Now Assist Secrets Revealed: What ServiceNow Partners Don't Want You to Know
I have witnessed firsthand how the ServiceNow partner ecosystem operates, and I can tell you this: transparency is not always the default setting. When it comes to Now Assist, ServiceNow's flagship generative AI product, there are critical realities that many implementation partners conveniently overlook during sales conversations. Today, I'm pulling back the curtain on what you absolutely need to know before committing to a Now Assist deployment.
The Security Vulnerabilities Nobody Mentions
Let me be direct: Now Assist has faced serious security flaws that should fundamentally alter how you approach agentic AI implementation. In early 2025, researchers uncovered CVE-2025-12420, dubbed "BodySnatcher," which represents the most severe AI-driven security vulnerability discovered to date in enterprise platforms.
Here's what makes this particularly alarming: an unauthenticated attacker, someone with zero credentials sitting halfway across the globe, can impersonate any user in your ServiceNow instance using nothing more than their email address and a hardcoded secret that's shared across all ServiceNow deployments. This isn't a theoretical exploit. This vulnerability bypasses multi-factor authentication, single sign-on, and essentially every access control you've carefully configured.

The implications are staggering. An attacker executing this exploit can leverage privileged AI agents to create backdoor administrative accounts, extract sensitive data, and manipulate critical business processes, all while appearing as a legitimate user in your audit logs. I've reviewed incident response scenarios where organizations didn't even realize they'd been compromised until external researchers disclosed the vulnerability publicly.
But BodySnatcher isn't the only concern. Second-order prompt injection attacks exploit Now Assist's agent-to-agent discovery mechanisms to execute unauthorized actions even when ServiceNow's protection features are enabled. These attacks can perform unauthorized data operations and send external emails containing sensitive record contents, essentially turning your AI assistant into an unwitting data exfiltration tool.
Most ServiceNow partners I've encountered don't bring up these vulnerabilities during implementation planning. Why? Because addressing them properly requires additional security architecture, rigorous access controls, and potentially uncomfortable conversations about risk tolerance. It's easier to focus on the productivity gains and shiny AI features.
The Licensing Model That Keeps You in the Dark
Now let's talk about money: specifically, how Now Assist's consumption-based licensing model is designed to keep you guessing about your actual costs.
ServiceNow provides customers with a fixed annual allotment of "assists" (the consumption unit for Now Assist usage). Sounds straightforward, right? Here's the problem: ServiceNow maintains remarkable secrecy around what happens when you exceed that allotment. The pricing for additional assists beyond your baseline is not publicly published, and many partners won't proactively discuss overage scenarios during contract negotiations.

I've analyzed usage data across multiple client deployments, and the numbers are eye-opening. Now Assist consumption grew 9X between January and June 2025 alone. Think about what that means for your budget. An organization that carefully calculated their assist requirements based on Q1 usage patterns could face dramatically different consumption rates by mid-year: with no clear visibility into what those additional assists will actually cost.
This opacity creates a dangerous planning vacuum. CFOs approve budgets based on the fixed allotment pricing, but operational teams drive adoption that quickly exceeds those projections. By the time finance teams realize consumption is outpacing the budget, you're already locked into the platform with processes and workflows dependent on Now Assist functionality.
What Partners Won't Tell You About ROI Calculations
Here's where most ServiceNow consulting services fall short: they present Now Assist ROI calculations that assume perfect implementation, immediate user adoption, and zero security incidents. That's not reality.
The transformative potential of Now Assist is genuine: I won't dispute that. When implemented correctly, it can elevate your service desk efficiency, streamline workflows, and drive operational excellence. But achieving those outcomes demands strategic foresight and comprehensive risk management that many partners simply don't factor into their proposals.

Consider the hidden costs:
Security remediation efforts to address the vulnerabilities I mentioned earlier
Governance frameworks to prevent prompt injection and data leakage
Training programs that go beyond basic "how to use AI" and teach teams to identify AI-driven security risks
Consumption monitoring tools to prevent budget overruns
Fallback processes for when AI agents make incorrect decisions
I've reviewed dozens of Now Assist business cases from other partners, and most omit these elements entirely. They focus on time savings and ticket deflection rates while ignoring the operational overhead required to deploy AI responsibly in enterprise environments.
The SnowGeek Solutions Difference: Radical Transparency
This is precisely why SnowGeek Solutions approaches Now Assist implementations differently. We believe you deserve complete visibility into both the opportunities and the risks associated with agentic AI. Our methodology includes:
Security-First Architecture: Before we enable a single AI agent, we conduct comprehensive vulnerability assessments and implement defense-in-depth strategies that address known exploits like BodySnatcher and prompt injection attacks. We don't wait for ServiceNow to patch vulnerabilities: we assume attackers are already probing your environment.
Consumption Forecasting: We deploy usage monitoring from day one and provide quarterly consumption analysis that projects your actual assist requirements based on real adoption patterns. No surprises when the bill arrives.
Total Cost of Ownership Analysis: Our ROI models include security overhead, governance costs, and operational resilience measures. You see the complete financial picture before making commitments.

What You Should Demand From Your ServiceNow Partner
If you're evaluating Now Assist or already in the middle of an implementation, I will guide you through the essential questions every organization should ask their ServiceNow consulting services provider:
On Security:
What specific mitigations have you implemented to address CVE-2025-12420?
How do you prevent second-order prompt injection attacks in agent-to-agent communications?
What incident response procedures exist if an AI agent is compromised?
How frequently do you review and update AI security controls?
On Licensing and Costs:
What happens when we exceed our assist allotment?
Can you provide documented pricing for overage assists?
What tools will we use to monitor consumption in real-time?
How do we model consumption growth as adoption increases?
On Governance:
What approval workflows govern which AI agents can access sensitive data?
How do you validate AI agent outputs before they execute privileged actions?
What audit mechanisms ensure AI decisions are traceable and reversible?
If your current partner can't answer these questions with precision and documentation, that's a red flag. These aren't edge cases or theoretical concerns: they're fundamental requirements for responsible AI deployment in enterprise environments.
Moving Forward With Eyes Wide Open
The reality is that Now Assist represents unprecedented potential to transform how organizations deliver IT services, manage HR processes, and drive operational efficiency. But maximizing that potential requires working with a ServiceNow implementation partner who prioritizes your long-term success over short-term deal closure.

At SnowGeek Solutions, we've built our reputation on one principle: you deserve to know everything: the good, the challenging, and the complex. We don't hide security vulnerabilities in footnotes or obscure cost structures in vague consumption models. We put everything on the table so you can make informed decisions that align with your organization's risk tolerance and budget realities.
The partners who don't want you to know these details? They're betting you won't discover the gaps until it's too late to switch providers. We're betting that transparency, technical excellence, and strategic foresight will earn your trust and deliver outcomes that justify your investment.
If you're ready to explore Now Assist with a partner who tells you what you need to hear rather than what you want to hear, let's start that conversation. Visit SnowGeek Solutions to schedule a comprehensive assessment that addresses security, licensing, and governance from day one.
Your AI journey deserves better than secrets and surprises. It demands a partner who operates with radical transparency and technical precision. That's the SnowGeek difference: and it's exactly what your Now Assist implementation needs to reach its full potential.

Comments