| sidebar_position | 3 | ||
|---|---|---|---|
| sidebar_custom_props |
|
Users, Applications, and Accounts provide entity-level visibility into AI activity. These pages help teams understand who is using AI, which applications are in use, which accounts are active, and where risk or policy exposure appears.
Use these views when you need to investigate activity from an entity perspective:
- A user is associated with risky AI behavior.
- An application has unusual adoption, sensitive prompts, or open findings.
- An account has high interaction volume, blocked interactions, or sensitive activity.
- A finding, insight, or asset needs more business context.
The Users page summarizes AI usage by user and department. It includes KPI summaries, top trending users, a searchable table, and conversation-level drilldowns.
Common use cases:
- Identify AI users and non-AI users.
- Review privileged users using AI.
- Find users associated with sensitive uploads or coaching events.
- Open user conversations for deeper review.
The Smart Groups drawer previously available on the Users page has been removed. Smart group creation and membership management are now handled from the dedicated Smart Groups screen.
The Applications page is the main app-management and app-intelligence surface. It includes an inventory view, a source view, KPI filters, trending apps, and app drilldowns. The default time range is 7 days.
Common use cases:
- Review all observed AI and non-AI applications.
- Understand where an app was seen, including SaaS, browser, endpoint, or gateway sources.
- Inspect app intelligence, posture, usage, exposure, findings, and visitors.
- Review LLM Gateway app activity through the gateway-specific drilldown.
- Review endpoint or desktop app activity through the endpoint-source drilldown.
- Update app classifications or approval-related settings when permitted.
- Export application data as CSV using the Export button in the table toolbar.
Inline editable fields in the application table (such as category, risk level, or approval status) show a "Saving…" label and spinner while a change is being saved, confirming that the edit has been submitted.
The AI lens and Generative AI category filter target the primary app category. When the page is reached via an insight or widget drilldown that pre-applies a business-category filter, the Category chip shows "Business" to reflect the narrower scope applied by the drilldown.
Admins can select multiple rows in the Applications table and apply Approve, Unapprove, Block, or Unblock to all of them at once.
- Choosing a bulk action opens a review screen listing every selected app, its current status, and the change that will be applied. Admins can search the list and deselect individual apps before confirming.
- Apps that are already in the target state are automatically excluded, with a note explaining why. Apps for which the action isn't supported (custom and red-teaming apps) are flagged with an Unsupported badge and also excluded.
- A single batch is limited to 100 apps.
- Confirmed updates run in the background rather than applying immediately. A Pending bulk actions button in the toolbar shows a live count of apps currently being updated; opening it lists each pending app with its requested change, request time, and requester. A confirmation toast appears once all pending updates finish.
- The Unselect control in the toolbar clears the current selection, and selections are cleared automatically after a bulk action is submitted.
- Selecting all rows on the current page does not clear selections made on other pages, so a bulk action can target apps selected across multiple pages.
- Activate Agent is only available when exactly one app is selected, since agent activation applies to a single app at a time.
The Export button in the Applications table toolbar opens an export modal that lets admins download application records as CSV.
- Data Scope controls what is exported when no rows are selected: Current filter includes only records matching the active search and filters; Full range exports all records without applying filters.
- When one or more rows are selected in the table, the button shows the selection count and the export is limited to those rows. The scope selector is not shown in selection mode.
- Active filters and a maximum row limit are displayed in the modal before the export starts.
- Exports are queued in the background and a notification is sent when the file is ready. Completed exports appear in export history labeled Applications.
This feature is currently in Beta.
The Accounts page focuses on app accounts and account-level interaction data.
Common use cases:
- Review total and newly observed accounts.
- Track sensitive, blocked, and cleaned interactions.
- Identify account status, account type, app status, and login method.
- Open account conversations and related app context.
- Trigger account-related workflows when permissions allow.
- Start from Insights, Findings, or direct navigation.
- Use search, filters, and KPI shortcuts to narrow the table.
- Open a row to inspect user, app, or account context.
- Follow links into Findings, related users, related accounts, or app intelligence.
- Apply controls, update app posture, or start user/account workflows as needed.
Users and Accounts use AI usage permissions. Applications use app-management permissions, with separate scopes for updates, allow/block operations, agent-triggered actions, and export. The Export button is only shown to admins holding the export scope.