SUPERWISE® Sentinel

Your team is pasting customer data into ChatGPT and Claude.

A ban does not stop AI. It hides it. Keep the tool, protect the customer.

See it work in 30 seconds
Sentinel on this PC

Three examples of what Sentinel does to a prompt. A customer record: the email d.whitfield@acme.com, the phone number (415) 555-0142, and the card number 4111 1111 1111 1111 are replaced with {{REDACTED}} before the prompt reaches ChatGPT, and the model still writes the reply. An API key in a prompt: the AWS access key and the alert email address are replaced before the request leaves the computer. A toxic reply: a request to insult a customer has the toxic language replaced before it reaches the model.

Windows 10 and 11 No admin rights Free for 30 days, then from $10 a month No sales call

Other ways to install: CLI on Windows, macOS or Linux, or a team gateway

In plain English

AI DLP that runs on the desktop

Sentinel checks covered prompts before they leave the computer and replaces the identifiers it recognizes. For each request it records metadata only. Prompts and responses are never sent to SUPERWISE.

01It reads what is about to be sent

Every prompt from a covered tool passes through Sentinel first.

02It swaps out anything sensitive

It replaces the identifiers and secret formats the gateway recognizes before the request leaves.

03It keeps a record you can show

The log shows which recognized identifiers Sentinel replaced before each request left the PC.
What it catches

What Sentinel catches—and what it does not

Sentinel replaces email addresses, phone numbers, Social Security numbers in the 123-45-6789 format, credit card numbers, IBANs, IP and MAC addresses, full-length OpenAI keys, and AWS secret keys when labeled. Bank account numbers, tax IDs and EINs, national IDs, VINs, dates of birth, and medical record numbers are replaced only in the labeled formats the gateway recognizes.

It does not catch names, street addresses, passport numbers, bank routing numbers, driver's licenses, Okta tokens, unlabeled numbers, short test keys, or values under a column header in a pasted table.

Custom patterns, such as your own policy numbers or customer IDs, are on the roadmap.

Where Sentinel works

The tools your team already uses.

The tools marked Supported or Preview below are covered wherever the machine runs.

On the machine

Terminal agents and the apps you build, covered wherever they run.

In the browser

Preview extension

The browser extension is in preview for Chrome and Edge on Windows.

Chat siteStatus
Claudesetup guideclaude.aiPreview
ChatGPTchatgpt.comPreview
Gemini, Copilot, Grok, Perplexity, DeepSeekIn developmentComing soon

A Mac desktop app is coming soon. The Mac and Linux CLI stays available today.

SupportedPreviewComing soon

Using something not listed? Tell us what to cover next

What you see

Every Sentinel, and what it stopped

The Sentinel console listing gateways with guardrail counts, latency, and interaction volume.
Every Sentinel you run, what it checked, and what it stopped. Sample data.

The record

  • Each Sentinel event identifies the Sentinel that handled it (the protected computer or gateway, by its name), not the person using it.
  • Kept for one year while the customer's account is active.
  • Viewable and reportable in the SUPERWISE app today; export to a SIEM is on the roadmap.
Price and start

Free for 30 days. Then choose the plan that fits.

Self-serve plans are $10, $25 or $50 a month. See plans.

Free for 30 days, no card. Then $10, $25, or $50 a month, with 1 to 5 Sentinels per plan. Buy online. No sales call. See plans.

Deploy it your way

One Sentinel or one for every team

Windows app

Install it for one person without admin rights.

CLI

Run Sentinel from the terminal on Windows, macOS or Linux.
Under the hood

For engineers: how the AI gateway runs

Sentinel is a proxy between your tools and the model. It runs on the machine or in your own cloud, and nothing is routed through SUPERWISE. The interaction log syncs to the SUPERWISE platform as metadata only; prompts and responses are not sent there.

routeTraffic points at a local gateway

Claude Code, Codex, your own agents and the browser extension send requests to the gateway instead of straight to the provider. No SDK, no wrapper, no code change.

inspectGuardrails run before the request leaves

Guardrails check the prompt on its way out. The model's response comes back unchanged. Each value it catches becomes {{REDACTED}}. An admin can change the replacement text, or block the request instead.

forwardForwarded, then logged

The cleaned request goes on to OpenAI, Anthropic, Google Gemini, and any OpenAI-compatible endpoint added as a custom provider. The check, and which rule fired, shows in Live activity.
Questions buyers ask

Keep reading

How Sentinel compares: Harmonic Security, Microsoft Purview, and Prompt Security.

AI gateway questions

What buyers ask about running an AI gateway inside their own environment

You wouldn’t put a network online without a firewall.

Your team is already using AI. Sentinel is the layer that watches what it sends.

Free for 30 days, no card. Then $10, $25, or $50 a month, with 1 to 5 Sentinels per plan. Buy online. No sales call. See plans.