Press release
Bold Security Extends AI Data Protection Through Claude's Compliance API

Bold combines on-device data classification with Claude activity logs to provide security teams with the end-to-end context needed to securely adopt and govern AI.

Bold combines on-device data classification with Claude activity logs to provide security teams with the end-to-end context needed to securely adopt and govern AI.

Bold Security has announced an integration with Anthropic's Claude Compliance API, extending Bold's existing endpoint protection to cover Claude Enterprise activity. The integration connects Claude conversation data, project files, and audit logs directly to Bold's platform - where they are correlated with Bold's endpoint telemetry and on-device data classification.

For security teams, this means a unified view of what employees are doing with Claude and what data they're sharing with it, with enough context to investigate, coach, or block - before data leaves the organization.

Bold + Claude: How the integration works

Bold pulls Claude Enterprise conversation content, project data, file uploads, and audit log events into its platform. That data is correlated with Bold's existing endpoint telemetry to cover both managed and unmanaged activity - context that neither source could provide alone.

When a user shares a sensitive file with Claude, or when activity patterns suggest data is at risk, Bold surfaces it: who did it, from which device, what was shared, and what happened next.

What security teams get:

  • Visibility into Claude usage - see what's being shared across your organization, including conversation content, uploaded files, and project activity
  • On-device data classification - Bold classifies sensitive data on the device itself, so when that data reaches Claude, its classification travels with it - no cloud-side scanning, no guesswork
  • Sensitive data detection - identify when regulated data, intellectual property, or confidential information appears in Claude prompts or projects, with classification context already attached
  • Real-time coaching and blocking - warn users before sensitive data is shared, or block the action outright, depending on policy. Security doesn't have to mean "detect after the fact"
  • Corporate vs. personal account enforcement - distinguish between employees using the organization's Claude account and those using personal accounts, and apply the right controls to each

Why endpoint context + Claude activity matters

The Compliance API tells Bold what happened in Claude. The endpoint tells Bold what the data actually was.

Bold classifies sensitive data locally, based on content. When that data reaches Claude, its classification travels with it - so Bold sees not just "a file was uploaded," but "a file containing customer PII was uploaded, from this device, by this user."

The endpoint also closes a gap the Compliance API can't: personal Claude accounts. An employee using personal claude.ai on a corporate laptop falls completely outside enterprise visibility. Bold catches it anyway.

Who it's for

Enterprise security teams that have deployed Claude - or are evaluating it - and need to answer: Is sensitive data being shared with AI? Are our usage policies being followed? If something goes wrong, will we catch it?

Bold is built for organizations that want AI adoption to move fast without sacrificing security. The integration is designed to operate in the background: no friction for employees, full visibility for security teams.

The Bold + Claude Compliance API integration is available now. Get a live demo to see it in action.