Cloud Data Loss Prevention (Cloud DLP) is now a part of Sensitive Data Protection. The API name remains the same: Cloud Data Loss Prevention API (DLP API). For information about the services that make up Sensitive Data Protection, see
Sensitive Data Protection overview .
Method: projects.locations.contentPolicies.create
Stay organized with collections
Save and categorize content based on your preferences.
HTTP request
Choose an endpoint:
global africa-south1 asia-east1 asia-east2 asia-northeast1 asia-northeast2 asia-northeast3 asia-south1 asia-south2 asia-southeast1 asia-southeast2 australia-southeast1 australia-southeast2 europe-central2 europe-north1 europe-north2 europe-southwest1 europe-west1 europe-west10 europe-west12 europe-west2 europe-west3 europe-west4 europe-west6 europe-west8 europe-west9 me-central1 me-central2 me-west1 northamerica-northeast1 northamerica-northeast2 northamerica-south1 southamerica-east1 southamerica-west1 us-central1 us-east1 us-east4 us-east5 us-south1 us-west1 us-west2 us-west3 us-west4 us eu in
POST https://dlp.googleapis.com/v2/{parent=projects/*/locations/*}/contentPolicies
The URLs use gRPC Transcoding syntax.
Path parameters
Parameters
parent
string
Required. Parent resource name.
The format of this value varies depending on the scope of the request (project):
Projects scope: projects/{projectId}/locations/{locationId}
Authorization requires the following IAM permission on the specified resource parent:
dlp.contentPolicies.create
Request body
The request body contains data with the following structure:
JSON representation
{
"contentPolicy" : {
object (ContentPolicy )
} ,
"contentPolicyId" : string
}
Fields
contentPolicy
object (ContentPolicy )
Required. The contentPolicy resource.
contentPolicyId
string
Optional. The content policy ID can contain uppercase and lowercase letters, numbers, and hyphens; that is, it must match the regular expression: [a-zA-Z\d-_]+. The maximum length is 100 characters. If empty, the system will generate a random id.
Response body
If successful, the response body contains a newly created instance of ContentPolicy .
Authorization scopes
Requires the following OAuth scope:
https://www.googleapis.com/auth/cloud-platform
For more information, see the Authentication Overview .
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License , and code samples are licensed under the Apache 2.0 License . For details, see the Google Developers Site Policies . Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2026-08-21 UTC.
[null,null,["Last updated 2026-08-21 UTC."],[],[]]