Microsoft Purview | Endpoint Data Loss Prevention: App or app group restriction support for Microsoft Edge browser

Message Information

Severity normal
Timeline
Start Date April 10, 2025
End Date July 25, 2025
Last Modified April 10, 2025
Services
Microsoft Purview
CategoryStayInformed

Message Details

Before this rollout, Microsoft Purview | Endpoint Data Loss Prevention admins cannot restrict Microsoft Edge browser access to sensitive files through Restricted apps and app groups. After this rollout, admins can configure apps or app groups to be blocked in Edge, including a message showing policy violation details.

When this will happen:

General Availability (Worldwide): We began rolling out early April 2025 and expect to complete by early April 2025.

How this will affect your organization:

Purview admins should be aware that these groups are now enforceable in Edge and that non-Edge supported browsers will suggest opening the link in Edge if blocked.

Purview admins can configure groups in Purview at Data Loss Prevention > Endpoint DLP settings > Restricted apps and app groups that are extensible to the Edge browser.

admin controls

Users will see a DLP notice when an app or app group attempts to open a protected file.

user controls

This change will be available by default for admins to configure.

What you need to do to prepare:

Identify policies that could be impacted, modify, and help test the new protected Edge experience.

This rollout will happen automatically by the specified dates with no admin action required before the rollout. You may want to notify your users about this change and update any relevant documentation.

Learn more: The Edge support for apps and app groups (preview) section of Configure endpoint DLP settings | Microsoft Learn