All Products
Search
Document Center

Data Security Center:Release notes

Last Updated:Aug 12, 2025

This topic describes the release notes for the features, identification templates, and documentation of Data Security Center (DSC).

Features

March 2025

Feature

Category

Description

Release date

References

Column encryption

Feature iteration

  • Key Management Service (KMS) is integrated with ApsaraDB RDS for MySQL to provide KMS keys for encryption.

  • ApsaraDB RDS instances that run MySQL 8.0 support AES-256-GCM.

2025.03.31

Column encryption

Data auditing

Feature iteration

The architecture of custom audit alert rules is optimized.

2025.03.26

Configure and enable an audit alert rule

Column encryption

Feature iteration

Encryption algorithms are updated.

  • ApsaraDB RDS instances that run MySQL 5.7 support AES-256-GCM.

  • ApsaraDB RDS instances that run PostgreSQL 16 support only AES-256-GCM.

2025.03.19

Column encryption

February 2025

Feature

Category

Description

Release date

References

Column encryption

Feature iteration

PostgreSQL 16 is supported.

2025.02.28

Column encryption

January 2025

Feature

Category

Description

Release date

References

Data auditing

Feature iteration

Sensitive features related to security event alerts are displayed based on the integration of data auditing and data identification capabilities.

2025.01.15

View and handle audit alerts

2024

Feature

Category

Description

Release date

References

Data detection and response

Feature iteration

The database leak detection feature is supported. The feature checks database information, such as endpoints, ports, and accounts, in authorized Object Storage Service (OSS) buckets. This helps identify whether database accounts and database instances are leaked. If leaks are detected, DSC tracks and generates alerts for access to the database instances that use the leaked database accounts or the database accounts in self-managed intelligence and threat intelligence.

2024.12.11

Data leak detection

Column encryption

Feature iteration

The column encryption feature is supported for PolarDB for MySQL.

2024.12.04

Column encryption

Asset authorization

Feature iteration

DSC can be authorized to access the data assets in Simple Log Service (SLS).

2024.11.05

Sensitive data identification

Feature iteration

Data assets in Simple Log Service (SLS) can be scanned to identify sensitive data.

2024.11.05

Use identification tasks to identify sensitive data

Column encryption

Feature iteration

The feature is billed based on value-added features.

2024.10.30

Data detection and response: OSS scenarios (AccessKey pair leaks)

Feature iteration

Access traceability graphs are provided to allow you to view access paths to Object Storage Service (OSS) objects in a visualized manner and analyze the complex data access relationships in OSS. This helps you monitor and analyze the access behavior of OSS objects.

2024.09.24

View access traceability graphs of OSS objects

Column encryption

New

The column encryption feature is provided to encrypt identified sensitive data columns in tables of ApsaraDB RDS databases. This prevents unauthorized personnel from accessing plaintext sensitive column data by using cloud platform software or database connection tools. Data in databases is available but invisible.

2024.09.20

Column encryption

Multi-account management

Feature iteration

Member management by level is supported. A delegated administrator account can use RAM users to manage members by level based on the resource directory path of a folder in a resource directory.

2024.09.12

Use the multi-account management feature

Data auditing and audit alerting

Feature iteration

The DSC console is optimized to merge the configurations of auditing modes and audit alert rules

2024.09.09

Data auditing

Log management

Feature iteration

The DSC console is optimized to manage log analysis and log storage under log management.

2024.09.09

Log analysis

System settings

New

  • Email and text message alert notifications are supported.

  • Email reports can be configured.

2024.08.30

DSC Free Edition

New feature

DSC Free Edition is officially released, which provides baseline check and data classification capabilities.

2024.08.21

DSC Free Edition

System settings

New feature

  • Whitelist management is supported.

  • The Object Storage Service (OSS) synchronization feature is supported.

2024.07.31

Data security posture

Feature iteration

Audit rules can be configured to report audit alerts.

2024.07.31

Log analysis

Data auditing

New feature

  • Cloud-native audit log collection is supported.

2024.07.31

View audit logs

Data detection and response

New feature

The feature is provided to check the AccessKey pairs of Alibaba Cloud accounts or Resource Access Management (RAM) users in the source code on GitHub and in authorized Object Storage Service (OSS) buckets. This helps identify whether AccessKey pairs are leaked. If AccessKey pair leaks are detected, DSC tracks risk access to buckets and objects by using leaked AccessKey pairs or AccessKey pairs in self-managed intelligence and generates alerts for the AccessKey pairs.

2024.07.31

Data leak detection

Supported regions

Feature iteration

China (Qingdao), China (Beijing), China (Zhangjiakou), China (Hohhot), China (Hangzhou), China (Shanghai), China (Shenzhen), and China (Chengdu) are supported.

2024.07.11

Supported regions

Multi-account management

New feature

Cloud-native data assets of different accounts can be aggregated and managed in a centralized manner by using the resource directory.

2024.04.30

Use the multi-account management feature

Sensitive data identification

Feature iteration

The supported identification features, identification models, and identification templates are updated to match the support status at the China site (aliyun.com).

2024.04.29

Supported industry-specific classification templates

Sensitive data identification

Feature iteration

New identification rules are added to identify sensitive data such as Hong Kong Special Administrative Region (HKSAR) passport ID, number of Exit-Entry Permit for Traveling to Hong Kong (China) and Macao (China), Alipay nickname, Alipay account number, policy number, Mybank ID, Sesame ID, and Sesame points.

2024.04.29

Supported sensitive data

2023

Feature

Category

Description

Release date

References

Sensitive data identification

Feature iteration

The tagging feature is added to display common sensitive information tags, such as personal information and sensitive personal information, based on the classification results of industry-specific templates.

2023.03.10

Supported sensitive data types

2022

Feature

Category

Description

Release date

References

Asset center

Feature iteration

  • Automated discovery of data assets on the cloud is supported. Data assets are displayed based on asset types.

  • DSC can be authorized to access one or more assets at a time to improve the efficiency of enterprise data security management.

  • Data assets can be managed based on data domains.

2022.11.01

Authorize DSC to access databases

2021

Feature

Category

Description

Release date

References

Watermark extraction

Feature iteration

The watermark feature is launched. You can add hidden watermarks to databases. If data leaks occur, you can use DSC to trace the source.

2021.05.11

Configure and implement data masking

Sensitive data identification

Feature iteration

Sensitive data identification for ApsaraDB RDS for PPAS and ApsaraDB RDS for MariaDB is supported

2021.01.19

Supported asset types

Sensitive data identification

Feature iteration

Capabilities to identify sensitive information, such as Linux-Passwd files, Linux-Shadow files, URL links, and names (English), are added.

2021.01.13

Supported sensitive data

Asset authorization

Feature iteration

Automatic authorization is supported after you import multiple passwords at a time.

2021.01.05

Authorize DSC to access databases

2020

Feature

Category

Description

Release date

References

Data masking

Feature iteration

Data masking for ApsaraDB RDS for PostgreSQL is supported.

2020.12.17

Configure and implement data masking

Sensitive data identification

Feature iteration

Sensitive data identification for AnalyticDB for MySQL and AnalyticDB for PostgreSQL is supported.

2020.12.15

Scan sensitive data by using identification tasks

Data masking

Feature iteration

Data masking for PolarDB for Xscale (PolarDB-X) is supported.

2020.12.15

Configure and implement data masking

Data masking

Feature iteration

The data masking source and destination can be the same database.

2020.11.25

Configure and implement data masking

Data masking

Feature iteration

  • Data masking for the entire database is supported.

  • Sensitive data can be masked, and SQL statements can be generated.

2020.11.18

Configure and implement data masking

Sensitive data identification

Feature iteration

Sensitive data identification and data auditing for ApsaraDB RDS for PostgreSQL are supported.

2020.11.18

Scan sensitive data by using identification tasks

Sensitive data identification

Feature iteration

Sensitive data identification rules can be configured to match sensitive information based on database field names and regular expressions.

2020.10.28

View and configure identification templates

Sensitive data identification

Feature iteration

Sensitive data identification and data auditing for ApsaraDB for OceanBase are supported.

2020.09.08

Scan sensitive data by using identification tasks

Sensitive data identification

Feature iteration

The optical character recognition (OCR) technology is supported to identify sensitive information in images.

2020.07.16

Scan sensitive data by using identification tasks

Data masking

Feature iteration

Data masking for OSS objects is supported.

2020.01.20

Configure and implement data masking

Sensitive data identification

Feature iteration

Sensitive data identification for self-managed databases is supported.

Scan sensitive data by using identification tasks

Data masking

Feature iteration

Data identification, data auditing, and data masking for PolarDB and PolarDB for Xscale are supported.

2020.01.18

Configure and implement data masking

Sensitive data identification

Feature iteration

Scan sensitive data by using identification tasks

2019

Feature

Category

Description

Release date

References

Data masking

Feature iteration

The data masking feature is improved.

  • Data masking is supported when no primary key is configured.

  • Data masking rules can be used across databases.

  • Data masking for ApsaraDB RDS for SQL Server is supported.

2019.12.26

Configure and implement data masking

Sensitive data identification

Feature iteration

The asset status and sensitive data identification results can be displayed in a list and exported.

2019.11.21

View sensitive data identification results

Purchase

Feature iteration

The pay-as-you-go billing method is supported. Specific billing units are changed.

2019.10.17

Billing overview

SDDP

Feature iteration

SDDP is available for commercial use.

2019.07.04

What is DSC?

Data masking

New feature

The static data masking feature is released.

2019.06.27

Configure and implement data masking

2018

Feature

Category

Description

Release date

References

SDDP

New feature

The public preview of SDDP is released.

2018.09.01

What is DSC?

Identification templates

DSC provides identification templates to help identify sensitive data. Custom identification templates can be configured to classify sensitive data based on the requirements of different industries. DSC can identify sensitive data based on the identification template that you specify. This ensures data security compliance. For more information about the built-in identification templates provided by DSC, see Supported industry-specific classification templates.

2024

Template name

New record

Release date

Common identification template

Six identification features and five identification models are added.

2024.07

Data classification template for the financial industry

One identification feature is added. One identification model is updated.

2024.06

Data classification template for the Internet industry

One identification feature is added. One identification model is updated.

Common identification template

One identification feature and one identification model are added.

2024.05

Data classification template for the financial industry

Five identification features and five identification models are added.

Common identification template

Six identification features and six identification models are added.

2024.04

Data classification template for the financial industry

Six identification features and three identification models are added.

Common identification template

Seventeen identification features and sixteen identification models are added.

2024.03

Data classification template for the financial industry

Thirteen identification features and six identification models are added.

Common identification template

Four identification features and four identification models are added.

2024.02

Common identification template

Four identification features and four identification models are added.

2024.01

2023

Template name

New record

Release date

Common identification template

Nine identification features and five identification models are added.

2023.12

Common identification template

Thirty-five identification features and 21 identification models are added.

2023.11

Data classification template for the Internet of Vehicles (IoV) industry

Twenty-three identification features and 23 identification models are added.

Data classification template for the Internet industry

Two identification features and two identification models are added.

Common identification template

Eight identification features and six identification models are added.

2023.10

Common identification template

One hundred and twenty-four identification models are added.

Before October 2023

Data classification template for the IoV industry

One hundred and thirty-five identification models are added.

Data classification template for the electricity industry

Sixty-four identification models are added.

Data classification template for the Internet industry

Fifty-four identification models are added.

Data classification template for the financial industry

Three hundred and thirty-one identification models are added.