Cloudflare CASB adds Claude Compliance API support
Key Points
- Claude Compliance API integration
- Agentless visibility into Claude usage
- Turn CASB findings into Gateway policies
Summary
Cloudflare CASB now integrates with Anthropic’s Claude Compliance API to provide agentless visibility and control over Claude Enterprise and Claude Platform activity. Security teams can surface compliance findings (projects, attachments, chat messages/files, artifacts) directly in the Cloudflare dashboard and convert those findings into enforcement via Gateway and DLP policies.
Key Points
- What it does:
- Consumes the Claude Compliance API to scan for misconfigurations and sensitive data at rest in Claude (projects, attachments, chat files/messages, artifacts).
- Surfaces findings alongside other SaaS posture and content findings in the Cloudflare dashboard, grouped by category and severity.
- Supported variants:
- Claude Enterprise: reads orgs, projects, chats, roles and conversation content via read-only endpoints.
- Claude Platform: surfaces member/workspace changes, API key creation, file create/download events (Activity Feed coming soon).
- Actionability:
- Findings can be turned into Gateway policies (block or restrict uploads, block app access, limit functionality) and combined with Cloudflare DLP and Access controls.
- Practical deployment steps for engineers:
- Ensure a Claude Enterprise account and request Compliance API access from Anthropic.
- In Cloudflare dashboard: Zero Trust > Integrations > Cloud & SaaS > Add Integration > Anthropic; enter Compliance API key.
- Configure DLP profiles to scan uploaded files; integration begins scanning immediately and surfaces findings within minutes.
- Operational notes:
- No endpoint agents or inline traffic inspection required; runs side-by-side with other Cloudflare services on the same infrastructure.
- Useful for triage, assignment, and automated remediation workflows.
Getting started checklist
- Verify Claude Enterprise and request Compliance API access.
- Add Anthropic integration and paste Compliance API key in Cloudflare Zero Trust.
- Configure DLP profiles and remediation workflows (Gateway policies) as needed.