Rolling out in preview, data security and compliance protections for Microsoft Agent 365.
December 2025
This month includes information about releases and updates that were announced and covered at Microsoft Ignite.
Agent 365
In preview: Rolling out in preview, data security and compliance protections for Microsoft Agent 365.
Data Governance
- In preview: Data Quality REST API for general availability (GA) features in Unified Catalog is now in preview. Users can use programmatic APIs to configure and run data quality of their data assets programmatically (supported scenarios: connection creation , rule creation , data quality job scheduling, data profiling, running data quality scans and consuming the scores).
- General availability (GA): Microsoft Purview Unified Catalog metadata self-service analytics capability is now generally available.
- In preview: Unified Catalog supports the creation of custom data quality rules using SQL expression language, and by using Azure Data Factory expression language.
- Updated: Multiregion configuration is available to store data quality error records locally where your data is located. Organizations can configure multiple location folders to store data quality error records in alignment with data residency compliance requirements.
- In preview: Get started with virtual network support for self-service analytics metadata storage, now in preview. - Updated: Custom rules column ID and column name are added to Data Quality Asset Rule Execution table in self-service Analytics domain model.
- Updated: Data quality scan consumption data (processing units) is available in both Microsoft Azure Data Lake Storage Gen2 and Fabric Lakehouse for self-service analytics. If you're using Unified Catalog self-service analytics, view data quality processing unit usage in the DataQualityJobExecution table. The PuDetail column contains the processing unit consumption details for each data quality scan and profiling job.
Data Security Investigations (preview)
General availability (GA): Support for data risk graphs in Data Security Investigations (preview). Data risk graphs in Data Security Investigations (preview) helps you visualize correlations between impacted data, users, and their activities. It provides critical context to guide security incident mitigation and next steps.
Data Security Posture Management (preview)
In preview: Now rolling out in preview, the new version of Data Security Posture Management (DSPM) that brings together the previous versions—now named DSPM (classic) and DSPM for AI (classic)—with enhancements that include:
- Outcome-based guided workflows: Choose a data security objective and see related metrics, risk patterns, with a recommended remediation plan and its impact.
- Posture reports: Uncover data protection gaps and track security posture improvements with new reports that provide context for sensitivity label usage, auto-labeling effectiveness, posture drift through label transitions, and DLP policy activities.
- AI observability: Surface your organization’s agent inventory with assigned agent risk level and agent posture metrics that are based on agentic interactions. Includes support for the preview of Microsoft Agent 365.
- New Security Copilot agents: Accelerate the discovery and analysis of sensitive data to uncover hidden risks across files, emails, and messages.
- Data Security Investigations integration: View proactive, summary insights and start a data security investigation directly from DSPM.
- Item-level remediation for oversharing: Recently introduced in DSPM for AI, remediate potentially overshared files in SharePoint with custom data risk assessments and item-level scanning.
eDiscovery
- New: In an eDiscovery case, you can add multiple data sources to a case by adding a list of SMTP addresses or URLs.
Insider Risk Management
- General availability (GA): Support for data risk graphs in Insider Risk Management. Data risk graph in Insider Risk Management uniquely visualizes correlations between impacted data, users, and their activities. It provides critical context to guide alert mitigation and next steps.
- General availability (GA): A Microsoft Security Copilot Agent for Insider Risk Management. The Triage Agent in Insider Risk Management provides an agent-managed alert queue where the alerts about the highest risk activities are identified and prioritized on the Triage Agent dashboard. For more information, see Security Copilot Agents in Microsoft Purview Overview (preview).
- In preview: The Triage Agent in Insider Risk Management supports feedback on incorrect alert categorizations.
Sensitivity labels
- New: Auto-labeling policies support nested rule logic (AND/OR/NOT conditions), which brings parity with DLP policy configuration. Auto-labeling settings for a sensitivity label continue to support simple AND/OR conditions only.

