PII Severity Score Distribution(5.4.10)

Visual
Where to find it:CompliancePII Detector
Ent AdvancedPii Detector add-on
Open in dashboard

Not all detections require the same response. A phone-shaped digit run in a closed issue is a different matter from an email address and a digit run together in an active open issue. This breakdown classifies all current detections into four tiers so you can see how much of the total requires urgent action versus routine review.

What you can conclude

  • A high count of Critical-tier issues (email pattern and phone-shaped digits in the same open issue) requires immediate action. These are the highest-confidence current exposures, because two independent patterns matched the same open issue.
  • A large Medium-tier count (a detection in a closed issue) is lower urgency but still requires a plan. The data is in the system even if the issue is resolved.
  • A dashboard that is mostly Low tier indicates that the total is being driven by bare numeric identifiers rather than by recognizable personal data.

How this chart works

KPI card grid showing detection counts grouped into four tiers: Critical (email pattern and phone-shaped digits in the same open issue), High (a single pattern in an open issue), Medium (a pattern in a closed issue), Low (numeric ID only). Use the date and project filters to scope the assessment.

What moves a row between tiers. Only the email and phone-shaped-digit patterns band a row; the numeric ID pattern only admits it to the population. So an issue whose only match is a 6-to-12 digit identifier always lands in Low, however many times it appears.

Teams preparing a GDPR review use the severity split to sequence remediation.