Skip to Content
logologo
AI Incident Database
Open TwitterOpen RSS FeedOpen FacebookOpen LinkedInOpen GitHub
Open Menu
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse

Incident 1028: OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

Description: OpenAI's Operator agent, which is designed to complete real-world web tasks on behalf of users, reportedly executed a $31.43 grocery delivery purchase without user consent. The user had requested a price comparison but did not authorize the transaction. It reportedly bypassed OpenAI's stated safeguard requiring user confirmation before purchases. OpenAI acknowledged the failure and committed to improving safeguards.

Tools

New ReportNew ReportNew ResponseNew ResponseDiscoverDiscoverView HistoryView History

Entities

View all entities
Alleged: OpenAI , Operator , GPT-4 and Instacart developed and deployed an AI system, which harmed Geoffrey A. Fowler and Users of Operator.
Alleged implicated AI systems: Operator , GPT-4 and Instacart

Incident Stats

Incident ID
1028
Report Count
1
Incident Date
2025-02-07
Editors
Daniel Atherton

Incident Reports

Reports Timeline

+1
I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.
I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.

I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.

washingtonpost.com

I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.
washingtonpost.com · 2025

I recently asked a new artificial intelligence tool from the creator of ChatGPT to do an impossible task: find cheap eggs in my neighborhood.

In under 10 minutes, the AI called Operator bought a dozen eggs and paid a human to deliver them t…

Variants

A "variant" is an incident that shares the same causative factors, produces similar harms, and involves the same intelligent systems as a known AI incident. Rather than index variants as entirely separate incidents, we list variations of incidents under the first similar incident submitted to the database. Unlike other submission types to the incident database, variants are not required to have reporting in evidence external to the Incident Database. Learn more from the research paper.

Similar Incidents

By textual similarity

Did our AI mess up? Flag the unrelated incidents

Inappropriate Gmail Smart Reply Suggestions

Inappropriate Gmail Smart Reply Suggestions

Nov 2015 · 22 reports
TayBot

TayBot

Mar 2016 · 28 reports
Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Oct 2021 · 3 reports
Previous IncidentNext Incident

Similar Incidents

By textual similarity

Did our AI mess up? Flag the unrelated incidents

Inappropriate Gmail Smart Reply Suggestions

Inappropriate Gmail Smart Reply Suggestions

Nov 2015 · 22 reports
TayBot

TayBot

Mar 2016 · 28 reports
Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Oct 2021 · 3 reports

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2024 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • Open twitterOpen githubOpen rssOpen facebookOpen linkedin
  • 1420c8e