Shadow AI
Shadow AI is the use of AI tools, models, or agents inside an organization without the knowledge or approval of IT and security teams. Like shadow IT before it, it grows wherever official channels lag demand, and it moves data and decisions outside every control the organization thinks it has.
The modern twist is that shadow AI increasingly acts. An unsanctioned chatbot leaks what an employee pastes into it; an unsanctioned agent executes with whatever credentials the employee's machine holds. Inventory and network controls see some of it; DLP sees less than assumed. Durable answers pair discovery with governance that makes the sanctioned path the easiest one.
Related
Shrike governs AI agent actions in real time: every command, query, and tool call evaluated against policy before it executes. Start with what is action governance or the quickstart.