Definition

Agent sprawl refers to the uncontrolled proliferation of AI agents within enterprise environments, creating governance challenges, security risks, and operational complexity. Gartner predicts Fortune 500 enterprises will manage over 150,000 AI agents by 2028, up from fewer than 15 in 2025.

Key Statistics

  • 10,000x growth: From <15 agents (2025) to 150,000+ agents (2028) per Fortune 500 enterprise
  • $15 trillion: B2B spending to be mediated by AI agents by 2028
  • 25%: Enterprise security breaches attributable to AI agent misuse by 2028
  • 13%: Organizations that believe they have adequate governance for AI agents

Causes

  1. Rapid adoption: AI agents deployed across business functions
  2. Decentralized creation: Multiple teams building agents independently
  3. Lack of oversight: No centralized registry or governance framework
  4. Tool proliferation: Multiple agent frameworks and platforms

Risks

Security Risks

  • Agent-to-agent authentication gaps
  • Unauthorized data access through agent chains
  • Prompt injection attacks on agent systems
  • Shadow AI agents created without IT approval

Operational Risks

  • Conflicting agents working at cross-purposes
  • Untraceable decision attribution
  • Resource consumption from agent proliferation
  • Compliance violations through uncontrolled agents

Governance Risks

  • No visibility into agent population
  • Duplicate or redundant agents
  • Lack of accountability structures
  • No audit trails for agent actions

Gartner’s Six Governance Steps

  1. Establish Agent Inventory: Create a central registry of all AI agents
  2. Define Ownership: Assign business and technical owners to each agent
  3. Implement Access Controls: Role-based permissions for agent actions
  4. Monitor Agent Activity: Real-time logging and anomaly detection
  5. Establish Approval Workflows: Governance board for new agent deployment
  6. Create Retirement Policies: Procedures for decommissioning agents

Sources