Security
Security brings together the controls that protect your organization's AI usage, from a posture overview down to the individual checks that inspect content in real time.
Posture and enforcement
The Security Center summarizes your current posture and points you at the settings that improve it. Radar scores that posture and turns risks and warnings across your systems into a prioritized, actionable feed. Guards are the enforcement layer: they inspect content at runtime and build time and decide whether to allow, warn, redact, require approval, or block.
Identity risk
User Risk Score puts a number on how risky each user is, imported from CrowdStrike Falcon Identity Protection or pushed in from your own systems. Guards can be narrowed to a score range, and users above a threshold can be refused outright.
Secrets and discovery
The Vault stores the credentials your MCP servers need, kept out of plain configuration. AI Discovery finds the AI tools already in use across your organization, including shadow AI, so you can bring them under governance.
Security Center
Review your organization's security setup and follow recommendations to harden your deployment. The Security Center brings your posture together in one place: status cards for the core protections, a setup checklist, prioritized recommendations, a per-server scan summary, and quick access to the Vault. There is no Security Center entry in the sidebar; open it at /monitor/security on your admin domain.
Radar
6 items
Guards
8 items
Vault
Overview
User Risk Score
Score users 0-100 on identity risk, import scores from CrowdStrike Falcon Identity Protection, and gate MCP access on the result.
Restrict GitHub Copilot to the Willow Gateway
Lock GitHub Copilot down so it can only use MCP servers reached through your Willow gateway, using GitHub's enterprise MCP registry pointed at Willow's built-in registry endpoint.
Claude Code Policy
4 items
AI Discovery
6 items