Guides

    The governance gap is a data problem

    Executives name governance and compliance as their top AI agent concerns. Their staff, meanwhile, are pasting confidential documents into tools nobody approved. That gap does not close with a stricter policy — it closes at the data layer.

    By Gabriel Tremblay

    Published 2026-08-31 · Last reviewed 2026-08-31

    The short answer

    Okta's AI at Work 2025 found leaders' top two AI agent-related security concerns are AI governance and oversight (58%) and compliance and regulatory requirements (50%). Okta's separate AI Agents at Work 2026 found 90% of executives confident in their visibility while 52% of AI-using knowledge workers use AI without IT approval. Policy does not close that gap — 49% of shadow users say approved tools do not meet their needs. Cloaking closes it at the data layer: the confidential value never reaches the model at all.Sources: Okta, AI at Work 2025 (AlphaSights survey of 260 executives, nine countries, fielded April–May 2025) and Okta, AI Agents at Work 2026 (292 executives, 492 knowledge workers, fielded March 2026) — two separate studies, not interchangeable. Study B's worker figures describe knowledge workers who already use AI, not a general workforce. Okta is cited as an independent source and is not affiliated with Untraceable.

    Executives believe they have this under control. Their staff disagree.

    Ask a room of executives what worries them about AI agents, and the answers are governance and oversight, then compliance. Ask their employees what they actually did last week, and you get a different picture entirely.

    Both sets of numbers below are Okta's own, from two different studies. They are tagged separately throughout, because they are not interchangeable and one number in particular appears in both meaning different things.

    Source: Okta, AI at Work 2025

    Top two agent concerns, next 3 yearsShare of leaders
    AI governance and oversight58%
    Compliance and regulatory requirements50%

    Source: Okta, AI Agents at Work 2026

    Executives confident in their visibility into AI tools in use90%
    Executives confident employees are using AI responsibly95%
    Knowledge workers who have used AI without IT approval52%
    …who do so regularly24%
    Executives reporting an AI security incident or close call in the last 12 months58%

    The two 58% figures are not the same number. On the left, 58% is the share of leaders naming governance a top concern (Okta, AI at Work 2025). On the right, 58% is the share of executives reporting an AI security incident or close call in the last 12 months (Okta, AI Agents at Work 2026). Two studies, two questions, one coincidence.

    Read together, they describe an organization whose leadership is confident about a state of affairs that does not exist.

    AI governance and oversight58%Compliance and regulatory requirements50%

    Source: Okta, AI at Work 2025 — an AlphaSights survey of 260 executives across nine countries, fielded April–May 2025 and reaffirmed in Okta's Businesses at Work 2026. Okta named these two as the top two and published no further ranking. These figures are not from the March 2026 agentic study, and they are not new. (Okta's own figures differ on the sample: the article says 260, Businesses at Work 2026 says 261. We cite the article.)

    The gap has a specific shape: confidential documents, pasted into unapproved tools

    This is not abstract governance anxiety. Okta asked what employees actually put into AI tools.

    Across knowledge workers who already use AI(Okta, AI Agents at Work 2026)

    • 36% shared HR-related information
    • 29% shared confidential company documents
    • 16% shared login credentials and passwords

    Among those using unapproved tools, the numbers climb(Okta, AI Agents at Work 2026)

    • 54% shared internal messages and emails
    • 45% shared HR-related information
    • 39% shared confidential company documents, including financials and contracts
    • 28% shared banking and payment information
    • over 20% shared login credentials and passwords

    For a consultancy, "confidential company documents, including financials and contracts" is not a category of risk. It is the deliverable. It is the thing under NDA.

    Note who Okta surveyed: knowledge workers across more than a dozen industries, in data-oriented roles. This is not a healthcare finding or a finance finding. Wherever the work product is confidential — client engagements, regulated submissions, sealed commercial terms — the same behaviour is already happening.

    Why it happens — and why stricter policy won't stop it

    Okta asked employees why they bypass sanctioned tools. The answers are not defiance:(Okta, AI Agents at Work 2026)

    • 80% — easier to use their own accounts
    • 78% — their team already uses it; it's considered normal
    • 57% — the approval process is too slow or difficult
    • 49% — the approved tools do not meet their needs
    • 6% — didn't know approval was required

    Only 6% is an awareness problem. The rest is a product problem.

    Okta's own recommendation is unambiguous on this point. Among the four steps they set out for closing the gap, the second is to make the secure path the easiest path: they argue that tightening policy will not fix shadow AI and will simply be disregarded wherever it slows people down, and that the fix is removing friction from the approved route until it is also the quickest one. Their reasoning is that employees follow the sanctioned path when it is also the efficient path.

    That is the entire premise Untraceable was built on, arrived at independently by an identity vendor with nothing to sell you here.

    The uncomfortable corollary for regulated work: a sanctioned AI tool that strips out the confidential content is, by construction, one of the tools that "does not meet their needs." Redaction retains roughly 37% of baseline AI writing quality; crypto-tokenization roughly 32% (derived from Tremblay & Harricharan, 2026 — see note below). You cannot close a shadow-AI gap with a tool people have a rational reason to abandon — what redaction costs you, measured method by method.

    Where we fit — stated precisely

    We are not an identity platform. We do not issue credentials, manage non-human identities, scope agent permissions, or discover shadow agents. Okta and its peers do that, and you should use them.

    We are the data layer underneath. Identity controls govern who may ask, and what they may reach. Untraceable governs what actually leaves the building when they do. The confidential value is replaced with a meaning-preserving cloak before transmission — so even a fully authorized, correctly logged, entirely sanctioned AI interaction carries no confidential data inside it.

    The two layers are complements, not substitutes. Okta answers "where are my agents, what can they connect to, what can they do." Untraceable answers "and what did they receive."

    01 — Data loss

    There is nothing to lose, because nothing was sent.

    Asked about AI generally rather than about agents, Okta's leaders ranked data privacy first, at 68%, and security risks second, at 60% — the two highest AI-related concerns in that survey(Okta, AI at Work 2025). That is a separate question from the agent-concerns ranking above — no three-year horizon, and about AI as a whole — so the two are not additive and should not be read as one list.

    Every other control here is probabilistic. DLP rules can be worded around. Enterprise agreements are contractual promises about retention and training — enforceable after disclosure, not preventive. Redaction protects the data by destroying the context the model needed.

    Cloaking is architectural.

    • Documents open locally. Cloaking runs locally. Only cloaked text is transmitted.
    • Real values are restored on the operator's screen after the response returns.
    • We never see the confidential value or the key.
    • Intercept the traffic and you get informative stand-ins — never a name, a figure, an identifier.

    And it doesn't cost you the tool: Advanced Cloaking preserves roughly 94–98% of baseline AI writing and reasoning quality, against ~37% for censoring-style redaction and ~32% for crypto-tokenization.

    These quality figures are our own research, and derived rather than quoted.
    Tremblay & Harricharan (2026) compare the raw scores between methods; the paper does not rebalance them. The percentages above express each method as a share of that study’s 96/100 baseline — uncensored text does not itself score as perfect — so they are a presentation of its data, not figures printed in it. The study is co-authored by Untraceable’s founder, so unlike the Okta material it is our own research rather than independent corroboration. Full method on the comparison page.

    Most data-loss controls reduce the probability of exposure. Cloaking removes the thing that could be exposed.

    02 — Compliance and regulatory requirements (50% of leaders(Okta, AI at Work 2025))

    Use frontier AI without asking your regulator to look away.

    For consultants and regulated experts, "compliant AI use" is not one obligation with one owner:

    ObligationThe exposureWhat cloaking changes
    Client NDAsClient names, deal terms, unpublished resultsSealed values never reach a model
    Trade secrets and proprietary IPPricing, methodology, internal modelsReplaced with cloaks before transmission
    GDPRCross-border transfer; processor chainsNo personal data enters the transfer
    PIPEDA / Quebec Law 25Disclosure without consent; residencyResidency-aware routing, no silent regional fallback
    HIPAA / PHI (health work)Patient-level data reaching a third-party modelPHI is never transmitted

    The first two rows apply to every consultant alive. The rest stack on top depending on the field.

    An enterprise AI licence covers the vendor's obligations to you. It does not cover your obligations to your client. Your Copilot agreement is not a party to your NDA — why an enterprise licence answers the wrong contract.

    Cloaking sidesteps the negotiation entirely. You are not arguing that a vendor's contractual assurance is strong enough to satisfy a sponsor, an ethics board or a privacy commissioner. You are demonstrating that the confidential value was never disclosed.

    03 — AI governance and oversight (58% of leaders(Okta, AI at Work 2025))

    Governance you can hand to a compliance officer.

    Governance fails for a mundane reason: nobody can see what happened. Hence 90% executive confidence sitting on top of 52% unsanctioned use(Okta, AI Agents at Work 2026).

    Untraceable makes the data question answerable.

    • Audit trail on every account. Every value, every cloak, every AI submission — recorded. Cloak labels and run identifiers only, never raw values. Retained in your own SharePoint.
    • Protocol Certification. Breach testing that certifies the cloak held, producing a permanent report you can send to a client or hand to a compliance officer. The Untraceable Protocol
    • VaultAudit (Enterprise). A live dashboard across every project and team member: cloak-coverage metrics, operator accountability, organization-wide oversight.
    • Sentinel auto-detection. Flags confidential values before submission rather than after disclosure.

    And the second-order effect, which is the one Okta's data actually argues for: a sanctioned tool good enough that people prefer it is itself a governance control. 49% of shadow users said approved tools don't meet their needs(Okta, AI Agents at Work 2026). Fix that, and the visibility problem shrinks on its own.

    If you are writing the policy that sits on top of this, the AI use policy template is a one-page starting point built around the question that actually matters: which data can go into which tool.

    Scope note: this is governance of what data reaches AI. Not agent identity governance, permission scoping, or agent discovery. Those remain your identity platform's job, and we are designed to sit beside them.

    What this looks like in practice

    Two examples, two confidentiality regimes, one engine. The method is not field-specific: the same cloaking runs over a consulting engagement and a clinical study report alike.

    A consulting engagement
    Your document — what you see

    Acme Corp is acquiring Beta Inc. for $400M, closing Q3. Draft a client advisory.

    What the AI sees — cloaked

    NSSA_Acquirer_1 is acquiring NSSA_Target_1 for SSA_DEALVAL_USD_LRG_MNA_017, closing SLC_007712_003. Draft a client advisory.

    Patent Pending
    A clinical study report
    Your document — what you see

    The study evaluated Pembrolizumab in patients with non-small cell lung cancer at Memorial Sloan Kettering. The primary endpoint showed a hazard ratio of 0.68 (95% CI: 0.51–0.89).

    What the AI sees — cloaked

    The study evaluated NSSA_Drug_1 in patients with NSSA_Indication_1 at NSSA_InstitutionalInvestigator. The primary endpoint showed a hazard ratio of SSA_OSHR_POB_SMCID_KVM_CLIN_054 (95% CI: SLC_004431_012SLC_004532_054).

    Patent Pending

    Same engine, same guarantee, two different confidentiality regimes. One document. Three problems answered at once: nothing to lose, nothing disclosed, everything logged.

    Untraceable is built for consultants and regulated experts generally. HEOR, payers and RWE, pharma, medical writing and biostatistics are the fields where the field-specific layer — Hybrid RAG and the Grounding Codex — is live today, with ESG and management consulting in progress. The cloaking itself is not field-bound.

    Would you like to know more

    On the use of Okta's research. Okta's published findings are cited here as independent third-party evidence, under fair use, with attribution. Okta is not affiliated with, partnered with, or a customer of Untraceable, and nothing here should be read as Okta endorsing, sponsoring or supporting Untraceable or its products. We have no commercial relationship with Okta. Any conclusions drawn from their data are ours alone. Okta and its research titles are trademarks of Okta, Inc.

    Okta, AI Agents at Work 2026: Securing the agentic enterprise. Commissioned by Okta; panel recruited and survey fielded by Apprize360 in March 2026. Online double-blinded survey of 292 executives and 492 knowledge workers, companies of all sizes, more than a dozen industries. Executive recruitment focused on CEOs, CIOs, CTOs and VPs with authority over IT, security, data and engineering; 91% reported leading or overseeing teams responsible for AI implementation, governance, security or strategy. 100% of knowledge-worker participants reported working with AI in the preceding three months — so every worker percentage from this study describes AI-using knowledge workers, not a general workforce. Respondents: US 23%, UK 22%, Australia 12%, Canada 12%, Japan 11%, France 10%, Germany 10%. Published 27 May 2026. Source of: 90% / 95% executive confidence; 52% and 24% unsanctioned use; 58% incident-or-close-call; all data-sharing percentages; all shadow-AI motivation percentages. okta.com

    Okta, AI at Work 2025: Securing the AI-powered workforce. An AlphaSights survey commissioned by Okta of 260 executives — CTOs, CIOs and equivalent — from companies of all sizes, more than a dozen industries, nine countries, fielded April–May 2025. Findings reaffirmed in Okta's Businesses at Work 2026, which analyzes Okta Platform data from 1 Nov 2024 – 31 Oct 2025 and incorporates the AI at Work 2025 survey. Source of: the two figures we cite from it — leaders' top two AI agent-related security concerns for the next three years, AI governance and oversight at 58% and compliance and regulatory requirements at 50%. Okta published no further ranking, and we attribute nothing else to this study. Note: Okta's article says 260 respondents while Businesses at Work 2026 says 261; we cite the article's figure. okta.com · Businesses at Work 2026

    Tremblay & Harricharan (2026), Zenodo, doi:10.5281/zenodo.21343321. Composite writing-quality index, 30 tests per technique. Note: the paper compares raw scores between methods and does not rebalance them. The percentages used on this page — Advanced Cloaking 94–98%, Rapid Cloaking 91–93%, censoring ~37%, crypto-tokenization ~32% — are ours, expressing each method as a share of its 96/100 baseline. They are a presentation of the study's data, not figures printed in it. This study is co-authored by Untraceable's founder, so unlike the Okta material it is our own research rather than independent third-party corroboration — we flag it here so the sources on this page are not all read as external.

    A note on sources. This page cites published research by Okta, Inc. as independent third-party evidence, with attribution. Okta is not a partner, sponsor, endorser or affiliate of Untraceable, and has no commercial relationship with us. Their research is used illustratively because an identity vendor reaching this conclusion independently is more persuasive than our making the same claim unaided. Okta has not reviewed, approved or supported this page, and any interpretation of their data is ours alone. Okta and its research titles are trademarks of Okta, Inc., used here for identification only. Figures are reproduced from Okta's published summaries; see the sources above for the exact study behind each one. Each figure was re-verified against the primary source on 1 September 2026.

    Ready to close the gap? Request a demo · Security architecture · The Untraceable Protocol

    Frequently asked questions

    Does this replace our identity and access management?

    No. Identity controls govern who and what may reach a model — credentials, non-human identities, agent permissions, shadow-agent discovery. Untraceable governs what the model actually receives once they do. Both layers are necessary, and they are complements rather than substitutes.

    Isn't our enterprise AI agreement enough?

    It is a contractual promise about retention and training, made by a vendor to you. It does not extend to your client's confidentiality terms — your Copilot agreement is not a party to your NDA — and it constrains what happens after disclosure rather than preventing the disclosure itself.

    Can we prove compliance to an auditor?

    Yes. Protocol Certification produces a permanent, shareable report certifying that the cloak held under breach testing, and the audit trail records every AI submission at cloak level. Both are designed to be handed to a client or a compliance officer without further preparation.

    Does the audit trail itself contain confidential data?

    No. It records cloak labels and run identifiers only, never real values. It is safe to share by construction, and it is retained in your own SharePoint.

    Why do employees use unapproved AI tools?

    Okta's AI Agents at Work 2026 asked them. 80% said it is easier to use their own accounts, 78% that their team already uses it, 57% that approval is too slow, and 49% that the approved tools do not meet their needs. Only 6% did not know approval was required — so only 6% of it is an awareness problem, and the rest is a product problem that stricter policy will not solve.

    Are the two 58% figures on this page the same finding?

    No, and this is the easiest thing to get wrong. In Okta's AI at Work 2025, 58% is the share of leaders naming AI governance and oversight as a top concern for the next three years. In Okta's separate AI Agents at Work 2026, 58% is the share of executives reporting an AI security incident or close call in the last 12 months. Two different studies, two different questions, the same number by coincidence.

    Work with AI on data you can't share with it.

    Untraceable cloaks confidential values on your computer before any AI model sees the text — the model never receives the secret at all.