At step 306, one or more of the systems described herein may flag, based on the scanning, the application as having accessed the sensitive data that is protected by the data loss prevention policy. For example, flagging module 108 may, as part of server 206 in
As used herein, the phrase “flag” generally refers to any action that triggers a data loss prevention system to prevent or obstruct an attempt by the flagged application to output a data object that may potentially contain sensitive data in an obfuscated format, as discussed further below (or otherwise perform a remedial action to prevent the loss of data). Moreover, as used herein, the term “sensitive data” generally refers to any data that a data loss prevention system protects to prevent loss or leakage. Typical examples of sensitive data may include personal or corporate identifying information, medical information, academic information, intellectual property, and/or any other similar sensitive data that an individual or organization may seek to prevent from loss or leakage.