Yandex Cloud
Search
Discuss with expertTry it for free
  • Customer Stories
  • Documentation
  • Blog
  • All Services
    • Cloud Interconnect
    • Cloud Backup
    • Cloud Registry
    • Yandex AI Studio
    • Compute Cloud
    • Object Storage
    • Managed Service for Kubernetes®
    • Yandex BareMetal
    • Smart Web Security
    • Security Deck
    • Managed Service for PostgreSQL
    • Managed Service for ClickHouse®
    • Monium
    • Cloud CDN
    • Network Load Balancer
    • Virtual Private Cloud
    • Cloud DNS
    • Application Load Balancer
    • Yandex Cloud Video
    • Stackland
    • Yandex Cloud Router
    • Yandex Managed Service for Trino
    • Managed Service for MySQL®
    • Managed Service for Valkey™
    • Managed Service for Apache Spark™
    • Yandex StoreDoc
    • Managed Service for OpenSearch
    • Managed Service for Apache Kafka®
    • Data Transfer
    • Yandex MPP Analytics Engine for PostgreSQL
    • Yandex Managed Service for Apache Airflow®
    • Data Processing
    • Yandex MetaData Hub
    • Managed Service for YDB
    • Managed Service for Sharded PostgreSQL
    • Managed Service for YTsaurus
    • Yandex WebSQL
    • DataLens
    • Yandex Search API
    • SpeechSense
    • SpeechKit
    • DataSphere
    • Vision OCR
    • Translate
    • Yandex Identity Hub
    • Key Management Service
    • Certificate Manager
    • Yandex Lockbox
    • Audit Trails
    • SmartCaptcha
    • Cloud Desktop
    • Yandex SIEM
    • SourceCraft Code Assistant
    • Container Registry
    • Managed Service for GitLab
    • Managed Service for Prometheus®
    • Cloud Functions
    • API Gateway
    • Yandex Cloud Postbox
    • Message Queue
    • Serverless Integrations
    • IoT Core
    • Data Streams
    • Serverless Containers
    • Cloud Notification Service
    • Yandex Query
    • Identity and Access Management
    • Yandex Cloud Console
    • Resource Manager
    • Yandex Cloud Billing
    • Yandex Cloud Quota Manager
    • Cloud Apps
  • System Status
  • Marketplace
    • Featured
    • Infrastructure & Network
    • Data Platform
    • AI for business
    • Security
    • DevOps tools
    • Serverless
    • Monitoring & Resources
  • All Solutions
    • By industry
    • By use case
    • Economics and Pricing
    • Security
    • Technical Support
    • Start testing with double trial credits
    • Cloud credits to scale your IT product
    • Gateway to Russia
    • Cloud for Startups
    • Center for Technologies and Society
    • Yandex Cloud Partner program
    • Price calculator
    • Pricing plans
  • Customer Stories
  • Documentation
  • Blog
© 2026 Direct Cursus Technology L.L.C.
Yandex Object Storage
    • Overview
    • Bucket
    • Object
    • Bucket versioning
    • Object lock
    • Partial object updates
    • Encryption
    • Object lifecycles
    • CORS
    • Hosting static websites
    • Pre-signed URLs
    • Multipart upload
    • Access control list (ACL)
    • Bucket policy
    • Search for sensitive data
    • Uploading files via an HTML form
    • Storage class
    • Object metadata export
    • Bucket actions logging mechanism
    • Backups
    • TLS protocol
    • Labels
    • S3 Select query language
    • Quotas and limits
  • Pricing policy
  • Terraform reference
  • Monitoring metrics
  • Audit Trails events
  • Bucket logs
  • Release notes
  • FAQ

In this article:

  • Scanning a bucket
  • Data categories
  • Scan results
  • Centralized Data Security Posture Management
  1. Concepts
  2. Search for sensitive data

Sensitive data search in Object Storage

Written by
Yandex Cloud
Updated at September 2, 2026
View in Markdown
  • Scanning a bucket
    • Data categories
  • Scan results
  • Centralized Data Security Posture Management

Note

This feature is at the Preview stage.

Sensitive data search is a tool powered by Data Security Posture Management that helps you detect sensitive information stored in Object Storage buckets for timely action to protect it through access policies, anonymization, etc.

You can create bucket scanning tasks and manage scan results via the Object Storage interface in the management console.

Sensitive data search is subject to the DSPM pricing policy.

Scanning a bucketScanning a bucket

Scanning discovers sensitive information within a bucket. To initiate scanning, use a service account.

Data categoriesData categories

When creating a scan, you can specify which data categories to search for. You can target all available categories at once or select specific categories.

Data categories available for scanning:

  • Personal data: Full names, email addresses, phone numbers, and social security numbers (SNILS).
  • Financial data: Bank card details.
  • Secrets: Cloud access keys, passwords, tokens, SSH keys, etc.

Scan resultsScan results

After a scan is complete, the system displays its results available for you to view, download, or export.

If an error occur during scanning, you can view diagnostic messages describing the issue under Messages and errors. For more information about errors, see Object Storage quotas and limits.

Centralized Data Security Posture ManagementCentralized Data Security Posture Management

The Object Storage UI supports sensitive data search in individual buckets. To monitor data in multiple buckets at the folder, cloud, or organization level, use the DSPM module inside Yandex Security Deck. With DSPM, you can aggregate multiple buckets, folders, and clouds into a single data source and set up scheduled scans.

Useful linksUseful links

  • Searching for sensitive data in a bucket
  • Data Security Posture Management (DSPM)
  • Preparing data for scanning in DSPM

Was the article helpful?

Previous
Bucket policy
Next
Uploading files via an HTML form
© 2026 Direct Cursus Technology L.L.C.