Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.




Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.

CSAI FoundationChaptersEventsBlog

STAR Registry Listing for

Sentilai

Sentilai

Sentilai is an AI control plane for software teams: governance, visibility and policy enforcement over how AI coding assistants and agents are used.

  • Gateway — a provider-compatible proxy for Anthropic, OpenAI, Azure OpenAI, Gemini, Mistral and OpenAI-compatible providers; per-tenant policies, token accounting and audit on every call
  • MCP governance — per-tool policies, install vetting, protocol-posture checks and real-time enforcement for Model Context Protocol servers
  • Risk engine — synchronous detection of secrets, PII and risky agent-autonomy patterns, with configurable block/warn actions and real-time Slack/Teams/webhook alerts
  • Endpoint governance — signed, auto-updating agents for macOS and Windows with device identity, one-click "govern all" and one-click AI offboarding
  • Audit & SIEM — an append-only audit trail customers can pull into their own SIEM via API

Security posture: passkey-first (WebAuthn) authentication, per-tenant identity isolation, AES-256-GCM-encrypted provider keys with versioned key rotation, client-side-encrypted Object-Locked backups with tested restores, EU/US regional data planes with no cross-region data flow, and prompt-content capture that is opt-in and off by default.

Privacy Policy, DPA & sub-processors · Docs · Pricing

Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No/NA questions and space to justify the response a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the Cloud Controls Matrix (CCM).
Information about Sentilai
Listed Since: 08/13/2026

STAR Level 1

Cloud Controls Matrix

CAIQ Self-assessment v4.0.3

Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No/NA questions and space to justify the response a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the Cloud Controls Matrix (CCM).

Created or renewed about 11 hours ago, on August 13, 2026.