Comprehensive Claude Coverage

Comprehensive Claude coverage - the other three Nightfall integrations

These are separate Nightfall products and integrations, not the Compliance API. Together with this integration, they give a Claude customer end-to-end coverage with one set of detection rules and one console.

Surface

Integration

What it does

Enforcement

Claude Desktop, Claude web tab

Nightfall endpoint agent

Scans file uploads and clipboard pastes for sensitive content; runs Lineage Source Tracking so a corporate Google Drive, SharePoint, or GitHub origin is recognized

Inline block (pre-submit)

Claude Code (IDE and CLI)

Nightfall AI Agent Security (Hooks)

Scans prompts, MCP tool calls, tool responses, and shell commands; detects secrets, PII, PCI, PHI, IP, and prompt injection

Inline block (real-time)

Claude Cowork

Nightfall AI Agent Security (OpenTelemetry)

Session-level audit trail of cost, token usage, and tool invocations exported over OTel

Audit (session-level)

Claude Enterprise chats and uploaded files

Claude Compliance API integration (this doc)

Server-side scan of chat conversations and uploaded files; runs the same detector set used everywhere else in Nightfall

Monitor + audit (post-hoc, org-wide)

Pick the integration that matches the control you need. Most customers run all four: the endpoint agent and Hooks layer block before sensitive data reaches Claude on the surfaces where blocking is possible; the OpenTelemetry trail audits Claude Cowork sessions; and this Compliance API integration adds the server-side, organization-level record that compliance and SOC teams can pull for SOX, HIPAA, and SOC 2 evidence regardless of which device, project, or workspace the activity originated from. All four feed the same Detection & Response policy library and surface incidents in the same workflow.

Last updated

Was this helpful?