{"slug": "box-adds-security-controls-to-govern-ai-agents-working-with-enterprise-content", "title": "Box adds security controls to govern AI agents working with enterprise content", "summary": "Box Inc. today introduced security controls for AI agents working with enterprise content, applying to agents built in Box and external tools such as Anthropic's Claude, OpenAI's ChatGPT and Google's Gemini. The controls sit at the content layer to vet and record each agent action, blocking anything outside set permissions, and aim to address the main barrier to agentic AI: 90% of IT leaders surveyed by Box cited security, regulatory and trust concerns as the biggest reason they hesitate to give AI agents access to enterprise content. The release includes agent guardrails, prompt injection detection, Model Context Protocol guardrails, classification-based access policies, activity oversight, audit trails and a human-in-the-loop setting.", "body_md": "### Box adds security controls to govern AI agents working with enterprise content\n\nBox Inc. today introduced security controls aimed at the artificial intelligence agents now working across enterprise content.\n\nThe controls apply to agents built in Box and to outside tools connected to it, including Anthropic PBC’s Claude, OpenAI Group PBC’s ChatGPT and Google LLC’s Gemini. Rather than run as a separate product, the controls sit at the content layer, where the files already are.\n\nBox said that lets it vet and record each agent action, then block anything that falls outside set permissions. The company is aiming the release at customers that want to move agent use beyond small pilots into production.\n\nThe push targets a barrier Box’s own research flags as the main obstacle to agentic AI. In the company’s 2026 State of Enterprise AI [report](https://www.box.com/state-of-ai), 90% of information technology leaders surveyed named security, regulatory and trust concerns as the biggest reason they hesitate to give AI agents access to enterprise content.\n\nAmong the new capabilities are agent guardrails that limit what custom Box agents can do based on content sensitivity, including label-based access controls, required approval for deletion actions and disabled external sharing. Prompt injection detection screens every input before it reaches a model and can log, alert on or block suspicious attempts. A separate set of Model Context Protocol guardrails governs external agents connected through the Box MCP Server, letting administrators scope permissions such as allowing file creation only in approved folders.\n\nThe release bundles several more controls. Classification-based access policies can wall off tagged content so agents cannot read or search it. Activity oversight sets threshold alerts on outside agent behavior, and audit trails keep compliance-ready records of each session. A human-in-the-loop setting holds high-impact actions for sign-off.\n\nManoj Asnani, vice president of AI security, privacy, compliance and governance products at Box, said the controls are meant to ensure agents can function without accessing, modifying or exposing content beyond the scope of their task. He said 83% of organizations are already experimenting with AI agents on their most critical work.\n\nBox pointed to regulated industries as early beneficiaries, citing financial services firms guarding merger analysis and trade information, healthcare organizations securing patient data and law firms governing AI across contract and discovery workflows.\n\nThe capabilities build on a security push that dates to the [2019 launch](https://siliconangle.com/2019/10/02/box-debuts-new-security-controls-enhancements-workflow-automation-tools/) of Box Shield and the debut of Box Shield Pro [late last year](https://siliconangle.com/2025/12/03/box-launches-shield-pro-agentic-ai-automated-content-security/), which brought agentic AI to content classification and threat detection.\n\n“Box’s new security and governance controls address the primary barriers of privacy and unauthorized access directly where the data lives,” said Amy Machado, senior research director for content and knowledge management strategies at International Data Corp. “Box is establishing a vital trust standard that allows enterprises to confidently scale both native and third-party AI agents across their most sensitive content.”\n\nBox said the new controls will roll out to customers on its Enterprise Advanced plan in the coming months.\n\n##### Image: Box\n\n# A message from John Furrier, co-founder of SiliconANGLE:\n\nSupport our mission to keep content open and free by engaging with theCUBE community. **Join theCUBE’s Alumni Trust Network**, where technology leaders connect, share intelligence and create opportunities.\n\n**15M+ viewers of theCUBE videos**, powering conversations across AI, cloud, cybersecurity and more** 11.4k+ theCUBE alumni**— Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.\n\n# Are you AWS customer? Support SiliconANGLE Financially by buying your AWS services from our Marketplace portal page and links.\n\n**About SiliconANGLE Media**\n\n[SiliconANGLE](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fsiliconangle.com%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=SiliconANGLE&index=9&md5=646b1b564e2259100a2b8638aab0a552),\n\n[theCUBE Network](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.thecube.net%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=theCUBE+Network&index=10&md5=7de2a85f95ab4a4a495cede20b8cb1da),\n\n[theCUBE Research](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fthecuberesearch.com%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=theCUBE+Research&index=11&md5=7bb33676722925eb57d588ec343e4f6f),\n\n[CUBE365](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.cube365.net%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=CUBE365&index=12&md5=d310fb35919714e66ad8d42c9c0c1bc6),\n\n[theCUBE AI](https://cts.businesswire.com/ct/CT?id=smartlink&url=https%3A%2F%2Fwww.thecubeai.com%2F&esheet=54119777&newsitemid=20240910506833&lan=en-US&anchor=theCUBE+AI&index=13&md5=b8b98472f8071b23ebb10ab9a8dd0683)and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.\n\nFounded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.", "url": "https://wpnews.pro/news/box-adds-security-controls-to-govern-ai-agents-working-with-enterprise-content", "canonical_source": "https://siliconangle.com/2026/07/21/box-adds-security-controls-govern-ai-agents-working-enterprise-content/", "published_at": "2026-07-21 15:00:22+00:00", "updated_at": "2026-07-21 15:13:29.001851+00:00", "lang": "en", "topics": ["ai-safety", "ai-policy", "ai-products", "ai-agents"], "entities": ["Box Inc.", "Anthropic PBC", "OpenAI Group PBC", "Google LLC", "Manoj Asnani", "Amy Machado", "International Data Corp.", "Box Shield"], "alternates": {"html": "https://wpnews.pro/news/box-adds-security-controls-to-govern-ai-agents-working-with-enterprise-content", "markdown": "https://wpnews.pro/news/box-adds-security-controls-to-govern-ai-agents-working-with-enterprise-content.md", "text": "https://wpnews.pro/news/box-adds-security-controls-to-govern-ai-agents-working-with-enterprise-content.txt", "jsonld": "https://wpnews.pro/news/box-adds-security-controls-to-govern-ai-agents-working-with-enterprise-content.jsonld"}}