Org boundary
Sanctioned app
Unsanctioned app
Sensitive content flagged
⚠ Couldn't load the 3D engineThree.js failed to load from the CDN. Check your connection and reload.
Pick a file, pick a cloud destination, and upload it to see whether an outbound data-loss-prevention scanner would let it through. With DLP off, every upload succeeds no matter what it contains or where it's going. With DLP on, the same sensitive file that flows freely to a sanctioned corporate app gets caught and blocked the moment it's aimed at an unsanctioned destination — while non-sensitive files pass through to either one unaffected.