graph-studio
Creating Masking Policies
- In the Create Policy screen, provide a Title and (optional) Description for the policy and select Masking Policy from the Policies dropdown. The Edit Policy screen displays.
- Select the type of mask to apply to the policy from the Mask data menu. You can apply one of the following mask types to each masking policy:
- Hash function - When this mask type is selected, the selected data are masked with a hash value.
- Replace with null - When this mask type is selected, the selected data are replaced with nulls.
- Replace with a constant - When this mask type is selected, you must also specify the constant value to use to mask the data.
- Use a pattern - When this mask type is selected, you must also specify a regular expression matching the pattern of the data to be masked (e.g., '(\\d+)-(\\d+)-(\\d+)') and the text replacement pattern for matched data.
- Round to a lower precision - When this mask type is selected, you must also specify a precision for rounding down numbers.
- Use the Add
buttons in the Scope and Exceptions fields to describe the parameters of the policy scope and exceptions, respectively.

- Click Done when you are finished to save the policy and return to the Create Policy screen.

- Click Confirm.
The newly created policy is added to the Policies screen.

Source: https://docs.sw.siemens.com/documentation/external/PL20260212925461721/en-US/graph_studio/abac-create-policy-mask.htm · retrieved 2026-08-23