Shadow AI Audit
Your team already uses AI nobody approved: customer records pasted into a chatbot, a personal API key wired into a production script, generated code merged with no review trail. I find out what is actually in use, what data it touches, and leave you with a policy people will follow instead of a ban they will route around.
Shadow AI is the AI tools and models employees use for work without the company approving them — a chatbot handling customer records, a personal API key inside a production script, a code assistant nobody logged. A shadow AI audit produces an inventory of what is actually in use team by team, a map of what data leaves the company and where it lands, and a short list of sanctioned tools that cover the same jobs. Oleg Sotnikov runs these audits. He works from an AI-first company of his own, so the outcome is safe adoption rather than another ban.
What the Audit Looks For
Six areas I go through. The first two usually change the conversation on their own.
The AI inventory
What is actually in use, team by team: chat assistants, code assistants, meeting recorders, browser extensions, agents somebody wired up on a Friday. Names, owners, and how often each one is opened.
Data-exposure map
For every tool, what goes in and where it lands: which vendor, which region, whether that plan trains on your inputs, how long conversations are retained, who at the vendor can read them.
Personal keys and personal accounts
API keys billed to somebody's card, free-tier accounts holding production data, a personal login behind a workspace tool. The company carries the risk without seeing the traffic, and the access walks out with the person.
AI-generated code without provenance
Generated code merged with no record of what a model wrote and no second pair of eyes on the parts touching auth, payments, or personal data. License questions land in the same place.
Sanctioned alternatives
A legal way to do each thing people already do: an enterprise plan with training switched off, a gateway holding company keys, a self-hosted model for data that cannot leave. Usage stops hiding once the approved path is no slower than the hidden one.
Policy that matches reality
The findings become rules a person can follow: which tools are approved, what data may enter them, who reviews output before a customer sees it. That document is where AI governance starts, and it works far better written after the inventory than before it.
How It Works
Discover
The inventory comes from three angles: network and SaaS logs, expense and card statements, and a short anonymous survey. It runs as a count, not a witch hunt — nobody gets named, and the team hears that up front, otherwise the survey comes back false.
Assess
Every tool gets ranked on two axes: how sensitive the data going into it is, and how far the damage spreads if that vendor is breached. Most of the list turns out harmless. The real risk usually sits in two or three places.
Regularize
A sanctioned stack that covers the real use cases, a written policy that matches it, and a short training path so people know the rules and the reasons behind them. Then a repeat count a quarter later, because new tools keep shipping.
Why Me
- I run an AI-first company myself — AppMaster processes 11B+ tokens a month — so I know what employees actually do with AI, including the parts nobody writes in a ticket
- 25+ years in IT and 1,000+ projects, which keeps the inventory conversation technical instead of accusatory
- I aim for safe adoption: a ban only pushes the same work onto personal laptops and phones, where you can neither see it nor protect the data
What Usually Comes Next
Adjacent parts of the same problem.
Frequently Asked Questions
What is shadow AI?
Shadow AI is any AI tool or model used for work without the company approving it: a chatbot in a browser tab, a code assistant in somebody's editor, a personal API key inside a script that runs in production. It is the AI version of shadow IT, and it spreads faster because these tools need no install, no budget line, and no admin rights.
How common is shadow AI?
Wherever a company has not sanctioned specific AI tools, it is close to universal. The tools are free, they help, and the alternative for an employee is doing the same work slower. If you have no approved list and no measured usage, assume shadow AI is already there and treat the audit as a count rather than a search for evidence that it exists.
Is shadow AI dangerous?
The risk is concrete. Customer records and source code pasted into consumer accounts sit on a vendor's servers under terms nobody read, and some tiers use those inputs for training. Regulated data leaving that way can be a reportable incident under GDPR or HIPAA. Separately, AI-generated code merged without review puts logic no human has checked into authentication, payments, and data access.
Should we ban AI tools?
No. A ban does not stop the work, it moves it to personal laptops and phones: the traffic is invisible to you and the data sits outside your controls. Sanctioning a small set of tools with the right contracts, and making the approved path fast, is the version that actually reduces exposure. Keep an outright prohibition for the narrow cases where the data genuinely cannot leave your systems.
How is this related to an AI policy?
The audit finds reality, the policy codifies it. Written the other way round, the document describes a company you do not have and people ignore it inside a week. This site carries a free AI policy template and an AI policy generator, so you can see the shape of the end result — and bring a draft to the audit — before we ever talk.
Find Out What Your Team Is Already Using
A count of the tools in use, a map of what data leaves, and a policy people will follow. Start with a call. You do not need to prepare anything for it.
30 minutes. If shadow AI is not your problem, I will tell you that on the call.
Related reading
AI adoption, governance, and what actually happens inside engineering teams.


