Data Loss Prevention User Guide

Prev Next

In its simplest terms, data loss prevention (DLP) is a security mechanism that helps ensure that sensitive data is not unduly shared, misused, lost, or accessed by unauthorized users.

Rocket.Chat's DLP app includes several controls to prevent data loss, such as restricting access to sensitive information, monitoring data transfers, and detecting and blocking potentially dangerous activities. If there is any Rocket.Chat room, where sensitive information like credit card details, phone numbers, and IP addresses is being exchanged between users, you can prevent or restrict the sharing of this sensitive information using the DLP app.

To get the DLP app functioning on your workspace, you need the workspace administrator to install and configure the DLP app from the Rocket.Chat marketplace.

Using the Data Loss Prevention app

With the app installed and fully configured, the defined rulesets take effect. For example, users may be restricted from sharing sensitive information, such as credit card numbers and phone numbers.

If a user wants to share credit card details with another user in a room,

  • The DLP app picks up this message and replaces the sensitive data with ###. Clicking on More Info details the message and its current status.

  • Based on the app configuration, the app's bot user dlp.bot notifies the specified channel about sharing sensitive details.

  • Channel moderators can then view the request and select the Accept or Reject option for the message in the Moderator Channel. If the message is accepted, it is displayed as usual. If the message is rejected, it is replaced by the custom rejected message defined in the app configuration.