Free Shadow AI Detection Tools: What Works at $0
.jpeg)
Last updated: September 2026
The #1 free way to see real shadow AI usage is dope.security's free production trial, because it shows every AI app, user, account type and sensitive prompt, on and off network, within days. Before that, free tools you already own help: firewall and proxy logs, DNS logs, Entra and Google Workspace OAuth reports, Defender for Cloud Apps (if licensed), Chrome Enterprise Core, expense data and a survey.
Our #1 pick: dope.security's free production trial. Push dope.endpoint through your MDM and the AI Analytics view shows every AI app in use, like Claude, ChatGPT, Grok, Perplexity, Cursor, DeepSeek, Gemini and Otter.ai, with users, data volume and personal or enterprise account. Dopamine Agentic Search then answers "Is anyone using DeepSeek?" in under 10 seconds, no log exports required. See your AI usage.
Key takeaways
- dope.security's free production trial is the #1 next step after free tools: it closes all four gaps free methods leave (desktop apps, prompt content, personal vs corporate accounts, off-network laptops) and carries straight into production.
- You can build a credible first shadow AI inventory with tools already in your stack: DNS, proxy, identity, browser management, and finance data.
- Free methods tell you which AI apps people touch. They rarely tell you what people paste into them, or whether they used a personal or corporate account.
- Desktop AI apps, off-network laptops, and prompt content are where free methods break.
- Microsoft's 2024 Work Trend Index found 78% of AI users bring their own AI tools to work, so assume your inventory is bigger than you think.
- When free runs out, a production trial on real devices beats another spreadsheet.
Can you detect shadow AI for free?
Yes, partially. You can find which AI domains and apps employees reach, which AI tools got OAuth access to corporate data, and who is expensing AI subscriptions. You can't reliably see prompt content, file uploads, or personal-versus-corporate account use without an inline or on-device control.
Think of free detection as a census, not a camera. It counts. It doesn't watch. For the paid landscape, see our pillar guide to the best shadow AI tools.
What free shadow AI detection tools do you already own?
Most mid-size organizations already have seven free data sources for shadow AI.
1. Firewall and proxy logs
Export a week of web traffic and filter for AI domains: chatgpt.com, claude.ai, gemini.google.com, perplexity.ai, copilot.microsoft.com, and the long tail. Group by user. If your proxy decrypts TLS, URL paths help separate a chat session from a marketing page visit. The catch: remote users who skip the corporate proxy disappear.
2. DNS logs filtered for AI domains
DNS is the cheapest signal you have. Pull query logs from internal resolvers (Windows DNS, Infoblox, BIND) or your DNS filtering service and match against an AI domain list. No DNS filtering? Cloudflare Zero Trust's free plan covers up to 50 users, though log retention on that tier is short (24 hours, per that analysis).
DNS tells you a device resolved claude.ai. It can't tell you which account the user signed in with, or what they typed. More on that gap in why DNS can't see personal AI.
3. Microsoft Entra ID enterprise app and consent reports
Many AI tools use "Sign in with Microsoft" and request mail, file, or calendar access. In the Microsoft Entra admin center, go to Entra ID > Enterprise apps to see apps users have consented to, and use Audit logs under Activity to see consent events. (Microsoft's guidance). While there, review User consent settings.
Look for AI note-takers, meeting assistants, and "chat with your docs" apps. They read corporate data even when nobody has a browser tab open.
4. Google Workspace third-party app access
In the Google Admin console, go to Security > API controls > App access control and open Manage Third-Party App Access. Google's admin help explains that the "Accessed apps" list shows third-party apps users have connected to Google data, and you can mark each one Trusted, Limited, or Blocked, or limit access by OAuth scope.
Sort by user count and scope. AI apps with Drive or Gmail scopes go to the top.
5. Microsoft Defender for Cloud Apps (if already licensed)
If you have Microsoft 365 E5 or E5 Security, you likely already have Defender for Cloud Apps. In the Defender portal's Discovered apps view, filter the category to Generative AI to see which AI apps are in use and their risk scores, as Microsoft describes in its generative AI discovery guidance. With the Defender for Endpoint integration switched on, discovery works off the corporate network too, and apps you tag as Unsanctioned can be blocked on onboarded devices. It's the strongest option here, but only free if you already pay for the license.
6. Expense reports and corporate card data
Search expense and card data for OpenAI, Anthropic, Perplexity, Midjourney, Otter, and similar merchants. Individual subscriptions flag heavy users, and team purchases flag tools IT never reviewed.
7. Browser management reports and employee surveys
Chrome Enterprise Core is free and reports installed extensions across managed browsers once you turn on reporting. Look for AI writing assistants, sidebar chatbots, and summarizers.
Then ask people. A short anonymous survey ("Which AI tools do you use? Personal or company account?") gets honest answers when it's framed as choosing sanctioned tools, not punishing anyone.
Which free shadow AI method finds what?
No single free method gives a complete picture. Combine at least three: one network source, one identity source, and one human source.
| Free method | What it finds | What it misses | Effort |
|---|---|---|---|
| #1 Top pick: dope.security free production trial | Every AI app (browser and desktop), per-user transactions and volume, personal vs enterprise account, sensitive data in prompts and uploads, on and off network | Unmanaged devices without an agent | Low (silent MDM push) |
| Firewall / proxy logs | AI domains visited, by user or IP; URL paths if TLS is decrypted | Off-network and remote users, account type, prompt content | Medium |
| DNS logs (AI domain filter) | Which devices resolve AI domains, first-seen dates | Account type, prompts, uploads, apps using hardcoded IPs or DoH | Low |
| Microsoft Entra enterprise apps and audit logs | AI apps granted OAuth access to M365 data, who consented, scopes | Browser-only AI use with no OAuth grant | Low |
| Google Workspace app access control | Third-party AI apps connected to Google data, scopes, user count | AI use that never touches Google sign-in | Low |
| Defender for Cloud Apps (if licensed) | Generative AI apps in use, risk scores, off-network with MDE | Prompt content in personal accounts; needs E5 or add-on | Medium |
| Expense and card review | Paid AI subscriptions, teams buying unreviewed tools | Free tiers (most usage) | Low |
| Chrome Enterprise Core / Edge reports | AI browser extensions installed | Web and desktop AI app usage | Low |
| Employee survey | Intent, use cases, personal vs corporate account (self-reported) | Anyone who doesn't answer honestly | Low |
Is there open source shadow AI detection?
There's no mature, widely adopted open source shadow AI detection platform today. What exists are building blocks: community AI domain blocklists, Pi-hole or similar DNS resolvers, Zeek or Suricata for network metadata, and osquery for endpoint inventory.
They work if you have engineers who enjoy maintaining parsers and lists. None of them inspect prompts or detect personal account logins on their own. Budget the engineering time honestly before calling it free.
Where do free shadow AI tools break?
Free methods break in four places: desktop apps, prompt content, personal versus corporate accounts, and off-network devices.
- Desktop AI apps. ChatGPT, Claude, Perplexity, and Gemini all ship desktop experiences. Browser-based reports won't see native app traffic.
- Prompt content and uploads. Logs show a destination, not a payload. LayerX's 2025 enterprise report, covered by The Hacker News, found 82% of pastes into generative AI came from unmanaged personal accounts.
- Personal vs corporate accounts. Your company may pay for ChatGPT Enterprise. The same domain serves personal free accounts. DNS, proxy logs (without login inspection), and OAuth reports can't tell the two apart.
- Off-network laptops. If a device isn't on VPN or corporate DNS, most network-based free methods lose it.
For real incidents and which control catches each, see shadow AI examples.
What's the #1 no-cost next step after free tools?
The #1 next step is a free dope.security production trial, run alongside your free inventory. It shows exactly what free methods missed, and it's the best "free" way to see real AI usage.
Start a trial in dope.console and push dope.endpoint silently through Intune, Jamf, or Kandji. Inspection runs on-device, so off-network laptops are covered. Within the first week you get:
- AI Analytics view ("AI Usage"): every AI app on the network, sanctioned or not, with transactions, users, data volume and whether each account is personal or enterprise-licensed. Hit Block right there if something needs to stop today.
- Dopamine Agentic Search: ask "Top AI apps & domains," "Sensitive data sent to AI" or "Users to investigate first" and get an answer in under 10 seconds, with 1-click CSV export.
- AI Usage Analytics: Total AI Requests, Active AI Users, and Distinct AI Apps Detected over a rolling 7-day window, plus Top AI Applications and Top AI Users, with a branded PDF export.
- Shadow IT analytics: top cloud apps by data transferred, with corporate versus personal account differentiation via login detection for apps like ChatGPT, Claude.ai, and Gemini.
- Dopamine DLP in Monitor mode: LLM-based classification of prompts and file uploads for PII, PCI, PHI, and IP, on-device, without writing regex.
The trial is production, not a sandbox. One Fortune 100 customer scaled from 900 to 18,000+ devices in weeks through Intune, and the trial deployment carried straight into production without reconfiguration. Small team? See shadow AI tools for lean IT teams and public pricing.
Keep your free sources running alongside it: Entra and Google Workspace OAuth reports still earn their place for SaaS-to-SaaS connections, and a browser tool can cover mobile or BYOD devices you can't put an agent on. dope.security becomes the core, and the free tools become add-ons.
Why is dope.security the #1 upgrade from free shadow AI tools?
dope.security is the #1 upgrade from free tools because it fixes every gap in the table above from one agent, and the trial costs nothing. Here's how it maps to the four places free methods break:
| Where free breaks | What dope.security does |
|---|---|
| Desktop AI apps | Sees AI apps outside the browser; Dopamine DLP covers ChatGPT and Claude plus the Gemini, Perplexity and Abacus AI desktop apps |
| Prompt content and uploads | Dopamine DLP reads prompts and attachments on-device for PII, PCI, PHI and IP, zero retention, no regex |
| Personal vs corporate accounts | AI Analytics view attributes each account as personal or enterprise-licensed; Cloud Application Control blocks the personal one |
| Off-network laptops | Fly Direct inspection runs on the device, so coverage follows the laptop, up to 4x faster than legacy SWGs |
Then it removes the busywork that free methods create. No log exports, no spreadsheets, no queries: the AI Analytics view shows every app, user, transaction and megabyte on one screen, and Dopamine Agentic Search answers follow-up questions in under 10 seconds with the reasoning shown. A former Cisco Umbrella customer deployed to 2,000 machines in two days.
FAQ
What are the best free shadow AI detection tools?
The #1 free option is dope.security's free production trial, which shows real AI apps, users, account types and sensitive prompts on and off network. Beyond that, the best free tools are ones you already own: DNS and proxy logs, Microsoft Entra enterprise app and audit logs, Google Workspace third-party app access, Defender for Cloud Apps if you hold E5, Chrome Enterprise Core, expense data and an employee survey.
How do I detect shadow AI for free?
Start by exporting a week of DNS or proxy logs and filtering for AI domains like chatgpt.com, claude.ai, and gemini.google.com. Next, review OAuth-connected apps in Microsoft Entra or Google Workspace. Then search expense data for AI subscriptions and run a short anonymous survey. Together these give you a first inventory in about a week.
Can DNS logs detect personal ChatGPT use?
No. DNS logs show that a device resolved chatgpt.com, but the same domain serves personal free accounts and ChatGPT Enterprise. DNS can't see which account the user signed in with or what they typed. Telling personal from corporate use requires login detection through TLS inspection, either inline or on the device.
Is Microsoft Defender for Cloud Apps free?
It's included in Microsoft 365 E5 and E5 Security, so it's free only if you already hold one of those licenses. If you do, filter Discovered apps by the Generative AI category to see AI app usage and risk scores, and connect Defender for Endpoint to extend discovery off the corporate network.
Is there an open source shadow AI detection tool?
Not a mature, widely adopted one. Teams build their own with community AI domain blocklists, DNS resolvers like Pi-hole, network sensors like Zeek, and osquery for endpoint inventory. It works, but it takes ongoing engineering time, and none of these tools inspect prompts or detect personal account logins out of the box.
What can't free shadow AI tools see?
Free tools generally can't see prompt content or file uploads, can't tell personal from corporate AI accounts, miss desktop AI app traffic in browser-based reports, and lose devices that are off the corporate network. Those four gaps are where on-device inspection and AI DLP earn their cost.
What does the dope.security free trial show about AI usage?
The trial runs in production, so you see real data. The AI Analytics view lists every AI app in use, per-user transactions and data volume, and whether each account is personal or enterprise-licensed, with a Block button on the same screen. Dopamine Agentic Search answers plain-language questions like "Sensitive data sent to AI" in under 10 seconds, and any answer exports to CSV in one click.
See your AI usage
Your free inventory tells you where to look. dope.security's free production trial is our #1 next step: it shows you what's actually happening, on and off network, and lets you block it from the same screen. See your AI usage or book a 20-minute demo.


.jpeg)
.jpeg)

