223
monthly incidents
GenAI data policy violations
Netskope reports that the average organization sees 223 GenAI data policy violations per month. This shows that the risk is repeated, not incidental.
Source: Netskope Cloud and Threat Report: 2026
AI and internet access policies
wAIrden enables centralized rules for users, groups, devices and clients, with query and event visibility in dashboards and logs.
Feature availability depends on the version, configuration and deployment model.
AI traffic across your organization
Approved AI
Microsoft Copilot, company accounts
Shadow AI
Personal ChatGPT account
Unknown app
Unidentified AI client
Problem
More employees use public AI tools outside IT and security oversight. Source code, documents, customer data, contracts, notes and internal content may be pasted into external models. Policies, training and guidelines are not enough if the company has no technical control layer.
Shadow AI control flow
The flow shows a careful, practical model: a user tries to access AI, wAIrden checks rules, and the organization gets an allow/block decision, a user message and an audit trail.
Employee uses AI
A user tries to access an AI tool or category that requires control.
Report data
Recent industry reports show that employees increasingly use AI tools outside organizational control, while company data may be shared with external applications. That is why an AI policy alone is not enough — organizations need a technical layer of control, visibility and enforcement.
223
monthly incidents
Netskope reports that the average organization sees 223 GenAI data policy violations per month. This shows that the risk is repeated, not incidental.
Source: Netskope Cloud and Threat Report: 2026
47%
of GenAI users
According to Netskope, a significant share of GenAI users still access tools through personal or unmanaged accounts, reducing organizational visibility and control.
Source: Netskope Cloud and Threat Report: 2026
13%
of organizations
IBM reports that 13% of studied organizations experienced breaches involving AI applications or models, making AI a real security risk area.
Source: IBM Cost of a Data Breach Report 2025
97%
without proper controls
IBM states that among organizations that experienced breaches involving AI applications or models, 97% lacked proper AI access controls.
Source: IBM Cost of a Data Breach Report 2025
60%
of employees
ManageEngine reports that 60% of employees are using unapproved AI tools more than they were a year ago, confirming that Shadow AI is accelerating.
Source: ManageEngine Shadow AI Report 2025
USD 7.44B
market forecast by 2030
Grand View Research forecasts the AI Trust, Risk and Security Management market to grow from USD 2.34B in 2024 to USD 7.44B by 2030.
Source: Grand View Research — AI Trust, Risk and Security Management Market Report
Conclusion: companies do not need another AI policy document that nobody enforces. They need a practical control layer: visibility, access rules, blocking, employee communication and activity review.
Sources: Netskope Cloud and Threat Report 2026, IBM Cost of a Data Breach Report 2025, ManageEngine Shadow AI Report 2025, Grand View Research AI TRiSM Market Report. Data is presented for informational purposes — wAIrden helps reduce risk, but does not replace a full AI governance program, DLP or SASE.
Good cop and bad cop for Shadow AI
An AI policy without technical controls is just a document. wAIrden helps combine education, rules and technical enforcement of access to AI tools.
Helps safely introduce AI, educate employees and point them to approved ways of using AI tools.
Technically restricts access to unapproved services, enforces policies and gives administrators visibility.
Risk
Market research and industry reports indicate that the problem is growing: organizations increasingly see AI tools being used outside official processes, while declarations alone do not provide enough visibility.
Employees increasingly use AI tools outside official processes. Internal guidelines often cannot keep up with adoption.
Documents, code, customer data, offers, contracts and intellectual property may be pasted into public models.
Policies and instructions are necessary, but without technical controls the company does not know what actually happens in the network.
Organizations need mechanisms that help enforce AI usage rules, not only describe them.
How wAIrden helps
Identify which AI tool categories may require control and where the company loses visibility.
Identify which AI tool categories may require control and where the company loses visibility.
Decide which AI tools are approved, restricted or blocked for selected user groups.
Implement access rules, blocklists and block pages that work beyond written declarations.
Use query logs and activity views to check whether the rules are actually followed.
Technical layer
DNS remains the technical mechanism. If a domain or AI tool category is allowed, the user continues. If it matches a blocking rule, wAIrden shows a custom block page configured by the administrator.
Technical layer
A laptop, phone or other network device initiates a website visit.
The DNS query reaches the wAIrden filtering layer.
The system checks DNS rules, blocklists, categories and assigned policies.
The domain is allowed or blocked according to the matched rule.
When blocked, the user sees a custom message configured by the administrator.
Allow: domain is allowed and the user continues.
Block: domain matches a blocking rule and the custom block page is shown.
Offer
Start with a risk review and quick recommendation. Then implement technical rules, blocklists, block pages and activity visibility so your AI policy is not just a document.
€69 net
We review where uncontrolled AI usage may appear in your organization, which data is most exposed and which technical and organizational controls should be implemented first.
€230 net+ €35 / month
Fast implementation of basic access control for AI tools in a small company or team. Helps reduce the risk of unapproved AI applications being used outside organizational oversight.
from €465 net+ from €69 / month
Extended implementation for organizations that want to combine AI policy, technical access enforcement, activity visibility and administrator support.
terms agreed individually
For IT companies, administrators, security consultants and service providers who want to help clients reduce Shadow AI risk and implement technical access controls.
Not sure where to start? Start with a Shadow AI review for €69. We will check where your organization may be losing control over AI usage and suggest the first technical safeguards.
Start with a reviewKey features
Dashboard, access rules, AI blocklists, block pages and query history in one admin workflow.
Review query volume, blocked attempts, active rules, categories and recent events available for a given deployment in one place.
Create rules for domains and categories and assign them to clients. Proxy support is a technical, deployment-dependent capability, not a standard feature in every customer panel.
Manage categories and blocklist sources, use predefined rules and add custom domains according to organizational policy.
Create custom block page templates and assign them to specific access rules. After entering a blocked website, users see a clear message, such as organization policy information, block reason or admin contact instruction.
Analyze DNS query history, domain, query time, allow/block decision, matched rule and client. An audit log of administrative changes is also available.
Book a Shadow AI review and see how rules, dashboard, query log and custom block pages can work in practice.
Dashboard
The dashboard interface includes query, block, active-rule, category and recent-event summaries. The available data depends on deployment configuration.
Dashboard Overview
DNS traffic, rules and recent activity
DNS Queries Today
18,420
+12%Blocked Requests
1,284
7.0%Active Rules
34
5 updatedTraffic chart
Last 7 days
Top Categories
Deployment
A possible model for organizations that need wAIrden in their own environment. Scope and configuration are agreed as part of an individual deployment.
A managed model for organizations that do not want to maintain the product's server layer. Availability depends on the selected version and configuration.
Pricing
Compare indicative packages and consult a scope matched to users, devices, rules and required integrations.
For people who want to test basic access control.
€0
For small teams, microbusinesses and small offices.
€11
/ month
For companies, organizations and IT teams that need broader control and more rules.
€35
/ month
For larger organizations, schools, company groups and IT teams that need custom limits, local deployment, security support and alignment with compliance processes.
Custom pricing
Free
for the first test and panel review.
Medium
for small teams and basic access control.
Advanced
most popular for companies, schools and organizations that need rules, logs and stronger control.
Enterprise
for customers with security, on-premise, compliance and custom limit requirements.
Plan table
| Feature | Free | Medium | Advanced | Enterprise |
|---|---|---|---|---|
| Limits | ||||
| Domains on blocklists | up to 50 | up to 1,000 | up to 10,000 | custom |
| Number of blocklists | 1 | up to 5 | up to 25 | custom |
| Categories | basic | basic and custom | unlimited | custom |
| Access control | ||||
| Basic blocking | yes | yes | yes | yes |
| DNS and proxy rules | no | yes | yes | yes |
| Active rules | no | up to 10 | up to 100 | custom |
| AI tool control | basic | extended | advanced | enterprise |
| Block Pages | ||||
| Block page templates | 1 | up to 5 | unlimited | custom |
| Company messages | basic | yes | yes | yes |
| Query Log and reporting | ||||
| Query Log | 24 hours | 30 days | 180 days | custom |
| Activity dashboard | basic | yes | advanced | enterprise |
| CSV export | no | no | yes | yes |
| Log privacy options | to be confirmed | to be confirmed | configuration-dependent | custom |
| Administration and deployment | ||||
| Admin roles | no | no | yes | yes |
| SaaS | yes | yes | yes | yes |
| Local / on-premise deployment | no | no | yes | yes |
| Dedicated setup | no | no | no | yes |
| Compliance / AI policy support | no | no | no | yes |
| Support | ||||
| Email support | basic | yes | priority | dedicated |
| Package activation | on confirmation | on confirmation | on confirmation | after consultation |
| Agreement and terms | standard | standard | standard | custom |
| Choose plan | Ask about availability | Check deployment scope | Check deployment scope | Book a Demo |
Final scope depends on deployment model, user and device counts, and required integrations. Technical capabilities, proxy and local deployment may require individual configuration.
Who it is for
wAIrden sells both a product and an implementation service. This split helps you choose whether to start with a Shadow AI review, Start implementation, Advanced plan or Enterprise conversation.
FAQ
wAIrden helps companies reduce Shadow AI risk with a technical layer of access control, rules, blocklists, block pages, dashboards and query history.
Yes. You can manage blocklists, categories and custom domains from the admin panel.
Yes. The administrator can define a custom title and message shown after a blocked website attempt.
No. wAIrden does not replace a firewall, EDR, DLP or a full SWG. It can be part of AI governance by helping enforce access policies and review events.
The code supports SaaS, local and hybrid models. The right model, scope and infrastructure requirements are selected individually.
It depends on the selected model, client-identification method and the organization's infrastructure. Requirements are established during a technical consultation.
Prices remain as published, but detailed limits and package features require confirmation. Final scope depends on deployment model, user and device counts, and integrations.
You can find other MetricRoot services and company information at metricroot.io.
Yes. DNS is the technical layer that helps enforce allow/block decisions before a risky service opens in the user's browser.
They are rules that define which domains, categories or traffic types should be allowed, blocked or connected to a specific block page template.
Query Log shows DNS query time, domain, allow/block action, matched rule and client. Audit Log records administrative events.
The code includes SSO and SCIM configuration interfaces together with accounts, invitations, roles and groups. Availability of a specific SSO option depends on version and deployment configuration.
SaaS is one of the supported technical models. Service availability and operational responsibility must be confirmed for the specific offer.
The panel includes rules, categories and list sources, block pages, dashboard, Query Log, Audit Log, users, groups, devices, SSO and SCIM. Proxy, HTTPS inspection, diagnostics, branding and parts of enrollment require individual configuration or API access.
wAIrden is developed by MetricRoot. Full company information and other services are available at metricroot.io.
Shadow AI under control
Book a Shadow AI review and see how rules, dashboard, query log and custom block pages can work in practice.