Shadow AI Discovery
Find the AI your team is already using.
Every employee is adopting AI faster than governance can keep up. Matproof discovers each tool in use, classifies it against the EU AI Act, and turns shadow AI into a sanctioned, auditable register.
Endpoint agents · Google Workspace · Microsoft Entra · EU AI Act
How it works
From shadow AI to sanctioned AI.
Step 01
Discover every AI tool in use
Endpoint agents and Workspace / Entra OAuth surface every AI app installed or connected across your organisation — sanctioned or not. No surveys, no blind spots.
Shadow AI inbox
Step 02
Classify the risk automatically
Each tool is matched against a maintained AI-tools catalog and classified against the EU AI Act — prohibited, high-risk or limited — so you see exposure, not just a list.
Strategic objective
ISO 27001 coverage
Step 03
Triage in one inbox
A Shadow AI inbox routes every signal to a decision: sanction it into your AI register, or block it. Each call is logged for the auditor.
Enterprise fraud risk
+ New riskDescription
Step 04
Govern from one register
Sanctioned tools flow straight into your AI system register with auto-classification, owners and policy — so governance keeps pace with adoption.
Mapping queue
Controls
Evidence
of endpoints & connected apps in scope
inbox — every shadow-AI signal, one queue
risk tier on every tool, automatically
blind spots — discovery, not self-reporting