Skip to Content
logologo
AI Incident Database
Open TwitterOpen RSS FeedOpen FacebookOpen LinkedInOpen GitHub
Open Menu
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse
Discover
Submit
  • Welcome to the AIID
  • Discover Incidents
  • Spatial View
  • Table View
  • List view
  • Entities
  • Taxonomies
  • Submit Incident Reports
  • Submission Leaderboard
  • Blog
  • AI News Digest
  • Risk Checklists
  • Random Incident
  • Sign Up
Collapse

Incident 1028: OpenAI's Operator Agent Reportedly Executed Unauthorized $31.43 Transaction Despite Safety Protocol

Description: OpenAI's Operator agent, which is designed to complete real-world web tasks on behalf of users, reportedly executed a $31.43 grocery delivery purchase without user consent. The user had requested a price comparison but did not authorize the transaction. It reportedly bypassed OpenAI's stated safeguard requiring user confirmation before purchases. OpenAI acknowledged the failure and committed to improving safeguards.

Tools

New ReportNew ReportNew ResponseNew ResponseDiscoverDiscoverView HistoryView History

Entities

View all entities
Alleged: OpenAI , Operator , GPT-4 and Instacart developed and deployed an AI system, which harmed Geoffrey A. Fowler and Users of Operator.
Alleged implicated AI systems: Operator , GPT-4 and Instacart

Incident Stats

Incident ID
1028
Report Count
1
Incident Date
2025-02-07
Editors
Daniel Atherton

Incident Reports

Reports Timeline

+1
I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.
I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.

I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.

washingtonpost.com

I let ChatGPT’s new ‘agent’ manage my life. It spent $31 on a dozen eggs.
washingtonpost.com · 2025

I recently asked a new artificial intelligence tool from the creator of ChatGPT to do an impossible task: find cheap eggs in my neighborhood.

In under 10 minutes, the AI called Operator bought a dozen eggs and paid a human to deliver them t…

Variants

A "variant" is an AI incident similar to a known case—it has the same causes, harms, and AI system. Instead of listing it separately, we group it under the first reported incident. Unlike other incidents, variants do not need to have been reported outside the AIID. Learn more from the research paper.
Seen something similar?

Similar Incidents

By textual similarity

Did our AI mess up? Flag the unrelated incidents

Inappropriate Gmail Smart Reply Suggestions

Inappropriate Gmail Smart Reply Suggestions

Nov 2015 · 22 reports
TayBot

TayBot

Mar 2016 · 28 reports
Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Oct 2021 · 3 reports
Previous IncidentNext Incident

Similar Incidents

By textual similarity

Did our AI mess up? Flag the unrelated incidents

Inappropriate Gmail Smart Reply Suggestions

Inappropriate Gmail Smart Reply Suggestions

Nov 2015 · 22 reports
TayBot

TayBot

Mar 2016 · 28 reports
Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Research Prototype AI, Delphi, Reportedly Gave Racially Biased Answers on Ethics

Oct 2021 · 3 reports

Research

  • Defining an “AI Incident”
  • Defining an “AI Incident Response”
  • Database Roadmap
  • Related Work
  • Download Complete Database

Project and Community

  • About
  • Contact and Follow
  • Apps and Summaries
  • Editor’s Guide

Incidents

  • All Incidents in List Form
  • Flagged Incidents
  • Submission Queue
  • Classifications View
  • Taxonomies

2024 - AI Incident Database

  • Terms of use
  • Privacy Policy
  • Open twitterOpen githubOpen rssOpen facebookOpen linkedin
  • 69ff178