Discovery
Uncover every agent & non-human identity
Discover AI activity across platforms, endpoints, browsers and credentials in real time.

The AI discovery gap
See every agent in action
AI activity happens everywhere—across major cloud LLMs, local endpoints, employee browsers, and automated pipelines. Unmonitored agents and exposed credentials leave your organisation vulnerable. SailPoint delivers multi-channel discovery to find every AI agent, shadow AI app, non-human account, token and secret.
Before SailPoint:
- Disconnected visibility into major AI platforms and cloud deployments.
- Shadow AI activity hidden across endpoints, unmanaged browser tools and SaaS apps.
- Hardcoded secrets, API keys, and access tokens exposed across developer environments.
- Zero context linking autonomous agents and tools back to human owners.
After SailPoint:
- Turnkey connectors to every major AI platform for native, automated discovery.
- Endpoint and browser sensors capturing real-time AI prompt and agent activity.
- NHI-powered discovery unearthing credentials, tokens and secrets enterprise-wide.
- A unified security control pane connecting agents, credentials, human owners and data
Discovery & Visibility
Full AI Visibility
Connect to AI Platforms
Out-of-the-box connectors integrate directly with leading AI ecosystems (AWS Bedrock, MS Azure, GCP Vertex, Databricks and many more) to instantly discover deployed AI agents.
- Direct API integration with major commercial and open-source AI platforms.
- Instant inventory of AI agents, assistant agents and LLM deployments.
- Continuous monitoring of access and permission configurations.

Capture Activity at the Edge
Gain granular visibility into AI usage as it happens. Monitor agent activity and user interactions directly across desktop endpoints and web browsers to uncover shadow AI.
- Real-time browser sensor detecting unsanctioned web-based AI tools
- Endpoint activity tracking for locally executed agents and scripts.
- Monitor sensitive data uploads and block risky transfers in real-time.

Discover Every Secret & Token
Discover exposed credentials, API keys, OAuth tokens, and secrets used by AI agents across code repositories, CI/CD pipelines, and cloud vaults.
- Discover hardcoded API keys and credentials across developer environments.
- Map non-human identity access tokens back to underlying AI services.
- Eliminate non-human sprawl before credentials are exploited.

Create a Single Source of Truth
Consolidate all discovered AI agents, machine identities and their credentials into a single, comprehensive registry. Eliminate silos and gain a unified view for comprehensive governance.
- Automatically catalogue every AI agent, bot, service account and machine identity.
- Create a complete and continuously updated inventory for your security ecosystem.
- Provide a foundational dataset for governance, policy enforcement and reporting.

Map Every Agent to Its Owner
Go beyond simple discovery by mapping complex relationships. Connect every AI agent and non-human identity back to a clear human owner for ultimate accountability and context.
- Automatically link non-human identities to the humans who create and manage them.
- Simplify access reviews and certification campaigns for AI tools and agents.
- Accelerate incident response by instantly identifying ownership and impact.

Prioritise Your Biggest Risks
Don’t just see your agents—understand their risk. Our platform enriches discovery with dynamic risk scores based on permissions, activity and configuration.
- Automatically score the risk posture of every discovered agent and credential.
- Visualise high-risk agents, exposed secrets and unsanctioned AI usage.
- Focus remediation efforts on the most critical identity-based threats first.

Comprehensive Discovery
Built for Complex Environments
Shadow AI Detection
Uncover unsanctioned AI tools and generative AI usage across browsers, SaaS applications and local endpoints before they introduce risk.
Credential & Secrets Discovery
Find and catalogue hardcoded secrets, API keys and access tokens exposed across developer environments and CI/CD pipelines.
CI/CD Pipeline Scanning
Integrate discovery directly into your developer workflows to find and flag risky configurations and secrets before they reach production.
SaaS & IaaS Integration
Discover AI and non-human identities across your entire cloud stack, including AWS, Azure, GCP and thousands of other applications.
Extensible Connector Framework
Leverage our robust API and connector framework to build custom integrations for your unique in-house applications and data sources.
Low-Friction Deployment
Our browser extensions and endpoint sensors ensure frictionless deployment with minimal impact on performance and user experience.
Continuous Auto-Discovery
Eliminate blind spots. Our platform continuously scans your environment in real time, ensuring your inventory immediately reflects newly spun-up agents and rotated keys.
Deep Entitlement Mapping
Don't just find the agent—understand its reach. Automatically map the granular permissions, cloud access rights and data entitlements assigned to every identity.
Ready to Transform?
Put Adaptive Identity to Work
Discover how SailPoint sets the standard for identity security, helping enterprises reduce risk, scale with confidence and stay ahead of what's next. Our platform delivers measurable impact and real business outcomes by securing every identity across your enterprise.
Proven Results
Secure innovation at scale
With real results and powerful success stories, we're redefining what's possible. From measurable outcomes to game-changing impacts, our customers' achievements speak louder than words. See how we've helped businesses like yours overcome challenges and unlock their true potential.
Fast, seamless integration
Think it's complex? We simplify it, proven in just weeks.
to full deployment.1
Scale like never before
Handle more requests effortlessly with enhanced throughput.
increase in processing capacity.2
Do more with fewer resources
Cut costs while achieving more, see how we make it possible.
reduction in IAM team resources.3
Complete AI Identity Security
Discover is Just the Beginning
A complete inventory is the first step. Explore the other pillars of the SailPoint Agentic Fabric to see how you can apply robust governance and protection to your entire AI and non-human landscape.

Govern
Once discovered, what’s next? Apply automated lifecycle management, access reviews and policy-based controls to every AI agent and non-human identity. Ensure clear ownership and enforce least privilege from day one.

Protect
Move from visibility to active defence. Continuously monitor agent behaviour for anomalies, trigger automated remediation for threats and grant just-in-time access to minimise risk at machine speed.
Frequently asked questions
Common questions about Identity Security Fabric
How does SailPoint discover AI agents and non-human identities?
We use a multi-channel approach, including direct API connectors to major AI/cloud platforms, endpoint and browser sensors to capture real-time activity, and deep scanning of developer environments to find exposed credentials.
What exactly can you connect to?
Out of the box, we integrate directly with AI ecosystems like AWS Bedrock, Google Vertex, Azure AI Foundry and Databricks. Our list of connectors is long and grows every quarter. We also support discovery across SaaS apps (like Salesforce and ServiceNow), databases via JDBC and any desktop or browser endpoint. We also have universal connectors so we can connect to ANY SOURCE important to your organisation.
What kind of "shadow AI" can you detect?
We can identify employee use of unsanctioned web-based AI tools (like public chatbots), unmanaged browser extensions, and locally executed scripts or agents that are operating outside of IT oversight.
How do you discover credentials and secrets?
Our discovery engine scans code repositories, CI/CD logs, configuration files and cloud vaults to find hardcoded API keys, OAuth tokens, certificates and other secrets used by AI agents and non-human identities.
How does this connect to the broader SailPoint platform?
Everything discovered is fed into our unified AI & NHI Registry and Identity Graph. This creates a single source of truth, allowing you to apply consistent governance, policy and protection from the core SailPoint platform.
How long does it take to deploy the SailPoint Discovery Tool?
Deployment is rapid and seamless. The endpoint and browser sensors can be deployed at scale using your existing standard MDM tools, requiring zero infrastructure changes. Think hours, not days!
Can I link AI app usage back to specific employees?
Yes. Our identity-aware governance capabilities allow you to map complex relationships, linking AI app usage and non-human identities directly back to individual human owners for full accountability. That’s the beauty of SailPoint- you can secure all identities on a unified platform.
Does the Discovery Tool disrupt employee productivity?
Not at all. The lightweight browser extensions and endpoint sensors run silently in the background without impacting device performance or user workflows.
Strengthen your defenses with adaptive identity
Detect risk in real time. Continuously monitor identity behavior and surface threats the moment they appear.
Adjust access dynamically. Automatically tighten or grant permissions based on risk, context, and user behavior.
Protect every identity. Secure human, machine, and third-party access across your entire environment.










