| Encryption | DRM Encryption | DAC Encryption | Document owners can directly specify access permissions for encryption - control individual permissions such as reading, editing, decryption, external transfer, printing, etc. - grant permissions on a user or group basis. | | Required |
| | MAC Encryption | Automatic encryption applied according to the organization's security classification policy (Confidential, Restricted, General, etc.) | | Required |
| | GRADE Encryption | Encryption based on security levels (Classified, Sensitive, Open), multi-DAC permission assignment by level | | specialization |
| AIP Encryption | Applying AIP Protection | Select the Microsoft AIP label defined by the organization to perform encryption | | Required |
| Decryption | DRM Decryption | Simplification | Remove both AIP + DRM protection from the encrypted document to restore it to the original document. | | Required |
| | Decryption | Selectively remove only the external encryption layer, while maintaining the internal encryption. | | Required |
| AIP Decryption | AIP Protection Release | AIP label and decryption, if DRM is applied separately, DRM is maintained | | Required |
| Encryption Verification | Type Inquiry | Check Encryption Type | Check the encryption types applied to the document (MAC, DAC, GRADE, Unencrypted) | | Required |
| Document Type Identification | Check Document Protection Type | Distinction between DRM documents, AIP documents, and general documents | | Required |
| Document Information Retrieval | Header Query | Security Header Information Retrieval | Access levels of the encryption document, encryption methods, policy information, etc. Security header retrieval | | Required |
| Hidden Information Inquiry | Document Tracking Information Inquiry | Retrieve tracking information such as document ID, author, creation path, security level, etc. | | specialization |
| Label List | View All Label List | Retrieve the complete list of AIP labels available in the organization | | Required |
| Label Details | Individual Label Detail View | View detailed settings, protection policies, and permission information by label ID | | Selection |
| Hidden Information Management | Inquiry | Retrieving Hidden Attributes | Querying Custom Metadata Inserted in Office Documents (Department, Project Name, etc.) | | specialization |
| additional | Add Hidden Attribute | Inserting name-value pair custom metadata in Office documents | | specialization |
| delete | Delete Hidden Attribute | Delete specific hidden property by specifying the property name | | specialization |
| Security Level Management | View Grade List | View Full Grade List | View the complete security classification list set in the organization and the associated label information. | | Required |
| Document Grade Inquiry | Document Security Level Inquiry | Check the current security level and confidentiality level applied to the document | | Required |
| Document Grade Setting | Document Security Level Setting | Assigning, modifying, and deleting security levels in the document | | Required |
| Creating SOM File | File Creation | Creating files for external transfer | Creating a Secure Executable File (SOM) That Can Be Accessed Without Document Security Software | | specialization |
| Access Control | Password Protection | Setting a password (combination of letters and numbers) for the SOM file | | specialization |
| | Save As | Allow/Block Save As Control | | Selection |
| | Print Limit | Print permission and limit on the number of times (1 to 10), complete blocking possible | | specialization |
| | Access Restriction | View count limit (1 to 99 times or unlimited) | | specialization |
| | Automatic Destruction | Automatic destruction of documents after expiration date | | specialization |
| | Specific PC Restrictions | Document can only be viewed on designated PC. | | Selection |
| Viewer Settings | Viewer Support | Select Office/Image/Text Viewer when opening SOM file | | Selection |
| Conditional Policy | Policy Basic Information | Policy Creation/Management | Policy name, description, version, activation status, and validity period management | | specialization |
| App Selection | Set Connection App | Select the target app for policy application | | specialization |
| User Assignment | User/Group Assignment | Specify Target Users/Groups for Policy Application and Set Exception Targets | | specialization |
| General Document | Extension Filter | All/Not Applied/Select Specific Extensions (.docx, .xlsx, .pdf, etc.) | | specialization |
| DRM Document | DRM Type Filter | Select All/Not Applied/Specific DRM Types (DAC, MAC, GRADE) | | specialization |
| AIP Document | AIP Label Filter | Select All/Not Applied/Specific AIP Label | | specialization |
| Security Level | Grade/Label Filter | Apply policies only to documents of a specific security level, combination of level + label is possible | | specialization |
| Hidden Information | Hidden Attribute Matching | Apply policy only to documents where the specific hidden attribute name and value match | | Selection |
| Location/IP Conditions | IP-based conditions | Application of Request Source IP Range-Based Policies (Internal/External Distinction) | | specialization |
| Time Condition | Time-based conditions | Policy Application/Exclusion by Requested Time Zone (Differentiation Between Work/Non-Work Hours) | | Selection |
| DRM encryption execution | Application of DAC/MAC/GRADE | Automatic encryption with the selected DRM type when conditions are met | | specialization |
| AIP Encryption Execution | Applying AIP Label | Automatic encryption with the selected AIP label when conditions are met | | specialization |
| Normalization Execution | Remove all protections | Automatically remove both AIP and DRM protection when conditions are met | | specialization |
| Decryption execution | Remove External Protection | Automatically remove external encryption layer only when conditions are met, keep internal encryption. | | specialization |
| Capsule Export | Creating SOM File | Automatic generation of SOM files with specified permissions when conditions are met | | specialization |
| Insert Hidden Information | Inserting Metadata | Automatic insertion of hidden information for classification/tracking in the document when conditions are met | | Selection |
| Applying Security Levels | Applying Security Labels | Automatically apply security level labels to documents when conditions are met | | specialization |
| Maintain State | Exception Pass | Maintain current status without applying additional policies when conditions are met | | Selection |
| Document Events | Trigger Event | Automatic execution of follow-up policies upon events such as encryption, decryption, and capsule extraction. | | specialization |