Recently Updated Pages
Prompt capture
Off by default, and the setting that deserves the most thought before you turn it on. What it doe...
The prompt-injection classifier
A model, rather than a pattern, judging whether a request is being manipulated. How it runs The c...
Lethal-trifecta enforcement
The one detector that is about a combination rather than a thing. Default: warn. The idea An AI a...
Personal data (PII)
Flags personal data appearing in prompts. Default: report. What it detects Email addresses Intern...
Secret scanning
Stops credentials from leaving your organization inside a prompt. Default: warn. This is the dete...
Credentials in context
Catches credentials that do not match a known vendor format — internal tokens, database passwords...
Egress blocklist
Policy → Egress blocklist controls which network destinations the Endpoint Suite allows AI tools ...
Risk classifier sensitivity
The risk classifier inspects outbound prompts for things that shouldn't leave — secrets, personal...
Approval for new MCP servers
Turn on Require approval for new MCP servers when you want unknown servers held back until someon...
Subscription or managed key
Every governed request runs in one of two modes, and the difference is who pays. Subscription The...
Choosing your first policy
The defaults are chosen so that switching Sentilai on changes nothing about how your developers w...
What Sentilai does
Your developers are already using AI coding assistants. Sentilai is the control plane that sits b...
Collect logs from a device
When a developer's tools are misbehaving, you can ask their machine for its logs without asking t...
Revoke and restore access
Cutting a single machine off, without touching the person. Revoking Diagnostics → the device row ...
Fake AI application detection
On macOS, the Endpoint Suite checks that the AI applications on a machine are actually from the v...
Posture findings
The Diagnostics screen can show a posture findings badge on a device, coloured by the worst sever...
Request logs from a device
When a developer reports that a tool isn't behaving, you can ask their machine for its event logs...
What we send to your SIEM
The full list of events Sentilai produces, what each one means, and which fields carry it. Everyt...
Which threats we detect
The signals that can appear on an event, what each one means, and where you control it. In the re...
SIEM: push over syslog
The push option: Sentilai sends events to your collector as they happen. Configuring SIEM Export ...