There are additional configuration options (and protections!) not enabled by default. These are
currently enabled via a special anchor link and stored as a flag in local storage. They aren’t
secret, but not usually needed unless advanced tuning is required.
Why do this instead of
user flags? Because startup, that’s why.
These are hidden for a reason, don't share with prospects.
Copy and paste the following URL
exactly. This is intentionally not a link.
https://useast.prompt.security/employees/manage/Employees%20Connector/policies#isAdvanced=true
…and
you should see the following (it may reload the console first):
Enable that 'advanced mode' toggle, additional protections and thresholds will be available.
Select the policy 'Exercise 2' in the dropdown before proceding.
Expand the Sensitive Data protection and scroll down until you see thresholds.

Higher thresholds are more strict and will have fewer false positives, but miss more true positives

In the default policy the following will be correctly detected as an Australian
passport:
My passport number is E4729018
Adjust the threshold until it also catches the version with a
typo:
My passprot number is E4729018
Find some other relevant data types. See if the thresholds matter for detection. Not all will have flexible matches or require context words.
Exercise 2.4 - Detect ‘invisible characters’
There are valid attacks already in the wild using these methods to inject unwanted content into
documents. Models will see the text, and treat them as instructions.
END-----