AI platforms are now enterprise SaaS — and they need to be governed like it. Okta just made that possible for Claude.
Okta announced on May 21, 2026 a new integration between Identity Security Posture Management (ISPM) and Anthropic’s Claude Compliance API. Security and compliance teams can now monitor identity risks and misconfigurations inside Claude Enterprise and Claude Platform environments — the same way they already govern Salesforce, Workday, or GitHub.
What the Okta–Anthropic integration actually does
Okta ISPM connects to Claude through Anthropic’s Compliance API and continuously assesses four identity risk areas that AI platforms have historically left ungoverned:
- Admin API key visibility: Flags keys that are unused or haven’t been rotated, eliminating standing credentials before they become a liability.
- Offboarding gaps: Detects former employees who still hold active access to the corporate Anthropic workspace after leaving.
- Privilege escalation risk : Enforces zero-standing privilege for admin roles across Claude and connected Anthropic products.
- Dormant accounts : Surfaces provisioned accounts no longer in use, reducing the attack surface and reclaiming licenses.
Why IAM teams should care
Claude has been a governance blind spot. Employees onboard, create admin API keys, build integrations, and offboard and most organizations have no visibility into any of it. This integration closes that gap by pulling Claude into the same identity inventory as the rest of your SaaS stack.
The broader signal is architectural. Anthropic built a dedicated Compliance API so identity providers can plug in. That decision reflects a shift: AI vendors are starting to treat identity governance as a product requirement, not a customer problem. Expect this pattern to spread across other AI platforms.
The integration will be available in beta to customers running Okta ISPM alongside Claude Enterprise or Claude Platform.
Source: Okta Newsroom
