Shadow AI Endpoint Security: Discover and Govern Local Agents
Okta, Monday, September 14th, 2026
Okta outlines how to discover unmonitored local AI agents and MCP servers running on employee endpoints.
Okta addresses shadow AI on employee devices, where unsanctioned local AI agents and MCP servers operate outside IT visibility.
The post explains the risks these create, including uncontrolled data access and unaudited actions taken on behalf of users.
It describes a discovery approach combining Okta for AI Agents with CrowdStrike Falcon EDR telemetry to inventory what is running. Governance steps for bringing discovered agents under identity control follow.