3 Sources
[1]
Canadian officials claim OpenAI violated federal and provincial privacy laws - Engadget
Philippe Dufresne, the Privacy Commissioner of Canada, has found OpenAI was "not compliant with" Canadian federal and provincial privacy laws in the training of its AI models. Following an investigation, Dufresne and his counterparts in Alberta, Quebec and British Columbia say OpenAI's approach to
[2]
Canada finds OpenAI violated national privacy laws
Privacy Commissioner Philippe Dufresne of Canada found OpenAI non-compliant with federal and provincial privacy laws during an investigation. The investigation, which included commissioners from Alberta, Quebec, and British Columbia, determined that OpenAI violated Canada's Personal Information
[3]
Report on OpenAI expected from federal, provincial privacy watchdogs today
OTTAWA -- Privacy watchdogs plan to release a report today on OpenAI, the company behind the popular artificial intelligence-powered chatbot ChatGPT. Federal privacy commissioner Philippe Dufresne said just over three years ago that his office was investigating a complaint alleging the collection,
Share
Copy Link
Philippe Dufresne, Privacy Commissioner of Canada, found OpenAI non-compliant with federal and provincial privacy laws after a joint investigation. The probe revealed the company collected vast amounts of personal information without adequate safeguards or consent for AI model training, violating Canada's Personal Information Protection and Electronic Documents Act.
Philippe Dufresne, the Privacy Commissioner of Canada, has determined that OpenAI was "not compliant with" Canadian privacy laws in the training of its AI models. Following a comprehensive privacy investigation, Dufresne and his counterparts from Alberta, Quebec, and British Columbia concluded that the company's approach to data collection without consent violated multiple regulations, including Canada's Personal Information Protection and Electronic Documents Act (PIPEDA), which governs how companies handle personal information during business operations
1
2
.
Source: BNN
The federal and provincial privacy watchdogs identified several critical issues with OpenAI's practices. The company "gathered vast amounts of personal information without adequate safeguards to prevent use of that information to train its models," according to the investigation's findings
1
. While ChatGPT includes warnings that user interactions may be utilized for AI model training, third-party data that OpenAI has purchased or scraped also contains personal details that individuals likely aren't even aware of2
.The privacy investigation revealed that ChatGPT users have no way to access, correct, or delete their data once it has been collected—a significant violation of user data control principles. The commissioners also criticized OpenAI's inadequate acknowledgment of information accuracy issues in some of ChatGPT's responses
1
2
.Dufresne noted that OpenAI was open and responsive throughout the investigation process and has committed to implementing multiple changes to comply with Canadian privacy laws. The company has already retired earlier models that violated regulations and now employs a filtering tool designed to detect and mask personal information such as names and phone numbers in publicly accessible internet data and licensed datasets used for AI model training
1
2
.Within the next three months, OpenAI has agreed to add a new notice to the signed-out version of ChatGPT explaining that chats can be used for training and advising users against sharing sensitive information. Within six months, the company intends to simplify its data export tools and clarify how users can contest the accuracy of information provided by ChatGPT
2
.OpenAI will also confirm to privacy commissioners that it has implemented strong data safeguards for retired datasets, ensuring they cannot be used in ongoing development. Additional measures will protect minors' data protection, specifically shielding minor relatives of public figures from having their information shared by the models
2
.Related Stories
The investigation into OpenAI's privacy practices was initiated in 2023, but the company has faced increased scrutiny following a mass shooting in Tumbler Ridge in February 2026. OpenAI reportedly flagged the alleged shooter's account in 2025 due to indications of real-world violence but failed to escalate those concerns to Canadian law enforcement. Following the shooting, regulators demanded enhanced safety protocols, and OpenAI agreed to pursue more extensive law enforcement collaboration with Canadian authorities and health agencies moving forward
1
2
.
Source: Engadget
Upon announcing the investigation in April 2023, Dufresne emphasized that AI technology and its effects on privacy are priorities for his office, stressing the importance of keeping up with and staying ahead of fast-moving technological advances
3
. The findings were delivered by Dufresne and his counterparts from British Columbia, Alberta and Quebec, who collaborated on the joint probe3
.Summarized by
Navi
[2]
05 Mar 2026•Policy and Regulation

21 Feb 2026•Policy and Regulation
28 Feb 2025•Policy and Regulation

1
Science and Research

2
Policy and Regulation

3
Technology