Product Enhancement Request – Clipboard Control Functionality

Which aspect of EPP are you submitting for?

Endpoint Protector Server

What is a one sentence summary of your feature request?

Product Enhancement Request – Clipboard Control Functionality

Please describe your idea in detail. What is your problem, why do you feel this idea is the best solution, etc.

Dear Netwrix Team,

We would like to submit a product enhancement request regarding the clipboard functionality, as we are facing an issue with data blocking.

Use Case: PI (Personal Information) Data Blocking

Scenario:

When the clipboard is enabled:
Users are unable to copy and paste data between applications such as Microsoft Excel, Microsoft Outlook (email body), Microsoft Word, text files, and other applications.
This issue is not limited to Excel. Similar restrictions are observed when copying data from other sources such as text files or PDF documents into Excel or other applications.
When the clipboard is disabled:
Users are able to freely copy and paste data to external applications such as Microsoft Teams, Zoom, AI tools, AnyDesk, and other third-party applications.
This creates a potential data leakage risk, as sensitive information can be transferred without restriction.
Enhancement Request:

We request the Netwrix team to enhance the clipboard control functionality so that:

Legitimate copy-and-paste operations between approved business applications (e.g., Excel, Outlook, Word) are allowed.
Copying or pasting sensitive data to unauthorized or external applications (e.g., Microsoft Teams, Zoom, AI tools, AnyDesk, etc.) continues to be blocked.
This enhancement would help maintain security while minimizing the impact on users’ day-to-day productivity.

If you need any additional information or clarification regarding this request, please feel free to contact me.

How do you currently solve the challenges you have by not having this feature?

Currently, we do not have an effective workaround for this limitation.

If we enable clipboard control, users are unable to copy and paste data between legitimate business applications such as Microsoft Excel, Microsoft Outlook, and Microsoft Word, which negatively impacts their daily productivity.

If we disable clipboard control, users can freely copy and paste sensitive data to unauthorized external applications such as Microsoft Teams, Zoom, AI tools, AnyDesk, and other third-party applications. This increases the risk of data leakage.

As a temporary workaround, we have to choose between maintaining security by enabling clipboard restrictions or maintaining business productivity by disabling them. Neither option fully meets our security and operational requirements.

This is why we are requesting a more granular clipboard control feature that allows copy-and-paste operations between approved applications while continuing to block data transfers to unauthorized or external applications.

1 Like

Hi Tejas,

Thank you for the detailed write-up — this is a well-described use case and we appreciate the effort in outlining both sides of the trade-off.

Endpoint Protector does include clipboard control functionality today. Under Content Aware Protection → Content Aware Policies → Policy Exit Points → Clipboard, there is already an option called “Extend Paste restrictions to below applications” that lets you target specific destinations rather than applying restrictions globally.
However, the application list it offers is fixed and predefined — currently covering standard desktop productivity apps such as the Microsoft Office suite, Notepad, and terminal emulators. Applications like Microsoft Teams, Zoom, AnyDesk, and browser-based tools are not included in that list and cannot be added through the interface.

So while the building blocks are there, your specific scenario — allowing paste freely between internal business applications while blocking it to collaboration tools and external applications — is not fully achievable with the current feature set. That is a real gap, and your request is valid.

We’ve logged it as a feature request and will evaluate expanding the predefined application list and potentially introducing support for custom process-level definitions. We’ll update this thread as it moves through prioritisation.

1 Like