Downstream AI data violations more than double as agents connect to enterprise systems
New research from the Netskope AI Report: 2026 has found that downstream data policy violations are now the second most common form of enterprise AI violation, accounting for 924 of every 10,000 alerts, or almost one in ten. Only upstream data policy violations occur more frequently.
Downstream violations happen when an AI service returns information that a user or agent is not authorised to access. Their frequency has more than doubled over the past year, rising from an average of 12 to 31 violations per organisation each week. Among the top 25% of organisations, the increase has been even sharper, from 72 to 206 violations per week.
This increase is being driven by the rapid adoption of the Model Context Protocol (MCP), an open standard that allows AI models and agents to connect to external data sources and tools. Over a ten-week period, the number of users accessing remote MCP...
Copyright of this story solely belongs to itvoice.in. To see the full text click HERE