Integrations

Every AI surface. Governed from one place.

MCP clients, AI API proxies, browser-based AI services, vibe-coding platforms, SaaS admin APIs, identity providers, SIEM destinations. No agent code changes. Here's the full map.

/001 · SURFACE MAPBEHAVRY · RECORD

The numbers.

Agents point at the proxy. Policy enforced from day one. Your SIEM gets better data. Your compliance team gets an audit artifact.

11 MCP clients/6 AI API proxies/12 browser services/7 vibe-coding platforms/30 AI platforms discoverable/4 SIEM connectors

/002 · MCP CLIENTSMCP PROXY · INLINE GOVERNANCE · 11 ENROLLED

MCP clients.

Agents point their MCP config at the Behavry proxy. Every tool call is governed before execution: identity, DLP, policy, audit. No agent code changes.

ClientTransport
Claude DesktopStreamable HTTP
Claude CodeStreamable HTTP
CursorStreamable HTTP
WindsurfStreamable HTTP
ZedStreamable HTTP
VS Code / CopilotStreamable HTTP
JetBrains IDEsStreamable HTTP
Warp TerminalStreamable HTTP
ClineStreamable HTTP
ContinueStreamable HTTP
Open Interpreterstdio · critical risk tier

Plus fingerprints for Google Antigravity, OpenAI Codex CLI, and Amazon Kiro. Any MCP client supporting Streamable HTTP or stdio works. The proxy is protocol-agnostic.

/003 · AI API PROXIESMODEL-LEVEL GOVERNANCE · 6 MODELS

AI API proxies.

Transparent reverse proxies for major AI model APIs. Identity, DLP, policy, and audit applied to every API call. Token extraction for cost attribution across all 6.

ProviderModels
OpenAIGPT-4o, o1, o3
AnthropicClaude 4, Sonnet, Haiku
Google GeminiGemini 2.5
OllamaLocal models
NemoClawNVIDIA NIM
OpenShellOpen-source models

Cost attribution with 14 seeded model prices + tenant-configurable overrides. Aggregation API with CSV export.

/004 · BROWSER EXTENSIONMANIFEST V3 · 12 SERVICES

Browser extension.

DLP scanning on browser-based AI interactions. 26 patterns in real time. Shadow AI detection for unenrolled services.

ChatGPT/Claude/Gemini/Perplexity/DeepSeek/Copilot/Poe/HuggingChat/You.com/Phind/Mistral Le Chat/GitHub Copilot Chat

/005 · VIBE-CODING PLATFORMSCITIZEN CODER GOVERNANCE · 7 PLATFORMS

Vibe-coding platforms.

DOM fingerprinting + platform API connectors discover and govern apps built by non-developers. 7-signal risk scoring. OPA policy enforcement. Full story →

PlatformDiscovery method
ReplitDOM + GraphQL API
LovableDOM + deploy detection
BoltDOM + deploy detection
v0 / VercelDOM + REST API
CursorIDE domain matching
WindsurfIDE domain matching
Copilot WorkspaceIDE domain matching
/006 · AI SURFACE DISCOVERY30 PLATFORMS · 8 SAAS · 3 IDP

AI surface discovery.

Four-state model: Licensed → Enabled → Active → Governed. Cross-references IdP apps, SaaS admin APIs, and browser fingerprints.

Identity provider connectors
OktaRead-only app list
Azure AD / Entra IDRead-only app list
Google WorkspaceRead-only app list
SaaS admin API connectors
Microsoft 365Copilot SKU + usage
GitHubCopilot billing + seats
SlackAI feature flags
Google WorkspaceGemini per-OU
SalesforceEinstein enablement
AtlassianAI feature status
ServiceNowNow Assist
ZendeskAI feature status

30 AI-capable SaaS platforms in the fingerprint DB. Browser extension adds 10 passive DOM fingerprint rules for admin page detection. Credentials encrypted via AES-256-GCM.

/007 · SIEM & SECURITY OPERATIONS4 NATIVE CONNECTORS

SIEM and security operations.

Structured, identity-attributed audit events in your existing SIEM. Better data in the glass you already have.

DestinationTransport
SplunkHEC (HTTP Event Collector)
Microsoft SentinelData Collector API
Google ChronicleIngestion API
IBM QRadarLEEF 2.0

Plus webhook delivery to Slack, PagerDuty, or any custom endpoint. Configurable severity filtering. Signed payloads with retry and dead-letter queue.

/008 · DATA PROTECTION26 PATTERNS · BYOK ENCRYPTION

Data protection.

Four-stage pipeline: classification, redaction with pseudonymization, BYOK envelope encryption (AES-256-GCM + AWS KMS), and retention purge with decryption audit trail.

AWS keys/GitHub tokens/Private keys/SSNs/Credit cards/OAuth tokens/API keys/Email addresses/Phone numbers/IP addresses

26 patterns total. Luhn validation, SSN structure checks, cross-session fragment reassembly detection. Critical-severity patterns auto-block before OPA evaluation. DB-managed with hot-reload. Add custom patterns without restart.

/009 · COMPLIANCE & DEPLOYMENT6 FRAMEWORKS · 4 DEPLOYMENT MODES

Frameworks and deployment models.

Six compliance frameworks mapped. Four ways to run the stack. All models share a single data plane image with identical governance capabilities regardless of deployment.

FrameworkControls
SOC 2CC6.1 · CC6.7 · CC7.2 · CC7.3 · CC7.4
ISO 27001A.12.4.1 · A.12.4.2 · A.9.4.1
EU AI ActArt. 9 · Art. 13 · Art. 14
NIST AI RMFGOVERN · MAP · MEASURE · MANAGE
GDPRArt. 32 · Technical measures
HIPAA§164.312 · Technical safeguards

OWASP ASI mapping + PDF export. Full framework-to-control mapping in dashboard.

Full SaaS

Behavry manages everything. Fastest start.

Hybrid

Control plane SaaS. Data plane in your VPC.

BYOC

Full stack in your cloud. Helm + Terraform.

Self-Hosted

Air-gapped. No external dependencies.

Zero agent code changes. Deploys in a day.

BOOK A BRIEFING →