foundation hero bg img

The Foundation of the UiPath Platform

The foundation that lets agents, robots, and people run safely at enterprise scale.

Platform Foundation

The Foundation of the UiPath Platform

The foundation that lets agents, robots, and people run safely at enterprise scale.

Discover the shared infrastructure underneath the UiPath Platform.

Trust, data, integration, and deployment that let agentic automation run safely, at enterprise scale, anywhere your business operates.

AI you can trust, governed and independently proven

The UiPath AI Trust Layer keeps your data inside your boundaries, governs every AI interaction, and is the first enterprise automation platform independently certified to AIUC-1 and ISO/IEC 42001.

Your data stays your data

AI never trains a model on your data and never leaves the boundaries you approve. Zero third-party retention.

Every AI interaction governed and logged

Every prompt, response, and policy decision is captured for audit. Visibility, traceability, and accountability across every AI action.

Security controls that evolve every quarter.

AIUC-1 certified and re-tested every quarter against the latest adversarial tactics. Security controls that keep pace with the threat landscape.

AIUC foundations static

Independently proven safe across governance and behavior

UiPath is the first enterprise automation platform certified to both ISO/IEC 42001 and AIUC-1. Governance and adversarial behavior testing, audited by Schellman and re-tested quarterly.

Read the report
Model Governance

One operational view of how intelligence moves through the enterprise

The Model Hub gives you a centralized view of which models exist, where they run, how traffic is routed, which systems depend on them, and how configurations change over time.

Operational evidence for every AI interaction

Operational evidence for every AI interaction

One place to investigate model usage, review requests, validate policy outcomes, and understand how AI systems behaved over time. Filter by product, model, status, region, source, user, or time range.

AIUC foundations static

Independently proven safe across governance and behavior

UiPath is the first enterprise automation platform certified to both ISO/IEC 42001 and AIUC-1. Governance and adversarial behavior testing, audited by Schellman and re-tested quarterly.

Read the report
Model Governance

One operational view of how intelligence moves through the enterprise

The Model Hub gives you a centralized view of which models exist, where they run, how traffic is routed, which systems depend on them, and how configurations change over time.

Operational evidence for every AI interaction

Operational evidence for every AI interaction

One place to investigate model usage, review requests, validate policy outcomes, and understand how AI systems behaved over time. Filter by product, model, status, region, source, user, or time range.

Adopt intelligence on your terms, with PII masking built in

Adopt intelligence on your terms, with PII masking built in

Connect the LLMs and AI gateways you already trust, including private deployments and sovereign providers like Mistral. In-flight PII masking redacts personal identifiers before prompts reach any external model, and the same governance flows apply across every connection.

Governance - AI Trust - OTEL BYO Observability- screen1

Monitor AI agents on the stack you already run

Stream full OpenTelemetry traces to any OTEL-compatible observability platform like Langsmith, Langfuse, MLflow, Arize, or any collector you already run. No observability lock-in.

Adopt intelligence on your terms, with PII masking built in

Adopt intelligence on your terms, with PII masking built in

Connect the LLMs and AI gateways you already trust, including private deployments and sovereign providers like Mistral. In-flight PII masking redacts personal identifiers before prompts reach any external model, and the same governance flows apply across every connection.

Governance - AI Trust - OTEL BYO Observability- screen1

Monitor AI agents on the stack you already run

Stream full OpenTelemetry traces to any OTEL-compatible observability platform like Langsmith, Langfuse, MLflow, Arize, or any collector you already run. No observability lock-in.

Confident engineer in an orange sweater standing with arms crossed in front of glowing electrical schematic control screens, illustrating energy and utilities operations monitoring that UiPath agentic automation and AI agents strengthen.

UiPath Platform Governance: the trusted control plane for enterprise AI

Govern every agent, model, and action across the Business Orchestration and Automation platform. Built on the identity, audit, and compliance infrastructure the enterprise already trusts.

One policy framework. Every agent. Any platform.

Policy-as-Code enforced consistently across agents from Azure, Bedrock, LangChain, and UiPath.

Security built in. Not bolted on.

Security, compliance, and DevSecOps engineered into every product lifecycle.

Independently certified. Continuously re-tested.

ISO/IEC 42001 and AIUC-1 certified, audited by Schellman. Quarterly re-testing.

Inside UiPath Platform Governance

From policy definition to runtime enforcement to audit, one governed operational framework across the platform.

Conditional Access for the automation era

Conditional Access for the automation era

Centralized policies evaluate every access attempt in real time across agents, APIs, SDKs, robots, and external integrations. Classify resources by sensitivity, then enforce context-aware policies consistently everywhere.

One policy layer for AI behavior across the enterprise

One policy layer for AI behavior across the enterprise

Define protections once for harmful content, prompt injection, and intellectual property exposure. Applied consistently across Autonomous Agents, Conversational Agents, GenAI Activities, Coded Agents, and Autopilot.

Operational accountability at platform scale

Operational accountability at platform scale

Search activity across products, services, tenants, and governance layers from a centralized audit experience. Export audit data directly for regulatory reviews and long-term evidence trails.

Conditional Access for the automation era

Conditional Access for the automation era

Centralized policies evaluate every access attempt in real time across agents, APIs, SDKs, robots, and external integrations. Classify resources by sensitivity, then enforce context-aware policies consistently everywhere.

One policy layer for AI behavior across the enterprise

One policy layer for AI behavior across the enterprise

Define protections once for harmful content, prompt injection, and intellectual property exposure. Applied consistently across Autonomous Agents, Conversational Agents, GenAI Activities, Coded Agents, and Autopilot.

Operational accountability at platform scale

Operational accountability at platform scale

Search activity across products, services, tenants, and governance layers from a centralized audit experience. Export audit data directly for regulatory reviews and long-term evidence trails.

Security and Governance - CERTIFICATIONS

The credentials regulated enterprises require

ISO/IEC 42001, AIUC-1, SOC 2 Type II, and FedRAMP Moderate authorization for U.S. public sector. Regional data residency across eight Automation Cloud regions.

The foundation regulated enterprises build on

The foundation regulated enterprises build on

Run automation at enterprise scale without exposing your network. Relay bridges Automation Cloud to on-premises systems without inbound firewall rules. Azure Private Link keeps cloud traffic inside your Virtual Network. AES-256 encryption and customer-managed keys via Azure Key Vault ensure your data stays yours, in transit and at rest.

Security and Governance - CERTIFICATIONS

The credentials regulated enterprises require

ISO/IEC 42001, AIUC-1, SOC 2 Type II, and FedRAMP Moderate authorization for U.S. public sector. Regional data residency across eight Automation Cloud regions.

The foundation regulated enterprises build on

The foundation regulated enterprises build on

Run automation at enterprise scale without exposing your network. Relay bridges Automation Cloud to on-premises systems without inbound firewall rules. Azure Private Link keeps cloud traffic inside your Virtual Network. AES-256 encryption and customer-managed keys via Azure Key Vault ensure your data stays yours, in transit and at rest.

Agent-ready data, connectivity, and execution for the UiPath Platform

A near-real-time data context layer, a governed connectivity backbone, and a reliable execution engine for API-first automations. All built for the UiPath Platform.

Data Fabric

The agent-ready context layer

Ground agents and workflows in structured context, delivered live or in near real time. Data Fabric provides zero-copy access to enterprise systems, without copying or duplicating the underlying data.

Integration Service

The agent-ready connectivity layer

Connect agents and automations to enterprise systems — build integrations with your coding agent of choice, or configure them visually. Integration Service comes with pre-built connectors and Connector Builder, plus centralized authentication and event-driven triggers that start workflows automatically.

API Workflows

API-first automations, built into the UiPath Platform

Build API-first automations that run on demand, on schedule, or in response to events. API Workflows abstract multi-step API logic into reusable services that any agent, robot, or app can call.

Automation Cloud

Get it all SaaS

With Automation Cloud™, you get the full UiPath Platform™, the fastest updates—and the scalability and flexibility to automate any process, anywhere you do business.

Start here
Get the full platform

Need to self-host?

Run the platform yourself, with the world-class automation capabilities you expect and the performance, compliance, and security you require.

Start here

Foundation: common questions

How trust, governance, data, integration, and deployment fit together on the UiPath Platform.

  • ISO/IEC 42001 validates governance: policies, controls, and organizational accountability. AIUC-1 validates behavior under adversarial pressure: 2,000+ scenarios across prompt injection, data exfiltration, hallucination triggers, and tool misuse. UiPath holds both, audited by Schellman.

  • No. The AI Trust Layer enforces zero third-party retention. Your data stays inside the boundaries you approve and is never used to train third-party models.

  • Yes. Any model that supports the OpenAI v1-compatible contract can be integrated directly into UiPath AI-powered experiences across Automation Cloud and Automation Suite, including private deployments and sovereign providers like Mistral.

  • Data Fabric is the agent-ready context layer for structured business entities and zero-copy data access. Integration Service is the agent-ready connectivity layer for activities, triggers, and connections that compose into workflows. They are peer offerings.

  • Automation Suite is recommended when policy or regulatory requirements rule out cloud SaaS. Common examples include air-gapped environments, strict data sovereignty, and customer-controlled AI model hosting. Automation Cloud is the default path for most enterprises.

  • Yes. Automation Cloud Public Sector holds FedRAMP Moderate authorization and uses FIPS 140-2 validated cryptographic modules. Access is restricted to U.S. citizens and permanent residents.

Build on the enterprise automation platform foundation

Ask AI about...Ask AI...