DataMapper finds and labels your sensitive data, Microsoft Purview enforces. Two systems, one closed loop. In operation in weeks, not quarters.
Three gaps that GDPR tools typically leave
Classification and enforcement are each solved on their own, but the link between them is missing. That is exactly where it goes wrong.
The visibility gap
Personal ID numbers, passports, health and payment data sit scattered across M365. Manual audits cannot keep up, and you never know exactly where the data is.
The action gap
Purview can enforce policy, but it lacks a source that automatically labels data so the policies are triggered at all. The engine stands still without fuel.
The cost trap
Classic data governance often ends in 12–18 month consultancy engagements and the result is strategy slides rather than cleaned-up data.
One closed loop in three steps
DataMapper delivers the missing link between discovery and enforcement, without new tools for your team.
Find
DataMapper scans Outlook, OneDrive, SharePoint and drives, all file types including OCR, with RegEx, machine learning and Azure OpenAI embeddings. Danish, English, German, Swedish, Norwegian.
Label
Findings are translated into Microsoft Purview native sensitivity labels via the Graph API, server-side, so you do not need an E5 licence per user. Runs continuously, 24/7.
Enforce
Purview policies are activated automatically: encryption, retention, deletion and conditional access. Fully auditable and reversible.
DataMapper and Purview: who does what
Two systems that each do what they are best at. DataMapper delivers findings and labels; Purview enforces the policy.
- Scanning of all file types, including OCR of images and scanned documents
- Contextual classification with embeddings, not just keywords
- Multilingual: Danish, English, German, Swedish, Norwegian
- Server-side labeling, no E5 licence per user
- Continuous scanning, not a batch every quarter
- Enforcement of policy based on sensitivity labels
- Encryption, retention and automatic deletion
- Conditional access and DLP policies
- Audit, reporting and compliance documentation
- Already part of your Microsoft 365 environment
Results already in the first quarter
No 18-month journey. You see an effect from the first weeks.
High precision
Context-aware embeddings minimise false positives, calibrated on real, GDPR-labelled data sets.
Business-driven clean-up
The employees who own the data decide, IT keeps full visibility.
Cost-effective
Server-side labeling avoids mass E5 licences. A fixed scan price, no surprise consultancy hours.
Fast deployment
A pilot in days, production in weeks. Not quarters.
From pilot to full operation
A predictable journey, read-only from day one, and you decide the pace.
Pilot (PoC)
A few mailboxes, one OneDrive and one SharePoint site. Read-only Graph access, no risk.
Cloud rollout
Full tenant coverage, GDPR starter templates and a review UI for your employees.
Extended coverage
Network drives, shared mailboxes and on-prem file drives are connected.
Automation
Azure Logic Apps, Dynamics 365, ServiceNow and ITSM integrations.
More than Microsoft 365
Once the loop is running, the findings can drive the rest of your systems.
Azure Logic Apps
1,050+ ready-made connectors plug findings straight into your workflows.
Dynamics 365 Business Central
Embed findings of sensitive data straight into your ERP, trigger retention workflows and pause supplier onboarding on red flags.
This is not how it looks
We do the opposite of classic data governance projects.
Shall we run a pilot on your data?
Our Customer Success team sets up a read-only pilot in 2–3 weeks, so you see the closed loop running on your own data, completely without risk.
