diff --git a/windows/security/threat-protection/windows-defender-antivirus/microsoft-defender-atp-mac-preferences.md b/windows/security/threat-protection/windows-defender-antivirus/microsoft-defender-atp-mac-preferences.md
index ffa0df06d3..1902cc1a3f 100644
--- a/windows/security/threat-protection/windows-defender-antivirus/microsoft-defender-atp-mac-preferences.md
+++ b/windows/security/threat-protection/windows-defender-antivirus/microsoft-defender-atp-mac-preferences.md
@@ -149,6 +149,16 @@ Used to exclude content from the scan by file name.
| **Possible values** | any string |
| **Comments** | Applicable only if *$type* is *excludedFileName* |
+#### Allowed threats
+
+List of threats (identified by their name) that are not blocked by the product and are instead allowed to run.
+
+|||
+|:---|:---|
+| **Domain** | com.microsoft.wdav |
+| **Key** | allowedThreats |
+| **Data type** | Array of strings |
+
#### Threat type settings
The *threatTypeSettings* preference in the antivirus engine is used to control how certain threat types are handled by the product.
@@ -425,7 +435,7 @@ The following configuration profile contains entries for all settings described
allowedThreats
- eicar
+ EICAR-Test-File (not a virus)
threatTypeSettings
@@ -540,7 +550,7 @@ The following configuration profile contains entries for all settings described
allowedThreats
- eicar
+ EICAR-Test-File (not a virus)
threatTypeSettings