Back to controls

AI vector and search stores should not be public

Vector stores and AI search indexes frequently contain embeddings, document chunks, retrieval metadata, or business knowledge used by AI systems. Public access can expose sensitive retrieval data and increase prompt-injection and data-extraction impact.

Category

Controls

High

Applies to

Microsoft Azure

Coverage

1 queries

Asset types

3 covered

Overview

Vector stores and AI search indexes frequently contain embeddings, document chunks, retrieval metadata, or business knowledge used by AI systems. Public access can expose sensitive retrieval data and increase prompt-injection and data-extraction impact.

Remediation guidance

Remediation

Disable public access to AI search and vector-store services where possible. Use private networking, scoped identities, query-key rotation, and request logging.

  1. Move access to private endpoints or approved gateways.
  2. Review index keys and callers.
  3. Remove anonymous or broadly shared query access.

Query logic

These are the stored checks tied to this control.

AI vector and search stores should not be public

Connectors

Microsoft Azure

Covered asset types

AI ServicesSearchVector Store

Expected check: eq []

{
  azureAISearchServices(where: { publicEndpoint: { eq: true } }) { ...AssetFragment }
}
Cyscale Logo
Cyscale is an agentless cloud-native application protection platform (CNAPP) that automates the contextual analysis of cloud misconfigurations, vulnerabilities, access, and data, to provide an accurate and actionable assessment of risk.

Stay connected

Receive new blog posts and product updates from Cyscale

By clicking Subscribe, I agree to Cyscale’s Privacy Policy


© 2026 Cyscale Limited

LinkedIn icon
Twitter icon
Facebook icon
crunch base icon
angel icon