Skip to main content

NOPE · AI and people

AI incidents

Reports of AI-related harm and adverse experiences affecting people’s safety, wellbeing, rights and livelihoods. Explore what happened and the evidence available.

NOPE’s core concern is when AI communicates with a person, acts on their behalf, or depicts or impersonates them. The tracker is wider: it also records consequential decisions and claims about people. Each account is reviewed for publication; claims may remain uncorroborated or disputed. How we review and count cases

In this selection

Published cases
8
Countries with reported events
4
Located 7 of 8 cases · 1 unknown
Languages in checked sources
7
Recorded for 8 of 8 cases

1 case has no reviewed AI-to-person relation yet: 0 not yet reviewed and 1 reviewed as unknown. Show these cases

These figures describe the cases collected by NOPE. Coverage varies with discovery, reporting and available evidence. They do not estimate how often AI-related harm occurs.

Response counts currently use each case’s principal recorded outcome. Further proceedings may be described in its account.

Cases in this selection, counted once in their first known event year. A series may continue beyond that year. Reporting and collection dates are excluded. NOPE has searched recent events more thoroughly than earlier years, so bar heights also reflect collection effort.

Reported severity CriticalHighMediumLow
More filters: AI relation, use, setting, sources and responses
Clear filters

8 of 404 published cases

17 Apr 2026 to 31 May 2026Event location unknownMeta AI support assistant

Third parties exploit Meta's AI-assisted Instagram account recovery tool to reset passwords, with account takeovers reported (17 April to 31 May 2026)

Meta announced the rollout of its AI support assistant on Facebook and Instagram on 19 March 2026. Meta's filing with the Maine Attorney General (notice dated 5 June 2026) says unauthorized third parties exploited a vulnerability in its AI-assisted Instagram account recovery tool (High Touch Support) to receive password reset links for accounts they did not own, and the listing gives 17 April 2026 as the breach date and 31 May 2026 as the discovery date. Videos that attackers posted, as described by TechCrunch, 404 Media and Krebs on Security, show attackers asking the assistant in a chat to link a new email address to a target username. Reported victims include the security researcher Jane Manchun Wong, who posted that her password was changed without her knowledge, the Instagram account of the U.S. Space Force's Chief Master Sergeant, and the accounts of Sephora and a dormant Obama White House page (TechCrunch marks the last as disputed by Meta). Krebs and the BBC report pro-Iran defacement of some accounts, and TechCrunch reports that some victims were locked out and that short handles were offered for resale. The filing gives 20225 persons affected in total and 30 in Maine, and the notice calls the Maine figure an upper bound. Meta says the tool worked as intended, that a bug in a separate code path failed to check the email address, and (through a spokesperson to Gizmodo) that the failure was not due to the AI agent itself. Meta says it disabled the tool on 31 May 2026, the day it discovered the exploitation.

Contextual tracker case Low reported severity

AI involvement supported · Causal attribution disputed · 12 sources, 2 underlying accounts · Added 29/09/2026

19 Jun 2026United StatesTesla Full Self-Driving

Katy, Texas: Tesla Model 3 with Full Self-Driving (Supervised) engaged crashes into a home and kills a 76-year-old woman, and NTSB preliminary data indicate the driver overrode the system with the accelerator

At about 8:03 p.m. on 19 June 2026 a 2025 Tesla Model 3 left a residential street in Katy, Texas, and crashed into a house at more than 70 mph. A 76-year-old woman inside the house died and the driver sustained minor injuries. The driver told deputies and first responders that the car was on Autopilot or in self-driving mode. The NTSB preliminary information (15 July 2026) states that the driver had engaged Full Self-Driving (Supervised) and that data recovered from the vehicle indicated the driver manually overrode it by pressing the accelerator pedal to 100% before the crash. A Tesla vice president said the same in a post on X on 22 June. The Harris County Sheriff's Office arrested the driver and charged the driver with manslaughter (reported 2 July), and the affidavit alleges the driver accelerated to an excessive speed, did not brake, and that investigators found no mechanical malfunction. The victim's family sued Tesla and the driver, alleging that Autopilot and Full Self-Driving were defective and that the car either failed to detect the end of the street or experienced sudden unintended acceleration, and the lawsuit alleges that another person in the home was injured. The NTSB has not determined a probable cause and NHTSA opened a special crash investigation. Whether the driver-assistance system contributed to the crash is disputed.

Core concern Critical reported severity

AI involvement disputed · Causal attribution disputed · 11 sources, 6 underlying accounts · Added 29/09/2026

16 Apr 2026KenyaMeta AI (reported)

Kenya: Sama announces more than 1,000 redundancies (1,108 by its own figure) after Meta ends its AI data-annotation contract, less than two months after annotators described intimate footage from Meta's AI glasses, and whether the two are linked is disputed

On 16 April 2026 Sama, an outsourcing company with operations in Nairobi that did AI data-annotation work for Meta, announced that Meta had given formal notice ending its contract and that a redundancy process would affect more than 1,000 employees. Sama put the figure at 1,108 workers, and the Oversight Lab said the workers had six days' notice. The decision came less than two months after the SvD and GP investigation in which Sama annotators said they had seen intimate footage from users of Meta's AI glasses. Meta said it paused its work with Sama the month before while it looked into those claims and then decided to end the work because Sama does not meet its standards. Sama says it was never notified of any failure to meet those standards. A Kenyan workers' organisation alleges Meta's decision was caused by staff speaking out, which Meta had not addressed when the BBC reported it on 30 April 2026. Employees told SvD that Sama tightened security and tried to identify who had spoken to journalists, which Sama denies. The workers are described by role and are not named.

AI relation unknown Medium reported severity

AI involvement disputed · Causal attribution disputed · 5 sources, 4 underlying accounts · Added 29/09/2026

20 May 2026United StatesMeta internal AI systems (reported)

US: 26 Meta employees sue alleging an AI-assisted May 2026 layoff selection penalized workers on protected leave, Meta says people made the decisions

On 20 May 2026 Meta began notifying about 8,000 employees (roughly 10 percent of its workforce) that they had been selected for layoff. On 13 July 2026 twenty-six anonymous employees who had taken or requested medical, pregnancy, parental or family leave, or a disability accommodation, sued Meta in the US District Court for the Northern District of California. The complaint alleges, on information and belief, that Meta used internal AI-assisted systems (including the Metamate assistant, keystroke and activity monitoring, AI-token-usage dashboards and algorithmic performance ranking) to score, rank and select employees, and that these inputs could not accumulate during protected leave, so plaintiffs on leave were disproportionately selected. Meta says workforce decisions were made by people, not AI, and that no selection decision was made by AI. On 17 July 2026 the court denied a temporary restraining order, recording that the parties dispute whether Meta used AI in the terminations and finding serious questions on the merits but no shown likelihood of success. One plaintiff was voluntarily dismissed on 3 August 2026. The preliminary injunction motion was argued on 24 August 2026 and taken under submission. The plaintiffs are pursuing their merits claims in arbitration and the allegations are unproven.

Contextual tracker case Medium reported severity

AI involvement disputed · Causal attribution disputed · 10 sources, 5 underlying accounts · Added 29/09/2026

21 Sept 2026 to 25 Sept 2026FrancePangram AI-text detector

France: the Académie Goncourt removes Thélyson Orélien's bestselling novel from its prize selection, saying it is in all likelihood largely AI-generated, days after an anonymous X account publicised Pangram AI-detector scores; the author denies using AI, and the Académie also cites separate plagiarism in his older texts

On 21 September 2026 an anonymous X account, Balance ton Claude, said it had run excerpts of Thélyson Orélien's debut novel C'était ça ou mourir through the American AI-detection software Pangram, with some passages scoring up to 100 per cent probability of AI generation. On 25 September the Académie Goncourt removed the novel from the first selection of sixteen books for its 2026 prize, stating that the work is 'in all likelihood very largely the product of an artificial intelligence', based on 'the convergent result of several analyses by researchers and journalists', and also citing plagiarism in older texts by the author published in Canada (at least one short story and articles), which do not concern the novel. Orélien, a 38-year-old Canadian-Haitian writer whose novel had won the Fnac novel prize, denies using AI and says its repetitions and certain rhythms reflect his linguistic and cultural world and may be misread by automated tools. His Montreal publisher Boréal suspended promotional activities, saying it could neither confirm nor refute the allegations. Essayist Samuel Fitoussi said he was one of the people behind the account. Whether AI was used to write the novel is disputed; AI-detector reliability is itself contested in the coverage.

Contextual tracker case Medium reported severity Internal Action

AI involvement reported · Causal attribution disputed · 4 sources, 1 underlying account · Added 28/09/2026

19 Jun 2026 to 13 Aug 2026BrazilChatGPT and OpenAI moderation

São Gabriel da Palha, Espírito Santo: a 36-year-old farmer was held in pre-trial detention for 54 days after OpenAI reported his ChatGPT messages about killing his eight-year-old son to the FBI, which passed them to Brazilian authorities; a court released him on 13 August 2026 because the investigation had not been completed, with an ankle monitor and a ban on contacting the child, and no charges had been filed; he denies intending harm and his lawyer says he was talking nonsense to a chatbot

Over about two months in 2026 a 36-year-old farmer in rural São Gabriel da Palha, Espírito Santo, exchanged messages with ChatGPT that the Espírito Santo civil police describe as plans to kill his eight-year-old son, attack other people and kill himself; one message said he had offered 50,000 to someone to kill him and his son. OpenAI reported the messages to the FBI, which passed them through Brazil's Ministry of Justice cyber-operations laboratory to the state police on 16 June; the man was arrested on 19 June as he left home, a day before the date on which police believed the plan would be carried out. Police say what the platform provided was corroborated at the scene (four bottles of unidentified substances and a knotted rope were found) but that he denied intending to kill the child; his lawyer says he was talking nonsense to a chatbot and took no concrete step. After 54 days in custody a court granted habeas corpus on 13 August 2026 because the inquiry had not been concluded and no charges had been brought, imposing electronic monitoring and a ban on approaching or contacting his son and the child's mother. Police were still examining his phone and awaiting forensic results. OpenAI provided user details and his messages but not ChatGPT's replies and did not answer the BBC's question why; it told the BBC it may notify law enforcement when it detects a credible and imminent risk of harm to others. The case is recorded as an institutional response to AI use: the reported adverse consequence is the detention without charge, and the police account that the report prevented a planned killing is preserved as context.

Core + contextual relations High reported severity Investigation Opened

AI involvement supported · Causal attribution supported · 4 sources, 2 underlying accounts · Added 23/09/2026

5 Sept 2026 to 20 Sept 2026United StatesUnidentified video tool

Texas: State Rep. Vikki Goodwin, the Democratic candidate for lieutenant governor, filed a sworn complaint with the Travis County Sheriff's Office on 19 September 2026 alleging that two campaign ads posted on Lt. Gov. Dan Patrick's X account used AI-generated video of her saying things she never said; the posts were deleted the next day, her campaign says, and Patrick's campaign calls them obvious parody

On Saturday 19 September 2026 Vikki Goodwin, an Austin state representative running against Republican Lt. Gov. Dan Patrick, filed a complaint with a notarised affidavit at the Travis County Sheriff's Office accusing Patrick of violating Texas's 2019 election deepfake law, after his campaign posted two ads (5 and 12 September, on his non-government X account) containing AI-generated videos of her. In the affidavit she stated: 'I did not personally do or say the things depicted in the video; although the "person" in the video appears to be me, it was not actually me', and that the video was posted 'with the intent to deceive Texans, injure a candidate, or influence the result of an election'. She told KUT the ads made it look as though she favoured raising taxes, which she says she opposes in every campaign speech. The sheriff's office confirmed receipt of the complaint without further comment. Patrick's campaign spokesman told the New York Times the material was 'an obvious parody produced to entertain' and that none of it was published within 30 days of the election; the posts were taken down the day after the complaint, according to Goodwin's communications director. Goodwin said she doubted the sheriff's office would follow up now that the posts were removed. A conviction under the law is a class A misdemeanour.

Core concern Low reported severity Media Coverage

AI involvement supported · Causal attribution disputed · 4 sources, 3 underlying accounts · Added 22/09/2026

2 Sept 2026United StatesMeta AI

Utah: Meta AI's suggested prompts under a mother's Instagram video compiled her young daughters' names, birth details and old photos and her likely home location; Meta said the prompts 'missed the mark' and changed the feature

On 1 September 2026 Kalie Robins, a Utah travel creator, posted a short Instagram video of herself singing in the car with one of her daughters; it was also shown on Facebook. The next day she noticed Meta AI had placed suggested questions under the post, starting with 'Who's the child passenger?'. Clicking the prompts, she said, produced her two daughters' names, birth information, photos and videos drawn from her own and relatives' past posts, including a newborn photo from her mother's account and a picture she believed she had deleted years earlier, and a further prompt, 'Where does Kalie Robins live?', assembled older and newer posts into her likely location. Her 2 September reaction video drew more than 310,000 likes. Meta told reporters the prompts 'missed the mark', 'should never have been generated' and had been fixed, while saying the feature only surfaces information the user can already access; it disputed that a long-deleted photo was used, saying the photo had been deleted shortly before the video and remained briefly visible through a bug. Robins said Meta never contacted her and that the episode left her feeling she had 'failed' her children.

Contextual tracker case Low reported severity Involving minors Internal Action

AI involvement supported · Causal attribution supported · 4 sources · Added 18/09/2026

Cases may have several effects and sources. Mixed accounts qualify when they include a reported harm or adverse experience. People are counted within individual cases where sources support a number; we do not publish a collection-wide total of distinct people.

A source’s existence, the experience it reports and AI’s causal role are separate questions. A lawsuit records allegations unless a subsequent finding establishes them.

Methodology and corrections · Subscribe via RSS · Suggest a case or correction · Find support

Last dataset update: 30/09/2026. Dataset available under CC BY 4.0.