Dopamine DLP

Dopamine DLP is our endpoint-native data loss prevention solution, built directly into the Fly Direct SWG. LLMs monitor and block sensitive uploads by understanding file context — no manual regex or pattern matching required. The result: real signals, fewer false positives, and enforcement that happens on-device with no stopovers.

DLP Configuration

DLP is configured on a per-policy basis. To enable DLP inspection for a policy, navigate to the DLP tab within the policy and toggle DLP Inspection to ON from the right-hand panel.

Configuration Modes

The Dope endpoint can be configured to either Monitor or Block when sensitive data in detected in an uploaded file or an AI Prompt.

Monitor Mode — On detection of sensitive data:

  • The end user receives a notification that sensitive data was found and that the admin team has been informed

  • A violation is logged in the Analytics section (See more details here)

  • The upload is allowed to proceed

Block Mode — On detection of sensitive data:

  • The end user receives a notification that sensitive data was found and that the admin team has been informed

  • A violation is logged in the Analytics section (See more details here)

  • The upload is blocked

circle-info

Block Mode is available exclusively to customers with a Dopamine DLP license. If you're running a POC and want to test this feature, contact [email protected]envelope.

DLP Policy Exceptions

It is possible to create configuration mode exceptions for specific users or groups.

Admins can create configuration mode exceptions for specific users or groups, allowing them to operate under a different mode than the rest of the policy. For example, if a policy is set to Block, you could create an exception for the "Marketing" group to set their mode to Monitor — or disable DLP inspection entirely for that group.

Detections

When intercepting uploaded files or AI prompts, our LLMs scan for the following categories of sensitive data:

  • Intellectual Property (IP)

  • Payment Card Industry (PCI)

  • Protected Health Information (PHI)

  • Personally Identifiable Information (PII)

Supported Applications

We're continuously adding new applications, including the latest AI tools. Currently supported applications include:

  • Google Drive — When CAC is enabled, allowed domains are not inspected; all consumer accounts are inspected

  • OneDrive — When CAC is enabled, allowed domains are not inspected; all consumer accounts are inspected

  • Box

  • Dropbox

  • ChatGPT — Both prompt and file upload inspection supported

  • WeTransfer

circle-info

Don't see an application you need? Reach out to [email protected]envelope.

Last updated