1. The 6-month security review tax on every LLM launch.
You shipped the prototype in two weeks. You spent the next six months in a security review queue that was not designed for a feature that calls a remote model with arbitrary user input. The review board has no playbook for prompt injection. They have a generic threat model for "third-party API," which is how the calendar gets eaten. Each delayed quarter is a quarter your competitor is in market. The review board is not wrong to be cautious: AI features genuinely are a new threat surface. They are wrong about the timeline, because the timeline is set by the absence of a tool that lets them sign off on a known reference architecture instead of a bespoke risk assessment.