Rolled out by IT. Nothing for staff to do.

Prism goes out through the tools you already manage devices with. No agent to sign into, no browser setting to change, no training. Here's the whole rollout, with the guide for each step.

  1. Sign in and get your files Day 1

    The console's Set up page gives you a sensor key and generates every file below with it filled in: Jamf profiles, the Google Admin policy and a Windows registry file.

    Start here
  2. Tell your staff Day 1

    Send a short notice saying what Prism checks and what it doesn't. We give you a template; people should hear it from you first.

    Staff notice template
  3. Push the browser extension Day 1

    Force-install it in Chrome and Edge from Google Admin, Jamf or Group Policy, with its settings pushed the same way. People can't remove or turn it off.

    Chrome and Edge rollout
  4. Push the Mac agent Day 1

    A signed, notarised package plus a configuration profile in Jamf or any MDM. It covers AI desktop apps, AI command-line tools and copies to USB and cloud folders.

    Mac agent with Jamf Pro
  5. Observe Week 1

    Prism records what it would have done, without interrupting anyone. You see which AI tools are in use and what's being pasted into them.

  6. Warn, then enforce Week 2+

    Approve the tools you're happy with, mark some as work accounts only, and switch on warnings, then blocking. Send alerts to Slack, Teams or your SIEM.

    Integrations

Works with what you manage today

Browsers
Google Chrome and Microsoft Edge, on Mac, Windows, Linux or ChromeOS
Browser management
Google Admin (Chrome browser cloud management), Jamf Pro, Intune or Group Policy, or any tool that sets Chrome policy
Mac agent
macOS 14 Sonoma or later; Jamf Pro or any MDM that installs packages and profiles
Windows agent
Next. Until then, Windows PCs are covered in the browser
Jamf Pro · com.stabilise.prism.agent
<dict>
  <key>apiUrl</key>
  <string>https://api.prism-dlp.com</string>
  <key>apiKey</key>
  <string>SENSOR_KEY</string>
  <key>email</key>
  <string>$EMAIL</string>
</dict>

We'll do the first rollout with you

On a free pilot we set up your organisation, check your Jamf or Google Admin setup with you, and go through what Prism finds after the first week.