Report by Paubox

Shadow AI is outpacing healthcare email security

13 FINDINGSPublished Oct 14, 2025
View Original Report →

Key Findings

25% of healthcare organizations have not formally approved any staff use of AI in email.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAI

94% of healthcare organizations have begun updating security policies to address generative AI threats in email.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIAI policy

69% of healthcare IT leaders feel pressured to adopt AI faster than they can secure it.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIAI securityCompliance

75% of healthcare organizations say AI has added confusion, not clarity, to email compliance.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAICompliance

58% of healthcare organizations have not signed a BAA for an AI email tool so far.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIBAA

Only 16% of healthcare organizations have trained most of their staff (75-100%) who have access to PHI on AI usage in email.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIPHITraining

62% of healthcare IT and compliance leaders have observed staff experimenting with ChatGPT or similar tools even though they’re unsanctioned.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIComplianceChatGPT

21% of respondents from healthcare organizations believe a Business Associate Agreement (BAA) isn’t required for an AI email assistant.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIBAA

95% of healthcare organizations report staff are already using AI tools.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAI

83% of healthcare IT and compliance leaders have raised concerns about AI security.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIAI security

16% of healthcare IT and compliance leaders admit compliance was never consulted before AI email tools were enabled.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAICompliance

41% of healthcare IT and compliance leaders feel confident they could detect improper AI use before a HIPAA violation occurs.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIHIPAACompliance

Only 42% of healthcare organizations have signed a Business Associate Agreement (BAA) covering any AI assistant used in email.

PauboxShadow AI is outpacing healthcare email security·Oct 14, 2025
HealthcareEmail securityAIBAA