Cypilot
Ask the tenant a question, get an answer
Cypilot is the security analyst that already read every tenant. Ask in plain language — which files are shared with Anyone, who carries the biggest blast radius, which AI apps hold organization-wide access — and get a source-backed answer as a table or chart in seconds. No query builder, no export, no SQL. Administrators only, and every question is locked to the tenants you are allowed to see.

What it queries
The same inventory the console already holds
Answers are grounded in live tenant data Cypilot can query — not a separate warehouse. Example questions the product surfaces:
Files and sharing
“What is shared with Anyone?” — largest files, external and organization-wide links, and the ones sitting open on regulated content.
Sensitive data
“Which sensitive types are growing?” — PII, PHI and PCI ranked by volume, and where each concentration lives.
People and exposure
Employees ranked by data volume, external sharing and blast radius against the assets they can reach.
Connected and Shadow AI
“Which apps hold organization-wide access?” — OAuth grants scored on AI exposure, data access and publisher trust.
Copilot exposure
“Where is Copilot touching regulated data?” — conversations classified by sensitivity and data exposure, filtered to what matters.
Trends over time
“How has permission overexposure moved this quarter?” — unusual growth and overexposure trends, tenant by tenant.
Multi-tenant
One question across selected tenants
Select the tenants you manage and ask once. Cypilot answers with a comparison table and a chart you did not have to build — so the outlier client shows up before they call you.
01
Select the tenants
Pick one, a few, or your whole book of business — up to fifty tenants in a single question. Everyone sees only the tenants they are allowed to.
02
Ask once
Plain language, no query builder. Cypilot runs the same analysis across every tenant you selected and streams the answer back as it works.
03
Compare in a table
The answer comes back as a ranked table and a bar chart across tenants — app sprawl, oversharing or Copilot exposure, side by side. Prep a QBR by asking, not by exporting.
How it stays safe
It reads. It doesn't wander.
Cypilot is built for security teams that need to trust the answer and the boundary around it. The guardrails are enforced on the server, not the prompt.
Isolation
Tenant-isolated by construction
Every query is validated and rewritten to filter on the tenants you selected. Cypilot cannot read across that line, whatever the question asks for.
SQL validated per request · scoped to the tenants you select
Access
Admin-gated
Only administrators can ask, with rate limits held per tenant.
Admin and super-admin · per-tenant rate limits
Authority
Read-first, change only on confirm
Cypilot can propose an automation-rule or setting change, but nothing applies without an explicit confirmation from you — and it can run fully read-only.
Confirm before any change · read-only mode available
Leakage
No internals in the answer
Table and column names are stripped from every response, and prompt-injection attempts are blocked before they run.
Output redaction · prompt-injection guardrails
How Cypilot behaves
What it answers, and where it stops.
What is Cypilot?
Cypilot is a conversational security-analytics assistant inside the Cyflow console. You ask a question in plain language and it answers over the tenant's live inventory — files, sharing, people, connected apps, Copilot activity and configuration — as a summary with tables and, where it helps, a chart.
Does Cypilot generate the PDF reports?
No. Cypilot's answers are interactive — tables and charts in the conversation. The formal executive and compliance PDFs are generated in Reporting. Think of Cypilot as the ask-and-see surface, and Reporting as the deliverable you hand a client.
Can Cypilot change things in our tenant?
Only if you let it, and only after you confirm. It can propose creating or updating an automation rule or a whitelisted setting, but nothing applies until you approve it in the conversation. It can also run fully read-only.
Can it compare across client tenants?
Yes — this is built for MSPs. Select up to fifty tenants and ask once; a cross-tenant comparison comes back as a ranked table and a bar chart. Everyone sees only the tenants they are permitted to.
Who can use Cypilot, and how is it scoped?
Administrators. Every question is scoped on the server to the tenants you selected and are allowed to see, with input and output guardrails and per-tenant rate limits.
Which AI model does it use?
You choose — Cypilot supports a picker across Anthropic and Google Gemini models, so you can match the model to the question.
See it live
Ask your tenant the first question
Book a demo and we will ask across your own tenants live — a real question, a source-backed answer, and the cross-tenant comparison behind it.

