, debit, credit, data record, database record, record set, data extract, data export, database table, spreadsheet, data registry, registry entry, master data (+14 more)

Proximity: 300 characters

Should match

Should not match

Known false positives

Collections