概要: 2024年から2025年にかけて、ChatGPT、Claude、Copilot、Qwen、Mistral、Grokを含む複数のLLMプラットフォームの共有機能により、「発見可能」とマークされたユーザーの会話が検索エンジンやアーカイブサービスに公開されたとされています。10万件以上のチャットがインデックス化され、その後スクレイピングされたと報告されており、APIキー、アクセストークン、個人識別子、機密性の高いビジネスデータが漏洩したとされています。
Editor Notes: Timeline note: According to reporting, a lot of the "discoverable" chats were archived by the Internet Archive by at least June 2024, but actual reporting on the incident did not appear to arise until the end of July and early August 2025. This incident ID was created 08/25/2025 to capture the range of reporting on this cluster of related harms. See also Incident 1172: Meta AI Bug in Deployed Service Reportedly Allowed Potential Access to Other Users' Prompts and Responses.
推定: xAI , OpenAI , Mistral , Microsoft , Anthropic , Alibaba , Wayback Machine , Qwen , Internet Archive , Grok , Google , Copilot , Claude と ChatGPTが開発し提供したAIシステムで、Users of Qwen , Users of Mistral , Users of Grok , Users of Copilot , Users of Claude , ChatGPT users , General public と Privacyに影響を与えた
関与が疑われるAIシステム: Mistral , Wayback Machine , Qwen , Internet Archive , Grok , Google , Copilot , Claude と ChatGPT
インシデントのステータス
Risk Subdomain
A further 23 subdomains create an accessible and understandable classification of hazards and harms associated with AI
2.1. Compromise of privacy by obtaining, leaking or correctly inferring sensitive information
Risk Domain
The Domain Taxonomy of AI Risks classifies risks into seven AI risk domains: (1) Discrimination & toxicity, (2) Privacy & security, (3) Misinformation, (4) Malicious actors & misuse, (5) Human-computer interaction, (6) Socioeconomic & environmental harms, and (7) AI system safety, failures & limitations.
- Privacy & Security
Entity
Which, if any, entity is presented as the main cause of the risk
AI
Timing
The stage in the AI lifecycle at which the risk is presented as occurring
Post-deployment
Intent
Whether the risk is presented as occurring as an expected or unexpected outcome from pursuing a goal
Unintentional