Integration · Claude's Compliance API

Roll out Claude Enterprise. Know what data goes with it.

Eon integrates with Claude's Compliance API and traces files your team shares with Claude back to the data Eon already backs up and classifies. For each upload you see the file, the user, the source resource and the sensitive data inside it, in the Eon console.

Eon dashboard showing a high-severity AI governance control violation for backed-up sensitive data uploaded to Claude

See a file traced from Claude to its source

A user attaches a customer export to a Claude chat and asks for the high-value accounts. In the Eon console, the upload shows up as a high-severity finding. It names the S3 bucket the file came from and lists the Social Security numbers, card number and AWS access key inside it.

Why it matters

Why the source of a file matters

An upload record is where the questions begin

The Compliance API records who uploaded which file to which chat, and when. Deciding whether the upload matters takes context about the data itself: is it production data, a test file or something personal?

Someone has to trace it back

Without knowing where the file came from, a security analyst opens a ticket, hunts for the source system and asks around for its owner. If Eon backs up that system, it has already classified it, and the finding names the resource and its tags.

Your team uploads files because it works

When people share exports, logs or config files with Claude, they're usually trying to get an answer faster. Seeing what those files contain gives security the context to approve the rollout.

What Eon shows for each upload

About the upload and its data

The file name and path, the Claude Enterprise user who shared it, the chat it went to and the time. It also lists the sensitive data Eon found, such as US Social Security numbers, payment card numbers, email addresses and AWS access keys.

About the source

The backed-up resource the file came from, its environment and tags, its data classifications, its backup policy and the snapshots that hold it.

Capabilities

Built into the console you already use

A violation next to your backup rules

Uploads of backed-up sensitive data raise a high-severity Eon posture control violation on the dashboard, in the same list as your retention and cross-region rules.
Eon dashboard showing a high-severity posture control violation

Triaged with your other threat findings

The Threat center lists each upload under “Sensitive data shared with external AI,” next to the encryption and malware findings your team already works through.
Eon console listing threat findings across backups

Classified at the source, ready to act on

Open the resource and you see the classifications Eon recorded on the original file, from credit card numbers to email addresses. From the same screen you can assign a backup policy, take a snapshot, attach a restore template or restore the data.
Eon inventory view with data classifications recorded on a backed-up resource

How the integration works

Claude Enterprise records activity, chats and files. Eon reads them through Claude's Compliance API, matches each uploaded file against the data it backs up and classifies, and raises a finding in the Eon console when sensitive data shows up.

Claude Enterprise
Activity, chats and uploaded files
→
Claude's Compliance API
Read with a Compliance Access Key
→
Eon
Matches files against backed-up, classified data
→
Eon console
Control violation and threat finding

Connect Claude Enterprise to Eon

  • Enable. Your Claude Enterprise Primary Owner turns on the Compliance API in organization settings and creates a Compliance Access Key.
  • Connect. Add the key in Eon, which then reads activity, chats and files through the Compliance API.
  • Review. Findings appear in the Threat center and as control violations on your dashboard.

Works with: Claude Enterprise, for activity, chats, files and projects. Claude Platform organizations share activity logs only, so file-level findings need Claude Enterprise. The Compliance API covers Anthropic-hosted deployments, and it doesn't cover Claude on Amazon Bedrock or Google Vertex AI.

Claude's Compliance API docs ↗  ·  Claude's integration guide ↗

FAQs

What is Claude's Compliance API?

Claude's Compliance API gives Claude Enterprise organizations programmatic access to activity logs, chats, files, projects and users for compliance, audit and governance work. The Primary Owner turns it on and creates an access key, which tools like Eon use to read that activity.

Which Claude plans and deployments does the integration support?

Claude Enterprise, with full file-level findings. Claude Platform organizations can share activity logs, which don't include conversation content. The Compliance API covers Anthropic-hosted deployments, and it doesn't cover Claude on Amazon Bedrock or Google Vertex AI.

Does Eon change how Claude behaves?

No. The integration reads activity through the Compliance API and reports what it finds. Your users keep working in Claude the same way.

What sensitive data does Eon detect?
It detects personal data such as names, emails and Social Security numbers, and health data such as medical record numbers. It also finds card and bank account numbers, plus credentials like cloud access keys, API tokens and private keys.

Get a demo of the Claude integration

We'll walk through a live upload, from the Claude chat to the finding, the source resource and the snapshots you can restore from.