Connection
The current collector requests recent
CONVERSATION log records from:
org-... identifier is supplied instead, Forge uses the organization
scope exposed by the provider.
Evidence
Compliance records preserve the native log ID, event type, timestamp, workspace scope, and provider payload safe for customer review. Workspace-linked users, GPTs, connectors, and files can become inventory context when those references are present in the returned logs. Prompt and response visibility is recorded asmetadata_only unless the
provider record includes content that Forge is permitted to retain. A log-file
record is not presented as proof that full conversation content was collected.
Setup
- Create a ChatGPT Enterprise Compliance Logs API key and copy the workspace ID from the Enterprise workspace.
- Save both values under Settings → Integrations → ChatGPT Enterprise.
- Run Test setup, then start a sync.
- Generate a known low-risk conversation event and verify its native log ID appears after the provider’s delivery delay.
Enforcement
This connector remains a detective source and is not itself inline. Supported ChatGPT browser traffic can be governed separately through agentless Network routing or Device Agent’s transparent proxy. The routing layer decrypts the selected AI traffic, sends it through the LLM Gateway, and records the resulting session and policy decisions. Customer-owned GPT actions, Apps SDK tools, and MCP connections can also use the MCP Gateway when their protocol and upstream are supported.Verification
Revoke the Compliance API key to disconnect the source. Network, Device Agent,
LLM Gateway, and MCP Gateway routing are configured and removed separately.