Skip to content
arrow_back
search
ISM-1089 policy ASD Information Security Manual (ISM)

Prevent Lower Email Protective Marking Selection

Email reply or forward tools must not allow reducing security markings from the original.

record_voice_over

Plain language

This control ensures that when you reply to or forward an email, you can't lower its security level. It matters because if someone reduces a protective marking, sensitive information could be exposed to people who shouldn't see it, increasing the risk of data leaks or breaches.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Feb 2022

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Protective marking tools do not allow users replying to or forwarding emails to select protective markings lower than previously used.
policy ASD Information Security Manual (ISM) ISM-1089
priority_high

Why it matters

Reducing protective markings in replies or forwards can expose sensitive content to wider audiences, causing unauthorised disclosure and potential data breaches.

settings

Operational notes

Regularly audit email clients/gateways to confirm replies and forwards cannot be marked lower than the original email, and test after updates to ensure downgrade prevention remains enforced.

Mapping detail

Mapping

Direction

Controls