Stop AI leaks, save data.
Stop AI leaks, save data.
ShadowLock is a shadow AI detection and blocking platform designed for managed service providers (MSPs) and IT administrators. Its primary function is to provide visibility into unauthorized artificial intelligence tool usage within an organization and to prevent sensitive data from being transmitted to external AI services such as ChatGPT, Claude, and Gemini. The platform addresses the growing risk of employees using personal accounts or unapproved AI applications, which can expose organizations to legal, compliance, and liability issues by bypassing enterprise contracts, data processing agreements, and audit trails. The platform covers three layers of AI activity: endpoint, browser, and cloud. The endpoint agent deploys silently to Windows machines via existing remote monitoring and management (RMM) tools, monitors AI activity, scans browser extensions, detects local AI applications (such as Claude Desktop, ChatGPT app, Ollama, and LM Studio), and locks down AI features built into Chrome, Edge, Brave, and Firefox. It intercepts pastes, file uploads, and typed sensitive data, enforces data-sharing opt-outs on each AI tool, and applies configurable policies with user-facing messages. The browser enforcement layer detects navigation to known AI domains and enforces access policies before content is submitted, classifying personally identifiable information, credentials, social security numbers, and card data entirely within the browser. The Microsoft 365 integration connects via Microsoft Graph to scan for AI apps that have been granted OAuth access, including Copilot plugins and third-party AI add-ins, and triggers alerts for new connections without requiring an endpoint. Typical use cases include monitoring and blocking employee use of personal account AI tools, preventing the submission of customer records, proprietary code, or confidential documents to public AI services, and ensuring compliance with regulations such as HIPAA or data protection laws. The workflow involves silent deployment to endpoints, automatic configuration upon installation, and centralized management of policies across all covered surfaces. The platform also provides a continuously updated domain list for AI tools and supports detection of AI writing assistants, sidebar tools, email rewriters, and recording applications like Otter.ai and Fireflies. Technical requirements include Windows endpoints with an existing RMM for agent deployment and a Microsoft 365 tenant for cloud app scanning. ShadowLock is offered with a free tier and includes features such as shadow AI detection, AI governance, a risk calculator, and an AI policy template.