Right app, wrong account
An employee opens ChatGPT, Claude or Gemini and starts working in a personal account. The familiar app name hides a decision that matters to security.
Your company approved an AI workspace. Your employees may still be using personal accounts. Identra Guard lets you allow, redirect or block access by signed-in account, so work goes to the company workspace.
What security teams run into with personal AI accounts today, before a control is in place.
An employee opens ChatGPT, Claude or Gemini and starts working in a personal account. The familiar app name hides a decision that matters to security.
A customer brief or internal plan lands in a personal AI conversation. That conversation sits outside the company’s managed AI workspace.
Employees must remember which account is active before sharing work. An acceptable use policy alone cannot make that choice for them.
Blocking an entire AI service can also interrupt approved work. Security teams need a way to distinguish company use from personal use.
Covered by Identra Guard in the browser, tied to one identity and one timeline.
The same moment, played twice. Once without Identra, once with it.
An employee opens ChatGPT to summarize a customer brief.
Their personal account is already signed in.
They paste the brief and send it.
Company information is now in a conversation outside the managed workspace.
The employee opens ChatGPT with a personal account.
Identra Guard redirects them to the company AI workspace under the account policy.
The employee uses an approved work account and prepares the prompt.
If the prompt contains sensitive content covered by a blocking policy, Identra Guard blocks it before send.
Discover the AI apps employees use and distinguish work accounts from personal accounts.
Choose which signed-in accounts can proceed, should go to the company workspace or must be blocked.
Apply account-aware access policies across supported AI services in the browser.
Add prompt and upload policies to control the sensitive information employees share with AI.
QUESTIONS
Prompt content stays on the device by default. Prompts are checked on the device before they are sent.
Identra Guard is a browser extension. It provides the browser account controls described on this page.
Yes. You can allow approved accounts and redirect users to the company AI workspace. Account-aware AI access lets you make the access decision by signed-in account.
Identra Guard supports allow, redirect and block decisions by signed-in account for ChatGPT, Gemini, Claude, Perplexity and Grok.
A work account and a sensitive-data policy address different decisions. Identra Guard also supports prompt protection before send and file upload blocking by policy.
The account-aware controls on this page cover supported AI services in the browser. Identra’s separate endpoint agent for macOS and Windows discovers desktop AI apps and applies desktop composer data loss prevention.
KEEP READING
The terms, comparisons and essays behind this page.
A walkthrough with a security engineer.