Anthropic introduced the Claude Compliance API, enabling enterprise security and compliance teams to route Claude telemetry into more than 100 third-party monitoring, governance, and incident-response tools. For Claude Enterprise customers, the API can expose detailed records of chats, uploaded files, projects, prompts, responses, tool calls, sign-in activity, administrative changes, and selected Claude Code and Cowork session data, helping organizations identify sensitive-data exposure and policy violations.
The capability is designed to strengthen oversight of AI-agent activity and integrations that may introduce excessive permissions or unapproved MCP servers, connectors, plugins, and skills. Claude Platform customers receive activity, administrative, and system telemetry but not prompt or model-response content. On Claude Enterprise, only the Primary Owner can enable the API and create organization access keys; availability of individual vendor integrations ranges from private preview and beta to planned general availability through January 2027.

Track how attackers are adapting to this technology.
1 event from the most recent confirmed update back to the earliest known activity.
Anthropic introduced the Claude Compliance API, enabling Claude Enterprise and Claude Platform customers to send Claude activity telemetry to more than 100 security and compliance vendors. Enterprise feeds can include conversation, upload, project, Claude Code and Cowork data, while Platform feeds exclude prompts and model responses.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourcehelpnetsecurity.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.