AI model developers have ‘no justification’ for failing to comply with privacy law
AI-summarised brief · reviewed before publication
UK data‑protection regulator the Information Commissioner’s Office (ICO) has warned AI model developers that there is “no justification” for breaching privacy law when training large language models with personal data. The ICO’s report says developers routinely process highly sensitive information—medical details, political views, religion—scraped from the internet and must disclose the data’s source, processing purpose, and provide mechanisms for objection or deletion. It found widespread lack of transparency and use of blanket exemptions to avoid compliance, and noted many firms lack lawful bases beyond vague public‑interest claims. The regulator also highlighted that AI models can memorize and leak personal data, creating risks of fraud and identity theft, and pledged to use its full enforcement powers to protect citizens’ digital rights.
💡 Why It Matters
- · Unchecked privacy violations could erode public trust in AI, prompting tighter regulatory scrutiny.