ACCOUNT AWARE AI

Keep work out of personal AI accounts

Your company approved an AI workspace. Your employees may still be using personal accounts. Identra Guard lets you allow, redirect or block access by signed-in account, so work goes to the company workspace.

WORKS INBrowser
Personal AI accountsCOVERED
  1. See which accounts people use01
  2. Send work to your workspace02
  3. Allow work accounts, block personal access03
  4. Protect sensitive prompts before send04
  5. Control what employees upload05
ONE IDENTITY · ONE TIMELINEBrowser
01What goes wrong today

The risk is already in use.

What security teams run into with personal AI accounts today, before a control is in place.

  • 01

    Right app, wrong account

    An employee opens ChatGPT, Claude or Gemini and starts working in a personal account. The familiar app name hides a decision that matters to security.

  • 02

    Work leaves company control

    A customer brief or internal plan lands in a personal AI conversation. That conversation sits outside the company’s managed AI workspace.

  • 03

    Policy depends on memory

    Employees must remember which account is active before sharing work. An acceptable use policy alone cannot make that choice for them.

  • 04

    A blanket ban costs productivity

    Blocking an entire AI service can also interrupt approved work. Security teams need a way to distinguish company use from personal use.

02What Identra does

What changes with Identra.

Covered by Identra Guard in the browser, tied to one identity and one timeline.

Identra Guard in the browserSee Identra in the browser
  • 01

    See which accounts people use

    Identra Guard discovers AI apps and whether people use work or personal accounts. See where personal AI use needs attention.

  • 02

    Send work to your workspace

    Redirect users to the company AI workspace based on their signed-in account. Give employees a clear route to approved AI use.

  • 03

    Allow work accounts, block personal access

    Set account-aware access for ChatGPT, Claude, Gemini, Perplexity and Grok. Allow approved accounts and block accounts your policy does not permit.

  • 04

    Protect sensitive prompts before send

    Apply policy to allow, alert on, mask or block sensitive prompts before they are sent. Prompt content stays on the device by default.

  • 05

    Control what employees upload

    Inspect AI uploads, including sensitivity labels, and block file uploads by policy. Protect work shared through files as well as prompts.

  • 06

    Connect AI activity to the person

    Bring browser activity into one identity timeline, where the person is known. Review AI use in the context of the person behind it.

03Before and after

A customer brief headed for personal ChatGPT

The same moment, played twice. Once without Identra, once with it.

WITHOUT IDENTRA

EXPOSED
  1. An employee opens ChatGPT to summarize a customer brief.

  2. Their personal account is already signed in.

  3. They paste the brief and send it.

  4. Company information is now in a conversation outside the managed workspace.

WITH IDENTRA

CONTAINED
  1. The employee opens ChatGPT with a personal account.

  2. Identra Guard redirects them to the company AI workspace under the account policy.

  3. The employee uses an approved work account and prepares the prompt.

  4. If the prompt contains sensitive content covered by a blocking policy, Identra Guard blocks it before send.

04How it works

Four steps. One timeline.

  1. 01

    See

    Discover the AI apps employees use and distinguish work accounts from personal accounts.

  2. 02

    Decide

    Choose which signed-in accounts can proceed, should go to the company workspace or must be blocked.

  3. 03

    Enforce

    Apply account-aware access policies across supported AI services in the browser.

  4. 04

    Protect

    Add prompt and upload policies to control the sensitive information employees share with AI.

QUESTIONS

What buyers ask us about personal AI accounts.

Does Identra need to collect employees’ prompts?

Prompt content stays on the device by default. Prompts are checked on the device before they are sent.

How is this deployed?

Identra Guard is a browser extension. It provides the browser account controls described on this page.

Can employees keep using approved AI?

Yes. You can allow approved accounts and redirect users to the company AI workspace. Account-aware AI access lets you make the access decision by signed-in account.

Which AI services support account-aware access?

Identra Guard supports allow, redirect and block decisions by signed-in account for ChatGPT, Gemini, Claude, Perplexity and Grok.

Does a work account make every prompt safe?

A work account and a sensitive-data policy address different decisions. Identra Guard also supports prompt protection before send and file upload blocking by policy.

Does this cover desktop AI apps too?

The account-aware controls on this page cover supported AI services in the browser. Identra’s separate endpoint agent for macOS and Windows discovers desktop AI apps and applies desktop composer data loss prevention.

SEE IT IN YOUR ENVIRONMENT

See Identra handle personal AI accounts.

A walkthrough with a security engineer.