Corral Sovereign AI
Corral AI · Operations & Productivity
Certification per Microsoft Marketplace.
Evidence tier Source Confirmed · 9 captures on record
What the publisher says
As described on Microsoft Marketplace.
Bring the AI in. Make it your own.
Corral is the complete AI platform that deploys directly into your Azure tenant. Click deploy from the marketplace and in less than 30 minutes you have a working instance running entirely inside your subscription; governed, secure, extensible AI and the full infrastructure underneath. Your data, your network, your jurisdiction. No external SaaS. No data egress.
Show the rest of the publisher’s description (26 more lines)
Who this is for
Operations leaders, product teams, developers, and IT at organizations that want to deploy AI internally without sending data to a third-party SaaS vendor. Especially relevant for healthcare, financial services, government, education, and EU-based enterprises with data residency, compliance, or sovereignty requirements.
The complete stack, deployed
Most enterprise AI projects fail not because the models don't work, but because the system around them is incomplete. Corral handles the full stack so your team focuses on the AI specific to your business:
- User surfaces: A production-ready hub for every employee, embeddable widgets for customer-facing AI, Microsoft Teams and numerous 3rd party channel integrations, and an API for custom surfaces.
- Agent builder: Configure agents visually: scope permissions, connect data, test in sandbox, promote to production through versioned, IT-visible publish flows. No code required; fully extensible when you need it.
- Security and governance: The Cumulative Restrictions Framework constrains what agents can do based on what they've read, converting hidden prompt injections into visible, reviewable actions. Per-agent and per-user permission scoping. Complete activity logging.
- Connectors and integrations: Native Microsoft Entra ID authentication, Azure AI Foundry model routing, MCP and OpenAPI extension points, and built-in integrations for Outlook, Gmail, Microsoft 365, and GitHub.
- Admin and observability: Real-time monitoring, central agent catalog, role-based access via Entra ID, sandbox-to-production publish flows, and cost tracking.
- Deployment infrastructure: One-click deploy from Microsoft Marketplace as an Azure Managed Application. Updates pushed by the publisher. Runs entirely inside your tenant.Why on-tenant
Corral runs in your Azure subscription, not ours. Your data lives in your storage accounts, processed by your AI Foundry deployments, secured by your Entra ID. Publisher access is scoped to the managed resource group, exercised through code-driven automation, and every action is visible in your Azure Activity Log. This is the model that passes security review by design and survives shifting regulatory requirements.
What you can do on day one
- Give your team AI assistants with secure access to internal documents and tools.
- Start with working assistants from the first deployment: including document analysis and OCR, email, and scheduled tasks.
- Embed AI on customer-facing applications.
- Show IT a populated admin console, complete activity logging, and a governance model from minute one.What you can do over time
- Build custom agents tailored to your business processes.
- Extend the platform via API, MCP, and OpenAPI to integrate with existing systems.
- Add Microsoft Teams and other surfaces.
- Build entire products on top of the platform; white-labeled, embedded, with full IP control.Microsoft technologies used
Corral is built on and integrates with: Azure Container Apps, Azure Database for PostgreSQL, Azure Storage, Azure Key Vault, Azure AI Foundry, Azure Bot Service, Azure Monitor, Application Insights, Microsoft Entra ID, and Azure Managed Applications.
Prerequisites
An Azure subscription with permissions to deploy a managed application. A Microsoft Entra ID tenant for SSO (configured automatically during deployment). Customer pays for the Corral platform subscription separately from the underlying Azure resource consumption, which is billed directly by Azure.
Three depths of ownership
Same platform, different depths. Operational teams configure agents for their workflows. Developers extend with custom code and integrations. Service providers and product companies build entire commercial products on the foundation. One product. One deployment. Three ways to make it your own.
Learn more at getcorral.ai.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Compliance
- FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27
Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.
Sources
Publisher resources
2 linksLinked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

