The governance case at most AI boards rests on an unstated assumption: that agent deployment and oversight frameworks will mature in parallel. Deloitte's 2026 State of Artificial Intelligence (AI) in the Enterprise report, based on 3,235 surveyed leaders, found 80% of Fortune 500 organisations running agents in production while only 21% report a mature governance model for those agents.
Three items belong on the next Audit Committee agenda: a model governance policy with an autonomous-agent appendix naming decision boundaries and escalation triggers; a quarterly agent-performance service level objective (SLO) review owned by the AI steering committee; and an internal audit track that independently samples agent outputs, not just confirms uptime. Ask your Chief Data and AI Officer (CAIO): which production agents have a named human owner with authority to pause them, and when was each last reviewed?
Every AI developer tool granted OAuth access to enterprise systems is a potential supply chain pivot. Context.ai, an AI tool used at Vercel, was compromised in April 2026; the attacker leveraged its OAuth connection to a Vercel employee account to breach Vercel's internal systems. Salt Security's 1H 2026 AI and API Security report found 88% of organisations confirmed AI agent security incidents in the last year.
Three objects need updating: the vendor risk review must add OAuth scope audits for every AI tool in the developer toolchain; the data-processing addendum with AI SaaS vendors must include a right-to-audit on security posture; and the procurement checklist must require SOC 2 Type II evidence before provisioning. Ask your CISO: which AI tools have OAuth access to employee accounts today, and when were those scopes last reviewed?
AI training data pipelines using human contractors carry a biometric exposure that most enterprise data governance frameworks do not yet classify. Lapsus$ posted 4TB of stolen voice samples and government identification (ID) documents from 40,000 Mercor AI training contractors on April 4, 2026; recordings average two to five minutes per contractor, sufficient for off-the-shelf voice cloning paired with the companion ID document.
Three policy objects need updating before the next programme review: a biometric data classification tier in the enterprise data governance policy covering AI training suppliers; a third-party risk addendum requiring contractor data encryption and breach notification timelines; and a data-processing addendum clause banning indefinite retention of biometric samples. Ask your Chief Data Officer (CDO): which AI training vendors hold biometric data on our behalf, and does the current contract require them to delete it?