Lookout Product Documentation

Find answers about using and optimizing Lookout products.

Create API Access Security Policy

Create an API access policy to control what actions users can perform in cloud apps. This example detects when a user shares a file containing phone numbers in a public Slack channel.

  1. In the Management Console, select Protect > API Access Policy.
  2. Click New.
  3. Enter a name for the policy and select DLP Scan in the Content Inspection Type prompt.
  4. Click Next.
  5. In the Destinations column, locate the Managed Apps > Collaboration menu and select the Slack app you just created.
  6. In the Content Scanning section on the Context Rules tab, select these values:
    • Data Type: Select Structured Data, Unstructured Data, or both.
    • Rule Template: Select All: Phone Number.

      For this example, use a prebuilt rule template. You can create your own DLP rule templates to scan for specific content as needed. For more information, see the Lookout Cloud Security Platform Administrator Guide.

  7. In the Context Rules section, select these values:
    • Context Type: Channel Type
    • Context: Public
  8. (Optional) In the Context Exceptions section, select Users for the Context Type and enter an email address to exclude that user from this policy.
  9. On the Action tab, select these values:
    • Content Action: Allow & Log.
    • Collaboration Action: For Scope, select Public.
    • (Optional) Secondary Action: Select Notification or Bot Notification, then select a notification template.
  10. Click Next, then Confirm.