Six signals today, and the through-line is measurement. Not model capability, not agent orchestration. Whether you can verify what your vendors tell you.
Start with the MIT Technology Review finding: Anthropic and OpenAI publish usage metrics on their own terms, with no independent corroboration. Stanford researchers confirm there is no external source to check the numbers against. This is the same structural defect as unaudited financials. The figure may be correct, and the disclosure architecture prevents anyone from confirming it. Every AI business case built on vendor-supplied adoption data inherits that defect.
Now read Microsoft retiring the Copilot function in Excel (The Register). The stated reason: the function did not drive the adoption Microsoft needed. That admission is quiet but sharp. A vendor pulled a marketed interaction surface mid-cycle because the internal usage numbers, the ones you cannot see, did not clear the bar. Enterprises that standardized on Copilot as their primary interface absorbed that decision as a workflow disruption. They had no way to price the risk in advance, because the adoption data was never auditable.
These two signals are one signal. When you cannot verify usage, you cannot forecast vendor commitment, and you cannot model your own ROI with confidence. The index shows this tension directly. ROI Impact moved to 63, up two, and Scaling Maturity sits at the same 63. Organizations are scaling and measuring returns at once, on inputs they cannot independently confirm. That is a fragile foundation for the next capital cycle.
The answer is instrumentation you own. Etched's $700M raise at $21B (Techmeme) tells you capital is pricing the silicon layer as core infrastructure, and Alipay's agent platform (Techmeme) tells you the decision surfaces are consolidating fast. Both raise the stakes on knowing your actual deployment behavior. If agent workloads are about to run your decision loops, vendor-supplied telemetry is not a governance surface. It is a marketing surface.
The move this week is not a new tool. It is internal instrumentation. Build the telemetry that tells you how your teams actually use the AI you have bought, independent of any vendor dashboard. Treat every published adoption figure as directional and nothing more. When Dentons (Dentons) documents three divergent regulatory regimes demanding jurisdiction-specific governance, your own usage data becomes the one input regulators, auditors, and your board will trust.
Watch this: whether enterprise security teams classify Cursor Origin (VentureBeat) as shadow IT or a sanctioned alternative after this month's GitHub degradation. The answer will tell you how seriously your organization treats the code repository as an identity and access surface.
WatchCursor Origin vs. GitHub concentration: Cursor's launch of its own code hosting platform during a six-hour GitHub global degradation (VentureBeat) opens a structural question for enterprise AI development infrastructure. If AI-native tooling consolidates version control alongside coding assistance, the identity and access governance surface for code repositories expands significantly. Watch whether enterprise security teams treat Cursor Origin as a shadow IT risk or a sanctioned alternative, and whether GitHub's parent Microsoft accelerates Copilot integration as a retention response.