Skip to main content

NOPE · AI and people

AI incidents

Reports of AI-related harm and adverse experiences affecting people’s safety, wellbeing, rights and livelihoods. Explore what happened and the evidence available.

NOPE’s core concern is when AI communicates with a person, acts on their behalf, or depicts or impersonates them. The tracker also records consequential decisions, claims and privacy harms involving AI. Each case needs a described connection between AI use and the harm, including private information recorded into or disclosed to an AI service. Each account is reviewed for publication; claims may remain uncorroborated or disputed. How we review and count cases

In this selection

Published cases
165
Countries with reported events
27
Located 118 of 165 cases · 47 unknown
Languages in checked sources
27
Recorded for 164 of 165 cases

12 cases have no reviewed AI-to-person relation yet: 4 not yet reviewed and 8 reviewed as unknown. Show these cases

These figures describe the cases collected by NOPE. Coverage varies with discovery, reporting and available evidence. They do not estimate how often AI-related harm occurs.

Response counts currently use each case’s principal recorded outcome. Further proceedings may be described in its account.

Cases in this selection, counted once in their first known event year. A series may continue beyond that year. Reporting and collection dates are excluded. NOPE has searched recent events more thoroughly than earlier years, so bar heights also reflect collection effort.

Reported severity CriticalHighMediumLow
More filters: AI relation, use, setting, sources and responses
Clear filters

165 of 613 published cases · page 2 of 9

Event date unknownArgentinaUnidentified video tool

Argentine news programme shows an AI-made video using its anchor's cloned image and voice to promote an online casino; co-host says his clean image was used

On 29 September 2026 the Argentine news programme Telenoche (El Trece) showed a video circulating on social media in which its anchor Nelson Castro appears to announce that 'Casino Santa Fe' is now available online. The channel's own write-up says the videos shown were made with artificial intelligence using the images of Lionel Messi and of Castro and that their voices were cloned; Urgente24 describes the Castro clip as a montage made with AI of his face and voice. On air Castro said it was tremendous and hoped nobody had been taken in, and co-host Dominique Metzger said Castro has a very clean image, had never done anything like this, and that the fraudsters use trustworthy people. Paparazzi reported the same day that Castro had earlier denounced the circulation of a video cloning his image and voice. No deceived viewer, loss or complaint is reported for the Castro video; the Messi video and the separate telephone fraud of actor Jorge Martínez shown in the same segment are not part of this case.

Core concern Low reported severity Media Coverage

AI involvement reported · Causal attribution alleged · 3 sources, 2 underlying accounts · Added 08/10/2026

Jun 2025FranceUnidentified image and video tool

Pont-à-Mousson pensioner lost her savings to a fraudulent investment platform promoted by an ad reported as AI-generated likenesses of Macron and Arnault

A retired woman in her eighties living in Pont-à-Mousson (Meurthe-et-Moselle, France) responded in summer 2025 to an online advertisement in which AI-generated likenesses of Emmanuel Macron and Bernard Arnault promoted a lucrative investment platform. A supposed financial adviser then called her, she invested 5,000 euros, received several hundred euros of 'interest', and reinvested repeatedly until the advertisement and the site disappeared. L'Est Républicain (7 June 2026) and Capital put the loss at 10,000 euros; Le Parisien, citing ICI and L'Est Républicain, reports 25,000 euros, all her savings. The Pont-à-Mousson police station says an investigation was opened and that it receives three to five complaints a week for this kind of fraud. The account rests on the police station's warning as reported by the regional press, which describes the advertisement as AI-generated; the advertisement itself was not examined by the outlets and the quoted police statements do not mention AI.

Core concern Medium reported severity Investigation Opened

AI involvement reported · Causal attribution alleged · 4 sources, 1 underlying account · Added 07/10/2026

Event date unknownUnited StatesDesire AI (reported)

Shawnee, Oklahoma police say a man used an AI app to make child sexual abuse images from photos of local children, one of a neighbour; five felony counts filed

Police in Shawnee, Oklahoma, say a local man used an artificial-intelligence app to create child sexual abuse images from photographs of children in his community, and Pottawatomie County prosecutors have charged him with five felony counts of possessing and creating child pornography. According to News On 6 (28 September 2026), the Oklahoma State Bureau of Investigation's Internet Crimes Against Children task force was tipped through a national database in August, Shawnee police executed a search warrant, and police say they found more than 200 child sexual abuse images and videos on two phones, about 100 of which appeared to have been created through an AI app. Court documents cited by the outlet say police identified some of the young victims through selfies they had posted on social media, and investigators believe one photo used was of a neighbour, taken from the man's front porch. KFOR reported on 6 October 2026 that court documents say he admitted using an app called "Desire AI", that a juvenile's online selfie was turned into sexually explicit AI images, and that a photo he took of a mother and her two-year-old daughter was altered to make both appear naked. The account rests on the police and OSBI statements and the charging documents as reported; the total number of children depicted is not stated.

Core concern High reported severity Involving minors Criminal Charges

AI involvement reported · Causal attribution alleged · 3 sources, 1 underlying account · Added 07/10/2026

Event date unknownEvent location unknownGoogle Antigravity (reported)

First-person forum post: Antigravity user reports the agent emailed an unreviewed draft to a client seconds after saying it would wait for confirmation

In a post on the Google AI Developers Forum dated 5 October 2026, filed in the Google Antigravity category, a user reports that an agent conversation running with no user present sent an email to external recipients three seconds after writing that it was waiting for the user's confirmation. By the author's timeline, the agent had drafted the email and marked it ready for review, then, after a context compaction, described sending it as the next step in its queue and ran the send command. It then spent about thirty minutes merging and closing pull requests and issues, pushing commits and deleting 85 local branches without being asked. The author says an unreviewed draft document reached a client and that this had professional consequences. The account is the author's own and is uncorroborated; a community reply pointed to permission rules and hooks that can force a prompt before such commands.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 1 source · Added 07/10/2026

Event date unknownEvent location unknownCline

GitHub issue by a Cline user: a cleanup command the agent built ran against a Windows data drive's root, deleting about 1.5 TB of personal files, user says

In a GitHub issue filed on 6 October 2026 in the Cline repository, a user reports that a temp-folder cleanup command built by the Cline coding agent in Act mode on Windows was mangled by nested quoting and ran a recursive delete against the root of the G: data drive instead of the intended subfolder. The issue text, which the user says the Cline agent wrote on their behalf, puts the loss at about 1.5 TB of photos, videos and documents plus the project the agent was editing; the code was recoverable from git, the personal data was not, and recovery from the SSD largely failed. A commenter reproduced the quoting mechanism in a sandbox and found that PowerShell split the command so that rmdir received a bare backslash as a second target, which is the root of the current drive; a contributor proposed an Act-mode guard. The loss itself rests on the user's account.

Core concern Medium reported severity

AI involvement reported · Causal attribution alleged · 1 source · Added 07/10/2026

Oct 2026Event location unknownChatGPT (reported)

Patient reports a nurse was already recording with ChatGPT when they declined AI notes

In a public Reddit account, a patient says a nurse asked whether AI could take notes at a medical appointment. After the patient objected, the nurse picked up a phone that the patient described as showing ChatGPT already recording. The patient describes the recording as occurring without prior notice and says their objection was dismissed. In replies, the author says the phone had Chrome open to ChatGPT and recording had started when the nurse entered the room, before asking consent. This is an uncorroborated first-person account. It does not establish what was captured, whether anything was sent to a server, retained or used for training, or whether a law was broken. The clinic’s location, account type and response are unknown.

Contextual tracker case Low reported severity

AI involvement reported · Causal attribution alleged · 3 sources, 1 underlying account · Added 06/10/2026

Event date unknownEvent location unknownDelta Concierge

Delta's Concierge AI cancelled a passenger's return flight that, she says, it had confirmed would stay booked; Delta blamed a bug and restored the trip

A Delta Platinum Medallion member posted on X on 3 August 2026 that Delta's AI Concierge in the Fly Delta app cancelled her flight home from Los Angeles after saying it would not, and that customer service said they could not help and expected her to pay almost twice as much for a one-way ticket. According to View from the Wing, the Concierge told her 'Your JFK to LAX flight has been canceled, and your LAX to JFK flight remains booked', while her refund record listed both flights. Delta told the blog a bug caused the return segment to be unintentionally cancelled when a customer attempted a partial-trip cancellation, which Concierge does not support, and said her original itinerary was quickly restored with no disruption to her planned travel and that it corrected the functionality.

Core concern Low reported severity Internal Action

AI involvement supported · Causal attribution supported · 2 sources · Added 06/10/2026

28 Oct 2025Event location unknownPriceline Penny

Priceline's Penny chatbot told a customer a non-refundable booking qualified for a full refund; Priceline later admitted misinformation, Telegraph says

A reader of The Telegraph's consumer column, writing from north London, says that on 28 October 2025 Priceline's AI chatbot Penny, the only contact route the reader could find, said a non-refundable three-night hotel booking in Thailand costing £386.91 was eligible for a full refund. The reader agreed to cancel and received a cancellation confirmation, but no refund arrived; the hotel said it would not refund and had not been told of the cancellation, and the reader spent about a month passed between Priceline and its sister company Agoda. After the columnist pressed Priceline, it paid £363.11 after foreign-currency charges, after the reader had waited almost six months for the refund, and emailed the reader acknowledging that the chatbot had given 'misinformation'. The column was published on 18 May 2026.

Core concern Low reported severity Media Coverage

AI involvement reported · Causal attribution supported · 2 sources, 1 underlying account · Added 06/10/2026

Event date unknownIndiaUnidentified image tool

Greater Noida: a woman and her niece complain to police that an unknown person used AI to turn their photos into obscene images and spread them online

Amar Ujala reported on 1 October 2026 that a woman and her niece living in Greater Noida, Gautam Buddh Nagar district, Uttar Pradesh, complained to the police cyber cell that an unknown person had used AI to edit their photos into obscene images and spread them on social media. The woman told the paper that a family member had posted the photos on social media a few days earlier. The complaint was made on Thursday, the day the report was published, and police said they were examining the links on social media and other digital evidence. No accused is identified. The account rests on the complaint as relayed by one local report.

Core concern Medium reported severity Investigation Opened

AI involvement reported · Causal attribution alleged · 1 source · Added 06/10/2026

Event date unknownEvent location unknownUnidentified AI phone support system

Delivery driver says DoorDash's AI support line promised an unassignment would not affect their completion rate, which then fell

In a public post to r/doordash_drivers created on 5 October 2026 (UTC), a DoorDash driver writes that one order of a two-order batch at a restaurant was ready and the other had not been started. They say they called support and an AI answered, offered either a ten-minute wait for a penalty-free unassignment or an immediate unassignment, and, when they agreed only on that condition, told them it would unassign them without affecting their completion rate. They write that after the unassignment their completion rate fell from 98 to 97, and describe it as the only statistic that can lead to deactivation. A commenter reports a similar assurance from the support line. The account is the poster's alone and uncorroborated; no response from DoorDash is reported.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 1 source · Added 06/10/2026

2 Oct 2026United StatesUnidentified AI phone ordering system

Patient says a specialty pharmacy's AI phone line confirmed a prescription delivery that was never ordered, leaving them three days without the medication

In a public post to r/legaladvice created early on 6 October 2026 (UTC), a person who gives their location as Colorado, United States, writes that their insurer moved their prescription to the specialty pharmacy Accredo. They say that when they called the pharmacy's number to set up a delivery, an "AI phone service" took the order, confirmed delivery for Friday 2 October and repeated the details back before hanging up. On that Friday, they write, they checked online and found the medication had never been ordered. They say a second call was transferred straight to a person, the delivery was rescheduled for Tuesday, and they would go three days without the pills, which they take for a severe chronic intestinal disease alongside IV treatment. They say their doctor was consulted and does not like the gap. The poster also says part of the problem was their own late ordering. The account is the poster's alone and uncorroborated; no response from the pharmacy is reported.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 1 source · Added 06/10/2026

Event date unknownEvent location unknownUnidentified video tool

Paris hospital group says AI-made Facebook videos used a parasitology professor's face and voice to sell an antiparasite product; complaint filed

AP-HP, the Paris public hospital group, and Sorbonne Université said in a communiqué on 5 October 2026 that three videos published on Facebook used the image and voice of Professor Renaud Piarroux, a parasitology specialist at the Pitié-Salpêtrière hospital, to promote a product presented as ridding the body of parasites. The institutions said the videos were unquestionably a montage made with artificial intelligence and were put online without his consent. AP-HP filed a complaint and asked Meta to remove them; Le Parisien reports that the videos were removed and that similar ones later reappeared. AP-HP warned that such content can lead people to use products with no scientific support. Le Parisien reported on 10 October 2026 that since the end of the summer Professor Piarroux's mailbox has filled with messages from strangers; one, quoted by the newspaper, wrote that after watching a video about parasites they would like to know how to obtain the treatment. Le Parisien, which says it saw the clips, describes them as sponsored, animated and entirely fabricated with artificial intelligence. No source reports that anyone bought the product.

Core concern Low reported severity Internal Action

AI involvement reported · Causal attribution supported · 2 sources, 1 underlying account · Added 06/10/2026

Event date unknownEstoniaUnidentified AI writing tool

Estonia: Tallinn Administrative Court reported to have fined ten complainants over an AI-drafted filing that cites scientists who do not exist

According to Delfi Ärileht and ERR (both 26 June 2026), complainants who went to the Tallinn Administrative Court to contest a felling permit sent the court a document that cited scientific work on the effects of clear-cutting. The court found that the Estonian scientists named in the references do not exist and that the studies could not be found. It asked how the document had been produced, gave the complainants the chance to submit the cited works, and warned of a fine for attempting to mislead the court. The complainants replied that using AI is not forbidden and that they had not meant to mislead the court. The court fined one complainant 150 euros and nine others 50 euros each, saying complainants are responsible for the accuracy of what they submit. Delfi Ärileht reports that the Tallinn Circuit Court agreed and that the Supreme Court declined the case that week, so the fines are in force. No report names the tool or says which complainant used it.

Core concern Low reported severity Regulatory Action

AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 05/10/2026

Sept 2026Event location unknownMeta Muse agent

Inc. columnist Jason Aten says Meta's Muse agent read and synced the Messages database on his Mac after he chose not to grant access, then gave him an inaccurate explanation; Meta says the integration is opt-in and cannot run without the user enabling it

In a column for Inc., technology columnist Jason Aten writes that after he installed Meta's Muse agent on his iPhone and a Mac mini, it sent him a push notification proposing a column based on a conversation he was having with his podcast co-host and flagged a message from his editor. He says he had not asked for this and had explicitly chosen not to give Muse access to his messages. When he asked how it knew, Muse told him it received only the text of incoming notification banners. He writes that this was untrue: he found that Muse had synced his local Messages database, to row 187,462 on his device, while the app's settings showed Full Disk Access as not enabled. TechCrunch reported on 30 September 2026 that Meta disputes the account. Meta's communications vice-president said the Messages integration is entirely opt-in and requires the user to enable both Full Disk Access and the Messages connector, and a Meta executive said the protections cannot be circumvented and that the agent's explanation to him was incorrect.

Core concern Low reported severity Media Coverage

AI involvement reported · Causal attribution disputed · 2 sources · Added 05/10/2026

Apr 2026AustraliaOpenClaw

Australia: an OpenClaw agent running Claude, asked to book its user into a gym class, reportedly exploited a flaw in the booking software and cancelled another member's waitlist reservation, which it said it could not restore

ABC News Australia reported on 10 August 2026 that a man who works for an Australian company selling AI products asked his personal AI agent, built on OpenClaw and running Anthropic's Claude, to book him into a gym class. By his account, the agent found a vulnerability in the booking software and booked classes further ahead than the gym allowed. When he asked whether it could move him up the waitlist for a class that week, the agent reported that it had tested cancelling the reservation of the person in first position and that the cancellation had gone through. He asked it to undo this and it replied that it could not add the person back. He then had the agent email the booking-software provider about the vulnerability. BBC News reported the next day that the event happened in April and that the user declined an interview and had deleted his blog post about it. The software company told the ABC it did not discuss specific security matters, and Anthropic did not respond.

Core concern Low reported severity Media Coverage

AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 05/10/2026

Event date unknownUnited StatesUnidentified AI writing tool (suspected)

A University of Houston-Downtown senior was given an F in a music appreciation course after the professor claimed journal entries and discussion posts were AI-generated; two appeals failed before a student discipline committee overturned the finding

FOX 26 Houston reported on 2 October 2026 that a senior studying business management at the University of Houston-Downtown received an F in a music appreciation course 'last August' after the professor claimed the student had submitted several journal entries and discussion posts 'determined to be copy and pasted AI generated'. The student appealed. The professor and then the department chair denied the appeal, and a student discipline committee of four deans ruled in the student's favour. The station quotes the decision as based on concerns about the reliability and consistency of the evidence used to support the original finding. The report does not say how the work was determined to be AI-generated or whether a detection tool was used. The student described being shocked and incensed by the grade and relieved by the outcome.

AI relation unknown Low reported severity

AI involvement suspected · Causal attribution alleged · 1 source · Added 05/10/2026

Jan 2025Event location unknownUnidentified voice-cloning tool

Shanghai: an appeal court upheld a 50,000 yuan award to a voice actor after finding that AI-synthesised audio in a company's online promotion was identifiable as the voice actor's voice

Chinese outlets reported on 29 September 2026, citing the Shanghai courts, that the Shanghai No. 1 Intermediate People's Court had concluded what it called Shanghai's first voice-rights case arising from AI-synthesised speech. According to the court's account, a voice actor who publishes work on an app learned from a friend in January 2025 that a company appeared to be using the voice actor's voice in an online user-acquisition promotion, judged the audio to be AI-synthesised, had it notarised and sued for 300,000 yuan. The company said the audio was generated by AI it had developed but that the training material could not be confirmed, and denied using the voice actor's voice. A forensic comparison rated about 90 percent of the measured features as fairly or highly similar. The first-instance court awarded 50,000 yuan and both sides appealed. The appeal court held that the company had put an identifiable synthetic voice to commercial use without consent, dismissed the appeals and upheld the award.

Core concern Low reported severity Lawsuit Filed

AI involvement supported · Causal attribution supported · 3 sources, 1 underlying account · Added 05/10/2026

Event date unknownIndiaUnidentified image and video tool

Ambad, Jalna district, Maharashtra: a woman active in the Maratha reservation agitation complained to police that obscene photos and videos of her, which Pudhari and Divya Marathi report were made with AI, were posted on Facebook with rape and death threats after she publicly criticised the agitation's leader; Ambad police registered an FIR against five named profile holders and five to six others, reported on 2 October 2026

According to Pudhari and Divya Marathi (both 2 October 2026), a 35-year-old woman from Ambad who had been active in the Maratha reservation agitation publicly criticised the stance of its leader, Manoj Jarange Patil, in remarks to the media on 26 September. According to Pudhari's account of her complaint, some of his supporters then targeted her on social media: obscene photos and videos of her made with AI were posted on Facebook, and posts abused her in obscene language and threatened rape and death. Divya Marathi reports that her face was placed on obscene pictures and videos with AI deepfake technology and that the material spread on Facebook, WhatsApp and Telegram. She went to Ambad police station on 1 October with screenshots, saying she had been defamed and that she and her family were in danger. Police registered an FIR against five named profile holders and five to six others under the Bharatiya Nyaya Sanhita and section 67 of the Information Technology Act. No arrest is reported.

Core concern Medium reported severity Investigation Opened

AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 05/10/2026

2 Aug 2020United StatesUnidentified license plate reader

Aurora, Colorado: police held a woman and four children at gunpoint in 2020 after a plate reader matched her SUV to a stolen motorcycle, The Denver Post reports

On 2 August 2020 Aurora police officers stopped an SUV they believed to be stolen, ordered the woman driving it and four children to lie on the ground at gunpoint, and handcuffed two of the children. The Denver Post reported that a license plate reader at an Aurora intersection had alerted police because the SUV had the same plate number as a stolen motorcycle from Montana, and that officers did not check the reading or the vehicle description. Prosecutors declined to charge the officers in January 2021 and called what happened unacceptable and preventable. The department said all officers were repeating training on license plate scanners. Sentinel Colorado reported that the department's system had flagged the SUV, which carried Colorado plates, and that the City of Aurora agreed in February 2024 to a $1.9 million settlement with the woman and the children to resolve a lawsuit over the officers' actions. One officer was suspended for 160 hours. The woman said the stop destroyed her mentally and that one of the children became withdrawn.

Contextual tracker case Medium reported severity Involving minors Lawsuit Settled

AI involvement reported · Causal attribution supported · 2 sources · Added 05/10/2026

Event date unknownThailandUnidentified video and voice-cloning tool

Thailand: cyber police say an illegal gambling website, KFC888, used AI to fake the face and voice of luk thung singer Hai Arpaporn Nakhonsawan in advertising clips that urged people to sign up, as if she endorsed it; two Bangkok premises searched and a company representative summoned to acknowledge charges, reported 1 to 2 July 2026

Manager Online reported on 2 July 2026, citing the Royal Thai Police and its Cyber Crime Investigation Bureau, that cyber police had moved against a large online gambling network after finding that it used AI to fake the face and voice of Hai Arpaporn Nakhonsawan, a well-known luk thung singer, in advertising clips that urged people to join the website. The clips gave the false impression that she recommended the site, although she had no involvement. Police traced the clips to the website KFC888, which offered online lottery, foreign stock-index lottery and sports betting, with turnover estimated at about 120 million baht a month. They searched two locations in Bangkok, a residence believed to be linked to the site's executives and an electronic payment-gateway company, seized computers and documents, and summoned an authorised person of the company to acknowledge charges including a Computer Crime Act offence over AI-created images that may damage others. Komchadluek reported on 1 July that the singer went to the cyber police after Facebook Reels clips altered with AI used her face and voice without her consent.

Core concern Low reported severity Investigation Opened

AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 04/10/2026

Cases may have several effects and sources. Mixed accounts qualify when they include a reported harm or adverse experience. People are counted within individual cases where sources support a number; we do not publish a collection-wide total of distinct people.

A source’s existence, the experience it reports and AI’s causal role are separate questions. A lawsuit records allegations unless a subsequent finding establishes them.

Methodology and corrections · Subscribe via RSS · Suggest a case or correction · Find support

Last dataset update: 11/10/2026. Dataset available under CC BY 4.0.