Business app inventory
Public SaaS destinations become named apps with owners, policy and usage context.
Approved public apps
Some business apps are public SaaS, but still need a predictable corporate egress country. BusinessProxy lets administrators model those apps as approved public-origin resources instead of sending the whole browser through a broad proxy.
Public-origin apps must point to public upstreams. Private IPs, localhost and internal DNS names are blocked by guardrails.
Use case
A workspace can define a public-origin application for a public business URL and select an approved egress location. The result is easier to review than a broad proxy-all exception.
Public SaaS destinations become named apps with owners, policy and usage context.
The app can use a selected available location when the workspace entitlement allows it.
The upstream must be public; the feature is not a back door to private network addresses.
Accounting
Public-origin access events can be counted in workspace usage breakdowns as app traffic, which separates approved work app traffic from ordinary browsing.
Current boundary
Public-origin egress is for approved business apps under workspace policy. It is not anonymity, scraping infrastructure or a way to bypass third-party access rules.
Next step
The documentation page shows what to configure, how to verify the setup and which operational boundaries to review before rollout.