<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>endpoint on tomrochette.com</title>
    <link>https://tomrochette.com/tags/endpoint/</link>
    <description>Recent content in endpoint on tomrochette.com</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <managingEditor>tom@tomrochette.com (Tom Rochette)</managingEditor>
    <webMaster>tom@tomrochette.com (Tom Rochette)</webMaster>
    <copyright>© 2026 Tom Rochette</copyright>
    <lastBuildDate>Tue, 06 Oct 2026 00:03:56 -0400</lastBuildDate><atom:link href="https://tomrochette.com/tags/endpoint/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>Jamf AI Governance</title>
      <link>https://tomrochette.com/agents/control-planes/jamf-ai-governance/</link>
      <pubDate>Mon, 05 Oct 2026 00:00:00 +0000</pubDate>
      <author>tom@tomrochette.com (Tom Rochette)</author>
      <guid>https://tomrochette.com/agents/control-planes/jamf-ai-governance/</guid>
      <category>research-note</category><category>agent-curated</category><category>fully-ai-generated</category><category>llm=glm-5.3-flash</category><category>control-planes</category><category>governance</category><category>endpoint</category><category>macos</category><category>commercial</category>
      <description>&lt;p&gt;Jamf AI Governance is a capability of Jamf for Mac, generally available since June 30, 2026, that discovers AI tools running on managed Mac fleets and turns AI usage policy into enforced vendor configurations (model access, network permissions, file system controls, MCP server restrictions) for tools including Claude Code and OpenAI Codex.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Its argument is that AI tools are managed software with a configuration surface, so the governance point is the settings the vendors themselves ship, applied through Apple&amp;rsquo;s device-management channel before the first prompt rather than intercepted at runtime.&lt;/strong&gt;&lt;/p&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;What it is&#xA;    &lt;div id=&#34;what-it-is&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#what-it-is&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;p&gt;A policy builder inside the Jamf console writes AI usage policy as vendor-correct configurations, a vendor control tracking engine keeps those policies current as the tools change, and Apple Declarative Device Management blueprints deploy them offline and before first login, which Jamf calls a day-zero, tamper-resistant baseline.&#xA;Launch coverage is deep rather than wide: Claude Code, Claude Desktop and Claude Cowork, and OpenAI Codex on AWS Bedrock, with Cursor and GitHub Copilot named as follow-ups as their enterprise controls mature.&#xA;Jamf states the controls are validated with Anthropic and AWS, and an Okta for AI Agents integration gives registered agents managed identities with short-lived vaulted credentials, authorized and logged from endpoint to cloud.&#xA;An on-demand Governance Report renders every active policy across the fleet as a single PDF for auditors, with SIEM compatibility.&#xA;It requires the Jamf estate: Jamf for Mac Business, Enterprise, or Hi-Ed plans, SSO through Jamf Account, blueprint privileges, and the Jamf Protect agent for visibility.&lt;/p&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;Status&#xA;    &lt;div id=&#34;status&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#status&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;p&gt;Generally available inside a 27-year-old device-management company that claims more than 78,000 customer organizations and 35 million devices (per its June 30, 2026 announcement), positioned as the first native, OS-level AI control plane for Mac.&#xA;Closed and bundled: no public repository, no version number, no standalone price, and coverage bounded by the vendor control tracking engine, since only tools shipping enterprise-grade settings can be governed at all.&#xA;&lt;strong&gt;The positioning is candid about scope in one direction and silent in the other: Jamf&amp;rsquo;s own blog says blocking is the old world and &amp;ldquo;AI Governance handles the part that comes after yes&amp;rdquo;, but the same blog&amp;rsquo;s Gartner and survey statistics are vendor marketing, and the first-to-market claim is self-reported.&lt;/strong&gt;&lt;/p&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;Strengths&#xA;    &lt;div id=&#34;strengths&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#strengths&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Enforcement lands through Apple&amp;rsquo;s own Declarative Device Management, so policies are tamper-resistant, offline-capable, and present before the first login, a stronger deployment story than agent-installed enforcement.&lt;/li&gt;&#xA;&lt;li&gt;It governs what the vendors expose (model access, tenancy, file system controls, MCP server restrictions), which means the controls match what Claude Code and Codex actually respond to rather than approximating from the network.&lt;/li&gt;&#xA;&lt;li&gt;The Okta integration is the right identity primitive: agents get scoped, short-lived credentials instead of long-lived keys, with the authorization record from endpoint to cloud.&lt;/li&gt;&#xA;&lt;li&gt;Mac developer fleets get governance from the console IT already runs, with no new agent beyond Jamf Protect.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;Cautions&#xA;    &lt;div id=&#34;cautions&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#cautions&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Mac-only, so the majority of agentic coding fleets on Linux and Windows are outside its reach entirely.&lt;/li&gt;&#xA;&lt;li&gt;Coverage is a function of vendor settings maturity: a tool without enterprise-grade configuration knobs cannot be governed, which is why Cursor and Copilot are promises, not features.&lt;/li&gt;&#xA;&lt;li&gt;This is configuration governance, not runtime interception: it constrains what a sanctioned tool is allowed to do by policy, but it does not evaluate individual agent actions the way a policy server or authorization kernel does.&lt;/li&gt;&#xA;&lt;li&gt;Everything requires the Jamf platform (Protect agent, blueprints, Jamf Account SSO), so this is a capability you buy into, not a tool you adopt; the survey and Gartner statistics on its pages are vendor-selected context.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;Pricing&#xA;    &lt;div id=&#34;pricing&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#pricing&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;p&gt;Bundled into Jamf for Mac Business and Enterprise plans (and the Hi-Ed equivalent); Jamf publishes no standalone price for AI Governance and no public per-seat figure.&#xA;Without stated prices there is no price history to track.&lt;/p&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;Compared to&#xA;    &lt;div id=&#34;compared-to&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#compared-to&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://tomrochette.com/agents/control-planes/crowdstrike-falcon-guardian/&#34; &gt;CrowdStrike Falcon Guardian&lt;/a&gt;: the other endpoint-anchored commercial entrant; Falcon adds detection and response around agent runtime behavior from its sensor, while Jamf enforces the configuration boundary the vendors themselves define.&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://tomrochette.com/agents/control-planes/databricks-unity-gateway/&#34; &gt;Databricks Unity Gateway&lt;/a&gt;: governs model and MCP traffic at the request boundary in the cloud platform, which follows agents across machines but never sees the endpoint.&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://tomrochette.com/agents/control-planes/microsoft-agent-governance-toolkit/&#34; &gt;Microsoft Agent Governance Toolkit&lt;/a&gt;: the open-source, in-code counterpart that requires no device-management estate but also has no OS-level enforcement channel.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;Bottom line&#xA;    &lt;div id=&#34;bottom-line&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#bottom-line&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;p&gt;&lt;strong&gt;Recommended for Mac-heavy engineering organizations already running Jamf that want AI usage policy enforced at the device layer before agents ever run.&lt;/strong&gt;&#xA;Not for Linux or Windows fleets, for teams needing per-action runtime authorization, or for anyone without an appetite for the whole Jamf platform relationship.&lt;/p&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;Changes&#xA;    &lt;div id=&#34;changes&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#changes&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;2026-10-05 - Created from the entrant-resolution run, profiling the Mac-native endpoint configuration governance capability as the second endpoint-anchored commercial entrant after CrowdStrike Falcon Guardian.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;See also&#xA;    &lt;div id=&#34;see-also&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#see-also&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://tomrochette.com/agents/control-planes/crowdstrike-falcon-guardian/&#34; &gt;CrowdStrike Falcon Guardian&lt;/a&gt; - the sensor-anchored endpoint counterpart and the closest architectural comparison&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://tomrochette.com/agents/control-planes/databricks-unity-gateway/&#34; &gt;Databricks Unity Gateway&lt;/a&gt; - the request-boundary governance layer this complements&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://tomrochette.com/agents/control-planes/microsoft-agent-governance-toolkit/&#34; &gt;Microsoft Agent Governance Toolkit&lt;/a&gt; - the open-source enforcement alternative without a platform relationship&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://tomrochette.com/agents/control-planes/control-planes-feature-matrix/&#34; &gt;Control Planes Feature Matrix&lt;/a&gt; - the category comparison this note joins&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&#xA;&lt;h2 class=&#34;relative group&#34;&gt;References&#xA;    &lt;div id=&#34;references&#34; class=&#34;anchor&#34;&gt;&lt;/div&gt;&#xA;    &#xA;    &lt;span&#xA;        class=&#34;absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none&#34;&gt;&#xA;        &lt;a class=&#34;text-primary-300 dark:text-neutral-700 !no-underline&#34; href=&#34;#references&#34; aria-label=&#34;Anchor&#34;&gt;#&lt;/a&gt;&#xA;    &lt;/span&gt;&#xA;    &#xA;&lt;/h2&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://www.jamf.com/resources/press-releases/jamf-launches-ai-governance-a-first-of-its-kind-native-ai-control-plane-for-mac/&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;&lt;img class=&#34;external-link-favicon&#34; src=&#34;https://www.google.com/s2/favicons?domain=www.jamf.com&amp;sz=128&#34; alt=&#34;&#34; width=&#34;16&#34; height=&#34;16&#34; loading=&#34;lazy&#34;&gt;https://www.jamf.com/resources/press-releases/jamf-launches-ai-governance-a-first-of-its-kind-native-ai-control-plane-for-mac/&lt;/a&gt; - the June 30, 2026 GA announcement: coverage list, control categories, Okta integration, scale figures&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://www.jamf.com/blog/ai-governance-for-mac/&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;&lt;img class=&#34;external-link-favicon&#34; src=&#34;https://www.google.com/s2/favicons?domain=www.jamf.com&amp;sz=128&#34; alt=&#34;&#34; width=&#34;16&#34; height=&#34;16&#34; loading=&#34;lazy&#34;&gt;https://www.jamf.com/blog/ai-governance-for-mac/&lt;/a&gt; - the product blog: the configuration-surface argument, the Governance Report, the after-yes positioning, and the Claude Cowork and Codex-on-Bedrock details&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://www.jamf.com/solutions/ai-governance/&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;&lt;img class=&#34;external-link-favicon&#34; src=&#34;https://www.google.com/s2/favicons?domain=www.jamf.com&amp;sz=128&#34; alt=&#34;&#34; width=&#34;16&#34; height=&#34;16&#34; loading=&#34;lazy&#34;&gt;https://www.jamf.com/solutions/ai-governance/&lt;/a&gt; - product page: shadow-AI framing and the Anthropic and AWS control validation&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://community.jamf.com/from-jamf-179/ai-governance-for-mac-launches-today-58538&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;&lt;img class=&#34;external-link-favicon&#34; src=&#34;https://www.google.com/s2/favicons?domain=community.jamf.com&amp;sz=128&#34; alt=&#34;&#34; width=&#34;16&#34; height=&#34;16&#34; loading=&#34;lazy&#34;&gt;https://community.jamf.com/from-jamf-179/ai-governance-for-mac-launches-today-58538&lt;/a&gt; - the launch post listing the prerequisites (SSO/OIDC, blueprints, Jamf Protect agent)&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://learn.jamf.com/r/en-US/jamf-account-documentation/AI_Governance&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;&lt;img class=&#34;external-link-favicon&#34; src=&#34;https://www.google.com/s2/favicons?domain=learn.jamf.com&amp;sz=128&#34; alt=&#34;&#34; width=&#34;16&#34; height=&#34;16&#34; loading=&#34;lazy&#34;&gt;https://learn.jamf.com/r/en-US/jamf-account-documentation/AI_Governance&lt;/a&gt; - official Jamf Account documentation&lt;/li&gt;&#xA;&lt;li&gt;&lt;a href=&#34;https://www.businesswire.com/news/home/20260630510591/en/Jamf-launches-AI-Governance-a-first-of-its-kind-native-AI-control-plane-for-Mac&#34;  target=&#34;_blank&#34; rel=&#34;noreferrer&#34;&gt;&lt;img class=&#34;external-link-favicon&#34; src=&#34;https://www.google.com/s2/favicons?domain=www.businesswire.com&amp;sz=128&#34; alt=&#34;&#34; width=&#34;16&#34; height=&#34;16&#34; loading=&#34;lazy&#34;&gt;https://www.businesswire.com/news/home/20260630510591/en/Jamf-launches-AI-Governance-a-first-of-its-kind-native-AI-control-plane-for-Mac&lt;/a&gt; - the wire release confirming the date, plan bundling, and vendor control tracking engine&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;</description>
      
    </item>
    
  </channel>
</rss>
