This is the Trace Id: d4625fc94bd3f8ed0f195a8c45f1d02f
Skip to main content
Azure
Hero BG

Foundry Control Plane

AI systems are evolving into agents capable of reasoning, tool calls, and data-driven action. Foundry Control Plane gives AI builders and developers observability, guardrails, policy controls, and security to manage AI fleet at enterprise scale.
OVERVIEW

Observe, control, secure, and govern AI agents across your organization

  • Foundry Control Plane is built for agentic systems. Trace agent runs end to end, including inputs, reasoning steps, tool calls, outputs, latency, and cost. Run preproduction evaluations and continuous evaluations on production traffic to measure task adherence, tool call accuracy, safety, and quality. Set thresholds, trigger alerts, and move from ad hoc testing to continuous oversight as your agent fleet scales.
  • Enforce runtime controls at every stage of agent execution. Configure intervention points across user input, tool calls, tool responses, and outputs to detect and block PII, indirect prompt injection, task misalignment, prohibited actions, and content risks. Apply and update controls centrally so every agent reflects your organization’s standards.
  • Treat agents as first-class identities in your organization. Automatically assign Entra Agent ID so each deployed agent has a verified identity and governed access. Surface jailbreak attempts and threat signals in Microsoft Defender for investigation and response. Extend Microsoft Purview data security and compliance policies to AI interactions, so agents operate with the same protections as users and devices.
  • Run your AI operations from a single control surface. See active alerts across security, policy, cost, and performance in one prioritized view. Track agent runs, success rates, and spend in real time. Monitor compliance status, behaviors prevented, and usage trends week over week. View and manage agents, models, and tools across projects so you know what needs attention and where to act next.
FEATURES

Built to run agents in production

Operate AI agents with continuous evaluation, end-to-end tracing, runtime controls, and integrated security. Use a single control plane to monitor, enforce, and troubleshoot at scale.

Continuous evaluation on production traffic

Run continuous evaluations on production traffic to measure quality, safety, and task completion. Set thresholds and surface regressions automatically.

Agent-specific evaluators for real-world risk

Measure task adherence, tool call accuracy, intent resolution, groundedness, and sensitive data exposure. Detect the failure modes traditional language model evaluations miss in agentic systems.

End-to-end tracing with OpenTelemetry

Trace every agent run from inference through tool calls using OpenTelemetry standards. Integrate with Azure Monitor and Application Insights to diagnose drift, failures, and performance bottlenecks.

Tool-level runtime guardrails

Apply guardrails, not only for prompts and outputs, but also for tool calls and tool responses. Define risks, intervention points, and response actions where agents actually take action.

Protection against direct and indirect prompt attacks

Mitigate direct and indirect prompt injection attacks before agents act. Use advanced detection and spotlighting to uncover cross prompt manipulation and block malicious instructions in real time.

Task adherence to prevent agent drift

Keep agents aligned to intended tasks with runtime task adherence controls. Detect off-task behavior and enforce intent boundaries across inputs, tool calls, and outputs.

AI Red Teaming Agent

Simulate adversarial attacks and automatically scan agents for vulnerabilities before deployment. Identify systemic weaknesses with automated clustering and readiness reports.

Microsoft Entra Agent ID

Assign every agent a durable identity at build time. Apply policy-based access controls, conditional permissions, and lifecycle governance with Microsoft Entra for centralized oversight.

Proactive alerts across your agent fleet

Surface evaluation, policy, and security alerts with context and deep links into traces and remediation workflows. Move from reactive monitoring to proactive agent operations.
Built-in security and compliance Learn more 80K Foundry is used by developers at more than 80,000 enterprises and digital natives, including 80% of Fortune 500 companies. A man working on a laptop. 3B Daily enterprise search queries. Watch the video 11K+ Foundry Models to choose from—see why Microsoft Phi on Foundry Models has over 60 million downloads. Learn more
A woman looking at a computer.
Pricing

Usage-based pricing for agent operations

Foundry Control Plane pricing is based on observability, guardrails, and Microsoft Security service usage.
CUSTOMER STORIES

See how customers are innovating with Foundry Control Plane

FAQ

Frequently asked questions

  • Microsoft Foundry Control Plane is the governance and operations layer for AI applications and agents. Built for developers, it provides observability, runtime controls, security integration, and fleet management across agents built in Foundry as well as other first-party and third-party systems. It helps teams operate AI safely and at enterprise scale.
  • Microsoft Foundry is the platform for building AI apps and agents. Foundry Control Plane is the governance and operations layer that spans the full lifecycle, from build to production. It helps developers apply controls, run evaluations, monitor behavior, integrate with security, and manage fleets as systems scale.
  • Foundry Control Plane and Agent 365 serve different roles within the organization.

    Foundry Control Plane is designed for developers and AI engineers. It provides deep observability, runtime controls, evaluation, and fleet operations across AI applications and agents throughout their lifecycle, from build to production.

    Agent 365 is designed for IT and security administrators. It extends enterprise management infrastructure to agents, providing registry, access control, identity governance, and organization-wide policy enforcement across all agents in the tenant. Both leverage the same foundational Microsoft security capabilities, including Microsoft Entra, Microsoft Defender, and Microsoft Purview.
  • Foundry Control Plane supports agents built in Microsoft Foundry as well as first-party and third-party agents. Agents running outside Foundry can be registered through the AI gateway, which proxies traffic using Azure API Management to enable secure routing, policy enforcement, and telemetry collection.

    External agents can also send OpenTelemetry-compliant traces to Foundry, allowing unified visibility across heterogeneous environments. Together, the AI gateway and standardized telemetry make it possible to observe and govern agents running across clouds and platforms from a single control surface.
A women sitting at a desk and working on a laptop.
Next steps

Choose the Azure account that’s right for you 

Pay as you go or try Azure free for up to 30 days.
A group of people working together on a table with their laptops.
AI development tools

Design and manage AI applications

Create, customize, and scale AI apps and agents efficiently.
A men and women looking at a tab.
Products

Find the right AI products for your needs

Create the next generation of applications using artificial intelligence capabilities for any developer and any scenario.