WAI Docs Wed Aug 19 13:22:37 EDT 2026
List
Quick Start
Quick Start
User Guide
User Guide
Policies - GuardRails
Policies - GuardRails
Witness Anywhere: Remote Device Security
Witness Anywhere: Remote Device Security
Witness Attack
Witness Attack
Administrator Guide
Administrator Guide
404
404
Securing employee AI use
Employees are adopting public AI applications — ChatGPT, Anthropic Claude, Google Gemini, Microsoft Copilot, and thousands of others — faster than security teams can keep up. This page explains how WitnessAI gives you visibility into that activity, classifies it for risk, and lets you enforce acceptable-use policy without blocking productivity.
The problem
When employees use AI tools on their own, you face three gaps:
- No visibility. You don't know which AI applications are in use, who is using them, or what data is going into them.
- No control. Sensitive data — source code, customer records, regulated information — can leave the organization in a prompt, with no way to stop it.
- No record. When something goes wrong, there's no audit trail of prompts and responses to investigate.
How WitnessAI solves the problem
WitnessAI captures employee access to internal and external AI applications and builds a complete, classified record of that activity. It works at the network level by integrating with your existing security infrastructure, and extends to remote and off-network devices through endpoint coverage — so AI use is governed wherever it happens.
Every interaction is classified for risk and intent, so you move from "we have no idea what's happening" to "we can see, understand, and act on AI usage" — and apply identity- and intent-based policy that fits your acceptable-use rules.
What capabilities WitnessAI provides
- Discover AI usage. Discovery surfaces the AI applications in use across your organization, including a curated App Catalog and the Discovered Apps seen in your environment, so you can decide what to sanction, restrict, or block.
- Audit conversations. Conversations records prompts and AI responses with full context, so you can investigate exactly what was sent and received. Analytics turns that activity into usage and risk trends, and Alerts flags policy violations for triage.
- Enforce acceptable-use policy. Policies apply identity- and intent-based rules to AI traffic. See Policy creation and Policy types for how rules are built and evaluated.
- Protect sensitive data. The Data Protection GuardRail inspects prompts — and file and image attachments — for sensitive content and blocks, warns, or redacts based on your configuration. Additional guardrails cover harmful responses, organizational behavior, and more.
- Offer a safe AI option. The Secure AI Portal gives employees a governed place to use AI directly, with your guardrails already applied.
How to get started
- See what's in use. Open Discovery to review the AI applications active in your environment.
- Confirm coverage. Check Supported applications and LLMs to understand what WitnessAI can govern, and work with your account team on the right deployment model for on- and off-network devices.
- Set your first policy. Follow Policy creation to build an acceptable-use rule, and enable the Data Protection GuardRail to stop sensitive data from leaving in prompts.
- Monitor and tune. Use Conversations, Analytics, and Alerts to watch activity and refine your policies over time.
