Skip to main content

What Is Data Protector?

Your team shares information with AI tools every day. Data Protector makes sure sensitive content is caught before it leaves your environment. It reviews every trace for the categories you care about and acts according to its role. This is your primary safeguard for GDPR, data sovereignty, and privacy obligations.
Data Protector is a paid add-on. If it is not enabled for your organisation, contact us to turn it on.

What It Catches

You choose which categories Data Protector looks for and prevents being sent.
Passwords, API keys, access tokens, private keys, and connection strings.
Information about people. Split into ordinary personal data, special-category personal data (such as health, beliefs, or biometric details), and other confidential personal information.
Card numbers, bank account details, tax identifiers, and salary information.

Configure Each Category

For every category you turn on, you can set how seriously to treat it.
SettingWhat it does
EnabledTurn the category on or off.
CriticalityMark findings in the category as high criticality, so a block escalates to a person for approval.
Sub-categoriesFor personal data, choose ordinary, special-category, and other confidential independently.

Choose a Role

RoleBehaviour
ObserverReviews traces and flags findings for review, without notifying anyone or blocking.
EnforcerBlocks sensitive content directly, or escalates to a person for approval.
New Data Protectors start as Enforcer. Move to Observer first if you want to learn what it catches before you enforce.

Tune It With Instructions

Categories cover the common cases. Instructions let you handle the specific ones, such as always blocking a project codename or allowing a particular scenario your team has reviewed. Instructions are grouped by category on the agent.

When to Use Enforcer

Promote Data Protector to Enforcer when your organisation handles regulated personal data, operates in healthcare or financial services, or is subject to GDPR enforcement. The cost of a leak in these settings outweighs the occasional blocked trace. For teams handling mostly non-sensitive work, Observer gives you visibility without interruption.

Instructions

Add your own rules for specific scenarios.

Configuring agents

Apply Data Protector across workspaces.