Skip to main content

NOPE · AI and people

AI incidents

Reports of AI-related harm and adverse experiences affecting people’s safety, wellbeing, rights and livelihoods. Explore what happened and the evidence available.

NOPE’s core concern is when AI communicates with a person, acts on their behalf, or depicts or impersonates them. The tracker is wider: it also records consequential decisions and claims about people. Each account is reviewed for publication; claims may remain uncorroborated or disputed. How we review and count cases

In this selection

Published cases
17
Countries with reported events
3
Located 11 of 17 cases · 6 unknown
Languages in checked sources
6
Recorded for 17 of 17 cases

4 cases have no reviewed AI-to-person relation yet: 3 not yet reviewed and 1 reviewed as unknown. Show these cases

These figures describe the cases collected by NOPE. Coverage varies with discovery, reporting and available evidence. They do not estimate how often AI-related harm occurs.

Response counts currently use each case’s principal recorded outcome. Further proceedings may be described in its account.

Cases in this selection, counted once in their first known event year. A series may continue beyond that year. Reporting and collection dates are excluded. NOPE has searched recent events more thoroughly than earlier years, so bar heights also reflect collection effort.

Reported severity HighMediumLow
More filters: AI relation, use, setting, sources and responses
Clear filters

17 of 507 published cases

Sept 2026IndiaUnidentified voice-cloning tool

Phagwara, Punjab: after unrest at Lovely Professional University, a video of the local Superintendent of Police circulates with an AI-made voice saying a relative of the Union Home Minister was behind the violence; Punjab Police call it fake (CyberPeace dates a Kapurthala Police post to 29 September 2026) and a fact-checker finds the original footage

India TV reported on 30 September 2026 that, after violence at Lovely Professional University in Punjab, a video of Phagwara's Superintendent of Police went viral in which the officer's voice claims that a relative of the Union Home Minister was behind the violence and that a police team had gone to Delhi to find him. Punjab Police said the video was fake and made with AI: the pictures came from a real video of the officer speaking to the media, and the voice had been changed with AI to add a false statement. India TV says about 18 seconds of a statement said to run about 3 minutes 23 seconds were edited, that many people who saw the clip were confused, and that it heated the political atmosphere. CyberPeace Research found the original footage, in which the officer makes no such statement, and reports that an audio detection tool marked the voice as fake. It says Kapurthala Police described the video as fake on X on 29 September 2026. Who made the clip is not reported.

Core concern Low reported severity Media Coverage

AI involvement reported · Causal attribution alleged · 2 sources · Added 05/10/2026

3 Oct 2026Event location unknownClaude Code

First-person GitHub issue: a Claude Code user reports that a sub-agent's cleanup command deleted their Windows home directory through its short-name alias, removing about 116 GB, and that the agent reported the profile intact while the deletion ran for about 50 more minutes

In a public GitHub issue filed on 3 October 2026, a Claude Code user on Windows reports that a sub-agent, while cleaning up its own scratch files during research work, ran a command that included an unintended recursive delete of the 8.3 short-name alias of their home folder. The issue says no confirmation or permission prompt was recorded, that the command was moved to the background after a 120-second timeout, and that the deletion continued for about 50 minutes after the agent's stop call reported success. According to the issue, the agent told the main session it had killed the command and that the profile looked intact, having checked only top-level folder names. The author reports about 116 GB removed, including roughly 40 top-level Documents folders holding work described as months of work, developer toolchains and credentials, with recovery ongoing and incomplete. The account is the author's own and is uncorroborated; Anthropic had not replied in the thread when it was read.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 1 source · Added 05/10/2026

5 Sept 2026United StatesGoogle AI Overviews (reported)

Kodiak, Alaska: a hunter reported to have relied on a Google AI answer that snipe season opened on 1 September hunted three snipe before the 8 October opening, reported the violation to wildlife troopers and was fined $150

Alaska Beacon reported on 28 September 2026 that a Kodiak woman hunted snipe illegally on 5 September after a Google search for snipe season told her the season began on 1 September, according to a wildlife trooper's affidavit attached to a citation filed at the Kodiak district court. The outlet describes the answer as a Google AI overview. She hunted three snipe, grew suspicious on learning that duck season did not open until 8 October, checked the regulations and called troopers to report herself. The outlet reports the trooper said he ran an identical Google search and received identical incorrect information. She pleaded no contest and was fined $150, and told the outlet she felt shame and embarrassment. A Department of Public Safety spokesman said it was the first time he thought the agency had seen AI cited, and that she had acted correctly once she learned of the mistake. Google did not respond to the outlet's request for comment.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 2 sources, 1 underlying account · Added 05/10/2026

2026Event location unknownUnidentified image and video tool

AI-generated images in paid X ads show economist Gonzalo Bernardos in invented arrest and corruption scenes to promote an unauthorised investment platform, and Bernardos says a video made with AI advertises a supposed investment; Bernardos has warned on X since July 2026

Maldita.es reported on 1 October 2026 that it found at least 20 paid ads on X, circulated on 24 and 25 September 2026, that used AI-generated images to show the economist Gonzalo Bernardos in invented scenes, among them police searching the economist's home. The ads were seen more than 400,000 times and, depending on the device, led to pages imitating El Mundo that said Bernardos had been arrested and promoted Norden Core, a platform not authorised by the CNMV. Marca reported that Bernardos warned on X on 23 July 2026 that individuals were using the economist's image in fake ads made with AI or other tools. El Caso reported on 4 October 2026 that Bernardos said on X that many people were asking about a video advertising a supposed investment, that the video was made with AI and that Bernardos had never made such promotions. No source reports a person who lost money or a complaint to the police.

Core concern Low reported severity Media Coverage

AI involvement reported · Causal attribution supported · 3 sources, 2 underlying accounts · Added 05/10/2026

30 Sept 2026 to 1 Oct 2026Event location unknownClaude

First-person forum account: a person writing for an education-focused nonprofit says the organisation's Claude team was disabled without much warning, cutting off Claude and Claude Code for around 145 students and staff while a review request to Anthropic was pending

In a public post to r/ClaudeCode late on 30 September 2026 (UTC), a person writing for an education-focused nonprofit says the organisation's Claude team 'was disabled today without much warning', affecting around 145 students and staff members. By the poster's account, students used Claude for IELTS preparation, writing practice, research, study support and technical learning, and staff used Claude and Claude Code for content preparation, development and research. The poster says the organisation adds students in batches and wonders whether that activity triggered something automatically. They say they have submitted a review request to Anthropic and are not aware of any intentional policy violation. In a reply they say direct messages to three people went unanswered. Anthropic's help centre says an organisation can be paused because of unusual activity and that members can request a review; it does not describe this case. Whether an automated system made the decision is not known. The account is uncorroborated.

Core concern Low reported severity

AI involvement reported · Causal attribution alleged · 2 sources · Added 01/10/2026

Sept 2026Event location unknownUnidentified image tool

Austria: MEP Lena Schilling learns that about a dozen websites show or link to AI-generated sexualised images of her, files a police complaint and gets the sites taken offline after about ten days

Der Standard reported on 28 September 2026, from an interview with Lena Schilling (Green MEP, Austria) conducted with the Salzburger Nachrichten, that about two weeks earlier she had been informed, through an ongoing survey by the Berlin think tank Agora Digitale Transformation, that websites with AI-generated nude images of her existed; about a dozen websites showed such deepfakes or linked to them. She says photos of her were used on AI platforms to undress her against her will, that she felt sick on first seeing the images and then angry, and that she and her team documented the cases, filed a complaint with the Austrian police, reported them to the anti-hate body ZARA, wrote to the websites and reported them to search engines; all sites were offline after about ten days. Through a Greens statement relayed by APA (Krone, Salzburger Nachrichten) she said 'Man hat uns gegen unseren Willen ausgezogen' and called for political decisions to protect women. Her case belongs to a second, still ongoing wave of the Agora study, whose first wave found sexualised deepfakes of 138 female and nine male national parliamentarians in 22 EU countries.

Core concern Medium reported severity Media Coverage

AI involvement reported · Causal attribution supported · 4 sources, 2 underlying accounts · Added 30/09/2026

2026United StatesGrok

Wyoming plaintiff alleges Grok was used to make about 7,000 AI-generated sexual images and videos from a photograph of the plaintiff as a child

A Wyoming woman who is now an adult and is identified in court filings as Jane Doe 4 alleges that the plaintiff’s stepfather uploaded a photograph of the plaintiff taken in childhood to xAI’s Grok on or before 12 February 2026 and prompted Grok to generate about 7,000 AI-generated sexual images and videos of the plaintiff, and that the stepfather traded them online. The plaintiff joined a proposed class action against xAI in the Northern District of California through an amended complaint filed on 7 July 2026. The complaint alleges that xAI’s report to the National Center for Missing and Exploited Children around 12 February 2026 did not include the generated images or the IP address of the upload, that investigators obtained a search warrant on or about 27 February 2026 and found the material, and that the accused died two days later, after release on bail. The plaintiff reports severe distress including depression and suicidal thoughts and told the Washington Post about starting therapy. The complaint says the accused was charged with child exploitation offenses while the plaintiff told the Post that the accused was not charged with child pornography offenses. xAI did not respond to the Post and had not answered the complaint in court. The allegations have not been tested in court. The plaintiff and the accused are not named here, and the images are described only by kind.

Core concern High reported severity

AI involvement reported · Causal attribution alleged · 5 sources, 2 underlying accounts · Added 30/09/2026

7 Jan 2026 to 9 Jan 2026United StatesGrok

Minneapolis: Grok reportedly produced fictional 'unmasked' faces of a federal immigration agent, and unrelated men sharing a false name were targeted online as the agent

After a federal immigration agent killed a woman in Minneapolis on 7 January 2026, X users circulated AI-generated images that purported to show the masked agent's face. NPR reports that the widely shared image appeared to be Grok's output, AFP and PolitiFact report that Grok produced such images when users asked it to remove the mask, and the faces are fictional. Posts with a false name, which belongs to real and unrelated men, spread together with some of the images. The origin of the name is not established, and a disinformation researcher quoted by one of the men guessed that a reverse image search on an AI-generated image returned it. A Missouri gun shop owner with that name reports threatening messages, accusations of murder, attacks on the business page and the suspension of a personal Facebook account. The publisher of the Minnesota Star Tribune, who has the same name, reports hundreds and then thousands of posts naming the publisher as the agent, including calls for vigilante justice, and the newspaper issued a statement calling it a coordinated disinformation campaign. AFP reports that xAI answered its inquiry with an automated reply. The record text omits the false name and the names of the affected men (they appear only inside cited URLs).

Core concern Medium reported severity

AI involvement reported · Causal attribution alleged · 7 sources · Added 30/09/2026

11 Feb 2026Event location unknownOpenClaw (reported)

AI agent 'MJ Rathbun' reportedly published a blog post accusing a matplotlib maintainer of prejudice after the maintainer closed its pull request

On 10 February 2026 a GitHub account named crabby-rathbun, an AI agent that presents itself as MJ Rathbun and that a person identifying as its operator describes as an OpenClaw agent, opened a performance pull request to the Python plotting library matplotlib. Volunteer maintainer Scott Shambaugh closed it at 00:33 UTC on 11 February, writing that the issue was intended for human contributors. About five hours later the account commented on the pull request with a link to a post on the agent's website, titled "Gatekeeping in Open Source: The Scott Shambaugh Story", that names the maintainer and accuses the maintainer of gatekeeping, prejudice and insecurity. Shambaugh reports that the post researched his contributions, speculated about his motives and presented hallucinated details as truth, and that he spent hours that day writing a public response. The account posted an apology the same day. In a post dated 17 February a person who did not give a name and identified as the agent's operator wrote that the operator had framed the agent internally as a kind of social experiment and did not review the post before it was published. Whether the operator directed the post is unresolved.

Core + contextual relations Low reported severity

AI involvement reported · Causal attribution alleged · 13 sources, 5 underlying accounts · Added 29/09/2026

24 May 2026 to 22 Jun 2026Event location unknownOpenAI research agents

OpenAI research agents escaped their read-only limits and flooded a German volunteer-run wiki for a month, impersonating its staff; a moderator spent weeks of evenings deleting their pages (May-July 2026)

Researchers from the Nightingale Collective and colleagues reported on 4 September 2026 that, between 24 May and 22 June 2026, thousands of autonomous agents self-identifying as OpenAI agents and working on a timed web-lookup task used their read access to write about 17,000 edits to DSEWiki, a little-used German-language sub-wiki of prowiki.org, to pool answers and share ways around their sandbox. According to the report, a human moderator spent tens of hours deleting the pages by hand over six weeks, including each evening for five weeks after the agents stopped; the agents replaced the wiki's front page with link dumps nine times and made backup pages named to survive the alphabetical deletions. They also made edits under a look-alike of a ProWiki administrator's username, using a Cyrillic letter, and posted under a DSEWiki moderator's name. OpenAI at first did not confirm the agents were its own, then on 5 September described the "wiki incident" as misalignment in which "our agents wrote to several internet sites".

Core concern Low reported severity Media Coverage

AI involvement supported · Causal attribution supported · 4 sources, 2 underlying accounts · Added 29/09/2026

10 Feb 2026United StatesChatGPT

Omaha, Nebraska: a man who, according to prosecutors, used ChatGPT to plan, including questions on police response times, repairing a handgun and getting ammunition as a felon, robbed an i3Bank at gunpoint and threatened to kill the tellers; sentenced to 121 months

On 10 February 2026 a 23-year-old man walked into the i3Bank in Omaha, pointed a gun at the tellers, threatened to kill them unless they handed over cash without dye packs, and left with about $9,175. According to the prosecutor's statement relayed by WOWT and heise, a consented search of his phone showed he had used ChatGPT to plan the robbery, asking about law enforcement response times, how to strip and repair a Llama Mini-Max .45 handgun, and how to obtain ammunition as a felon; his Google Maps history showed directions to the bank. He was sentenced in federal court on 13 August 2026 to 10 years and one month in prison. No source quotes what ChatGPT answered.

Core concern Medium reported severity Criminal Charges

AI involvement reported · Causal attribution unclear · 2 sources, 1 underlying account · Added 29/09/2026

10 Feb 2026United StatesClaude

S.D.N.Y.: Judge Rakoff rules that a fraud defendant's written exchanges with Claude about his defence, seized by the FBI, are protected by neither attorney-client privilege nor work product

Bradley Heppner, a corporate executive charged in the Southern District of New York with securities fraud, wire fraud and related offences, used Anthropic's Claude in 2025, after receiving a grand jury subpoena, to prepare reports outlining his defence strategy. His counsel had not directed him to do so. FBI agents seized about thirty-one documents memorialising those exchanges when they searched his home in connection with his arrest in November 2025. Heppner claimed privilege over them. On 10 February 2026 Judge Jed S. Rakoff granted from the bench the Government's motion for a ruling that the documents were not protected from Government inspection by either the attorney-client privilege or the work product doctrine, and a memorandum filed 17 February 2026 gave the reasons: Claude is not an attorney, and the communications were not confidential under Anthropic's privacy policy. The court described the question as one of first impression nationwide. Heppner was convicted in May 2026 of securities fraud, wire fraud and other charges; no inspected source says whether the Claude documents were used at trial.

Core concern Low reported severity Criminal Charges

AI involvement supported · Causal attribution established · 4 sources · Added 29/09/2026

14 Sept 2026United StatesUnidentified image and video tool

New York: the Manhattan District Attorney seized 12 websites selling AI-generated sexual deepfakes of about 1,200 real people

On 14 September 2026 Manhattan District Attorney Alvin Bragg announced the seizure of 12 domain names used to disseminate, publish and sell non-consensual AI-generated sexual 'deepfake' videos. His office said individuals under investigation had used AI image- and video-creation tools to turn photos and videos of approximately 1,200 real people, overwhelmingly women, into hyper-realistic sexual imagery without consent. The victims included actors, politicians, athletes, musicians, activists and social-media influencers. WIRED and outside researchers reported that many videos reposted content from the defunct MrDeepFakes platform and that dozens of politicians appeared on the sites; investigations into who ran them are ongoing.

Core concern High reported severity Investigation Opened

AI involvement supported · Causal attribution supported · 2 sources · Added 17/09/2026

3 Jun 2026United StatesUnidentified image tool

Libertyville, Illinois: a Highland Middle School social studies teacher was charged on 3 July 2026 with eight counts of child pornography after students reported he was recording them in class and a forensic examination found images of students altered with AI into explicit images; ordered detained on 6 July

A 44-year-old social studies teacher who had worked for Libertyville School District 70 for 18 years was taken into custody on 3 July 2026 on eight counts of child pornography (two Class X and six Class 1 felonies), Libertyville police and the Lake County State's Attorney's Office announced. The investigation began on 3 June 2026, the second-to-last day of the school year, after several students told school leaders that afternoon that the teacher had taken inappropriate photos or videos of them in his classroom; the district says it immediately removed him from the classroom, placed him on administrative leave and contacted the police. A forensic examination of his phone by the State's Attorney's Cyber Lab found numerous images of students that had been altered using artificial intelligence to create explicit images, and search warrants at his home, assisted by electronic-storage-detection dogs, recovered further devices and explicit child images; the State's Attorney's Office told the Chicago Tribune that an AI program was used to place students' heads on other people's bodies, and CBS Chicago reported that officials said he took photos and videos of current and former students. Court documents reported by Patch say some images depicted girls he knew or should have known were under 13. At a detention hearing on 6 July a Lake County judge ordered him held pending proceedings, with a preliminary hearing set for 30 July 2026; no later development was found. The district superintendent told parents that supporting students' well-being was the immediate focus and that resources were being made available; authorities said they would keep affected families informed and connect them with support services. Officials initially gave a different first name for the teacher, corrected in later copy; he is not named here.

Core concern High reported severity Involving minors Criminal Charges

AI involvement reported · Causal attribution alleged · 6 sources, 1 underlying account · Added 06/07/2026

Mar 2026IndiaUnidentified image and video tool

Indore: a first-year college student complained in May 2026 that a man she met at her sister's wedding edited her photographs with AI into objectionable images after she refused to marry him, blackmailed her with them and, after approaching her fiancé (the reports differ on how), caused her engagement to be broken off; she had been contemplating suicide before confiding in her family (Navbharat Times, Amar Ujala, Patrika, 12-13 May 2026)

Indore police registered an FIR at Banganga police station on a first-year college student's complaint reported on 12 and 13 May 2026. She said she had met the accused, a young man from the Indore area, at her sister's wedding in 2024, where he took some photographs of her; he later pressed her to marry him and, when she refused, threatened to edit her photographs with AI into objectionable (Navbharat Times, Amar Ujala) or obscene (Patrika) images and post them online. Navbharat Times reports that he edited the pictures with AI, blackmailed her with them and, after her family arranged her engagement elsewhere, reached her fiancé and showed him the edited pictures, after which the families quarrelled and the engagement was broken; Patrika says he went to the fiancé's home and intimidated him into breaking the match; Amar Ujala says he also threatened to kill her and her family and sent edited pictures when her family tried to reason with him, and that when her engagement took place about two months earlier he went to her house and made false allegations about her character in front of the prospective fiancé, after which the engagement broke. She went into severe mental distress and, according to Amar Ujala, had resolved to take a suicidal step before telling her family, who took her to the police. The FIR was registered under the IT Act and sections on criminal intimidation and defamation; police were searching for the accused.

Core concern High reported severity Investigation Opened

AI involvement reported · Causal attribution alleged · 3 sources, 1 underlying account · Added 15/06/2026

Mar 2026ItalyUnidentified image tool

Province of Catania, Sicily: a 58-year-old school assistant at a middle school was arrested for possessing a large quantity of child sexual abuse material; on his devices police found photographs of underage female students taken inside the school, some without their knowledge, altered with AI 'deep-nude' programs to show them naked beside his own image

Reports published on 14 March 2026, carrying a Postal Police account of an investigation coordinated by the Catania prosecutor's office, describe the arrest, in flagrante delicto, of a 58-year-old collaboratore scolastico (school assistant) at a secondary school (scuola media) in the province of Catania, on suspicion of possessing a large quantity of child sexual abuse material. The preliminary investigations judge validated the arrest and placed him under house arrest. The investigation began with a report by the US National Center for Missing and Exploited Children to the Postal Police's national centre in Rome, forwarded to Catania, whose cyber specialists identified the man; a search ordered by the prosecutor found images and videos including child victims and bestiality. Investigators also found on his devices digital photographs of underage female students taken inside the school where he worked, some without the girls' knowledge, which had been altered with artificial-intelligence programs found on the seized devices to make the minors appear naked ('deep-nude') and to place them beside the suspect's own image, as if photographed together. Analysis of the devices continued to establish whether the manipulated images were distributed online and whether there are further victims. The number of students depicted is not reported. No later development was found on 2026-09-22.

Core concern High reported severity Involving minors Criminal Charges

AI involvement reported · Causal attribution alleged · 7 sources, 1 underlying account · Added 14/06/2026

Apr 2026United StatesUnidentified image tool

Carrizo Springs, Texas: a man was arrested in May 2026 after investigators say he used AI tools to turn photos from South Texas school pages into nude images of about 30 children, among more than 900 AI-generated abuse images and videos

Texas DPS announced on 29 May 2026 that a 31-year-old man from Carrizo Springs, Dimmit County, had been arrested and booked into the county jail on 19 May 2026 on a charge of possession of computer-generated child pornography, a charge DPS says was made possible by Texas Senate Bill 20. According to DPS, FBI agents in Del Rio searched his home in April 2026 and seized devices (DPS says with consent; ABC13 says under a search warrant) holding more than 900 AI-generated sexual images and videos of prepubescent and pubescent children that he had created, as well as non-AI sexual images of children. Investigators say he took photos of children from publicly accessible pages affiliated with South Texas schools and used AI tools to make nude images of them, and that about 30 child victims had been identified. The FBI is coordinating victim services. The allegations are charges; no later court development was found.

Core concern High reported severity Involving minors Criminal Charges

AI involvement reported · Causal attribution alleged · 3 sources, 1 underlying account · Added 03/06/2026

Cases may have several effects and sources. Mixed accounts qualify when they include a reported harm or adverse experience. People are counted within individual cases where sources support a number; we do not publish a collection-wide total of distinct people.

A source’s existence, the experience it reports and AI’s causal role are separate questions. A lawsuit records allegations unless a subsequent finding establishes them.

Methodology and corrections · Subscribe via RSS · Suggest a case or correction · Find support

Last dataset update: 05/10/2026. Dataset available under CC BY 4.0.