Connect
An Entra app registration with read-only Graph permissions, deployed in your subscription.
- 1Register in Entra ID
- 2Grant read-only scopes
- 3Deploy to your Azure
Sentinel was built for organizations that take data residency seriously - because it runs entirely inside one: yours.
Four stages, all running in your own Azure subscription. Nothing is crawled from endpoints and no copy of your data is shipped to a vendor cloud.
An Entra app registration with read-only Graph permissions, deployed in your subscription.
A scheduled worker syncs SharePoint, OneDrive, sharing, and Copilot telemetry into your database.
Deterministic scoring runs over the cached inventory, with an optional AI narrative on top.
Dashboards surface the queue; admins remediate and export, and everything is logged.
Staff sign in with their existing work account. Access is scoped to the Entra ID groups you choose, with separate roles for admins, users, and data stewards.
Deployed into your Azure subscription. Inventory lives in your PostgreSQL database and card-level data never leaves your environment. There is no shared multi-tenant backend.
Sentinel connects to Microsoft Graph with least-privilege, read-only permissions. Remediation actions - like revoking a link - happen only when an admin approves them.
Every revoke, quarantine, and access change is logged with actor, target, and timestamp. Signed license keys gate the product; nothing is used to train public models.
Princeton Sentinel ships as containers you run on Azure Container Apps - a Next.js web app, a Python worker, and a PostgreSQL database - deployed into your own subscription. The cached Microsoft 365 inventory lives in your database, sign-in and role membership run through your Microsoft Entra ID, and any AI summaries are generated inside that same boundary. There is no shared multi-tenant backend, access is scoped to the Entra groups you choose (admin, user, and data steward), signed license keys gate the product, and nothing is ever used to train public models.
Bring it to the demo - we'll walk your IT and security teams through identity, data flows, permissions, and hardening in the same session.