How to govern Sprawl in Palantir AIP
A step-by-step guide to governing Sprawl in Palantir AIP with Rencore: detect, review by owner and severity, and remediate with an audit trail.
Governing Sprawl in Palantir AIP means finding where it goes wrong, reviewing the findings by owner and severity, and remediating with an audit trail. Rencore covers this concern for Palantir AIP with the pre-built controls below, so it becomes a repeatable check rather than a one-off cleanup. The steps that follow apply the same detect, review, remediate loop to Sprawl.
Steps
-
Inventory Palantir AIP
Connect Palantir AIP and let Rencore build a continuous inventory of its resources, owners, and configuration, so governance starts from what exists rather than a stale export.
-
Detect with policies
Turn on the pre-built policies that cover Sprawl in Palantir AIP to surface oversharing, sprawl, and misconfiguration on the first scan, before writing a single custom rule.
-
Review by owner and severity
Use the Palantir AIP reports to review findings by owner, category, and severity, and to share them with stakeholders who do not have a seat in the platform.
-
Remediate and automate
Apply automations to fix findings at scale, route sensitive changes through approvals, and keep every action reversible and logged for the audit trail.
Palantir AIP controls for Sprawl
Grounded in the Rencore catalog. See the full Palantir AIP catalog on the Palantir AIP connector page.
-
Unused AIP Agent (90 days)
Flags Palantir AIP Agents with no user sessions in the last 90 days as candidates for cleanup to reduce environment sprawl
Severity: Medium -
Trashed Project Pending Cleanup (30 days)
Identifies projects that have been in the trash for more than 30 days and are candidates for permanent deletion
Severity: Medium -
Project with No Recent Activity (90 days)
Identifies active Palantir projects not updated in 90 days as candidates for archival or review
Severity: Low -
Group without active members
Detects Palantir security groups with no user members
Severity: Low -
Space without projects
Detects Palantir spaces that contain no projects
Severity: Low -
Organization without active users
Detects Palantir organizations that have no active user members
Severity: Medium -
Trashed Projects
Palantir Foundry projects that have been directly moved to the trash
-
Spaces without Projects
Palantir Foundry spaces that do not contain any projects