Opsin Labs Report: 60% of Enterprise AI Agents Are Over-Permissioned as Adoption Accelerates 14x
Opsin’s inaugural State of Agentic Adoption 2026 report finds enterprises now create one AI agent for every employee,
Press Release Disclaimer: This is a press release distributed through the XPR Media network. It has not been independently verified by our newsroom.

![]()
Opsin, the AI governance platform for approved enterprise workforce AI tools, today announced the release of their proprietary State of Agentic Adoption Report, the first research publication from the company’s research arm, Opsin Labs. The report analyzed enterprise production environments across eight verticals between March 2025 and June 2026.
Enterprise environments now average one agent, live or in draft mode, for every employee, with workforce interactions with AI agents growing 14x between January 2026-June 2026 alone. 67% of agents are being built by employees without engineering background like GTM, Customer Success, and Operations often outrunning the provisioning discipline security teams rely on to scope access safely.
Opsin Labs also found that 60% of agents provisioned beyond default settings were granted allow-all access rather than being scoped to the permissions their tasks required. 60% of agents were judged to have configured capabilities that exceeded their original stated intent.
The report also outlines four common attack paths observed by Opsin Labs tracing back to the same pervasive theme in enterprise environments today: agents provisioned with more access than their job requires, and limited to no human checkpoints before they act.
“Agent creation outran security review months ago, and most of the associated risk traces back to provisioning choices that were never revisited. Looking for abnormal or risky behavior after the agent is live is a step too late. Understanding agent intent with full context is the underpinning behavior baselining needs to identify risk. Governance has to catch up,” said James Pham, CEO and Co-Founder, Opsin.
The full State of Agentic Adoption Report, including Opsin Labs’ agent governance framework and ten best practices for secure agent creation, is available now. Download Report.
About Opsin
Enterprise AI has crossed a threshold. Agents can reason, plan, inherit user identities, and act across sensitive systems, and governance must now account for intent, context, and behavior. Opsin is a purpose-built platform that gives enterprises rapid visibility and complete context to govern agents across what they can access, what they do, and when behavior deviates from intended use.
Opsin discovers agents operating across platforms in SaaS, cloud, and enterprise environments; builds a complete context graph connecting identity, data, and model access; and identifies overshared sensitive data, misaligned access, and anomalous behavior before risk becomes an incident. Opsin is trusted by customers such as Barry-Wehmiller, Culligan, UiPath, Ethos, Sauers, and more. Learn more at opsinsecurity.com.
View source version on businesswire.com: https://www.businesswire.com/news/home/20260805665615/en/
Media gallery

