DATDAT-002 — Data Privacy and Protection Failures
Personal Data Repurposed Without Consent to Train Generative AI Models
4/5Sector: OtherGeography: GlobalStage: OperateIngested: —
Executive Summary
AI systems are exploiting data collected for original purposes to build new model capabilities, bypassing end-user consent. Organisations face material regulatory exposure and reputational liability under data protection law.
Domain
Data Management
Blindspots in data quality, privacy, bias, lineage, lifecycle, and third-party data dependencies.
Source
MIT AI Risk Repository — A Closer Look at the Existing Risks of Generative AI: Mapping the Who, What, and How of Real-World Incidents (Li2025) ↗https://airisk.mit.edu/
Could this happen in your organisation?
A Velinor AI Audit maps your active AI portfolio against the 50+ blindspots and benchmarks against documented sector failures like this one. A board-ready foresight document in 5 weeks.