Employee Pasted Client Data Into AI: Is It a Breach?
This story is from 2026-09-26. It is preserved in the archive; the latest stories are on the live feed.
Usually yes. Pasting personal data into a public AI tool is an unauthorised disclosure, which meets the UK GDPR definition of a personal data breach. Assess the risk to the people affected, and report to the ICO within 72 hours if that risk is likely. Record the decision either way, including your…
Read the full story at DEV Community — AI ↗
Timeline · 1 report
- 2026-09-26 01:54 · DEV Community — AI
Employee Pasted Client Data Into AI: Is It a Breach?