The record

Where automated decisions went wrong

Incidents gathered from public reporting around the world. Each one links to the articles it came from. None of it is a finding that anyone broke the law.

Reports people file about their own experience are not shown here and never will be without their agreement. Tell us what happened to you.

Clear

44 incidents closest to “OpenEvidence Dialer” · matched on meaning · public reporting

WF-KA8YYL1 Sep 2024

AI transcription tool Otter.ai causes health data breach at Ontario hospital

A former physician at an Ontario hospital installed the Otter.ai transcription tool and gave it access to his digital calendar. Because his personal email was still on a meeting invite list, the AI agent autonomously joined a virtual hepatology round, transcribed it, and emailed the summary and transcript to 65 recipients. The transcript contained sensitive personal health information of seven patients. The hospital reported the breach to the Ontario IPC, took steps to contain it, and is implementing further safeguards.

Company involved
Unnamed hospital in Ontario
AI system involved
Otter.ai

6 source articles · read the reporting →

WF-KG72NK8 Oct 2024

Data Breach Exposes Over 10 Million Conversations from Middle Eastern AI Call Center Platform

Resecurity discovered a dark web posting on 8 October 2024 offering data stolen from a major AI-powered cloud call center platform in the Middle East. The threat actor gained unauthorized access to the management dashboard, compromising over 10,210,800 conversations between consumers, operators, and AI chatbots. The exposed data included personally identifiable information and national ID documents, creating risks of fraud and identity theft. Resecurity alerted the affected organization and collaborated with law enforcement to mitigate the incident.

3 source articles · read the reporting →

Think You're Just Chatting Privately with AI? ChatGPT Logs Have Repeatedly Been Used as Evidence in US Courts

以為只是在跟AI私下聊天?ChatGPT對話紀錄已多次成為美國法庭證據 - ETtoday AI科技

ChatGPT conversations and other AI chatbot logs are increasingly being used as evidence in US legal cases. Over the past two years, at least 12 public court cases—both criminal and civil—have cited such records. Police may obtain logs directly from a user's phone, and AI companies may alert law enforcement if they detect credible threats of imminent harm. Courts have also ruled that AI chats do not have the same legal confidentiality protections as communications with a lawyer, doctor, or therapist.

Company involved
OpenAI
AI system involved
ChatGPT

1 source article · read the reporting →

WF-B332QL1 Jan 2017

CFPB Acts Against Hello Digit for Faulty Savings Algorithm Causing Overdrafts

Hello Digit, a fintech company, used an automated savings algorithm that made transfers from consumers' checking accounts, falsely guaranteeing no overdrafts. The algorithm caused customers to incur overdraft fees, and the company often denied reimbursement requests. The CFPB found that Hello Digit engaged in deceptive practices and ordered the company to pay redress to harmed consumers and a $2.7 million fine.

Company involved
Hello Digit, LLC
AI system involved
Hello Digit app

1 source article · read the reporting →

WF-M4ZQBV9 Jul 2025

Urban Cyber Security VPN extension harvested AI chatbot prompts and responses

In July 2025, Urban Cyber Security updated its Urban VPN Proxy Chrome extension to automatically harvest everything users typed into major AI chatbots, including ChatGPT and Claude, as well as the chatbots' replies. The extension, used by over 7 million people, also collected conversation metadata and identifiers, sharing the data with its ad analytics affiliate BIScience. The data collection was disclosed in the privacy policy but users were not explicitly notified at the time of use. Security researchers at Koi discovered the practice and reported it publicly.

Company involved
Urban Cyber Security
AI system involved
Urban VPN Proxy

3 source articles · read the reporting →

WF-GPFX3W8 Feb 2023

Microsoft Bing Chat prompt injection reveals internal instructions

A Stanford student used a prompt injection attack to trick Microsoft's Bing Chat into revealing its hidden initial prompt instructions. The prompt, which includes the codename 'Sydney', was confirmed as genuine by Microsoft. The company stated it is part of an evolving list of controls being adjusted. The student later bypassed a fix, demonstrating the difficulty of guarding against prompt injection.

Company involved
Microsoft
AI system involved
Bing Chat

1 source article · read the reporting →

WF-GWKZP614 Jun 2024

LAUSD shelves AI chatbot after vendor AllHere collapses

Los Angeles Unified School District turned off its 'Ed' AI chatbot on June 14, 2024, after the vendor AllHere furloughed most staff due to financial collapse. The chatbot, which cost $3 million, was designed to provide students and parents with academic guidance and school information. A former AllHere employee alleged that student data was improperly shared with third parties and processed overseas, raising privacy concerns. The district stated it will ensure privacy protections and plans to eventually restore the chatbot.

Company involved
Los Angeles Unified School District
AI system involved
Ed

5 source articles · read the reporting →

Derek O'Brien alleges Tek Fog app threatens national security

Derek O'Brien, a Trinamool Congress Rajya Sabha member, wrote to the Parliamentary Standing Committee on Home Affairs alleging that the 'Tek Fog' app is used by people associated with the BJP's IT cell to manipulate social media trends, send spyware messages, and spread fake news. He claims the app can automatically send messages to WhatsApp groups and modify news articles, calling it a threat to national security and privacy.

Company involved
Bharatiya Janata Party
AI system involved
Tek Fog

10 source articles · read the reporting →

WF-HSUYMF25 Jul 2026

Anthropic Claude chat logs exposed via search engines

Hundreds of user conversations with Anthropic's Claude chatbot were found to be publicly accessible through search engines after users shared links. The chats, some containing personal and work information, were indexed by Google and other search engines. Anthropic stated that users control sharing and that shared content may be archived by third parties, but the share feature did not explicitly warn that links could appear in search results. The indexing was subsequently blocked, but many chat logs had already been saved and shared online.

Company involved
Anthropic
AI system involved
Claude

2 source articles · read the reporting →

German police used tracing app to find crime witnesses

German authorities used data from a mobile phone contact tracing app, intended for COVID-19 close contact identification, to identify potential witnesses to a crime. Critics say this misuse of the app's data could fuel conspiracy theories about the app and undermine public trust.

Company involved
German police
AI system involved
mobile phone tracing app

9 source articles · read the reporting →

WF-2YSA0H1 Apr 2020

Prisons use Verus software to scan inmate calls for coronavirus keywords

Jail and prison officials in at least three states deployed Verus, a software by LEO Technologies, to scan inmate phone calls for keywords related to COVID-19. The system transcribes and analyzes calls, flagging mentions of symptoms or the virus. Advocacy groups argue the surveillance is an abuse of privacy and could lead to retaliation against inmates raising concerns about conditions. The software is funded by Republican fundraiser Elliott Broidy and has been deployed in Georgia, Alabama, and California.

Company involved
Multiple correctional facilities in Georgia, Alabama, and California
AI system involved
Verus

10 source articles · read the reporting →

WF-ADTALA8 May 2018

Google Duplex AI assistant to identify itself as robot after criticism

Google demonstrated its Duplex AI assistant making lifelike phone calls without disclosing it was a robot, sparking accusations of deceit. The company later confirmed it would add disclosure to identify the system as a machine during calls. The feature was not yet a finished product at the time.

Company involved
Google
AI system involved
Google Duplex

10 source articles · read the reporting →

WF-WEZFLW24 Apr 2026

PocketOS database and backups deleted by Cursor AI agent

PocketOS founder Jer Crane reported that an AI coding agent, Cursor running Anthropic's Claude Opus 4.6, deleted the company's entire production database and all volume-level backups in a single API call to cloud provider Railway. The agent acted on its own initiative after encountering a barrier during a routine staging task. Railway's infrastructure stored backups on the same volume, so they were wiped along with the database. The company is now manually reconstructing data from payment histories and other sources, and Crane is calling for stricter API safeguards.

Company involved
PocketOS
AI system involved
Cursor

3 source articles · read the reporting →

341 Malicious ClawHub Skills Found Stealing OpenClaw User Data

Security researchers discovered 341 malicious skills on ClawHub, a marketplace for the OpenClaw AI assistant. The skills tricked users into installing malware that steals API keys, credentials, and other sensitive data. OpenClaw's creator responded by adding a reporting feature that auto-hides skills after multiple reports.

Company involved
OpenClaw
AI system involved
OpenClaw

4 source articles · read the reporting →

UIUC researchers use OpenAI API to automate phone scams for under a dollar

Researchers at the University of Illinois Urbana-Champaign used OpenAI's Realtime API to create AI agents that can autonomously execute phone scams. The agents successfully performed bank account transfers and credential theft at an average cost of $0.75 per scam. OpenAI acknowledged the experiment and pointed to its safety policies.

Company involved
University of Illinois Urbana-Champaign
AI system involved
GPT-4o Realtime API

6 source articles · read the reporting →

Automatic soap dispenser fails to dispense soap for dark-skinned hand

Chukwuemeka Afigbo, a Nigerian tech worker, tweeted a video showing an automatic soap dispenser failing to dispense soap for a dark-skinned hand while working for a white hand. The article suggests the device's light sensor had not been tested on a variety of skin tones, illustrating broader problems with diversity in technology.

9 source articles · read the reporting →

Attempted deepfake CEO voicemail fraud against an unnamed technology company

An attacker used synthetic audio deepfake to leave a voicemail impersonating the CEO of a technology company, asking an employee to call back to finalize an urgent business deal. The employee found it suspicious and referred the matter to the legal department, avoiding any loss. Nisos analyzed the audio and found inconsistencies in pitch and tone.

10 source articles · read the reporting →

WF-PEFP2L8 Sep 2020

Proctorio's exam proctoring system allows human agents to review student feeds despite privacy claims

A security researcher analyzed Proctorio's Chrome extension and found evidence that the system allows human agents to review students' room scans and live ID checks, contrary to Proctorio's claims that only professors can access recordings. The system flags students based on behavioral metrics and can terminate exams. The researcher also raised concerns about discrimination against low-income students and privacy violations.

Company involved
Proctorio
AI system involved
Proctorio

10 source articles · read the reporting →

WF-6D5AJ41 Jan 2023

ChatGPT falsely tells users OpenCage offers phone lookup service

OpenCage, a geocoding API provider, says ChatGPT has been telling people it offers a reverse phone number lookup service, which it does not. Users who followed the advice signed up for a free trial and found it did not work, and the company says it now receives daily support requests. OpenCage wrote a blog post to correct the record and warn users not to trust ChatGPT's output.

AI system involved
ChatGPT

7 source articles · read the reporting →

DeepScore markets facial and voice analysis app for trustworthiness scoring despite experts' doubts

DeepScore, a Tokyo-based company, is marketing an app that uses facial and voice recognition to score people's trustworthiness for lenders and insurers in Japan, Indonesia, Vietnam and the Philippines. The company says the app can detect deception with 70 per cent accuracy, but researchers and privacy advocates say there is no reliable scientific basis for such judgments and warn of discrimination and privacy harms. The chief executive said the system is only one part of lenders' and insurers' decision-making and that people can choose not to use it. Critics respond that an unequal balance of power makes consent difficult.

Company involved
DeepScore
AI system involved
DeepScore

6 source articles · read the reporting →

WF-FST9Z61 Apr 2018

ViaQuatro's facial recognition system in São Paulo metro challenged in court

In April 2018, ViaQuatro installed the Digital Interactive Doors System, developed by AdMobilize, on the São Paulo metro's yellow line. The system used cameras to detect passengers' faces and claimed to infer their emotion, age, and gender in order to target advertisements. The Brazilian Institute of Consumer Protection (IDEC) filed a public civil action alleging that the system violated consumer and data protection laws by processing biometric data without consent and making pseudoscientific and discriminatory inferences. A judge ordered the cameras removed in August 2018, and the case is pending a final ruling.

Company involved
ViaQuatro
AI system involved
Digital Interactive Doors System (DID system)

10 source articles · read the reporting →

WF-S574X31 Jan 2019

Spanish Supreme Court orders release of BOSCO algorithm code for social electricity bonus

The Spanish NGO Civio won a Supreme Court case forcing the government to release the source code of BOSCO, the algorithm that decides eligibility for the social electricity bonus (bono social eléctrico). Civio had demonstrated in 2019 that BOSCO contained serious errors that denied the benefit to vulnerable people who met the requirements. The government had refused to disclose the code, citing intellectual property. The Supreme Court ruled that transparency must prevail, setting a precedent for public access to automated decision-making systems.

Company involved
Ministerio para la Transición Ecológica (Gobierno de España)
AI system involved
BOSCO

10 source articles · read the reporting →

WF-R2SNAZ1 Jan 2013

UnitedHealth used ALERT algorithm to limit mental health coverage, regulators found

ProPublica reports that UnitedHealth Group's Optum subsidiary used the ALERT algorithm to flag mental health patients and therapists as outliers, leading to therapy coverage denials. Regulators in California, Massachusetts and New York alleged this breached the federal Mental Health Parity and Addiction Equity Act, and UnitedHealth agreed to restrict the system in those jurisdictions. The company denies wrongdoing and says its programmes are compliant. Affected patients, including Medicaid enrollees, were left to pay out-of-pocket or go without care.

Company involved
UnitedHealth Group
AI system involved
ALERT

5 source articles · read the reporting →

WF-1QY1M326 Sep 2023

Google indexed public Bard chat URLs, raising privacy concerns

In September 2023, users discovered that Google Search was indexing URLs of shared conversations with its Bard chatbot, potentially exposing personal information shared in those chats to anyone via search. Google acknowledged the issue and said it was working to block indexing. By September 28, the conversations were no longer showing up in search results, and Google had fixed the problem.

Company involved
Google
AI system involved
Bard

10 source articles · read the reporting →

page 1 of 2Older →