File Attachments

WAI Docs Wed Aug 19 13:22:37 EDT 2026
List
Quick Start
Welcome
Supported Applications & LLMs
Release Notes
August 18, 2026 WitnessAI Release
August 4, 2026 WitnessAI Release
July 21, 2026 WitnessAI Release
July 14, 2026 WitnessAI Release
July 9, 2026 WitnessAI Release
June 30, 2026 WitnessAI Hotfix
June 23, 2026 WitnessAI Release
June 16, 2026 WitnessAI Release
June 11, 2026 WitnessAI Release
June 4, 2026 WitnessAI Hotfix
June 2, 2026 WitnessAI Update
May 19, 2026 WitnessAI Update
April 30, 2026 WitnessAI Update
April 28, 2026 WitnessAI Update
April 23, 2026 WitnessAI Update
April 16, 2026 WitnessAI Update
April 14, 2026 WitnessAI Update
April 9, 2026 WitnessAI Update
April 9, 2026 WitnessAI Update
April 7, 2026 WitnessAI Update
April 2, 2026 WitnessAI Update
March 31, 2026 WitnessAI Update
March 24, 2026 WitnessAI Update
March 19, 2026 WitnessAI Update
March 17, 2026 WitnessAI Update
March 12, 2026 WitnessAI Update
March 5, 2026 WitnessAI Update
February 26, 2026 WitnessAI Update
February 24, 2026 WitnessAI Update
February 10, 2026 WitnessAI Update
January 27, 2026 WitnessAI Update
January 20, 2026 WitnessAI Update
January 13, 2026 WitnessAI Update
December 18, 2025 WitnessAI Update
December 9, 2025 WitnessAI Update
November 25, 2025 WitnessAI Update
November 18, 2025 WitnessAI Update
November 11, 2025 WitnessAI Update
October 28, 2025 WitnessAI Update
October 23, 2025 WitnessAI Update
October 9, 2025 WitnessAI Update
October 2, 2025 WitnessAI Update
September 30, 2025: WitnessAI Update
September 23, 2025: WitnessAI Update
August 12, 2025: WitnessAI Update
July 31, 2025: WitnessAI Update
July 18, 2025: WitnessAI Update
April 11, 2025: WitnessAI Release v2.0
June 9, 2025: WitnessAI Update
June 23, 2025: WitnessAI Update
TOC Left Sidebar: not active
TOC Left Sidebar: ORIGINAL
User Guide
Policies - GuardRails
Witness Anywhere: Remote Device Security
Witness Attack
Administrator Guide
404
 

File Attachments

💡
Note: In order for scanned attachments to be blocked for an AI App, there must be a Policy with the Data Protection guardrail enabled, the Inspect Attachments checkbox checked, the AI App included as a Destination, and a Guardrail Action of Block. Read below for details.

File Attachments Configuration

To view and configure the ABP, Navigate to the Policy Console, and click on the Attachment Block Policy row.
WitnessAI File Attachments page showing the Policies list with the ‘Attachment Block Policy’ (row 2) highlighted with an orange border and a tooltip popup. The tooltip reads: ‘Attachment Block Policy: Attachments to applications are blocked, unless listed as an exception. The user prompt will pass through for evaluation by other policies.’ Other policies visible include Global Block Policy (row 1), North Central - Legal Department, LATAM Corporate Policy, and West Coast Corporate.
 
At the top of the ABP console is a list of AI Applications, that can be individually configured to block or allow attachments.
When attachments are allowed for an individual application, the files will be scanned for content in violation of your Data Protection Guardrails. GuardRail Actions can be chosen to block or allow file attachments that match your GuardRail settings.
File attachments for all apps are allowed by default. This is displayed at the bottom of the ABP console labeled “For all other applications:”. Currently you can not configure ABP to block all applications.
 
WitnessAI File Attachments page showing the ‘Attachment Block Policy’ configuration page. The page shows Application-specific policies with Google Gemini set to ‘Allow Attachments’ and Microsoft Copilot Personal with options to ‘Allow Attachments’ or ‘Block Attachments’. The ‘For all other applications’ section shows ‘Allow Attachments’ as the default.

Blocking File Attachments With Policies

 
In order for scanned attachments to be blocked for an AI App, there must be a Policy with the Data Protection guardrail enabled, the Inspect Attachments checkbox checked, the AI App included as a Destination, and a Guardrail Action of Block. See the File Attachments documentation for details.
WitnessAI policy editor showing ‘Vineeth’s Test Policy’ (Version 1) with the Data Protection GuardRail tab selected. The ‘Enable GuardRail’ toggle is on, and the ‘Inspect Attachments’ checkbox (highlighted with orange border) is enabled with note ‘Only text and PDF files under 100 MB’. The ‘Anonymize sensitive data before sending to the AI Model’ checkbox is enabled. Action is set to Block.
After attachments are scanned, prompts continue to be processed by the rest of your Policies.

File Attachments In Conversations

The Conversation Details slide-out sidebar displays information on files processed. Files less than 100MB are supported. Larger files and files containing malware are blocked.
Responses from applications containing files are not scanned or blocked, allowing users to save them as needed.
 
WitnessAI Conversations view showing file attachments in the Conversation Details sidebar. The sidebar shows a file upload notification (’File text1.csv was uploaded successfully.’) and blocked attachment prompts for Microsoft Copilot (Personal) shown with red BLOCKED labels. The Conversations list on the left shows multiple conversations with file attachment activity.
 

File Attachments In Alerts

Blocked attachments will generate alerts in the Alerts console. Alerts with blocked file attachments will display the text “Confirm File Upload” in the Intent column.
The sidebar displays the details of the alert.
WitnessAI Alerts console showing 518 file attachment alerts with an alert details sidebar open on the right. The sidebar shows ‘Process document content (analyze selected by Data Protection guardrail)’ with alert details including Scores, Subject, GuardRail (Virtual Test Data Protection), and Conversation information. The Alerts list shows multiple Data Leakage and file upload alerts with red HIGH severity indicators.
 

File Attachments Supported

Currently all text-based files can be scanned. For example, all files that can be opened and read with a text editor. Examples include:
  • Plain Text: .txt, .log, .eml
  • Source Code: .c, .cpp, .java, .js, .html, .css, .py etc...
  • Markup and Data: .xml, .json, .csv, .tsv
  • Documents: .rtf, .docx , .md (Markdown)
  • Configuration: .ini, .cfg, .rc, .reg
  • Other: .sh (shell scripts), .ps (PostScript)
  • MS Office: .docx .pptx .xlsx
  • PDFs