The use of unauthorized or unvetted AI applications and models within an organization, bypassing official IT governance and security policies.