Published on June 25, 2026 by on Telecom Reseller.
The central finding rejects the most common path forward in enterprise AI governance: that an AI policy alone can reduce enterprise risk. Neon found that 63% of survey respondents reported having a clear AI policy that they understood. However, of that 63%, nearly 50% knowingly violated it by using unapproved AI tools anyway — because most organizations have no visibility into what their workforce is doing in the browser, and no controls that operate where the risk is actually created.
“The organizations asking ‘how do we get employees to follow the policy?’ are solving the wrong problem,” said Cody Pierce, CEO and Co-Founder of Neon Cyber. “This research shows the policy is understood. What’s missing is any mechanism to enforce it at the moment an employee opens an AI tool and decides what to share with it — in the browser, at the prompt, before the data moves.”
The report also quantifies the scale of sensitive data exposure already occurring through browser-based AI use, with survey respondents knowingly uploading or pasting financial information, customer data, source code, logins, and API keys into AI tools. Critically, this behavior is driven by workers who consider AI essential to their jobs: 63% rated it either absolutely essential or very necessary.
Read the full story on Telecom Reseller.