Govern Sanctioned Enterprise AI
Bring the AI that runs outside Microsoft's Copilot family — custom apps you build and sanctioned SaaS such as ChatGPT Enterprise and Anthropic Claude — under Microsoft Purview, so their interactions are discovered, audited, and governed like the rest of your estate rather than remaining a blind spot.
Architecture
Core capabilities
-
Use DSPM for AI as the front door to discover enterprise AI interactions and detect whether sensitive data is flowing into their prompts and responses
-
Bring custom, in-house AI apps under the full Purview control plane by registering them in Entra and integrating the Purview SDK, so classification, labels, DLP, and compliance controls apply
-
Connect sanctioned non-Microsoft SaaS AI — ChatGPT Enterprise and Anthropic Claude — so their prompts and responses become discoverable and auditable in Purview
Supporting capabilities 5
-
Capture enterprise AI prompts and responses in the unified audit log for investigation and forensics
-
Detect risky or non-compliant content in enterprise AI interactions where the connected app supports it
-
Flag risky AI usage from these apps and correlate it with broader insider-risk signals
-
Retain or delete enterprise AI interactions in line with retention policy
-
Assess governance of these apps against AI regulatory frameworks