The AI_SECURITY_DETECTION event is generated when Box AI performs a security scan on input or retrieved content and detects a potential security risk, such as a prompt injection attempt. These events allow you to monitor and audit AI security detections across agent sessions and AI-powered workflows.
AI security detection events are generated only for Box Agents. Legacy agents are not scanned. Box Shield Pro agents, including the and the , are also not scanned.
All AI security detection events are produced within the stream. These events follow the standard object schema, with event_type set toAI_SECURITY_DETECTION and detection-specific details nested inside additional_details.
additional_details fields
Detector types
The detector_type field indicates what triggered the detection. Additional detector types may be added in the future.
Actions
The action field indicates what Box AI did in response to the detection. All detections, including those with a LOW confidence level, are recorded in the enterprise event stream.