Bring endpoint-level visibility into Shadow AI directly into ServiceNow AI Control Tower. This connector uses the Agent Client Collector (ACC) already running on your endpoints to detect the AI applications, APIs, and agents employees use outside sanctioned channels — then streams those detections straight into AI Control Tower for review, governance, and promotion into your CMDB.
Because detection happens on the endpoint, ACC sees what network-only sources can't: the actual application in use, the user and device behind it, and the prompt and request context that make a detection meaningful. That lets AI stewards and governance teams move Shadow AI out of the blind spot and into the system of record — where usage can be tracked, risk assessed, and policy applied. No new agents to deploy; you reuse the ACC footprint you already have.
- Endpoint-based Shadow AI detection — Identifies local applications, web APIs, and AI service endpoints in use across your workforce using existing ACC agents with the AI proxy enabled.
- Rich detection signals — Captures app name, destination URL, user, device, and timestamp for every detection, so you know what AI is used, who is using it, and where.
- Prompt and session visibility — Surfaces prompts, conversations, tools, skills, and request context for the most recent 30 days, giving reviewers the detail they need to judge risk — visibility that network-only detection can't provide.
- Usage-based prioritization — Frequency of use per system and detections grouped by user and department help reviewers focus on what matters first.
- Promote to system of record — Approved detections become owned AI assets in your CMDB, complete with Shadow AI lineage, ready for AI Control Tower's governance and policy workflows.
New
- First release of the ACC connector for AI Control Tower Shadow AI.
- Adds endpoint-based Shadow AI detection through the ACC AI proxy.
- New Shadow AI experience under Inventory in AI Control Tower, including per-system detail (overview, signals, prompts/sessions, audit log) and per-user detail.
- Detected systems can be reviewed in a staging area with deduplication across detection sources, then promoted into the CMDB as owned AI assets.
- Prompt and session detail is retained for 30 days; aggregate usage (system, user, device, and event counts by day) is retained beyond that period.
Agent Client Collector Framework and ITOM Cloud Services plugins.