Monitor your usage of Cloud Data Loss Prevention

Stay organized with collections Save and categorize content based on your preferences.

This page describes how to use Cloud Monitoring to view and graph metrics data about your Cloud DLP usage.

Cloud Data Loss Prevention sends detailed telemetry about your Cloud DLP usage to Monitoring. This can be useful to monitor for unexpected findings, amount of data scanned or transformed, errors in job triggers or jobs, and expenses.

View Cloud DLP metrics in Monitoring

Using Metrics Explorer in Cloud Monitoring, you can dig into available metrics data to give you insight into your Cloud DLP usage. Monitoring supports a wide variety of metrics, which you can combine with filters and aggregations for new and insightful views.

To view the metrics for a monitored resource by using Metrics Explorer, do the following:

  1. In the Google Cloud console, go to Monitoring or use the following button:
    Go to Monitoring
  2. In the Monitoring navigation pane, click Metrics Explorer.
  3. In the toolbar, select the Explorer tab.
  4. Select the Configuration tab.
  5. Expand the Select a metric menu, and then use the submenus to select a resource type and metric. For example, to chart the CPU utilization of a virtual machine, do the following:
    1. (Optional) To reduce the menu's options, enter part of the metric name in the Filter bar. For this example, enter utilization.
    2. In the Active resources menu, select VM instance.
    3. In the Active metric categories menu, select Instance.
    4. In the Active metrics menu, select CPU utilization.

To see Cloud DLP-specific metrics in Metrics Explorer, search with to refine your search results.

To see API metrics in Metrics Explorer, select Consumed API as the resource type, and then use the filter and aggregation options to refine your data.

After you've found the metrics you want, you can use Monitoring to create custom dashboards and alerts that will help you continue to monitor and maintain a robust application.

Graph the metrics

You can graph metrics by aggregating them using Advanced Aggregation. Use the following settings:

  • Aligner: SUM
  • Alignment Period: 1440
Cloud Monitoring metric configuration (click to enlarge)

You get a chart showing the results per day.

Cloud Monitoring metric configuration (click to enlarge)

Cloud Monitoring supports alerting on all metrics. Using the Cloud DLP metrics, you can alert on use cases that include:

  • Monitor content_bytes_inspected_count or content_bytes_transformed_count to alert when spend has exceeded budget for a day.
  • Alert when the number of total findings or findings for a specific infoType exceed a threshold. For example, you can build an alert if CREDIT_CARD_NUMBER findings exceed 0 in a given project where no PII should exist.

Available metrics

The following metric type names must be prefixed with That prefix has been omitted from the entries in the table.

Metric type
Display name
Kind, Type, Unit
Launch stage
Number of findings
DELTAINT64By Number of findings per second. Only populated for jobs where the action PublishToStackdriver is included.
Content bytes inspected
DELTAINT64By Number of bytes inspected in content methods per second.
Content bytes transformed
DELTAINT64By Number of bytes transformed in content methods per second.
Storage bytes inspected
DELTAINT64By Number of bytes inspected in Cloud DLP jobs.
Storage bytes transformed
DELTAINT64By Number of bytes transformed in Cloud DLP jobs.
Job results
DELTAINT641 Results of Cloud DLP jobs. True if the job was success and false otherwise.
Job trigger runs
DELTAINT641 Results of job trigger runs.