DATDAT-002 — Data Privacy and Protection Failures
LLMs Can Link Personal Identifiers to Expose Private Individual Data
4/5Sector: OtherGeography: GlobalStage: DevelopIngested: —
Executive Summary
Large language models associate discrete pieces of personal information, enabling prompts referencing one identifier to extract linked private data such as email addresses. Organisations deploying LLMs risk inadvertent PII disclosure, triggering GDPR liability and reputational harm without robust data governance controls.
Domain
Data Management
Blindspots in data quality, privacy, bias, lineage, lifecycle, and third-party data dependencies.
Source
MIT AI Risk Repository — Risk Taxonomy, Mitigation, and Assessment Benchmarks of Large Language Model Systems (Cui2024) ↗https://airisk.mit.edu/
Could this happen in your organisation?
A Velinor AI Audit maps your active AI portfolio against the 50+ blindspots and benchmarks against documented sector failures like this one. A board-ready foresight document in 5 weeks.