Use cases / Claude security
Start governingEnterprise security for the whole Anthropic suite.
Extend your security, identity and governance policy to every prompt from every Anthropic product with Speakeasy's AI control plane. Identity, shadow AI detection, and data loss prevention on one platform.
01 / The problem
Your existing security tools
don't cover Claude.
Speakeasy does.
Claude Chat, Claude Design, and Claude Code Web run past the endpoint agent, the browser extension, and the network filter. Nobody can list who uses what
Every surface, connector, and MCP server people reach from Claude, by team and by person, with access approved per group
Connectors and MCP servers run under shared service accounts. No prompt is tied to a person, access is all or nothing, and every compliance record has a hole where the name should be
Every Claude action runs as the person behind the prompt, with their permissions from your identity provider, so each connector call is attributable to a name
DLP profiles built for email and file shares see a prompt after it has left, if at all. Nothing returns a verdict before inference
Risk policies and classifiers judge every prompt before the model runs, so a regulated record stops at the point it would leave
Compliance exports the chat later. The export carries no verdict, no policy, and no link between the person and the decision
Every turn lands in Agent Sessions with the person, the surface, and the verdict attached, streamed to your SIEM as OTLP
The browser-based approach we relied on just doesn't work for AI-based workflows.

Thierry Dang
Security Operations, MoonPay
02 / The solution
Full enterprise security
for Claude.
Claude Chat, Claude Design, and Claude Code Web run through one governed path on the Speakeasy AI Control Plane. Understand how Claude is used across the company, define what it can access, and enforce those rules on every prompt before the model runs.
Govern Claude
Understand how Claude is used across the company and define what it can access. One catalog of approved tools and Skills for every Claude surface, access scoped by team and role through the identity provider you already run, and every session recorded in Agent Sessions.
Secure Claude
Enforce those rules on every prompt. Each Claude session holds only the access its role allows, and every prompt is checked against your risk policies and classifiers before it reaches the model. Prompt injection, personal information, and leaked credentials are blocked in flight.
03 / Features
Every Claude prompt
identified, secured, governed.
Anthropic holds each prompt from Claude Chat, Claude Design, and Claude Code Web until Speakeasy answers allow, deny, or review. One configuration covers every surface, with no per-surface agent to install and no device to wait on. Four controls run on every prompt.
What people reach from Claude, and whether anyone reviewed it.
- First seen
- Aug 29, 4:12 PM · Claude Chat
- Reviewed
- Approved by m.okafor · Platform
- Last seen
- Today, 9:11 AM · k.nair@acme.org
Becoming AI-native meant that we needed an entirely new governance & security stack. You can't use old tools to cover your team's new way of working.

Shreyas Kumar
Co-founder, Fermat
04 / How it works
From setup to enforcement in four steps
Anthropic Inference hooks is the protocol underneath. A Claude Enterprise organization names Speakeasy as its AI security server, and Anthropic holds every prompt until Speakeasy answers. Nothing changes for the employee, and nothing is installed on the device.
01
Name Speakeasy as the AI security server
In the Speakeasy dashboard, create a project-bound Anthropic Inference Hooks instance. Configure Anthropic with the HTTPS endpoint, the API key, and the project headers Speakeasy shows you once, then paste Anthropic's signing secret back into Speakeasy.
02
Resolve who sent it
Each prompt arrives with the Claude Enterprise user behind it. The session is attributed to that person through your identity provider, so there is no shared key and no anonymous turn.
03
Return the verdict before inference
Anthropic holds the prompt while Speakeasy runs your risk policies and classifiers, then returns allow, deny, or review. Shadow mode records the verdict; enforcing mode stops the turn.
04
Record and export
The turn lands in Agent Sessions in real time with its verdict. Risk events stream as OTLP to Datadog, Grafana Cloud, or any OpenTelemetry collector as they happen.
Case study
Claude, org-wide in two days
Fermat made Claude the operating system for the whole company on the Speakeasy AI Control Plane, with every employee on governed access and every session in one record. Usage grew after the rollout instead of being throttled by it.
Read the Fermat story100%
Employee adoption of governed Claude access
2 days
From first connection to company-wide rollout
+500%
Month-over-month growth in AI usage after rollout
Every agent
The same policies for every agent
Claude is rarely the only agent in the building. The risk policies, classifiers, and session record on this page apply to Cursor, Codex, Gemini, and the agents your teams build, from the same control plane.
Questions
Which Anthropic surfaces does this cover?
How do we turn it on?
How is Speakeasy different from traditional DLP?
How is this different from hooks in the Claude Agent SDK?
What does Speakeasy not block?
Does this change how employees use Claude?
What is the platform's own security posture?
Go deeper