The Overview page of Data Security Center (DSC) displays your data protection posture, including asset authorization status, sensitive data identification results, security risk trends, and audit alert statistics.
Prerequisites
Data Security Center (DSC) is activated.
DSC is authorized to detect sensitive information in your database, Object Storage Service (OSS), and Simple Log Service (SLS) assets.
Data security audit is enabled.
To protect your privacy, DSC performs only the sensitive data operations that are required, such as tagging, static data masking, and operation auditing. Your data files are not stored.
Supported data assets
DSC currently supports the detection of relational databases, non-relational databases, big data, unstructured databases, and self-managed databases. Each supported database type is described in Supported data asset types.
View statistics
On the Overview page of the Data Security Center console, view the following statistics.
Version and quota statistics
The Version and Quota Statistics (Used/Monthly Quota) section shows your current edition and resource usage.
Free Edition
The Free edition does not support upgrades or renewals. If the free resource specifications can no longer meet your business needs, purchase Data Security Center to ensure continuous data security governance. For more information, see Purchase Data Security Center。
The Free Quota Statistics section on the DSC Overview page shows the used amount and the monthly quota of each feature module: Asset Authorization (number of database instances and storage capacity), Baseline Check (check items), Classification and Grading (unstructured data identification volume and number of identified database tables), Data Audit (log storage), Column Encryption (number of columns), and Detection and Response (AccessKey pair and credential leak detection, and access behavior and governance). The Version Information panel on the right shows your current edition and instance ID, and provides entry points to paid features such as Data Masking, Whitelist Management, and Report Analysis.
Paid editions
The Version and Quota Statistics section compares the used amount with the monthly quota of each item: Authorized instances (for example, 47/50), Authorized storage (for example, 382.96G/9.97T), Detection and Response (OSS protection volume), Detection and Response (number of database instances), Masked images, Enhanced-identification images, Log storage, and Column encryption (number of columns). A Scale up or Configure entry point appears next to some metrics. The top of the page shows the asset discovery status and product expiration reminders.
To upgrade or renew your instance, click Upgrade or Renew Subscription. For the procedures, see Upgrade an instance and Renew an instance.
Asset configuration statistics
The Asset allocation statistics section shows the authorization status of your data assets, including asset authorization and data identification statistics.
Click Authorize to go to the Asset Authorization Configuration page, where you can add asset authorizations, and view, edit, or delete authorized assets. For more information, see the Configuration wizard section below.
Click Config to go to the Data Identification Configuration page. On this page, you can select authorized assets and configure the scan frequency and time for the corresponding identification task (a system default task). For more information, see the Configuration wizard section below.
Click Config to go to the Data Audit Configuration page, where you can enable an audit mode for your target assets. For more information, see the Configuration wizard section below.
Sensitive data identification statistics
The Sensitive Data section shows the statistics of the identification results of structured data and unstructured data in the assets that are scanned.
DSC identifies the sensitive files and sensitive data that require your attention based on the configured sensitive data identification templates. Sensitive data identification templates are either built-in templates or custom templates. DSC uses these templates to identify sensitive tables, fields, and files, and to classify them by sensitivity level. Identification templates are described in View and configure identification templates.
The Overview page shows the statistics of the scan results that are identified by using the Internet Industry Classification and Grading Template.

Click Details in the upper-right corner of the Sensitive Data section to go to the Classification and Grading > Asset Insight page, where you can view detailed sensitive data identification results.
Click Configure to go to the Data Identification Configuration page. On this page, you can select authorized assets and configure the scan frequency and time for the corresponding identification task (a system default task). For more information, see the Configuration wizard section below.
Risk trend statistics
The Risk Trends section shows the risk trends of security baseline checks over the last 7 days and 30 days.
The Risk Trends section consists of three parts. The Asset Risks panel shows the number of risky assets by High, Medium, and Low risk level. Governance Progress shows the number of passed check items and the total number of check items. The Risk Compliance Trends line chart shows the trends of passed and failed check items, and supports filtering by Last 7 days or Last 30 days.
Click Recheck to run a security baseline check on all authorized assets. Refresh the page later to view the results.
Click Details in the upper-right corner of the Risk Trends section to go to the Risk Governance > Configuration Risks page, where you can view detailed results of the security baseline checks.
Threat trend statistics
The Threat Trends section shows the trends of the number of data audit alerts over the last 12 hours, 1 day, 7 days, and 30 days.

Click Details for Audit Alerts in the Threat Trends section to go to the Data Audit > Native Data Auditing page and view the corresponding alert details.
Click Configure to go to the Data Audit Configuration page, where you can enable an audit mode for your target assets. For more information, see the Configuration wizard section below.
Configuration wizard
Click Configuration Wizard in the upper-right corner of the Overview page or in the Asset allocation statistics section, and then follow the user guide to quickly configure identification and auditing for your target assets.
Synchronize assets.
Click Click to Sync to automatically synchronize asset data to DSC.
Click Manual entry to add assets that are not automatically discovered, such as self-managed databases. In the Add Asset dialog box, select the asset information and click Confirm. The asset appears in the asset list.
If you select Data Identification and Audit, you must also complete the Data identification and Data audit configurations. Click Add and Configure Permissions.
Asset information includes Database Type (such as MySQL 8.0), Server Type (such as an ECS asset), Region, Instance ID, and Port.
Authorize assets.
Click Configure. On the Asset Authorization Configuration page, you can add asset authorizations and view, edit, or delete authorized assets. The authorization procedures are described in General database authorization, Authorize DSC to access a self-managed database on an ECS instance, Authorize DSC to access unstructured data in OSS and Simple Log Service, and Authorize DSC to access MaxCompute.
The left-side navigation pane of this page groups assets into Structured data, Unstructured data, and Big data. The top of the main content area provides the Asset synchronization, Authorized, and Unauthorized tabs. Select the target assets and click Batch authorization to complete the authorization.
Identify data.
Configure the scan frequency and scan time of the identification task, which is the default system task, for the target assets. Identification tasks are described in Scan sensitive data with identification tasks.
Click Configure. On the Data Identification Configuration page, select the target assets and click Next.
Configure the identification template, scan frequency, and scan time of the identification policy, and then click Next.
The available identification templates are the Internet Industry Classification and Grading Template and the General Identification Template. The scan frequency can be set to Every day, and the scan time to a range such as 00:00-06:00, which takes effect only for structured data. You can select Scan immediately. During structured data identification, only the first 200 rows of each table are scanned.
Confirm the identification policy of the target assets, and then click OK.
The configuration overview page shows Target assets (the number of structured data assets and the object storage data volume), Identification template, and Scan settings.
Audit data.
Audit modes are described in Configure and enable audit mode.
Click Configure. On the Data Audit Configuration page, enable an audit mode for the target assets, and then click Next.
Three audit modes are available: Disabled, Native log collection, and Traffic collection (Agent). Select the audit mode that you need for each target instance.
For the assets on which you enable traffic collection, install the Agent, and then click Next.
Confirm the audit settings of the target assets, and then click OK.
After the wizard completes, return to the Overview page and verify that each statistics section reflects your configurations.