Article

Jun 30, 2025

Founder Podcast: "How to govern business-built and AI-generated spps"

Enterprises are entering a new era of software creation—where apps, workflows, and bots are built directly by business teams, using low-code platforms, automation tools, and generative AI.

In a recent episode of Lowdown on Low-Code, I sat down with John Rymer and Rick Greenwald to discuss one of the biggest emerging challenges: governing business-built apps without slowing down innovation.

As the founder of NEKOD, I’ve spent the last few years helping large, regulated organizations manage the risks of AI-generated and no-code/low-code solutions. In this conversation, we explored what governance really means in this new era—and how to make it work at scale.

Key topics we covered

1. What governance means for business-built software
Governance isn’t about locking things down. It’s about visibility, guardrails, and structured flexibility—so employees can safely build what they need without introducing risk.

2. Where business-led development is happening
From Power Platform to Zapier to GenAI copilots, business users are automating processes, creating internal tools, and integrating data—often outside of traditional IT oversight.

3. Why data governance is now everyone’s job
Untracked sharing, poor classification, and lack of audit trails create massive exposure. We discussed how to embed data controls into the build process—from day one.

4. The double-edged sword of AI
AI helps speed up governance: it can detect risky patterns, auto-document, and classify app types. But it also generates complexity fast. Without controls, AI tools produce black boxes.

5. The path to adaptive governance
One-size-fits-all policies don’t work. We explored how to design risk-based frameworks that scale with organizational maturity, business needs, and compliance requirements.

How enterprises can stay in control

  • Start with inventory: You can’t govern what you can’t see. Auto-discovery is critical.

  • Segment by risk: Not every app needs the same controls. Define tiers and actions.

  • Enable business teams, don’t block them: Give clear, fast paths to build responsibly.

  • Embed compliance in the flow: Governance must feel like part of the tool, not an afterthought.

  • Align business + IT: Governance only works when both sides own the outcome.

🎧 Listen to the Podcast

If you’re working on enterprise automation, low-code platforms, internal app compliance, or AI governance, this episode is for you.

About NEKOD

NEKOD is the governance platform for business-built software. We help enterprises discover apps created outside of IT, assess risk, enforce data and access policies, and meet compliance requirements—including AI Act, DORA, and internal frameworks. Whether it’s a Power App, an automation flow, or an AI-generated assistant—NEKOD brings trust and control to the edge of software creation.

Interested in piloting NEKOD or learning more? Let’s talk →

Share Now:

Join us in democratizing technology — safely!

Join us in democratizing technology — safely!

Join us in democratizing technology — safely!

Your scrollable content goes here

The trust layer for business-built automation

Amsterdam. Netherlands

The trust layer for business-built automation

Amsterdam. Netherlands

The trust layer for business-built automation

Amsterdam. Netherlands