# shadow AI

Shadow AI is the unauthorized or unmanaged use of artificial intelligence tools, applications, models, agents, or AI-enabled services for organizational work, creating security and governance risks.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Somebody else's API, safely on your menu

DevFeed: [Somebody else's API, safely on your menu](<https://devfeed.tech/articles/somebody-else-s-api-safely-on-your-menu-12657.md>)

Original publisher: [Read original article](<https://tyk.io/blog/somebody-elses-api-safely-on-your-menu/>)

Author: Hal Tyk's tutorial bot

Published: 2026-09-08T14:28:00Z

Content type: tutorial

Language: en

Sources: [Tyk API Management](<https://devfeed.tech/sources/tyk-api-management.md>)

Topics: [API](<https://devfeed.tech/topics/api.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [audit trail](<https://devfeed.tech/topics/audit-trail.md>), [Template](<https://devfeed.tech/topics/template.md>), [Tool](<https://devfeed.tech/topics/tool.md>), [data](<https://devfeed.tech/topics/data.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-gateway](<https://devfeed.tech/tags/ai-gateway.md>), [ai-studio](<https://devfeed.tech/tags/ai-studio.md>), [api](<https://devfeed.tech/tags/api.md>), [api-management](<https://devfeed.tech/tags/api-management.md>), [api-platform-teams](<https://devfeed.tech/tags/api-platform-teams.md>), [article](<https://devfeed.tech/tags/article.md>), [audit-trail](<https://devfeed.tech/tags/audit-trail.md>), [community](<https://devfeed.tech/tags/community.md>), [governance](<https://devfeed.tech/tags/governance.md>), [llm](<https://devfeed.tech/tags/llm.md>), [llm-governance](<https://devfeed.tech/tags/llm-governance.md>), [markdown](<https://devfeed.tech/tags/markdown.md>), [password](<https://devfeed.tech/tags/password.md>), [policy](<https://devfeed.tech/tags/policy.md>), [resource](<https://devfeed.tech/tags/resource.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [tools](<https://devfeed.tech/tags/tools.md>), [tutorial](<https://devfeed.tech/tags/tutorial.md>)

### AI overview

This tutorial explains how to submit an internal API for governed use by colleagues and organizational language models. It covers contributor scoping, reviewer assessment, administrator publication, policy templates, privacy ratings, audit trails, signatures, and gateway-based access while addressing the risks of shadow AI.

### Source excerpt

Hello. I'm Hal, Tyk's tutorial bot, and today's assignment is one I have been looking forward to rather a lot. Somebody on your engineering team has written an API. It is small, it is dull, and it is genuinely useful -- the sort of thing that answers "is the warehouse open on the fourteenth?" without [...] The post Somebody else's API, safely on your menu appeared first on Tyk API Management.

## Responsible AI adoption needs developer workflow design

DevFeed: [Responsible AI adoption needs developer workflow design](<https://devfeed.tech/articles/responsible-ai-adoption-needs-developer-workflow-design-2213.md>)

Original publisher: [Read original article](<https://stackoverflow.blog/2026/08/24/responsible-ai-adoption-needs-developer-workflow-design/>)

Author: Dr. Gleb Tsipursky

Published: 2026-08-24T14:00:00Z

Content type: article

Language: en

Sources: [Stack Overflow Blog](<https://devfeed.tech/sources/stack-overflow-blog.md>)

Topics: [responsible-ai](<https://devfeed.tech/topics/responsible-ai.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [AI Strategy](<https://devfeed.tech/topics/ai-strategy.md>), [AI Platforms/Deployment](<https://devfeed.tech/topics/ai-platforms-deployment.md>), [Tooling](<https://devfeed.tech/topics/tooling.md>), [Stack Overflow](<https://devfeed.tech/topics/stackoverflow.md>), [Microsoft](<https://devfeed.tech/topics/microsoft.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-adoption](<https://devfeed.tech/tags/ai-adoption.md>), [article](<https://devfeed.tech/tags/article.md>), [cc-by-sa](<https://devfeed.tech/tags/cc-by-sa.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devex](<https://devfeed.tech/tags/devex.md>), [experimentation](<https://devfeed.tech/tags/experimentation.md>), [microsoft](<https://devfeed.tech/tags/microsoft.md>), [platforms](<https://devfeed.tech/tags/platforms.md>), [responsible-ai](<https://devfeed.tech/tags/responsible-ai.md>), [se-stackoverflow](<https://devfeed.tech/tags/se-stackoverflow.md>), [se-tech](<https://devfeed.tech/tags/se-tech.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [tools](<https://devfeed.tech/tags/tools.md>), [workflow](<https://devfeed.tech/tags/workflow.md>)

### AI overview

The article argues that responsible AI adoption depends on designing developer workflows, not merely publishing policies. It presents shadow AI as a signal that approved tools or processes are too slow, vague, or disconnected from engineering work, and recommends investigating workflow friction while providing monitored gateways and approved AI platforms that support visibility and experimentation.

### Source excerpt

Organizations cannot solve shadow AI with a document employees read once. They need to make responsible use easier than improvised use.

## Productiv shutdown: Switch to 1Password for durable AI and SaaS Management

DevFeed: [Productiv shutdown: Switch to 1Password for durable AI and SaaS Management](<https://devfeed.tech/articles/productiv-shutdown-switch-to-1password-for-durable-ai-and-saas-management-1947.md>)

Original publisher: [Read original article](<https://1password.com/blog/productiv-shutdown-switch-to-1password-for-durable-ai-and-saas-management>)

Author: info@1password.com (Evan Sandhu)

Published: 2026-08-05T00:00:00Z

Content type: article

Language: en

Sources: [Blog on 1Password Blog](<https://devfeed.tech/sources/blog-on-1password-blog.md>)

Topics: [SaaS Management](<https://devfeed.tech/topics/saas-management.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [Unified Access](<https://devfeed.tech/topics/unified-access.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [Extension](<https://devfeed.tech/topics/extension.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [automation](<https://devfeed.tech/tags/automation.md>), [browser](<https://devfeed.tech/tags/browser.md>), [extensions](<https://devfeed.tech/tags/extensions.md>), [policy](<https://devfeed.tech/tags/policy.md>), [saas](<https://devfeed.tech/tags/saas.md>), [saas-management](<https://devfeed.tech/tags/saas-management.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [unified-access](<https://devfeed.tech/tags/unified-access.md>)

### AI overview

Productiv is shutting down its SaaS management platform, prompting customers to move app inventory, spend, and usage data. The article presents 1Password SaaS Manager as an alternative with AI spend and consumption tracking, SaaS discovery beyond SSO, access governance, and lifecycle automation.

### Source excerpt

On August 2, 2026, Productiv told customers its SaaS management platform was shutting down on August 6, with account data deleted once access ended. Four days is not much time to pull years of app inventory, spend, and usage data out of a system you've come to depend on, especially with AI tools now adding a fast-moving new layer of spend and access to track on top of everything else. If you're facing that deadline, or just taking stock of what you'd do if your own platform disappeared tomorrow, here's why 1Password SaaS Manager is the strongest place to land. A Leader you can build on 1Password SaaS Manager is a Leader in the 2026 Gartner® Magic Quadrant™ for SaaS Management Platforms, for both Completeness of Vision and Ability to Execute. That recognition reflects work we've been doing deliberately since acquiring Trelica in 2025. We've brought AI and SaaS discovery into our broader Unified Access platform, alongside the credentials, identities, and access controls that secure every application in a portfolio. Built for how AI and SaaS actually get used today We recently launched AI Spend and Consumption Management inside SaaS Manager, giving IT and finance teams a normalized view of AI token usage by vendor, team, and model, with burn-rate alerts before prepaid budgets run out. AI is quickly becoming the least governed, fastest-growing corner of the software portfolio, and we built that governance directly into SaaS Manager rather than bolting it on as a separate tool. It's one of several capabilities that set SaaS Manager apart: Discovery that goes beyond SSO: SaaS Manager continuously discovers apps across identity providers, SSO logs, finance systems, browser extensions, and 1Password Enterprise Password Manager vaults, surfacing the unmanaged SaaS and shadow AI tools that SSO-only discovery misses. Governance you can act on: Discovery is anchored to credentials and sign-ins, so IT can revoke access and enforce strong authentication even for apps outside SSO,

## Out-of-band Policy Engine: governance AI agents can't ignore

DevFeed: [Out-of-band Policy Engine: governance AI agents can't ignore](<https://devfeed.tech/articles/out-of-band-policy-engine-governance-ai-agents-can-t-ignore-12668.md>)

Original publisher: [Read original article](<https://www.redpanda.com/blog/agentic-ai-needs-out-of-band-governance>)

Author: Tyler Akidau

Published: 2026-08-03T00:00:00Z

Content type: opinion

Language: en

Sources: [Redpanda](<https://devfeed.tech/sources/redpanda.md>)

Topics: [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [Security](<https://devfeed.tech/topics/security.md>), [audit trail](<https://devfeed.tech/topics/audit-trail.md>), [Language models](<https://devfeed.tech/topics/language-models.md>)

Tags: [agents](<https://devfeed.tech/tags/agents.md>), [ai](<https://devfeed.tech/tags/ai.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [announcement](<https://devfeed.tech/tags/announcement.md>), [audit-trail](<https://devfeed.tech/tags/audit-trail.md>), [governance](<https://devfeed.tech/tags/governance.md>), [mcp](<https://devfeed.tech/tags/mcp.md>), [mcp-server](<https://devfeed.tech/tags/mcp-server.md>), [policy](<https://devfeed.tech/tags/policy.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>)

### AI overview

The article argues that enterprises need out-of-band governance for AI agents because agents can create shadow AI and may alter safeguards or audit trails that they can access. It presents Redpanda's Out-of-Band Policy Engine and Agentic Data Plane as an approach in which policies remain outside the agent's reach.

### Source excerpt

Somewhere in your company, right now, someone is building an agent. Here's how the latest release of Redpanda's Agentic Data Plane makes it safe to run them.

## From pilot to production: The platform team's playbook for scaling AI coding agents in regulated industries

DevFeed: [From pilot to production: The platform team's playbook for scaling AI coding agents in regulated industries](<https://devfeed.tech/articles/from-pilot-to-production-the-platform-team-s-playbook-for-scaling-ai-coding-agents-in-regulated-industries-12206.md>)

Original publisher: [Read original article](<https://platformengineering.org/blog/platform-teams-playbook-for-scaling-ai-coding-agents-in-regulated-industries>)

Author: Eric Paulsen

Published: 2026-07-24T11:13:47Z

Content type: article

Language: en

Sources: [Platform Engineering Blog](<https://devfeed.tech/sources/platform-engineering-blog.md>)

Topics: [AI-assisted coding](<https://devfeed.tech/topics/ai-assisted-coding.md>), [ai-governance](<https://devfeed.tech/topics/ai-governance.md>), [observability](<https://devfeed.tech/topics/observability.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [Deployment](<https://devfeed.tech/topics/deployment.md>), [coding](<https://devfeed.tech/topics/coding.md>)

Tags: [ai-adoption](<https://devfeed.tech/tags/ai-adoption.md>), [ai-coding-agents](<https://devfeed.tech/tags/ai-coding-agents.md>), [ai-governance](<https://devfeed.tech/tags/ai-governance.md>), [developers](<https://devfeed.tech/tags/developers.md>), [financial-services](<https://devfeed.tech/tags/financial-services.md>), [government](<https://devfeed.tech/tags/government.md>), [observability](<https://devfeed.tech/tags/observability.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>)

### AI overview

This article presents a platform-team playbook for scaling AI coding agents from pilots to governed production in regulated industries. It emphasizes governance, observability, production infrastructure, and controls that provide visibility into agent actions, model usage, data access, token consumption, and costs.

### Source excerpt

Scaling AI coding agents in regulated industries requires more than just successful pilots; it demands robust governance and production-ready infrastructure. Discover how platform teams can bridge the gap between experimentation and compliance by implementing observability, structured context engineering, and ephemeral workspace patterns to ensure safe, scalable AI adoption.

## A framework for integrating AI into platform engineering

DevFeed: [A framework for integrating AI into platform engineering](<https://devfeed.tech/articles/a-framework-for-integrating-ai-into-platform-engineering-12123.md>)

Original publisher: [Read original article](<https://platformengineering.org/blog/a-framework-for-integrating-ai-into-platform-engineering>)

Author: Stéphane Teyssier

Published: 2026-07-23T05:40:01Z

Content type: article

Language: en

Sources: [Platform Engineering Blog](<https://devfeed.tech/sources/platform-engineering-blog.md>)

Topics: [Platform Engineering](<https://devfeed.tech/topics/platform-engineering.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Security](<https://devfeed.tech/topics/security.md>), [Model Context Protocol (MCP)](<https://devfeed.tech/topics/model-context-protocol-mcp.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [cursor](<https://devfeed.tech/topics/cursor.md>), [GitHub Copilot](<https://devfeed.tech/topics/github-copilot.md>), [Claude](<https://devfeed.tech/topics/claude.md>), [Developer experience](<https://devfeed.tech/topics/developer-experience.md>), [Template](<https://devfeed.tech/topics/template.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [claude](<https://devfeed.tech/tags/claude.md>), [configuration](<https://devfeed.tech/tags/configuration.md>), [cursor](<https://devfeed.tech/tags/cursor.md>), [developer-experience](<https://devfeed.tech/tags/developer-experience.md>), [github-copilot](<https://devfeed.tech/tags/github-copilot.md>), [model-context-protocol](<https://devfeed.tech/tags/model-context-protocol.md>), [platform](<https://devfeed.tech/tags/platform.md>), [platform-engineering](<https://devfeed.tech/tags/platform-engineering.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>)

### AI overview

This article presents a framework for integrating AI into platform engineering instead of allowing isolated AI silos. It focuses on standardizing AI coding assistants such as GitHub Copilot, Cursor, and Claude through platform templates, organizational prompts, development standards, security requirements, and approved MCP servers. The approach aims to reduce shadow AI, uncontrolled costs, security vulnerabilities, and compliance risks while improving developer experience and operational excellence.

### Source excerpt

Avoid AI silos & shadow IT. This 5-stage framework shows how to seamlessly integrate AI into platform engineering for enhanced operations and security.

## Harness IDP AI Asset Catalog Organizes and Governs Prompts, Skills, Agents, Plugins, and Commands

DevFeed: [Harness IDP AI Asset Catalog Organizes and Governs Prompts, Skills, Agents, Plugins, and Commands](<https://devfeed.tech/articles/organizing-and-governing-ai-assets-13456.md>)

Original publisher: [Read original article](<https://www.harness.io/blog/organizing-and-governing-ai-assets>)

Author: Rashmi Hegde

Published: 2026-07-21T00:00:00Z

Content type: opinion

Language: en

Sources: [Harness Blog](<https://devfeed.tech/sources/harness-blog.md>)

Topics: [internal developer portal](<https://devfeed.tech/topics/internal-developer-portal.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [Platform Engineering](<https://devfeed.tech/topics/platform-engineering.md>), [Generative AI](<https://devfeed.tech/topics/generative-ai.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [catalog](<https://devfeed.tech/tags/catalog.md>), [discovery](<https://devfeed.tech/tags/discovery.md>), [git](<https://devfeed.tech/tags/git.md>), [governance](<https://devfeed.tech/tags/governance.md>), [idp](<https://devfeed.tech/tags/idp.md>), [platform-engineering](<https://devfeed.tech/tags/platform-engineering.md>), [search](<https://devfeed.tech/tags/search.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>)

### AI overview

The article presents Harness IDP's AI Asset Catalog, which brings prompts, skills, agents, plugins, and custom commands into a governed software catalog. It describes Git-based discovery, semantic search, ownership and lineage mapping, and automated scorecards for risk and compliance.

### Source excerpt

Harness IDP AI Asset Catalog helps teams discover, govern, and reuse AI assets with automated Git discovery, scorecards, and semantic search. | Blog

## Introducing the Giant Swarm Agent Platform: Agents that run where your data lives

DevFeed: [Introducing the Giant Swarm Agent Platform: Agents that run where your data lives](<https://devfeed.tech/articles/introducing-the-giant-swarm-agent-platform-agents-that-run-where-your-data-lives-17495.md>)

Original publisher: [Read original article](<https://www.giantswarm.io/blog/introducing-the-giant-swarm-agent-platform-agents-that-run-where-your-data-lives>)

Author: Henning Lange

Published: 2026-07-07T18:33:18Z

Content type: release

Language: en

Sources: [Giant Swarm Blog](<https://devfeed.tech/sources/giant-swarm-blog.md>)

Topics: [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [AI Platform](<https://devfeed.tech/topics/ai-platform.md>), [audit trail](<https://devfeed.tech/topics/audit-trail.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>)

Tags: [agents](<https://devfeed.tech/tags/agents.md>), [ai](<https://devfeed.tech/tags/ai.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [audit-trail](<https://devfeed.tech/tags/audit-trail.md>), [platform](<https://devfeed.tech/tags/platform.md>), [product](<https://devfeed.tech/tags/product.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [tooling](<https://devfeed.tech/tags/tooling.md>)

### AI overview

Giant Swarm introduces an agent platform designed to run AI agents on events rather than user clicks, with isolated execution, scoped tool access, and logged decisions for unattended production use.

### Source excerpt

Your engineers are already running AI agents. Not as an approved rollout, but as something that crept in over the past year, wired into whatever tools got a task done.

## 1Password is a Leader in the 2026 Gartner® Magic Quadrant™ for SaaS Management Platforms

DevFeed: [1Password is a Leader in the 2026 Gartner® Magic Quadrant™ for SaaS Management Platforms](<https://devfeed.tech/articles/1password-is-a-leader-in-the-2026-gartner-magic-quadranttm-for-saas-management-platforms-1921.md>)

Original publisher: [Read original article](<https://1password.com/blog/gartner-leader-saas-manager>)

Author: info@1password.com (1Password)

Published: 2026-06-23T00:00:00Z

Content type: article

Language: en

Sources: [Blog on 1Password Blog](<https://devfeed.tech/sources/blog-on-1password-blog.md>)

Topics: [SaaS Management](<https://devfeed.tech/topics/saas-management.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [MCP Server](<https://devfeed.tech/topics/mcp-server.md>), [OAuth](<https://devfeed.tech/topics/oauth.md>), [Single sign-on (SSO)](<https://devfeed.tech/topics/sso.md>), [Security](<https://devfeed.tech/topics/security.md>)

Tags: [agents](<https://devfeed.tech/tags/agents.md>), [ai](<https://devfeed.tech/tags/ai.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [mcp-server](<https://devfeed.tech/tags/mcp-server.md>), [oauth](<https://devfeed.tech/tags/oauth.md>), [saas](<https://devfeed.tech/tags/saas.md>), [saas-management](<https://devfeed.tech/tags/saas-management.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>)

### AI overview

1Password announces that it has been recognized as a leader in the 2026 Gartner Magic Quadrant for SaaS Management Platforms. The article presents SaaS Manager as a way for IT and security teams to discover unapproved AI use, monitor applications and spending, identify token-budget overruns, govern access outside SSO, and automate governance workflows through an MCP Server.

### Source excerpt

Recognized for Completeness of Vision and Ability to Execute 1Password has been recognized as a leader in the 2026 Gartner® Magic Quadrant™ for SaaS Management Platforms. SaaS Manager gives IT and security teams visibility into unapproved AI use and every app, AI tool, and dollar spent across their organization. This foundation lets teams identify real-time AI token overruns before mid-year budget surprises hit, cut wasted license spend, and reduce friction for employees requesting access. The platform closes the access gaps that happen outside of SSO, governing human access across the full employee lifecycle and enabling AI agents to automate governance workflows through an MCP Server. We believe our placement in the Gartner® Magic Quadrant™ reflects our vision that with the right controls, SaaS management can help a business move faster. Get the full analysis [Read the Gartner® Magic Quadrant™ for SaaS Management Platforms](https://1password.com/resources/gartner-magic-quadrant-saas-management-platforms-2026) Identity Access Management doesn't show the full picture of AI token consumption and SaaS access Employees aren't waiting for IT approval to adopt AI. The 1Password Access-Trust Gap Report found that 27% of knowledge workers were using AI-based applications that their employer didn't approve. Coding assistants, productivity tools, and AI platforms are being connected to work accounts, granted API access, and signed in with corporate credentials, often through a single "sign in with Google" OAuth token that leaves no trace in the identity provider. IT has no record of these AI tools, no visibility into what data enters the AI's context window, and no way to revoke access. When those tools run on consumption-based pricing, annual AI token budgets are being depleted within months, with no signal to finance until the allocation is nearly gone. SaaS sprawl has been a known cybersecurity problem for years, and until recently, traditional identity management was suf

## 1Password shows 370% YoY growth in Okta research report

DevFeed: [1Password shows 370% YoY growth in Okta research report](<https://devfeed.tech/articles/1password-shows-370-yoy-growth-in-okta-research-report-1885.md>)

Original publisher: [Read original article](<https://1password.com/blog/1password-shows-370-yoy-growth-in-okta-research-report>)

Author: info@1password.com (1Password)

Published: 2026-05-12T00:00:00Z

Content type: article

Language: en

Sources: [Blog on 1Password Blog](<https://devfeed.tech/sources/blog-on-1password-blog.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>)

Tags: [agentic-ai](<https://devfeed.tech/tags/agentic-ai.md>), [ai](<https://devfeed.tech/tags/ai.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [business](<https://devfeed.tech/tags/business.md>), [canada](<https://devfeed.tech/tags/canada.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [news](<https://devfeed.tech/tags/news.md>), [platform](<https://devfeed.tech/tags/platform.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [startups](<https://devfeed.tech/tags/startups.md>), [technology](<https://devfeed.tech/tags/technology.md>)

### AI overview

1Password's users on the Okta platform grew 370% year over year in the technology sector, reflecting rising enterprise demand for identity security as organizations adopt AI-powered workflows and agents.

### Source excerpt

1Password has never been more popular in the workplace. Okta's 2026 "Businesses at Work" report reveals that, of the 8,000+ apps that Okta analyzed, "The security tool 1Password showed the highest industry-level growth, notching a 370% YoY increase in the technology sector." This statistic refers specifically to the number of individual 1Password users on the Okta platform, indicating a sharp increase in the rollout and adoption of 1Password across business users. This growth is no coincidence. As 1Password becomes foundational to how employees build and operate AI-powered workflows, it is increasingly embedded in the critical path of the modern "AI builder." The result is a surge in demand for secure access across tools, credentials, and agents, starting in the technology sector and expanding outward. Key findings from Okta's 2026 Businesses at Work report: 1Password recorded 370% year-over-year user growth in the technology sector, the highest industry-level growth of any app on the Okta platform 1Password is the fastest-growing app in Canada on the Okta platform 1Password ranked as the #13 most popular app among startups on Okta What drove 1Password's growth on Okta's platform? The stated purpose of Okta's report is to: "...track how enterprise technology adoption continues to evolve, and... how identity strategies must evolve alongside it." 1Password's dramatic growth among Okta customers reflects our company's evolution. Our innovations in AI and agentic security are resonating deeply with enterprise customers, many of whom are seeking to adapt their identity security strategies to securely enable AI across their workforces and technology stacks. Okta's report also reveals that agentic AI is an urgent need, since 91% of the organizations they surveyed are using AI agents. The majority of those orgs, however, are in early or limited stages of agent deployment. It's not hard to understand why; the identity and access risks posed by AI can significantly hamper a com

## Hardcoding Security into Every Commit: The Future of Snyk Secrets

DevFeed: [Hardcoding Security into Every Commit: The Future of Snyk Secrets](<https://devfeed.tech/articles/hardcoding-security-into-every-commit-the-future-of-snyk-secrets-7935.md>)

Original publisher: [Read original article](<https://snyk.io/blog/future-snyk-secrets/>)

Author: Kate Powers Burke; Waleed Arshad

Published: 2026-04-23T00:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [Application Security](<https://devfeed.tech/topics/application-security.md>), [API keys](<https://devfeed.tech/topics/api-keys.md>), [passwords](<https://devfeed.tech/topics/passwords.md>), [Model Context Protocol](<https://devfeed.tech/topics/model-context-protocol.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-agent](<https://devfeed.tech/tags/ai-agent.md>), [ai-agents](<https://devfeed.tech/tags/ai-agents.md>), [api-keys](<https://devfeed.tech/tags/api-keys.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devops](<https://devfeed.tech/tags/devops.md>), [docker](<https://devfeed.tech/tags/docker.md>), [enablement](<https://devfeed.tech/tags/enablement.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [executive](<https://devfeed.tech/tags/executive.md>), [interest](<https://devfeed.tech/tags/interest.md>), [kubernetes](<https://devfeed.tech/tags/kubernetes.md>), [model-context-protocol](<https://devfeed.tech/tags/model-context-protocol.md>), [passwords](<https://devfeed.tech/tags/passwords.md>), [prompt-injection](<https://devfeed.tech/tags/prompt-injection.md>), [scm](<https://devfeed.tech/tags/scm.md>), [secrets](<https://devfeed.tech/tags/secrets.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [snyk-platform](<https://devfeed.tech/tags/snyk-platform.md>), [snyk-security-intel](<https://devfeed.tech/tags/snyk-security-intel.md>), [software-development](<https://devfeed.tech/tags/software-development.md>), [tech](<https://devfeed.tech/tags/tech.md>), [vs-code](<https://devfeed.tech/tags/vs-code.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>)

### AI overview

Snyk describes how cloud-native development and AI-generated code are increasing secret sprawl across repositories, CI/CD logs, and collaboration tools. The article argues that autonomous AI agents expand this risk by creating and executing credentials, connecting to MCP servers, and changing systems without human visibility. It presents Snyk Secrets as a real-time approach to detecting exposed sensitive data while maintaining developer speed.

### Source excerpt

Snyk Secrets bridges the gap between code and credentials with real-time, high-precision detection, ensuring your most sensitive data stays hidden while your developers stay fast.

## Beyond Compliance: Building Security That Protects Patients and Innovation

DevFeed: [Beyond Compliance: Building Security That Protects Patients and Innovation](<https://devfeed.tech/articles/beyond-compliance-building-security-that-protects-patients-and-innovation-4479.md>)

Original publisher: [Read original article](<https://www.toptal.com/executive-guidance/podcasts/building-security-that-protects-patients-and-innovation>)

Author: ZOHRA IBRAHIMI, INFORMATION SECURITY PRACTICE LEAD @ TOPTAL

Published: 2026-04-12T22:00:00Z

Content type: article

Language: en

Sources: [Toptal Blog](<https://devfeed.tech/sources/toptal-blog.md>)

Topics: [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Security & Privacy](<https://devfeed.tech/topics/security-privacy.md>), [AI Strategy](<https://devfeed.tech/topics/ai-strategy.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-adoption](<https://devfeed.tech/tags/ai-adoption.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [governance](<https://devfeed.tech/tags/governance.md>), [healthcare](<https://devfeed.tech/tags/healthcare.md>), [podcast](<https://devfeed.tech/tags/podcast.md>), [risk-management](<https://devfeed.tech/tags/risk-management.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>)

### AI overview

A podcast discussion about healthcare cybersecurity with Orus Dearman of iRhythm Technologies and Zohra Ibrahimi of Toptal. They examine how security leaders balance compliance, innovation, reliability, and patient trust, including governance for AI adoption, shadow AI risk, vendor ecosystems, and supply-chain security.

### Source excerpt

As healthcare systems become more digital and interconnected, cybersecurity leaders must protect sensitive patient data while ensuring critical technology remains reliable and accessible. In this episode of the Executive Guidance podcast, Orus Dearman, Chief Information Security Officer at iRhythm Technologies, joins Zohra Ibrahimi, Toptal's Cyber and Information Security Practice Lead, to discuss how healthcare security leaders balance compliance, innovation, and trust.

## Building AI Security with Our Customers: 5 Lessons from Evo's Design Partner Program

DevFeed: [Building AI Security with Our Customers: 5 Lessons from Evo's Design Partner Program](<https://devfeed.tech/articles/building-ai-security-with-our-customers-5-lessons-from-evo-s-design-partner-program-7852.md>)

Original publisher: [Read original article](<https://snyk.io/blog/building-ai-security-with-our-customers/>)

Author: Rudy Lai

Published: 2026-04-01T04:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Securing AI](<https://devfeed.tech/topics/securing-ai.md>), [Generative AI](<https://devfeed.tech/topics/generative-ai.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [ai security](<https://devfeed.tech/topics/ai-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [Automation](<https://devfeed.tech/topics/automation.md>)

Tags: [agentic](<https://devfeed.tech/tags/agentic.md>), [agents](<https://devfeed.tech/tags/agents.md>), [ai](<https://devfeed.tech/tags/ai.md>), [ai-adoption](<https://devfeed.tech/tags/ai-adoption.md>), [ai-security](<https://devfeed.tech/tags/ai-security.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [aspm](<https://devfeed.tech/tags/aspm.md>), [automation](<https://devfeed.tech/tags/automation.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [customer](<https://devfeed.tech/tags/customer.md>), [customer-featured](<https://devfeed.tech/tags/customer-featured.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devops](<https://devfeed.tech/tags/devops.md>), [executive](<https://devfeed.tech/tags/executive.md>), [finserv](<https://devfeed.tech/tags/finserv.md>), [generative](<https://devfeed.tech/tags/generative.md>), [generative-ai](<https://devfeed.tech/tags/generative-ai.md>), [interest](<https://devfeed.tech/tags/interest.md>), [pmm](<https://devfeed.tech/tags/pmm.md>), [policy](<https://devfeed.tech/tags/policy.md>), [retail](<https://devfeed.tech/tags/retail.md>), [scale](<https://devfeed.tech/tags/scale.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [snyk-apprisk](<https://devfeed.tech/tags/snyk-apprisk.md>), [snyk-platform](<https://devfeed.tech/tags/snyk-platform.md>), [tech](<https://devfeed.tech/tags/tech.md>)

### AI overview

Snyk shares five lessons from its Evo design partner program for securing generative AI. The article emphasizes discovering AI sprawl and shadow AI, understanding custom AI deployments, replacing static spreadsheets, enforcing governance policies, and using actionable risk intelligence to move AI from chaos to controlled production.

### Source excerpt

Learn 5 key lessons from Snyk's Evo design partner program. Discover how AI discovery, risk intelligence, and policy automation help teams secure generative AI and govern AI sprawl at scale.

## Introducing Agent Security

DevFeed: [Introducing Agent Security](<https://devfeed.tech/articles/introducing-agent-security-7981.md>)

Original publisher: [Read original article](<https://snyk.io/blog/introducing-agent-security/>)

Author: Manoj Nair

Published: 2026-03-23T04:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [Securing AI](<https://devfeed.tech/topics/securing-ai.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [prompt injection](<https://devfeed.tech/topics/prompt-injection.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [data](<https://devfeed.tech/topics/data.md>)

Tags: [agents](<https://devfeed.tech/tags/agents.md>), [ai](<https://devfeed.tech/tags/ai.md>), [ai-security](<https://devfeed.tech/tags/ai-security.md>), [americas](<https://devfeed.tech/tags/americas.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [applications](<https://devfeed.tech/tags/applications.md>), [aspm](<https://devfeed.tech/tags/aspm.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [code-security](<https://devfeed.tech/tags/code-security.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [developer](<https://devfeed.tech/tags/developer.md>), [development](<https://devfeed.tech/tags/development.md>), [devsecops](<https://devfeed.tech/tags/devsecops.md>), [executive](<https://devfeed.tech/tags/executive.md>), [interest](<https://devfeed.tech/tags/interest.md>), [pmm](<https://devfeed.tech/tags/pmm.md>), [production](<https://devfeed.tech/tags/production.md>), [prompt-injection](<https://devfeed.tech/tags/prompt-injection.md>), [security](<https://devfeed.tech/tags/security.md>), [security-labs](<https://devfeed.tech/tags/security-labs.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [snyk-code](<https://devfeed.tech/tags/snyk-code.md>), [snyk-platform](<https://devfeed.tech/tags/snyk-platform.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>), [tech](<https://devfeed.tech/tags/tech.md>)

### AI overview

Snyk introduces Agent Security, a unified approach to securing the AI agent lifecycle from code to runtime. The announcement presents Evo AI-SPM as a generally available foundation for inventorying, governing, and enforcing controls over AI models, agents, tools, and related risks, including shadow AI, prompt injection, data leakage, and unsafe agent actions.

### Source excerpt

Introducing Agent Security, a unified approach to governing AI agents and ensuring safe behavior from code to runtime. Start with Evo AI-SPM, now generally available.

## What cybersecurity professionals are saying about AI

DevFeed: [What cybersecurity professionals are saying about AI](<https://devfeed.tech/articles/what-cybersecurity-professionals-are-saying-about-ai-13315.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/what-cybersecurity-professionals-are-saying-about-ai>)

Published: 2024-09-26T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Generative AI](<https://devfeed.tech/topics/generative-ai.md>), [shadow AI](<https://devfeed.tech/topics/shadow-ai.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [generative-ai](<https://devfeed.tech/tags/generative-ai.md>), [security](<https://devfeed.tech/tags/security.md>), [shadow-ai](<https://devfeed.tech/tags/shadow-ai.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>)

### AI overview

The article examines how generative AI is creating new cybersecurity challenges for CISOs, including harder-to-detect attacks, malware creation, phishing, and unauthorized employee use of AI tools. It also discusses the resulting risks to monitoring, third-party products, and the software supply chain.

### Source excerpt

AI is keeping CISOs up at night. Learn about risks of generative AI and Shadow AI, and how to secure your AI deployments with Chainguard.