<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Help Needed: GenAI DLP, Harmony Browse, Copilot, and MCP Server Integration with LLMs in Workforce AI Security</title>
    <link>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253907#M8</link>
    <description>&lt;P&gt;Hey, please reach out offline to&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/76634"&gt;@tomerbehor&lt;/a&gt;&amp;nbsp;and myself (adigo@checkpoint.com &amp;amp; &lt;A href="mailto:Tomerbeh@checkpoint" target="_blank"&gt;Tomerbeh@checkpoint&lt;/A&gt;) and we'll try to assist with all your questions and would be happy to understand usecases.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 24 Jul 2025 18:28:01 GMT</pubDate>
    <dc:creator>AdiGH</dc:creator>
    <dc:date>2025-07-24T18:28:01Z</dc:date>
    <item>
      <title>Help Needed: GenAI DLP, Harmony Browse, Copilot, and MCP Server Integration with LLMs</title>
      <link>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253750#M5</link>
      <description>&lt;P&gt;&lt;SPAN data-teams="true"&gt;Hello CheckMates,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;We are currently exploring Check Point’s GenAI protection capabilities, especially focused on:&lt;BR /&gt;• Harmony Browse Extension&lt;BR /&gt;• Harmony DLP Cloud&lt;BR /&gt;• Infinity AI Copilot&lt;BR /&gt;• The newly open-sourced MCP Server&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Our goal is to adopt GenAI tools like ChatGPT, Gemini, Claude, and even internal LLM portals securely — while meeting DLP, compliance, and automation needs.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Below are our key questions and use cases we would appreciate clarification or guidance on:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;1. GenAI DLP with Harmony Browse&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;• GenAI protection is triggered only for whitelisted domains (e.g., chat.openai.com).&lt;BR /&gt;• The browser extension captures prompt inputs and file uploads before encryption.&lt;BR /&gt;• Harmony DLP Cloud applies AI-powered contextual analysis, beyond just keyword or regex.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Questions:&lt;/STRONG&gt;&lt;BR /&gt;• Can we also monitor prompts and file uploads on internal AI portals?&lt;BR /&gt;• How deep is the contextual detection? Can it understand internal policy documents (e.g., NDA, HR policy)?&lt;BR /&gt;• Does the OCR feature also work for images embedded inside PDFs or Word files?&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;2. File Upload Interception&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;We understand the extension uses browser-based JavaScript to intercept file uploads before encryption.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Questions:&lt;/STRONG&gt;&lt;BR /&gt;• Will this work on custom web apps with dynamic UIs (e.g., React)?&lt;BR /&gt;• Can we configure the extension to monitor custom form fields?&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;3. Without Browser Extension&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;We know that without the Harmony Browse extension, even with SSL inspection on NGFW, GenAI prompt-level visibility is not possible.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Question:&lt;/STRONG&gt;&lt;BR /&gt;• Are there any other options for AI traffic inspection without an endpoint agent or extension?&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;4. Infinity AI Copilot Capabilities&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;We are looking into Copilot’s use for:&lt;BR /&gt;• Creating or editing security policies via chat&lt;BR /&gt;• Health check queries (CPU, memory, SecureXL)&lt;BR /&gt;• Scheduled or API-based automation&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Questions:&lt;/STRONG&gt;&lt;BR /&gt;• Can Copilot make changes directly to policy or objects via natural language?&lt;BR /&gt;• Can we integrate Copilot with tools like ServiceNow or use it for daily health reports?&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;&lt;STRONG&gt;5. MCP Server + LLM Integration&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;We found that MCP Server is now open source on GitHub. We’re considering using it with GPT, Claude, or local LLMs for:&lt;BR /&gt;• Rulebase search (e.g., “Show rules changed last 7 days”)&lt;BR /&gt;• Policy simulation (e.g., “What happens if we allow 10.0.0.0/24 outbound?”)&lt;BR /&gt;• Compliance mapping (e.g., PCI, SOC2 tags)&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Questions:&lt;/STRONG&gt;&lt;BR /&gt;• Do we need a separate LLM server along with MCP?&lt;BR /&gt;• Are there any integration guides, sample scripts, or LLM prompt templates?&lt;BR /&gt;• Can MCP support tasks like rule cleanup or optimization suggestions?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;&lt;STRONG&gt;Additional Use Cases We’re Exploring:&lt;/STRONG&gt;&lt;BR /&gt;• Blocking sensitive file uploads to ChatGPT (e.g., scanned payslips, ID cards)&lt;BR /&gt;• Detecting PII copy-paste into AI tools&lt;BR /&gt;• Using Copilot + MCP for rulebase audits and cleanup&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Advance Thank you for your help in making AI usage secure and compliant. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Looking forward to your guidance!&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/25509"&gt;@Chinmaya_Naik&lt;/a&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jul 2025 10:01:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253750#M5</guid>
      <dc:creator>Chinmaya_Naik</dc:creator>
      <dc:date>2025-07-23T10:01:39Z</dc:date>
    </item>
    <item>
      <title>Re: Help Needed: GenAI DLP, Harmony Browse, Copilot, and MCP Server Integration with LLMs</title>
      <link>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253801#M6</link>
      <description>&lt;P&gt;You've asked a whole lot of questions in a single post that should probably be broken into several smaller posts, some of them on different forums.&lt;/P&gt;
&lt;P&gt;The first two questions, I defer to product experts or product management .&lt;BR /&gt;On the third, without a browser extension or something specific on the gateway for HTTPS Inspection, I'm not sure how you can monitor what people are feeding AIs.&lt;BR /&gt;App Control does allow you to block access to these tools (known ones, anyway).&lt;BR /&gt;AI Copilot does not currently make changes to your configuration nor is there a public API where you can integrate it elsewhere.&lt;/P&gt;
&lt;P&gt;For your last question, we actually released an &lt;A href="https://community.checkpoint.com/t5/Infinity-AI/AI-Agents-for-Check-Point-Quantum-Security-Management-TechTalk/m-p/251563#M6" target="_self"&gt;MCP Server&lt;/A&gt; of our own.&lt;BR /&gt;We also did a &lt;A href="https://community.checkpoint.com/t5/Infinity-AI/AI-Agents-for-Check-Point-Quantum-Security-Management-TechTalk/m-p/251563#M6" target="_self"&gt;TechTalk on this&lt;/A&gt; along with an AI Agent that integrates with ServiceNow.&lt;BR /&gt;The &lt;A href="https://github.com/CheckPointSW/mcp-servers" target="_self"&gt;Github repo&lt;/A&gt;&amp;nbsp;includes MCP Servers for multiple Check Point products/features and includes the use cases that are currently supported.&lt;BR /&gt;I'm not clear on the specifics of how this is implemented, but it definitely requires connecting to an LLM of some sort.&lt;BR /&gt;The server itself runs in the client that you use to interface with the LLM (Claude Desktop, Github Copilot, etc).&lt;BR /&gt;Specific instructions are provided in the Github repo.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jul 2025 14:56:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253801#M6</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-07-23T14:56:45Z</dc:date>
    </item>
    <item>
      <title>Re: Help Needed: GenAI DLP, Harmony Browse, Copilot, and MCP Server Integration with LLMs</title>
      <link>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253857#M7</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Thank you so much for your detailed response — it really helped clarify several points.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;1. HTTPS Inspection and Browser Extension:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;You mentioned that without a browser extension or something specific on the gateway, it’s not possible to inspect what users are submitting to AI tools.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;So&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;• Is there any plan to support more advanced HTTPS inspection features for AI-related traffic, such as:&lt;BR /&gt;• SNI-based dynamic detection (e.g., chat.openai.com)?&lt;BR /&gt;• Inline AI-aware SSL decryption policies?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;2. Infinity AI Copilot Capabilities&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;You mentioned Copilot does not currently support policy changes or integration via API.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Questions&lt;/STRONG&gt;:&lt;BR /&gt;• Can Copilot at least suggest changes (like policy rules or NAT objects) in a way that admins can quickly review and apply?&lt;BR /&gt;• Is there a future roadmap where Copilot might allow:&lt;BR /&gt;• One-click deployment of suggestions&lt;BR /&gt;• Scheduled health reports (e.g., daily CPU/memory/SecureXL checks)?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;3.MCP Server and LLM Integration&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Thank you for sharing details about the MCP Server and its GitHub repo.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt; Is there a deployment guide or architecture diagram for running MCP Server with Claude Desktop or other LLMs?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN data-teams="true"&gt;Here are some use cases we’d like to build with &lt;STRONG&gt;MCP + LLM:&lt;/STRONG&gt;&lt;BR /&gt;• “Show all blocked GenAI file uploads in the last 7 days”&lt;BR /&gt;• “List unused firewall rules older than 6 months”&lt;BR /&gt;• “Which rules violate PCI-DSS compliance?”&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Regarads&lt;/P&gt;
&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/25509"&gt;@Chinmaya_Naik&lt;/a&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 24 Jul 2025 09:11:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253857#M7</guid>
      <dc:creator>Chinmaya_Naik</dc:creator>
      <dc:date>2025-07-24T09:11:30Z</dc:date>
    </item>
    <item>
      <title>Re: Help Needed: GenAI DLP, Harmony Browse, Copilot, and MCP Server Integration with LLMs</title>
      <link>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253907#M8</link>
      <description>&lt;P&gt;Hey, please reach out offline to&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/76634"&gt;@tomerbehor&lt;/a&gt;&amp;nbsp;and myself (adigo@checkpoint.com &amp;amp; &lt;A href="mailto:Tomerbeh@checkpoint" target="_blank"&gt;Tomerbeh@checkpoint&lt;/A&gt;) and we'll try to assist with all your questions and would be happy to understand usecases.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 24 Jul 2025 18:28:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253907#M8</guid>
      <dc:creator>AdiGH</dc:creator>
      <dc:date>2025-07-24T18:28:01Z</dc:date>
    </item>
    <item>
      <title>Re: Help Needed: GenAI DLP, Harmony Browse, Copilot, and MCP Server Integration with LLMs</title>
      <link>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253909#M9</link>
      <description>&lt;P&gt;Not sure what you mean by dynamic SNI inspection.&lt;BR /&gt;AI Copilot can make suggestions, yes.&lt;BR /&gt;Write mode for AI Copilot is something that is in development, but doesn't have a concrete date yet.&lt;/P&gt;
&lt;P&gt;The MCP Server and Client run on the same system (as part of Claude Desktop, etc) and communicate to the LLM of course and the Check Point SMS/MDS, which would be a "Remote Service" in the context of the diagram here:&amp;nbsp;&lt;A href="https://modelcontextprotocol.io/introduction" target="_blank"&gt;https://modelcontextprotocol.io/introduction&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;The various READMEs in the Github explain what data flows where as well as the use cases that are currently targeted.&lt;BR /&gt;Tagging&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/186"&gt;@Amiad_Stern&lt;/a&gt;&amp;nbsp;for your feedback on the MCP Server.&lt;/P&gt;</description>
      <pubDate>Thu, 24 Jul 2025 18:58:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Workforce-AI-Security/Help-Needed-GenAI-DLP-Harmony-Browse-Copilot-and-MCP-Server/m-p/253909#M9</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-07-24T18:58:58Z</dc:date>
    </item>
  </channel>
</rss>

