Summary
- Microsoft Purview is adding an opt-in auto-labeling policy that can apply a SharePoint document library’s default sensitivity label to existing files at rest.
- This extends labeling beyond new or modified files so historical content in labeled libraries can be covered without users opening or editing documents.
- Affected teams are Purview administrators and organizations that use SharePoint document libraries with default sensitivity labels configured.
- Administrators must create and enable the policy for it to take effect; no action is required if you do not plan to use it.
Primary Service: Purview
Admin Impact: Medium
User Impact: Low
Release Start: 01 Oct 2026
Release End: 15 Oct 2026
Services: M365, Purview, SharePoint
Category: Stay informed
Tags: Admin Action, New Feature, User Adoption
History
9/22/2026 Item Added to Message Center
Microsoft Message
Microsoft Purview is introducing a new auto-labeling policy that applies a SharePoint document library’s default sensitivity label to existing files stored in that library. Previously, default library sensitivity labels were applied only to new or modified files. With this update, organizations can extend labeling to historical content, including files that existed before the default library sensitivity label was configured for the site, without requiring users to open or edit files and without creating content inspection rules.
This capability helps improve labeling coverage, reduce the number of unlabeled files, and support information protection objectives across existing SharePoint content.
Rollout schedule
General Availability (Worldwide): Beginning in early October 2026 and expected to complete by mid-October 2026
Impact on your organization
Who is affected
- Microsoft Purview administrators who manage sensitivity labels and auto-labeling policies
- Organizations using SharePoint document libraries with default sensitivity labels configured
- Users are affected only if administrators enable and configure this new policy
Platforms and services
- Microsoft Purview Information Protection
- Microsoft Purview Auto-labeling
- SharePoint Online
What will happen
After an administrator creates and enables this policy:
- Auto-labeling will evaluate existing files in selected SharePoint document libraries.
- Files that do not have a sensitivity label applied will receive the library’s default sensitivity label.
- Files that existed in a library before the default sensitivity label was configured can now be labeled automatically.
- Files that have a lower-priority sensitivity label applied may be upgraded to the library’s default sensitivity label (depending on the policy setting).
- Users are not required to open or edit files for labeling to occur.
- Content inspection conditions, such as sensitive information types or trainable classifiers, are not required for this policy.
- Labeling occurs as a background service process and is not immediate.
- The same default sensitivity label already applied to new or modified files in the library is used for existing files.
- The feature is opt-in and requires administrator configuration.
The following limits apply:
- One policy of this type can be configured per tenant.
- A maximum of 10 SharePoint sites can be included in a policy.
- The user configuring the policy must have either the Compliance Administrator or SharePoint Administrator role so the policy can read the default SharePoint library label.
Action required and recommendations
No action is required unless your organization plans to use this capability.
If you intend to use this feature:
- Review SharePoint document libraries and identify those that have a default sensitivity label configured.
- Verify that the required sensitivity labels have been published to users before configuring the policy.
- Update internal information protection guidance, if applicable.
Learn more
- Automatically apply a sensitivity label to Microsoft 365 data | Microsoft Learn
Compliance considerations
Question: Does the change alter how existing customer data is processed, stored, or accessed?
Answer: Yes. Existing SharePoint files can be evaluated and automatically assigned the library’s default sensitivity label.
Question: Does the change modify Information Protection labels or sensitive information types?
Answer: No
Question: Does the change include an admin control and can it be controlled through Entra ID group membership?
Answer: Yes. Administrators must create and enable the auto-labeling policy for the capability to take effect.