Shadow AI & data leaks
- Employees copy customer data into private ChatGPT accounts
- Inputs often flow into model training (free/consumer plans)
- Corporate IP ends up in third-party provider logs
- Data frequently leaves the EU
- Shadow AI: no overview which employee uses which tool
- No audit trails for privacy requests or regulator audits
- High fine risks on privacy and AI violations
