Philippe Dufresne, the Privateness Commissioner of Canada, has discovered OpenAI used to be “no longer compliant with” Canadian federal and provincial privateness rules within the coaching of its AI fashions. Following an investigation, Dufresne and his opposite numbers in Alberta, Quebec and British Columbia say OpenAI’s technique to such things as knowledge assortment and consent stepped on more than one rules, together with Canada’s Private Data Coverage and Digital Paperwork Act (PIPEDA), which governs how corporations gather and use non-public knowledge all the way through the traditional route of industrial.
The commissioners collaborating within the investigation known more than one privateness problems with OpenAI’s means, together with that the corporate “amassed huge quantities of private knowledge with out good enough safeguards to forestall use of that knowledge to coach its fashions,” and that it failed to procure consent to gather and use that private knowledge within the first position. Warnings in ChatGPT observe that interactions with the AI might be utilized in coaching, however third-party knowledge OpenAI has bought or scraped additionally contains non-public main points other folks most likely don’t seem to be even conscious about. The truth that ChatGPT customers haven’t any method to get admission to, right kind or delete that knowledge used to be any other factor that the commissioners known, in keeping with a abstract of the investigation’s findings, together with OpenAI’s lackluster makes an attempt to recognize the inaccuracy of a few of ChatGPT’s responses.
Canada’s Privateness Commissioner contends that OpenAI used to be open and attentive to the investigation, and has already dedicated to creating more than one adjustments to ChatGPT to observe Canadian privateness rules. OpenAI has retired previous fashions that violated Canadian privateness legislation, and now makes use of “a filtering software to locate and masks non-public knowledge (corresponding to names or telephone numbers) in publicly obtainable web knowledge and authorized datasets used to coach its fashions,” the Commissioner says. The corporate has additionally agreed throughout the subsequent 3 months so as to add a brand new understand to the signed-out model of ChatGPT explaining that chats can be utilized for coaching and delicate knowledge should not be shared, and throughout the subsequent six months:
Whilst Canada’s investigation into OpenAI’s privateness insurance policies used to be opened in 2023, the corporate has gained scrutiny from regulators extra not too long ago as a result of its connection to the mass taking pictures that passed off in Tumbler Ridge in February 2026. OpenAI had reportedly flagged the alleged shooter’s account in 2025 for holding warnings of real-world violence, however did not escalate the ones issues to Canadian legislation enforcement. Following the taking pictures, regulators demanded the corporate exchange its technique to protection, and OpenAI in the end agreed to be extra collaborative with Canadian legislation enforcement and well being businesses one day.



