Enterprise ready

Enterprise-readiness is our biggest strength.

Security, audit, and compliance — all 87 governance capabilities enterprises actually need for AI adoption, built into a multi-AI workspace from day one.

Talk to us
Enterprise-readiness is our biggest strength.
Security

Protected, without being watched.

Day to day, admins see only usage and cost. Conversations belong to the person and whoever they shared them with.

Our approach to security
Protected, without being watched.
Audit trail

Audit and Legal Hold — traceable when it matters.

Audit events are recorded, queryable via API, and exportable. Legal Hold, GDPR erasure, and long-term retention are available to discuss under Enterprise.

See audit logs
Audit and Legal Hold — traceable when it matters.
Security Filter

Keep company information from leaving.

A Security Filter that detects and masks sensitive data before sending, then restores it in the response, comes standard — available today alongside SSO, SCIM, and model governance.

See the feature
Keep company information from leaving.

Enterprise-readiness is our headline feature.

Security, auditability, and legal compliance come standard, the reason teams choose Prompt Flow Studio as their AI workspace.

Protected, without being watched.

Rolling out AI to a team creates two jobs that pull in opposite directions. We make both work.

We don't watch, day to day

Conversations and generated artifacts belong to the author and whoever they're shared with. What admins see day to day is team usage and cost — PFC consumption and storage.

We can trace back when it matters

Every action is recorded as an audit event. Query it via API, export as CSV/JSONL with SHA-256 checksums, or view it in the admin console (Business+ and above).

Nothing leaves the workspace

Security Filter — detect and mask sensitive data before it's sent, then restore it in the response — comes standard (Team: detect & warn only, Business and above: auto-mask & restore). Contextual detection and mask-event audit viewing are available on Business+ and above. Custom detection rules, bring-your-own detection dictionaries, and an org-wide enforced policy that people can't opt out of are available on Enterprise.

Enterprise capability catalog

Business steps up to Business+ and on to Enterprise. Here we only cover the capabilities that make a real difference for organization-wide rollout. For the full common-feature comparison, see the pricing page.

Identity & access, and leak prevention

項目BusinessBusiness+Enterprise
SAML SSOYesYesYes
SCIM auto-provisioning (create, update, deprovision)YesYesYes
Group-to-role auto-assignmentYesYesYes
Break-glass emergency access (fully audited)YesYesYes
Signed webhook verification for integrationsYesYesYes
Secret-variable maskingYesYesYes
Security Filter (PII auto-mask & restore)YesYesYes
Contextual detection + mask-event audit viewYesYes
Custom detection rulesYes
Org-wide enforced policy (no individual opt-out)Yes
Bring-your-own detection dictionary (BYO)Yes

Audit, data governance, cost control & infrastructure

項目BusinessBusiness+Enterprise
Audit event log & query APIYesYesYes
Audit log viewing in the admin consoleYesYes
Audit export (CSV/JSONL with SHA-256 checksums)YesYes
Tamper-evident audit log (hash chain)YesYesYes
Draft-branch retentionAuto-cleaned after 30 daysAuto-cleaned after 30 daysConfigurable retention policy; freeze with Legal Hold
Legal Hold (freeze data for litigation or investigation)Yes
GDPR erasureYes
Audit-log retention period1 year1 year7 years (statutory retention, linked to Legal Hold)
Billing ledger integrity (enforced recording, daily reconciliation, real-cost reconciliation)YesYesYes
Team budgets & usage alertsYesYesYes
Model governance (org-controlled model availability)YesYesYes
Data residency (choose the storage region)Yes
CMEK (customer-managed encryption keys)Yes
Dedicated shardYes
SLA (uptime guarantee)Yes
Dedicated CSMYes
Invoice billingYes
Priority supportYesYes

Yes = available. — = not applicable. Business+ and Enterprise always include everything from the tier below.

Security Filter — by plan

Detects sensitive and personal data before it's sent. Automation and scope grow with the plan.

項目TeamBusinessBusiness+Enterprise
Detect and warnYesYesYesYes
Secret-variable maskingYesYesYes
Auto-mask and restoreYesYesYes
Contextual detection + mask-event audit viewYesYes
Custom detection rules, BYO dictionaries & org-wide enforcementYes

Legal & compliance

From audit trails to long-term retention, we answer what legal and compliance teams ask for.

Audit event log & query API

Every action — who, when, what — is recorded and available via a query API, CSV/JSONL export with SHA-256 checksums, or the admin console.

Legal Hold, GDPR erasure & retention

Tamper-evident audit logs (hash chain) come standard on Business and above. Data freezes for litigation or investigation (Legal Hold), GDPR erasure, and 7-year audit retention (statutory retention, linked to Legal Hold) are available on Enterprise.

Audit log viewing in the admin console

Beyond the query API and exports, you can search and browse audit logs directly in the admin console (Business+ and above).

What's included in Business plans

  • check
    Team sharing

    Share threads and personas across the team.

  • check
    SAML SSO

    Single sign-on with your IdP (Business and above).

  • check
    SCIM

    Automated user provisioning (Business+ and above).

  • check
    Audit API and export

    Query audit events via API, or export as CSV or JSONL with SHA-256 checksums.

  • check
    Team usage

    See this month's PFC consumption and cost for your team.

  • check
    Model catalog governance

    Control which AI models the organization is allowed to use.

Pricing — Team & Business

Prices are per seat. Minimum seat counts apply.

項目TeamBusinessBusiness+Enterprise
Monthly (per seat)$60$95$150Custom quote
Annual (per month)$50$79$125Seats + PFC usage
Minimum seats51025Custom
Monthly PFC (per seat)4,0004,5005,000Usage-based
Storage15GB25GB40GBCustom

How onboarding works

01

Contact us

Tell us what you need and roughly how many people will use it.

02

Scope the requirements

We work out whether you need SSO, how many seats, and your target start date.

03

Start using it

We issue accounts and your team gets started.

Questions from business customers

SAML SSO is available on Business and above. SCIM is available on Business+ and above.

From teams that use AI, to teams that run on AI.

Start with one piece of work you're already doing.

Start free
Language日本語English
Enterprise — Prompt Flow Studio