Italy's data protection authority, Garante, has imposed a €15 million fine on OpenAI for violations of the General Data Protection Regulation (GDPR) concerning its AI chatbot, ChatGPT. The investigation revealed that OpenAI processed user data without a legal basis, failed to notify users about a security breach that occurred in 2023, and did not implement adequate age verification measures, potentially exposing children under 13 to inappropriate content. The fine was announced on December 20, 2024, as the European Union's AI Act begins to be enforced.
Italy’s data protection watchdog fined OpenAI €15 million over ChatGPT’s data management violations: https://t.co/K1m7lCetAB by Security Affairs #infosec #cybersecurity #technology #news
Italy Fines OpenAI €15 Million for ChatGPT GDPR Data Privacy Violations https://t.co/gPNQsXf6ET
🚨 GenAI News #OpenAI fined €15M by Italy's DPA over #ChatGPT data breaches. As the EU AI Act begins enforcement>> https://t.co/bfDfw1KM4r ❌ Failure to notify a data breach ❌ Lack of legal basis for processing personal data ❌ Insufficient transparency