What's new

Explore our latest product enhancements, release notes, acquisitions, and more.

Aug 2026

Platform (Atlas)

Detect agent intent drift and rogue activity with Agent IBAC

Varonis Atlas now includes Agent Intent-Based Access Control (IBAC), letting businesses connect AI agents to their enterprise data with safeguards that stop dangerous or out-of-policy behavior.

Intent drift detection validates whether an agent’s reasoning, tool use, and data access are consistent with the instructions it received, and alerts on or blocks actions that don’t align. When an agent crosses the line, Atlas can quarantine the identity behind it and block everything that follows for a defined window.

Atlas monitors every action an agent takes across sessions and provides a complete audit trail for every agent interaction, giving security teams a way to confirm agents are acting as intended, in real time, without slowing the business.

Agent IBAC works with the agents and AI tools organizations already run, including Claude Code, Cursor, GitHub Copilot, and Microsoft Copilot Studio.

Learn more about Agent IBAC.

Jul 2026

Platform (Data Security)

Preserve higher priority Microsoft Purview labels automatically  

Varonis now preserves higher-priority Microsoft Purview labels that are already applied to files, including labels applied manually or by third-party solutions. When a file meets labeling criteria, Varonis compares the existing label to its recommended label and only applies a change if it results in stronger protection, helping organizations prevent accidental label downgrades and maintain consistent data protection.
Platform (Data Security)

Search Varonis data with the new Search API

The new Search API provides programmatic access to Varonis data, including events, identities, resources, permissions, memberships, and alerted events. Organizations can use the API to support investigations, automate workflows, and integrate Varonis data into existing security and operational processes. 
Platform (Data Security)

Gain more control over label lifecycles

Administrators can now control what happens to Varonis-applied labels when the conditions that triggered them no longer apply. Organizations can choose to automatically remove labels that are no longer valid or preserve them, providing additional flexibility for evolving classification policies and compliance requirements. 
Platform (Data Security)

Block unauthorized tenant access

Customers can now restrict access to their Varonis SaaS tenant by allowing UI logins and API requests only from approved IP addresses. Requests originating from unauthorized locations are automatically blocked, helping organizations strengthen access controls and align Varonis with existing network security policies. 
Platform (Data Security)

Export Events and Audit data at scale

The new Export API enables organizations to extract events and audit logs through downloadable exports for reporting, compliance, and long-term analysis. Teams can streamline data ingestion into third-party platforms, support audit requirements, and operationalize Varonis data across broader security and analytics ecosystems.
Platform (Data Security)

Secure Multi-Tenant VAST Environments with Greater Visibility

Varonis now supports tenant-level visibility and monitoring for multi-tenant VAST Data environments. Organizations can gain insight into tenant-specific activity, access patterns, and events while maintaining strong separation between tenants and applying consistent security controls across shared infrastructure.
Platform (Data Security)

Discover open shares across CIFS environments

Automatic Share Detection helps organizations identify open shares across monitored and unmonitored CIFS environments and highlights opportunities to expand monitoring coverage. This allows security teams to discover previously unknown data repositories and reduce blind spots across the environment. 
Platform (Data Security)

Enhanced alert routing and MDDR escalations

Varonis can now include segment information in Syslog messages, event publishing workflows, and MDDR escalation emails. By providing additional context about where alerts originated, organizations can improve routing, correlation, and automation across downstream security operations tools. 
Platform (Atlas)

Secure Claude Code and Claude Cowork with Varonis Atlas

Varonis Atlas now secures Claude Code and Claude Cowork, giving security teams unified visibility and control across both agentic development and knowledge-work environments. As one of the few AI security platforms covering the breadth of the Anthropic enterprise Claude suite, Atlas is the most complete way to secure the new agentic world that has been created with Claude, including Claude Code, Claude Cowork, Claude Enterprise, and Claude Platform.   

Direct integration with Claude Code and Claude Cowork enables runtime guardrails that can block, modify, or alert on risky behavior in real time. AI activity monitoring helps detect exposure of sensitive data, credentials, API keys, and regulated information, while providing context around user activity, projects, resources, and token usage.

Atlas also provides visibility into the skills, memory files, MCP configurations, and other artifacts that influence agent behavior. These capabilities help organizations identify persistent instructions, detect manipulation attempts, surface potential data exfiltration risks, and maintain a complete inventory of agents, tools, and supporting resources across the Claude ecosystem.

Learn more.
Platform (Atlas)

Trace user intent and agent activity over time

AI Investigation Sessions now include an Intent Timeline, providing investigators with a chronological view of user intent, agent behavior, and tool activity throughout a session. This makes it easier to understand why runtime policies are triggered and to trace activity leading up to and following an event. 
Platform (Atlas)

Expanded support for monitoring and governing coding agents

Atlas now supports runtime monitoring and governance for additional AI-assisted development tools, including Devin CLI, Devin Desktop, Google Antigravity, Kiro, and OpenAI Codex. Organizations can log, review, and evaluate activity from these coding agents using Atlas runtime policies.