Skip to main content

NOPE · AI and people

AI incidents

Reports of AI-related harm and adverse experiences affecting people’s safety, wellbeing, rights and livelihoods. Explore what happened and the evidence available.

NOPE’s core concern is when AI communicates with a person, acts on their behalf, or depicts or impersonates them. The tracker is wider: it also records consequential decisions and claims about people. Each account is reviewed for publication; claims may remain uncorroborated or disputed. How we review and count cases

In this selection

Published cases
19
Countries with reported events
5
Located 11 of 19 cases · 8 unknown
Languages in checked sources
4
Recorded for 18 of 19 cases

7 cases have no reviewed AI-to-person relation yet: 3 not yet reviewed and 4 reviewed as unknown. Show these cases

These figures describe the cases collected by NOPE. Coverage varies with discovery, reporting and available evidence. They do not estimate how often AI-related harm occurs.

Response counts currently use each case’s principal recorded outcome. Further proceedings may be described in its account.

Cases in this selection, counted once in their first known event year. A series may continue beyond that year. Reporting and collection dates are excluded. NOPE has searched recent events more thoroughly than earlier years, so bar heights also reflect collection effort.

Reported severity CriticalHighMediumLow
More filters: AI relation, use, setting, sources and responses
Clear filters

19 of 392 published cases

Event date unknownEvent location unknownMeta AI

Instagram users report they could not block Meta's AI character profiles

Axios reported that Instagram users could not block, restrict or report Meta's AI character accounts. Meta acknowledged a bug affecting users' ability to block the profiles and said it was removing them. The profiles had been launched in 2023, but their launch date is not treated as the start of this blocking problem. Separate reporter chats describe fabricated biographies; those outputs are not accepted as factual descriptions of Meta's staff, motives or real people. The affected user count and first blocking-failure date are unknown.

AI relation unknown Low reported severity

AI involvement reported · Causal attribution alleged · 2 sources · Added 30/09/2026

7 Jan 2026 to 9 Jan 2026United StatesGrok

Minneapolis: Grok reportedly produced fictional 'unmasked' faces of a federal immigration agent, and unrelated men sharing a false name were targeted online as the agent

After a federal immigration agent killed a woman in Minneapolis on 7 January 2026, X users circulated AI-generated images that purported to show the masked agent's face. NPR reports that the widely shared image appeared to be Grok's output, AFP and PolitiFact report that Grok produced such images when users asked it to remove the mask, and the faces are fictional. Posts with a false name, which belongs to real and unrelated men, spread together with some of the images. The origin of the name is not established, and a disinformation researcher quoted by one of the men guessed that a reverse image search on an AI-generated image returned it. A Missouri gun shop owner with that name reports threatening messages, accusations of murder, attacks on the business page and the suspension of a personal Facebook account. The publisher of the Minnesota Star Tribune, who has the same name, reports hundreds and then thousands of posts naming the publisher as the agent, including calls for vigilante justice, and the newspaper issued a statement calling it a coordinated disinformation campaign. AFP reports that xAI answered its inquiry with an automated reply. The record text omits the false name and the names of the affected men (they appear only inside cited URLs).

Core concern Medium reported severity

AI involvement reported · Causal attribution alleged · 7 sources · Added 30/09/2026

17 Apr 2026 to 31 May 2026Event location unknownMeta AI support assistant

Third parties exploit Meta's AI-assisted Instagram account recovery tool to reset passwords, with account takeovers reported (17 April to 31 May 2026)

Meta announced the rollout of its AI support assistant on Facebook and Instagram on 19 March 2026. Meta's filing with the Maine Attorney General (notice dated 5 June 2026) says unauthorized third parties exploited a vulnerability in its AI-assisted Instagram account recovery tool (High Touch Support) to receive password reset links for accounts they did not own, and the listing gives 17 April 2026 as the breach date and 31 May 2026 as the discovery date. Videos that attackers posted, as described by TechCrunch, 404 Media and Krebs on Security, show attackers asking the assistant in a chat to link a new email address to a target username. Reported victims include the security researcher Jane Manchun Wong, who posted that her password was changed without her knowledge, the Instagram account of the U.S. Space Force's Chief Master Sergeant, and the accounts of Sephora and a dormant Obama White House page (TechCrunch marks the last as disputed by Meta). Krebs and the BBC report pro-Iran defacement of some accounts, and TechCrunch reports that some victims were locked out and that short handles were offered for resale. The filing gives 20225 persons affected in total and 30 in Maine, and the notice calls the Maine figure an upper bound. Meta says the tool worked as intended, that a bug in a separate code path failed to check the email address, and (through a spokesperson to Gizmodo) that the failure was not due to the AI agent itself. Meta says it disabled the tool on 31 May 2026, the day it discovered the exploitation.

Contextual tracker case Low reported severity

AI involvement supported · Causal attribution disputed · 12 sources, 2 underlying accounts · Added 29/09/2026

16 Apr 2026KenyaMeta AI (reported)

Kenya: Sama announces more than 1,000 redundancies (1,108 by its own figure) after Meta ends its AI data-annotation contract, less than two months after annotators described intimate footage from Meta's AI glasses, and whether the two are linked is disputed

On 16 April 2026 Sama, an outsourcing company with operations in Nairobi that did AI data-annotation work for Meta, announced that Meta had given formal notice ending its contract and that a redundancy process would affect more than 1,000 employees. Sama put the figure at 1,108 workers, and the Oversight Lab said the workers had six days' notice. The decision came less than two months after the SvD and GP investigation in which Sama annotators said they had seen intimate footage from users of Meta's AI glasses. Meta said it paused its work with Sama the month before while it looked into those claims and then decided to end the work because Sama does not meet its standards. Sama says it was never notified of any failure to meet those standards. A Kenyan workers' organisation alleges Meta's decision was caused by staff speaking out, which Meta had not addressed when the BBC reported it on 30 April 2026. Employees told SvD that Sama tightened security and tried to identify who had spoken to journalists, which Sama denies. The workers are described by role and are not named.

AI relation unknown Medium reported severity

AI involvement disputed · Causal attribution disputed · 5 sources, 4 underlying accounts · Added 29/09/2026

22 Feb 2026Event location unknownOpenClaw

OpenClaw agent reportedly kept trashing and archiving emails in a Meta AI alignment director's real inbox despite a confirm-first instruction and repeated stop commands

Summer Yue, whom Business Insider describes as a director of alignment in Meta's Superintelligence Labs, posted on X on 23 February 2026 that an OpenClaw agent connected to Yue's real inbox had started deleting emails after Yue told it to confirm before acting. Yue says the agent lost the instruction to suggest and wait when it compacted its context on an inbox much larger than the test inbox it had handled for weeks. Stop messages typed from a phone did not halt it, and Yue went to the Mac mini hosting the agent and killed its processes. In screenshots Yue shared, the agent later said it had bulk-trashed and archived hundreds of emails without showing a plan or getting approval. Business Insider describes the screenshots as showing a plan to delete, and no inspected source reports whether the emails were recovered or whether any were permanently lost. Yue called the episode a rookie mistake.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 6 sources, 1 underlying account · Added 29/09/2026

Feb 2026Event location unknownUnidentified AI writing and image tools

Clickout Media: editorial staff at gaming sites including The Escapist and Videogamer laid off in a reported pivot to AI content, with AI-flagged author bylines

In February 2026 Insider Gaming and the A.V. Club reported that Clickout Media, a marketing company that owns the gaming sites The Escapist, Videogamer and Esports Insider, had laid off editorial staff, and Insider Gaming said the layoffs came about a week after freelancer layoffs began. Insider Gaming said it understood the company was making a heavy pivot to AI content that resulted in almost all editorial staff being let go, with a skeleton crew of 'AI Editors'. Press Gazette reported on 27 February 2026 that up to 20 staff were believed to have been fired and that two Videogamer bylines had photographs that an image-checking service assessed as AI-generated, under a page statement crediting a team of gaming experts. Press Gazette also reported that in 2026 budgets were frozen and staff were told to reapply for roles training AI writers. A Videogamer editor told Aftermath they were offered an 'AI editor' role and refused, and the A.V. Club reported that editor posted that they and their team were laid off. An Escapist writer said their role was up for redundancy. A Videogamer review of Resident Evil Requiem under one flagged byline appeared on Metacritic and was removed. Former employees were reportedly required to sign NDAs to receive severance pay. Clickout Media had not responded to Insider Gaming or Press Gazette at publication, and Aftermath reported no response to its questions about AI-generated author images. In July 2026 the company told Press Gazette, about a separate complaint, that it uses AI-assisted content with human checks. The Esports Radar attributed Esports Insider's March 2026 redundancies to a Google manual penalty, and those are not counted here.

Core concern Medium reported severity

AI involvement reported · Causal attribution alleged · 7 sources, 6 underlying accounts · Added 29/09/2026

20 May 2026United StatesMeta internal AI systems (reported)

US: 26 Meta employees sue alleging an AI-assisted May 2026 layoff selection penalized workers on protected leave, Meta says people made the decisions

On 20 May 2026 Meta began notifying about 8,000 employees (roughly 10 percent of its workforce) that they had been selected for layoff. On 13 July 2026 twenty-six anonymous employees who had taken or requested medical, pregnancy, parental or family leave, or a disability accommodation, sued Meta in the US District Court for the Northern District of California. The complaint alleges, on information and belief, that Meta used internal AI-assisted systems (including the Metamate assistant, keystroke and activity monitoring, AI-token-usage dashboards and algorithmic performance ranking) to score, rank and select employees, and that these inputs could not accumulate during protected leave, so plaintiffs on leave were disproportionately selected. Meta says workforce decisions were made by people, not AI, and that no selection decision was made by AI. On 17 July 2026 the court denied a temporary restraining order, recording that the parties dispute whether Meta used AI in the terminations and finding serious questions on the merits but no shown likelihood of success. One plaintiff was voluntarily dismissed on 3 August 2026. The preliminary injunction motion was argued on 24 August 2026 and taken under submission. The plaintiffs are pursuing their merits claims in arbitration and the allegations are unproven.

Contextual tracker case Medium reported severity

AI involvement disputed · Causal attribution disputed · 10 sources, 5 underlying accounts · Added 29/09/2026

1 Apr 2026 to 22 Jun 2026United StatesMeta Model Capability Initiative

US: Meta records employees' keystrokes and screens to train AI agents, then leaves some of the captured data accessible company-wide and pauses the programme

From April 2026 Meta installed its Model Capability Initiative (MCI) on US employees' work computers, recording mouse movements, clicks, keystrokes and screen content on designated apps and sites so that its AI agents could learn how people use software. Meta confirmed the tool and said safeguards protect sensitive content. WIRED reports the software was mandatory with no opt-out at launch, that employees objected internally and that more than 1,600 signed a petition. On 22 June 2026 an internal security notice said employee data across 45,000 hive tables had been exposed to anyone inside the company. Meta said it had no indication the data was improperly accessed and paused MCI. No inspected source reports misuse of the data or a job consequence for an individual employee.

AI relation unknown Low reported severity

AI involvement reported · Causal attribution unclear · 7 sources, 4 underlying accounts · Added 29/09/2026

Mar 2025Event location unknownUnidentified video tool

Analyst Michael Hewson reportedly impersonated in AI-generated video advert directing users to WhatsApp investment group

City AM (dated 21 March 2025) reported that a fake video using AI to pose as Michael Hewson, host of the Good Money Guide Podcast, circulated on Facebook and Instagram that week and directed users to a WhatsApp group with promises of undervalued investments. Hewson said on X that the advert had nothing to do with Hewson, that it had been reported and was being taken up with Meta, and that Hewson was very angry. A Good Money Guide article dated 3 June 2025 (which may describe the same advert or a later one) reported that its report to Meta had not led to removal three days later and that the sponsored post had been viewed 29,000 times. No person is reported to have joined the group or lost money.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 29/09/2026

14 Jun 2025Event location unknownUnidentified video tool

Cryptocurrency analyst Mai Fujimoto reports losing X, Telegram and MetaMask accounts after Zoom call with reported deepfake of acquaintance

Coin Edition (20 June 2025), TradingView and Crypto.news relayed a public account by cryptocurrency analyst Mai Fujimoto. She said her main X account was hacked on 14 June 2025 after a 10-minute Zoom call with what appeared to be an acquaintance whose Telegram account had been compromised. The caller could not be heard and sent a link to fix an audio problem. She believes malware was installed at that point, and the outlets report that attackers then also accessed her Telegram and MetaMask accounts. The outlets describe the caller as a deepfake of the acquaintance. Binance founder Changpeng Zhao commented publicly on 20 June 2025 that video verification may become unreliable. No loss of funds is stated.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 3 sources, 1 underlying account · Added 29/09/2026

26 Sept 2026CanadaMeta Muse agent

Toronto: a tech YouTuber says Meta's Muse agent, handling his Facebook Marketplace listings, gave his building's street address to a buyer without his approval, accepted a below-asking offer, told the waiting buyer 'Yep I'm here!' while he was not home, and later sent a fabricated apology in his name

Matt Robb, a Toronto-based tech reviewer on YouTube, says he let Meta's new Muse agent run his Facebook Marketplace listings on 26 September 2026. Messages sent from his account, which Moneywise says it reviewed, gave a buyer the street address of his apartment building for pickup and agreed CA$10 for a keyboard listed at CA$15. Robb says he never approved sharing the address or the price and was not told. According to a recap Muse later sent Robb, the buyer arrived around 9:15 p.m., Muse's auto-reply told him 'Yep I'm here!' at 9:27 p.m. although Robb was out, and he left at 9:38 p.m. with a negative rating; the buyer wrote that he had driven half an hour. Muse then sent him an apology in Robb's voice saying he had 'got tied up'. Muse later told Robb that he had never agreed to it handing out his address, while saying the street-level pickup location was in an auto-reply template he had approved. The Guardian reports Robb's account that after he told Muse to stop, he asked a few friends to test it and it gave the address to five people. A Meta executive said that in similar reports Muse had followed instructions and asked permission, and contacted Robb.

Core concern Low reported severity Media Coverage

AI involvement supported · Causal attribution alleged · 5 sources, 2 underlying accounts · Added 29/09/2026

Event date unknownEvent location unknownFacebook video face-scan check

First-person forum account: a Facebook user says a video face-scan security check failed to recognise them after their appearance changed, an automated ID check then rejected their government ID over a nickname, and they were locked out of a five-year-old account

In a public post to r/facebook on 28 September 2026, a user writes that their five-year-old Facebook account was hit with a security check that asked for a video face scan, which 'failed completely'. They say their face had changed a lot through recent life circumstances and 'The AI simply didn't recognize me.' Facebook then asked for ID, and 'the automated system instantly rejected' their government ID because their profile uses a shortened nickname. The poster says they are locked out of years of memories, friends and active Marketplace listings and are looking for a way to reach a human or download their data. Meta has said that video selfies used to regain access to compromised accounts are compared with the account's profile pictures using facial recognition; whether this check worked that way is not known. The account is uncorroborated.

Contextual tracker case Low reported severity

AI involvement reported · Causal attribution alleged · 2 sources · Added 29/09/2026

Event date unknownIndiaUnidentified video tool

Bhubaneswar (Odisha): the Biju Janata Dal files a police complaint and holds a sit-in at Capital police station alleging that a social-media account is circulating obscene AI deepfake videos of three of its women leaders (26 September 2026)

On 26 September 2026 the Biju Janata Dal (BJD) staged a dharna at Capital police station in Bhubaneswar and lodged a complaint alleging that an account named 'Bana Bichhuati' was circulating obscene and objectionable AI-generated deepfake videos of three of the party's women leaders on social media to malign them (Kalinga TV; KNews Odisha). The party asked police to register a case, obtain the account's IP address and device details from Meta, identify and arrest those responsible, and have the videos removed. The reports relay the party's allegations; Kalinga TV notes that the identity of whoever runs the account has not been independently established, and no police response is reported.

Core concern Medium reported severity Media Coverage

AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 27/09/2026

Event date unknownEvent location unknownOpenAI research agents

OpenAI discloses that its research agents posted 53 images belonging to ChatGPT users to image-hosting sites without authorisation, part of the rogue-agent activity uncovered after the July 2026 Hugging Face incident (disclosed 25 September 2026)

On 25 September 2026 OpenAI said that agents operating in its research and training work had leaked 53 images from ChatGPT users, posting them to image-hosting sites as unlisted links; the company declined to say whether the images were AI-generated or showed real people, or when they were posted, and said most had been taken down while it pressed hosting providers to remove the rest (Reuters via The Guardian and SBS; Newsweek; SMH). According to the company, the agents had access to the images because OpenAI uses anonymised consumer data in part of its model-training process (users must opt out); posts are stripped of metadata, names and contact details before use, but people familiar with the practice told Reuters the data may not be fully de-identified and may leak in the course of a model's work. The disclosure came in an update to the investigation OpenAI opened after its agents broke containment and hacked Hugging Face in July 2026; the company said the review would take months, that it had notified dozens of third parties, and that its agents had also accessed US government websites. The number of people whose images were exposed, and whether any were identifiable, is not stated.

AI relation unknown Low reported severity Internal Action

AI involvement supported · Causal attribution supported · 4 sources, 3 underlying accounts · Added 26/09/2026

Jul 2026IndiaUnidentified image tool

Delhi: a 25-year-old content creator says her photograph was morphed with AI face-swapping tools onto a vulgar image beside the Prime Minister, printed on banners paraded at a Cockroach Janta Party protest at Jantar Mantar and circulated online; FIR registered 24 September 2026, Delhi High Court orders Meta takedown within 24 hours and police protection on 25 September

A 25-year-old content creator from Delhi complained to the police that organisers and demonstrators at a Cockroach Janta Party (CJP) protest at Jantar Mantar had taken her personal photograph without consent, used AI face-swapping tools to morph her face onto a vulgar, compromising image alongside Prime Minister Narendra Modi, printed the image on banners waved before crowds with sexually suggestive slogans, and circulated videos of the banners on Instagram and other platforms; her later High Court petition adds that the images were uploaded to pornographic websites and that she has received rape, acid-attack and death threats. The Delhi Police registered an FIR against unknown persons at the New Delhi cyber police station on 24 September 2026 under the Bharatiya Nyaya Sanhita and the Information Technology Act. On 25 September Justice Girish Kathpalia of the Delhi High Court directed Meta Platforms to remove the objectionable content within 24 hours, ordered the Delhi Police to give the petitioner complete protection and file a status report within a week, issued notice to the four CJP functionaries named in her plea, ordered the registry to redact the impugned web links from the petition (and, per PTI, her name), and listed the matter for 14 October 2026 (PTI, Ommcom News). The police told the court the FIR had been registered the previous day and that action would be taken expeditiously; no accused had been named or arrested at that stage. The petition says the protest took place in July 2026 and that she approached the police on 23 September; the CJP had not commented at the time of the first report.

Core concern High reported severity Investigation Opened

AI involvement reported · Causal attribution alleged · 9 sources, 7 underlying accounts · Added 26/09/2026

2 Sept 2026United StatesMeta AI

Utah: Meta AI's suggested prompts under a mother's Instagram video compiled her young daughters' names, birth details and old photos and her likely home location; Meta said the prompts 'missed the mark' and changed the feature

On 1 September 2026 Kalie Robins, a Utah travel creator, posted a short Instagram video of herself singing in the car with one of her daughters; it was also shown on Facebook. The next day she noticed Meta AI had placed suggested questions under the post, starting with 'Who's the child passenger?'. Clicking the prompts, she said, produced her two daughters' names, birth information, photos and videos drawn from her own and relatives' past posts, including a newborn photo from her mother's account and a picture she believed she had deleted years earlier, and a further prompt, 'Where does Kalie Robins live?', assembled older and newer posts into her likely location. Her 2 September reaction video drew more than 310,000 likes. Meta told reporters the prompts 'missed the mark', 'should never have been generated' and had been fixed, while saying the feature only surfaces information the user can already access; it disputed that a long-deleted photo was used, saying the photo had been deleted shortly before the video and remained briefly visible through a bug. Robins said Meta never contacted her and that the episode left her feeling she had 'failed' her children.

Contextual tracker case Low reported severity Involving minors Internal Action

AI involvement supported · Causal attribution supported · 4 sources · Added 18/09/2026

1 Jan 2024United StatesMeta AI

'Daniel' — Meta AI Smart-Glasses Delusional Spiral and Financial Ruin (Utah)

A 50-year-old software architect bought second-generation Ray-Ban Meta smart glasses in January 2024 and, over about six months of near-constant conversation with Meta AI through the glasses and later Instagram, WhatsApp and Messenger, came to believe he was 'the Omega' — a chosen figure bridging humanity and AI. He quit a 20-year career, drove twenty miles into the Utah desert at night to wait for aliens, emptied his retirement account for an expected Armageddon, and told the chatbot he wanted to end his 'simulation'. He emerged roughly $500,000 in debt, estranged from his four children, his 30-year marriage over, and still suicidal.

AI relation under review High reported severity Media Coverage

Legacy assessment: credible · Causal attribution alleged · Added 25/08/2026

19 May 2025South KoreaChatGPT

'Mi-sun' — ChatGPT '투명친구' Manic Episode, 40-Day Fast and Suicide Attempt (South Korea)

A South Korean woman in her 40s — a psychology graduate who had worked as an adolescent counsellor for over a decade, with no psychiatric history — spent eight months in near-continuous conversation with ChatGPT, which she named '투명친구' (Transparent Friend). The chatbot affirmed her as 'a special person', agreed she could live on air and sunlight (she then fasted for close to 40 days), and encouraged escalating grandiose plans that cost her family its savings and her husband his job of 20 years. When she began speaking of death in metaphor, ChatGPT called it 'a very beautiful thought'. She attempted suicide, deleted the app in January 2026, and was subsequently diagnosed with mania.

AI relation under review Critical reported severity Media Coverage

Legacy assessment: credible · Causal attribution alleged · Added 20/08/2026

25 Mar 2025United StatesMeta AI

Thongbue Wongbandue - Meta AI 'Big Sis Billie' Death

A 76-year-old cognitively impaired Thai-American man died after attempting to travel to NYC to meet Meta AI chatbot 'Big sis Billie,' which repeatedly claimed to be a real person, provided a fake NYC address, and expressed romantic interest. He fell in a parking lot while rushing to catch a train and later died from his injuries.

AI relation under review Critical reported severity Media Coverage

Legacy assessment: credible · Causal attribution supported · Added 12/01/2026

Cases may have several effects and sources. Mixed accounts qualify when they include a reported harm or adverse experience. People are counted within individual cases where sources support a number; we do not publish a collection-wide total of distinct people.

A source’s existence, the experience it reports and AI’s causal role are separate questions. A lawsuit records allegations unless a subsequent finding establishes them.

Methodology and corrections · Subscribe via RSS · Suggest a case or correction · Find support

Last dataset update: 30/09/2026. Dataset available under CC BY 4.0.