CountryGCC overviewUnited Arab EmiratesSaudi ArabiaOmanQatar
SentraGuard · Shadow AI · United Arab Emirates

The UAE runs on AI. Your shadow AI runs on customer data.

2-minute walkthrough · tap for sound · demo dataWatch with chapters

Staff paste Emirates IDs, IBANs and customer records into public AI tools, often on personal accounts. The CBUAE now asks how AI is governed. SentraGuard finds it, governs it and proves it, from your UAE data centre.

Find your shadow AI on the day you deploy. Reach full shadow AI governance in one week.

USD 10.67Maverage cost of a financial-sector data breach in the Middle East. IBM Cost of a Data Breach 2026
AED 1Bmaximum fine on a licensed financial institution under the new Central Bank Law, Decree-Law 6 of 2025
USD 28Mmaximum fine under the ADGM Data Protection Regulations 2021
Day 0shadow AI inventory on the day you deploy. Full governance by day 7
In UAEbackend in your UAE data centre, CPU only, air gapped if you need it
Trusted by regulated institutions
Top private bank, IndiaFortune 500 technology firmNational payments operatorMedia conglomerateGeneral insurerAI productivity platform
GCC channel
Value-added distributorForcespot
Value-added solution sellerNitronEdge
Memberships and partners DSCI member Coalition for Secure AI member OWASP GenAI Security Project Google Cloud partner ISO 27001 CERTIFIED
Why usage control

Shadow AI is a usage problem. Blocking apps does not solve it.

Sensitive data does not leave through files any more. It leaves in a prompt, a paste and an agent's tool call, usually on a personal account. Usage control decides what happens at that moment.

01

Personal accounts, outside SSO

67% of employees reach AI from non-corporate accounts on corporate devices. No log, no attribution, no answer for the auditor. Verizon DBIR 2026

02

Prompts and the clipboard, not uploads

Shadow AI is now the third most common non-malicious insider action in DLP data, with detections up 4x in a year. Source code is the top data type uploaded. Verizon DBIR 2026

03

Agents that act, not just answer

Coding agents and MCP servers call tools and write to data. A tool list cannot govern a tool call.

04

Your regulator now asks about AI

The CBUAE guidance note on AI and ML (February 2026) covers generative AI, data privacy and third-party AI. DIFC Regulation 10 asks for a register of AI use cases and human review. Shadow AI is the part of that register nobody has written. CBUAE 2026 · DIFC Reg 10

Legacy DLP sees file uploads only. SentraGuard reads the session: uploads, prompts, clipboard and agent calls. Employee PublicAI tool File upload Prompt text Clipboard paste Agent tool call Legacy DLPone lane not seen SentraGuardevery lane SGSGSGSG

The session blind spot

United Arab Emirates

What the UAE expects, and what SentraGuard hands over

Federal, emirate and free zone rules overlap. Here is what applies to AI use at work, and the evidence SentraGuard produces for each.

Banking and insurance

CBUAE guidance note on AI and ML, February 2026

The note covers consumer protection, generative AI, data privacy under the PDPL and the Information Assurance Regulation, and third-party or outsourced AI. The new Central Bank Law, Decree-Law 6 of 2025, set a compliance deadline of 16 September 2026 and fines up to AED 1 billion.

SentraGuard gives youAn inventory of every AI tool in use, each third-party AI service on record, and a decision log for every prompt, paste and upload.
Free zones

DIFC Regulation 10 and ADGM

DIFC Regulation 10 covers personal data processed by autonomous and semi-autonomous systems. It asks for notice, a register of system use cases and processing activities, human review and an Autonomous Systems Officer for high-risk processing. ADGM expects breach reports within 72 hours, with fines up to USD 28 million.

SentraGuard gives youAn AI register that includes the tools staff chose themselves, plus agents and MCP servers with the data they reach.
Data protection and residency

UAE PDPL and the health data law

The PDPL, Decree-Law 45 of 2021, has been in force since 2 January 2022. Its executive regulations are still pending, and organisations get six months to comply once they are issued. Under Federal Law 2 of 2019, health data must by default stay in the UAE.

SentraGuard gives youRedaction that stops personal and health data before it leaves, and a backend that runs in your UAE data centre.
AI policy

Federal Authority for AI and Data, June 2026

A new federal authority now brings the Emirates Data Office, the UAE AI Office and TDRA's digital government sector under one body. The UAE Charter for the Development and Use of AI (2024) sets 12 principles, including privacy, human oversight and accountability.

SentraGuard gives youHuman oversight in practice: coach, redact and block decisions with a named approver for every exception.
Identifiers SentraGuard detects and redacts in the UAEEmirates ID (784-YYYY-NNNNNNN-C)UAE IBAN (AE, 23 characters)Card number (PAN)Health recordsCustomer PIISource code and secretsMNPI
Sources for the United Arab Emirates facts on this page
  1. CBUAE guidance note on AI and ML, February 2026
  2. Ashurst: UAE Central Bank Law, Decree-Law 6 of 2025
  3. DIFC Commissioner of Data Protection: Regulation 10
  4. Mayer Brown: AI regulation in the DIFC, January 2026
  5. Al Tamimi: ADGM Data Protection Regulations 2021
  6. DLA Piper: UAE PDPL
  7. Morgan Lewis: Federal Authority for AI and Data, June 2026
  8. Latham and Watkins: UAE health data law
  9. UAE Charter for the Development and Use of AI
  10. IBM Cost of a Data Breach 2026, Middle East
  11. Central Bank of the UAE: IBAN format

Checked 24 September 2026. Regulations change; confirm current text with your counsel.

Visibility

See every AI app, agent and account your workforce uses.

15%of users run unauthorised AI browser extensions. Verizon DBIR 2026
4surfaces reporting to one backend
2account types split: corporate, personal

One console for discovery, protection and proof

The browser plugin sees web apps and extensions. The IDE extension sees Cursor, VS Code and Copilot. The SDK and API gateway see your own apps. The endpoint agent runs on Windows, macOS and Linux and sees desktop AI apps, CLI agents, local models and MCP servers. Everything lands in one console.

  • Corporate versus personal account, per session
  • New tools detected by behaviour, not only by list
  • Agents and MCP servers with the tools and data they can reach
sentraguard console · demo tenant
SentraGuard Discovery screen: 63 AI apps found, 41 used on personal accounts, 9 agents and MCP servers, with an app inventory by class and account type SentraGuard Data protection screen: live decision stream with Allow, Coach, Redact and Block, and an Emirates ID and IBAN redacted from a ChatGPT paste SentraGuard Evidence Pack screen: six signed artifacts and a clause map across CBUAE AI and ML guidance, Central Bank Law 6/2025, CBUAE Consumer Protection Regulation and Standards and ISO 42001
Product design · demo data
Open full size ↗

Four surfaces. One backend. Three outputs.

Every surface reports to the same API-first backend, so one policy applies everywhere and every event lands in the same log.

  • Asynchronous inspection, near real time
  • CPU only, no GPU, Kubernetes or VMs
  • Policy, SIEM feed and the Evidence Pack from one place
Four surfaces feed one SentraGuard backend, which outputs policy, SIEM events and the Evidence Pack Browser plugin IDE extension SDK and API gateway Endpoint agent SentraGuardbackend API-first · asynchronousCPU only · no GPUKubernetes · VM · air gapped Policy: four actions SIEMSplunk · QRadar · Sentinel · ArcSight AI Usage Evidence Pack
Control

Turn AI policy into decisions your users understand.

3app classes: sanctioned, tolerated, unsanctioned
4actions: allow, coach, redact, block
1policy, applied on every surface
Four rungs rising from Observe to Block; the pilot runs on Observe ObserveCoachRedactBlock log sessions,account, data class banner on IBAN,Emirates ID, Iqama strip identifiersbefore sending stop uploads totraining-by-defaulttools, prod writes USER IMPACT →CONTROL → THE PILOT RUNS HERE

Start in observe mode. Climb one rung at a time.

A bank can run the whole pilot on the first rung and see every session, account and data class with no user impact. Each rung above adds control for one app, one group or one data class at a time.

  • Observe: log and attribute, no message to the user
  • Coach: a banner with the approved path, session logged
  • Redact: the identifier is stripped, the prompt goes through
  • Block: stopped and logged, with the reason shown

Classify once. Decide per app, per group, per data class.

Mark each app sanctioned, tolerated or unsanctioned. New apps inherit their category's decision until you change it. Then set the action by user group and by the data class detected in the prompt.

  • Exceptions with an approver and an expiry date
  • Identity from SSO and SCIM, including personal accounts on corporate devices
  • Same rules for agents' tool calls
ApplicationRetail opsEngineeringContractors
ChatGPT Enterprisesanctioned · SSOAllowAllowRedact
ChatGPT personalunsanctionedCoachCoachBlock
Claude Codetolerated · engineeringBlockRedactBlock
DeepSeek webunsanctioned · trains by defaultBlockBlockBlock
M365 CopilotsanctionedAllowAllowCoach

Coach at the moment of use

A banner in the session, not a ticket the next day. The user sees why, what to do instead, and what is logged. Most usage moves to the approved tool without a block.

  • Gulf data classes: Emirates ID, Saudi National ID, Iqama, IBAN
  • Coach interactions double as AI literacy evidence
  • Redact strips the identifier and lets the prompt through
public AI assistant · corporate device · personal account
Summarise this customer's dispute. Emirates ID 784-1987-4521836-2, IBAN AE07 0331 2345 6789 0123 456, branch Deira, amount AED 84,200.
event: coach · data class: Emirates ID, IBAN · user: SSO-bound · surface: browser plugin · logged to SIEM
Policy decision preview

Pick an app, a data class and a user group. See what SentraGuard decides.

Illustrative rules. Your policy sets the real ones, per app, per group and per data class.

Every decision is logged with user, app, data class and action, and streamed to your SIEM.

Rung 2 of 4
Coach

Unsanctioned app on a personal account. The user sees the approved assistant and can continue; the session is logged.

What the user seesYou are using ChatGPT with a personal account. The approved assistant is one click away. Continue here if you must; this session is logged.
event: coach · app: ChatGPT (personal) · data: none · group: Retail operations · logged to SIEM
Protection

Stop sensitive data leaving in a prompt, a paste or a tool call.

4xrise in shadow AI detections in DLP data in one year. Verizon DBIR 2026
3lanes inspected before data leaves: prompt, paste, upload
0bytes sent to SOAISEC in on-premise and air-gapped deployments

Inspect the prompt, the paste and the upload before they leave

Detection runs on the session, on every surface, with the same data classes. Redact keeps the workflow moving. Block stops the ones that must not leave.

Emirates IDSaudi National ID and IqamaIBANCard number (PAN)Customer PIIMNPISource codeAPI keys and secretsInternal identifiersFile uploads by type
An agent with its identity, the tools and MCP servers it can call, and the data it can reach, each edge gated by SentraGuard AGENT TOOL-CALL CONTROL Agentowner · runtime · identity IdentitySSO-bound user Toolsshell · browser · HTTP MCP serversfiles · db · email Data storesCRM · core banking SGSGSG every call gated: allow, coach, redact or block
Evidence

Prove it to the regulator with a file, not a screenshot.

6artifacts in the AI Usage Evidence Pack
12frameworks mapped for the UAE and international standards
3formats: PDF, CSV, SIEM feed

The AI Usage Evidence Pack

Inventory, attribution, policy log, exceptions, a regulator clause map and a signed export. Produced from the same events the SIEM receives, so the auditor and the SOC read one truth.

PDFCSVSIEM feedSigned hash
AI Usage Evidence Pack · Q3 FY27 · [Institution]
Period01 Jul to 30 Sep 2026
Scope2,140 users · 4 surfaces
Apps discovered63 (41 with personal-account sessions)
Agents and MCP servers9 (4 with write access)
Decisions18,402 allow · 1,207 coach · 388 redact · 52 block
sha256: 3f1c…a9e2 · signed export · illustrative

The framework the auditor cites. The evidence that answers it.

Select a jurisdiction. Each dot is an artifact SentraGuard produces for that framework.

FrameworkInventoryAttributionPolicy logRedaction proofClause mapSigned export
CBUAE guidance note on AI and ML (2026)
Central Bank Law, Decree-Law 6 of 2025
CBUAE Consumer Protection Regulation and Standards
CBUAE Outsourcing Regulation for Banks (2021)
UAE Information Assurance Regulation and IA Standard v2
UAE PDPL, Decree-Law 45 of 2021
DIFC Data Protection Law 2020 and Regulation 10
ADGM Data Protection Regulations 2021
Dubai DESC Information Security Regulation
UAE Charter for the Development and Use of AI (2024)
evidence SentraGuard produces for this framework   not required
Details: what each framework expects
FrameworkWhat it expects
CBUAE guidance note on AI and ML (2026)Generative AI, data privacy, third-party and outsourced AI, consumer protection
Central Bank Law, Decree-Law 6 of 2025New law for licensed financial institutions; compliance by 16 Sep 2026; fines up to AED 1 billion
CBUAE Consumer Protection Regulation and StandardsCustomer data protection for licensed financial institutions
CBUAE Outsourcing Regulation for Banks (2021)Third-party and outsourcing controls
UAE Information Assurance Regulation and IA Standard v2Asset inventory, data classification, monitoring and logging
UAE PDPL, Decree-Law 45 of 2021Lawful processing and cross-border transfer; executive regulations pending
DIFC Data Protection Law 2020 and Regulation 10Register of AI use cases, human review, Autonomous Systems Officer
ADGM Data Protection Regulations 2021Breach report within 72 hours; fines up to USD 28 million
Dubai DESC Information Security RegulationInformation security for Dubai Government entities
UAE Charter for the Development and Use of AI (2024)Twelve principles, including privacy, human oversight and accountability
ISO/IEC 42001AI management system: inventory, roles, controls and monitoring for AI in use
NIST AI RMFGovern, Map, Measure, Manage
Seen enough to test it on your own staff?Find your shadow AI on the day you deploy. Reach full governance in one week, on one business unit.
Start a one-week pilot
Deployment

Runs where a regulated institution is allowed to run software.

SaaSHosted by SOAISEC
Private cloudYour AWS, Azure or Google Cloud tenant
On premiseKubernetes or VMs, CPU only
Air gappedNo outbound link, signed update bundles
FAQ

Questions a CISO asks first

Answers for Gulf banks, insurers and government entities.

Does it log prompts?

Observe records the app, the account type, the data class and the decision. Prompt text is captured only where a policy requires it, and it stays inside your deployment.

Does it govern AI agents and MCP servers?

Yes. The endpoint agent finds MCP servers, clients and CLI agents at runtime on Windows, macOS and Linux. The SDK and API gateway cover in-house agents. Tool calls get the same four actions as prompts.

Does it work air gapped?

Yes. Kubernetes or VMs with no outbound connection. The app dictionary and detection updates arrive as signed bundles.

Does it slow the browser?

Inspection is asynchronous and near real time. The measured p95 will be published after the first pilots, not before.

Does any data leave the UAE?

Not in the on-premise or air-gapped deployment. The backend runs in your UAE data centre on CPU only. Policy, logs and the Evidence Pack stay inside your perimeter. This matters where health data must by default stay in the UAE under Federal Law 2 of 2019, and where CBUAE customer data rules apply.

How is it licensed?

Per protected user per year, by tier: Browser, Workforce, Enterprise. Quotes are issued at the pilot readout. There is no public price list.

Meet with us

Start a one-week pilot

Find your shadow AI on the day you deploy. Reach full shadow AI governance in one week, for one business unit. Delivered by the SOAISEC GCC team with Forcespot, our value-added distributor in the region, and NitronEdge, our value-added solution seller.

Day 0Deploy and discover. Plugin and endpoint agent pushed by Intune, Jamf or Google Admin. Your shadow AI inventory the same day: apps, personal accounts, agents and MCP servers.
Day 1 to 2Classify. Apps marked sanctioned, tolerated or unsanctioned. Sensitive data mapped by class and lane.
Day 3 to 4Coach and redact. Live for the pilot groups on Emirates ID, IBAN, card numbers and customer PII.
Day 5 to 6Block. Unsanctioned and training-by-default tools stopped. Exceptions with an approver and an expiry date.
Day 7Full governance. All four actions live, AI Usage Evidence Pack, executive readout and a quote priced from your pilot data.
Resources

Not ready for a pilot? Start here.

Guide

What is AI Usage Control? A guide for GCC banks, insurers and government

The category, the four decisions, what UAE and Saudi regulators expect, and a 12-question vendor checklist.

Read the guide
Buyer's guide

22 shadow AI platforms compared by surface, deployment and evidence

Filter by browser extension, endpoint agent, on premise and price. Compiled from public vendor sites.

Compare the platforms
Sample

AI Usage Evidence Pack, 12-page sample

Inventory, decisions, agents, exceptions, UAE and Saudi clause maps and a signed export. Printable.

Open the sample
Article

Why banning ChatGPT creates shadow AI in Gulf banks

Bans push usage to personal accounts. A one-week path from ban to governed use.

Read the article
Article

Shadow AI under Saudi PDPL and UAE PDPL

Eight questions the auditor will ask, and the evidence that answers each one.

Read the article
Video

SentraGuard in two minutes

Shadow AI found on day 0, an unsanctioned tool moved to sanctioned use, Microsoft 365 Copilot governed, and all four actions live by day 7. Voiceover, captions and transcript.

Watch the video