ai security . experience .
One person used Grok. Now you have 72 hours to fix the damage.
A single unapproved account can leak your full repository history including deleted secrets, and vendors can disable access remotely without your knowledge.
Someone on your IT team has a paid Grok account. You do not know about it. That is not a policy failure, it is just Tuesday. No attacker. No vulnerability. Nobody broke a rule. An engineer installed a CLI, pointed it at a repo, and the whole thing left the bu…