How to Apply Default Sensitivity Labels to SharePoint Libraries
Question details
Users need to apply default sensitivity labels to newly created and existing document libraries in SharePoint to ensure corporate data protection.

- Product
- Microsoft SharePoint
- Device & OS
- not provided
- Scenario
- Enforcing data protection policies by automatically assigning sensitivity labels to document libraries across SharePoint sites.
- Observed behavior
- Libraries may lack appropriate protection unless a default sensitivity label is configured at the tenant level via Microsoft Purview PowerShell.
Ensure you have global administrator or compliance administrator rights in your Microsoft 365 tenant, and verify that the Microsoft Purview PowerShell module is installed on your device.
Configure Default Sensitivity Labels via Microsoft Purview PowerShell
Use Microsoft Purview PowerShell to enforce a default sensitivity label for SharePoint document libraries across your organization.
To ensure all files meet compliance requirements, administrators can set a default sensitivity label. This label will apply to any new or existing document libraries that either have no label or currently possess a lower-priority label.
Log in to the Microsoft Purview compliance portal, navigate to the Information Protection settings, and enable sensitivity labels for files in SharePoint and OneDrive.
Open PowerShell as an administrator and run the 'Connect-IPPSSession' command to securely connect to your Microsoft 365 tenant.
Execute the appropriate compliance PowerShell cmdlet targeting your specific SharePoint sites to assign the desired default sensitivity label to those locations.
Allow some time for the background synchronization to complete. Once synced, existing and newly created libraries will automatically receive the default label.

Try WPS Office for Secure and Lightweight Document Management
While setting up tenant-level SharePoint policies requires Microsoft 365 admin tools, WPS Office serves as an excellent, free alternative for day-to-day document creation and local file security. Enjoy seamless compatibility without the heavy subscription costs.
- 1. Download WPS Office: Visit the official WPS website and download the free installation package for your operating system.
- 2. Install the application: Run the installer and follow the straightforward on-screen instructions to set up the software.
- 3. Edit and protect your files: Open your documents to start editing, and use the 'Encrypt' feature under the Menu tab to securely protect your local files with a password.

Frequently Asked Questions
Can non-administrators apply sensitivity labels to SharePoint libraries?
Non-administrators can manually apply sensitivity labels to their own files or specific libraries if they are granted the correct permissions and the labels are published to them. However, configuring a default label policy across a site requires administrative rights.
Will existing files automatically receive the newly applied default sensitivity label?
Yes, once the default label is configured via Microsoft Purview PowerShell, existing libraries and files will receive the default label, provided they do not already have a label with a higher priority.
Why are my sensitivity labels not showing up in SharePoint?
Before labels can be applied, an administrator must enable sensitivity labels for Office files in SharePoint and OneDrive at the tenant level through the Microsoft Purview compliance portal.
What happens if a document library already has a lower-priority label?
If a document library possesses a label with a lower priority than the newly configured default label, the system will automatically override the lower-priority label and upgrade it to the new default sensitivity label.




