Docker AI Governance now streams policy decision audit logs to SIEM tools like Splunk, Datadog, Dynatrace, and Grafana, while also providing a searchable 90-day record in Docker Cloud with CSV export. The feature captures all three policy outcomes — allowed, denied, and held for human review — which is only possible at the enforcement point rather than via log collection after the fact. Coverage currently includes Docker Sandboxes policy decisions and sandbox session events, with MCP Gateway enforcement decisions coming later. Records are metadata-only and never include prompt content or agent output.
Table of contents
Enforcement is step oneWhy audit records matterWhat only the enforcement point can seeAudit Logs: Streamable to your SIEM toolsCoverageWhat’s nextAvailable today138 Impressions