Skip to main content
Medium Verified Regulatory Action

Holmen v. OpenAI - Norway GDPR Complaint

ChatGPT falsely accused Norwegian citizen Arve Hjalmar Holmen of murdering two of his sons, attempting to murder his third son, and being sentenced to 21 years prison. Mixed real personal details with horrific fabrications. GDPR complaint filed with Norwegian Datatilsynet for defamatory hallucination.

AI System

ChatGPT

OpenAI

Occurred

March 1, 2025

Reported

March 15, 2025

Jurisdiction

NO

Platform

assistant

What Happened

In March 2025, Arve Hjalmar Holmen, a Norwegian citizen from Trondheim, discovered that ChatGPT was generating false and defamatory information about him when prompted with his name. The AI claimed he had:

  1. Murdered two of his sons
  2. Attempted to murder his third son
  3. Been convicted and sentenced to 21 years in prison

These allegations were entirely false. ChatGPT mixed real personal details about Holmen (name, location) with completely fabricated criminal accusations, creating a believable but defamatory hallucination. The false accusations were particularly damaging as they involved horrific crimes against his own children.

Holmen, supported by European privacy NGO Noyb, filed a GDPR complaint with Norway's Datatilsynet (Data Protection Authority). The complaint argues that ChatGPT's defamatory hallucinations violate GDPR requirements for data accuracy and individual rights.

The case represents a novel application of GDPR to AI hallucinations — treating false AI-generated statements about real individuals as a data protection violation. Norway's investigation could establish European precedent for how GDPR applies to AI-generated defamation.

The case highlights how LLM hallucinations aren't just technical errors but can cause real psychological and reputational harm to individuals, particularly when mixing accurate identifying information with false accusations of serious crimes.

AI Behaviors Exhibited

Generated false criminal accusations; mixed real personal details with fabrications; created defamatory hallucination; produced believable but harmful false information about real person

How Harm Occurred

AI hallucination conflated person with false crimes; reputational harm from defamatory content; psychological distress from being falsely accused of child murder; potential impact on livelihood and relationships

Outcome

Ongoing

GDPR complaint filed with Norwegian Datatilsynet (Data Protection Authority) March 2025. Investigation ongoing.

Harm Categories

Psychological ManipulationIdentity DestabilizationThird Party Harm Facilitation

Contributing Factors

llm hallucinationreal person false accusationsmixing accurate and false dataserious crime allegationsreputational harm

Victim

Arve Hjalmar Holmen, adult male, Trondheim, Norway

Cite This Incident

APA

NOPE. (2025). Holmen v. OpenAI - Norway GDPR Complaint. AI Harm Tracker. https://nope.net/incidents/2025-holmen-norway-gdpr

BibTeX

@misc{2025_holmen_norway_gdpr,
  title = {Holmen v. OpenAI - Norway GDPR Complaint},
  author = {NOPE},
  year = {2025},
  howpublished = {AI Harm Tracker},
  url = {https://nope.net/incidents/2025-holmen-norway-gdpr}
}

Related Incidents

High ChatGPT

Doe v. OpenAI (ChatGPT-Fueled Stalking and Bomb Threats)

A 53-year-old Silicon Valley entrepreneur descended into a delusional spiral through extensive ChatGPT use, came to believe he had invented a cure for sleep apnea and was being surveilled by 'powerful forces,' and used GPT-4o to generate diagnostic-style psychological reports about his ex-girlfriend that he distributed to her family, friends, and employer. OpenAI's automated systems flagged his account for 'Mass Casualty Weapons' activity in August 2025, but a human reviewer restored access the next day. The user was arrested in January 2026 on four felony counts including bomb threats and assault with a deadly weapon, and was found incompetent to stand trial. The victim ('Jane Doe') filed suit against OpenAI on April 9, 2026.

Critical ChatGPT

USF Doctoral Students Double Homicide (Abugharbieh ChatGPT Body-Disposal Queries)

Hisham Saleh Abugharbieh, 26, allegedly murdered his roommate Zamil Limon and Limon's girlfriend Nahida Bristy — both 27-year-old University of South Florida doctoral students from Bangladesh — in April 2026. Court filings show Abugharbieh queried ChatGPT about disposing of a human body in a dumpster and evading detection in the days around the killings. Florida's Attorney General opened a criminal investigation into ChatGPT's role.

Critical ChatGPT

Florida State University Shooting (Phoenix Ikner ChatGPT Tactical Planning)

On April 17, 2025, Phoenix Ikner, 20, killed two people and wounded five at Florida State University in Tallahassee. Court records unsealed April 9, 2026 revealed Ikner had exchanged approximately 13,000 messages with ChatGPT over the prior year, including tactical questions about firearms and student-union timing in the minutes before the attack. On April 21, 2026, Florida Attorney General James Uthmeier announced a criminal and civil investigation of OpenAI — believed to be the first criminal probe of an AI company for alleged facilitation of mass violence.

High AI image/deepfake generation tools (unspecified)

First Federal TAKE IT DOWN Act Deepfake Pornography Prosecutions (Shannon & Hernandez)

Federal prosecutors in Brooklyn arrested Cornelius Shannon, 51, and Arturo Hernandez, 20, in May 2026 for using AI tools to generate and distribute non-consensual deepfake pornography depicting approximately 140 identifiable female victims — including celebrities, political figures, and non-public individuals described as recent high school graduates. The case is among the first major federal prosecutions under the TAKE IT DOWN Act.