Canadian Watchdog Finds X's Grok AI Tool Violated Privacy Laws with Sexualized Deepfakes

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

Canada's privacy commissioner found that xAI's Grok AI image generation tool, deployed on X, enabled users to create millions of non-consensual sexualized deepfake images, including thousands involving children. The investigation concluded that inadequate safeguards led to significant privacy violations and harm, prompting regulatory scrutiny and mandated corrective actions.[AI generated]

Why's our monitor labelling this an incident or hazard?

Grok is an AI system generating deepfake images, including sexualized and nonconsensual content involving adults and children. The sharing of these images constitutes a violation of privacy laws and potentially human rights. The article describes ongoing harm, regulatory rulings, and legal investigations, confirming that the AI system's use has directly led to significant harm. The involvement of AI in producing harmful content and the legal consequences align with the definition of an AI Incident.[AI generated]
AI principles
Privacy & data governanceRespect of human rights

Industries
Media, social platforms, and marketing

Affected stakeholders
General publicChildren

Harm types
Human or fundamental rightsPsychological

Severity
AI incident

AI system task:
Content generation


Articles about this incident or hazard

Thumbnail Image

Grok's sexualized deepfakes violate Canada's privacy law, watchdog rules

2026-06-11
POLITICO
Why's our monitor labelling this an incident or hazard?
Grok is an AI system generating deepfake images, including sexualized and nonconsensual content involving adults and children. The sharing of these images constitutes a violation of privacy laws and potentially human rights. The article describes ongoing harm, regulatory rulings, and legal investigations, confirming that the AI system's use has directly led to significant harm. The involvement of AI in producing harmful content and the legal consequences align with the definition of an AI Incident.
Thumbnail Image

X's AI tool Grok violated law with sexualized deepfakes of women and children, privacy commissioner finds

2026-06-11
The Star
Why's our monitor labelling this an incident or hazard?
The AI system Grok is explicitly mentioned as enabling the creation of sexualized deepfakes, which constitutes harm to individuals' privacy and dignity, and likely breaches legal protections. The commissioner's finding that the tool was launched without proper safeguards indicates a failure in the AI system's development and deployment that directly caused harm. Therefore, this event qualifies as an AI Incident due to realized harm linked to the AI system's use.
Thumbnail Image

Privacy commissioner releases results of Grok deepfake investigation

2026-06-11
Castanet
Why's our monitor labelling this an incident or hazard?
The Grok AI chatbot is an AI system capable of generating deepfake images. The investigation confirms that the AI system was used to create millions of sexualized deepfakes without valid consent, violating privacy laws and causing harm to individuals' privacy rights. The direct link between the AI system's use and the privacy violations meets the criteria for an AI Incident. The article focuses on the harm caused and the legal investigation, not just potential risks or responses, so it is not a hazard or complementary information.
Thumbnail Image

In the news today: New gun figures, AI deepfake probe, online harms, World Cup begins

2026-06-11
Winnipeg Free Press
Why's our monitor labelling this an incident or hazard?
The article mentions an AI system (Grok AI chatbot) involved in creating sexual deepfakes, which is a recognized AI harm. However, the article does not describe a specific AI Incident where harm has occurred or a new AI Hazard where harm is plausible but not yet realized. Instead, it reports on the privacy commissioner's investigation results and new legislation aimed at regulating AI chatbots and protecting children online. This fits the definition of Complementary Information, as it provides context and updates on responses to AI-related issues rather than reporting a new harm or credible risk event.
Thumbnail Image

Canada's Privacy Commissioner says X's Grok AI chatbot violated law with sexualize deepfakes

2026-06-11
MobileSyrup
Why's our monitor labelling this an incident or hazard?
The Grok AI chatbot is explicitly identified as an AI system generating sexualized deepfake images without consent, directly causing harm to individuals' privacy and rights, which fits the definition of an AI Incident. The harm is realized and significant, involving violations of privacy and human rights. The report also mentions ongoing harm despite mitigation efforts, reinforcing the classification as an AI Incident rather than a hazard or complementary information.
Thumbnail Image

CP NewsAlert: Privacy commissioner says Grok deepfakes violated Canadian privacy law

2026-06-11
Sudbury.com
Why's our monitor labelling this an incident or hazard?
The event involves an AI system (Grok's AI image generation tool) whose use directly led to violations of privacy law through the creation and dissemination of sexual deepfakes without valid consent. This constitutes a breach of obligations intended to protect fundamental rights, specifically privacy rights, which fits the definition of an AI Incident. The harm is realized and ongoing, as millions of such deepfakes were generated and shared, prompting official investigations and backlash.
Thumbnail Image

Privacy commissioner says Grok deepfakes violated Canadian privacy law

2026-06-11
Sudbury.com
Why's our monitor labelling this an incident or hazard?
The AI system (Grok's AI image generation tool) was used to create sexualized deepfakes targeting women and children, violating privacy rights and Canadian privacy law. The harm (violation of privacy and personal rights) has already occurred due to the AI system's use. The investigation and findings confirm direct harm linked to the AI system's deployment and use. Therefore, this event qualifies as an AI Incident due to violations of human rights and privacy laws caused by the AI system's use.
Thumbnail Image

Grok's sexualized deepfakes violate Canada's privacy law, watchdog rules

2026-06-11
Yahoo
Why's our monitor labelling this an incident or hazard?
The event explicitly involves an AI system (Grok AI chatbot) used to generate sexualized deepfake images without consent, including images of children, which is a clear violation of privacy and human rights. The Privacy Commissioner has found that the companies continue to allow this harmful use, indicating ongoing harm. The harms are direct and significant, including violations of privacy law and potential criminal offenses. This meets the criteria for an AI Incident because the AI system's use has directly led to violations of rights and harm to individuals and communities. The article also mentions ongoing regulatory and legal responses, but the primary focus is on the realized harm caused by the AI system's outputs.
Thumbnail Image

Grok-generated sexual deepfakes violate Canadian law, privacy commissioner finds - The Logic

2026-06-11
The Logic
Why's our monitor labelling this an incident or hazard?
The AI system (Grok) is explicitly mentioned as generating sexual deepfake images, which are harmful and violate privacy laws. The harm is realized and ongoing, as the platform continues to produce such content despite some reduction. The privacy commissioner's inability to quickly block the content and the government's response further confirm the seriousness of the incident. Therefore, this event meets the criteria for an AI Incident due to direct harm caused by the AI system's outputs violating legal and privacy rights.
Thumbnail Image

Big Tech says it will work with Ottawa on plan to ban kids from social media - The Logic

2026-06-11
The Logic
Why's our monitor labelling this an incident or hazard?
The article does not describe a specific AI Incident or AI Hazard event occurring at the moment but rather details the government's legislative and regulatory plans to address AI-related harms and online safety issues. It includes references to past harms (e.g., Grok's generation of sexualized images) and ongoing investigations but focuses on the societal and governance response to these issues. Therefore, it fits the definition of Complementary Information as it provides context and updates on responses to AI harms rather than reporting a new incident or hazard.
Thumbnail Image

In the news today: New gun figures, AI deepfake probe, online harms, World Cup begins

2026-06-11
Lethbridge News Now
Why's our monitor labelling this an incident or hazard?
The investigation into sexual deepfakes created by an AI chatbot involves the use of an AI system (Grok AI chatbot) that generated harmful content (sexual deepfakes) without consent, directly implicating privacy rights violations, which fits the definition of an AI Incident. The legislation to regulate AI chatbots is a governance response to such harms, thus complementary information. The other news items do not involve AI systems or AI-related harms. Therefore, the overall event classification is AI Incident based on the deepfake investigation.
Thumbnail Image

X's AI tool Grok violated law with sexualized deepfakes of women and children, privacy commissioner finds

2026-06-12
Niagara Falls Review
Why's our monitor labelling this an incident or hazard?
The AI system Grok was used to create sexualized deepfake images of women and children, which is a clear violation of privacy and human rights laws. The privacy commissioner's investigation and findings confirm that the AI system's use has directly led to harm, specifically violations of privacy and potentially exploitation or abuse. This meets the criteria for an AI Incident as the AI system's use has directly caused harm and legal breaches.
Thumbnail Image

Privacy commissioner to release results of Grok deepfake investigation

2026-06-11
The Lethbridge Herald - News and Sports from around Lethbridge
Why's our monitor labelling this an incident or hazard?
The article primarily reports on the release of findings from an investigation into AI-generated sexual deepfakes, which are known to cause harm through privacy violations and non-consensual use of personal data. The AI system (Grok chatbot) is involved in generating deepfakes, which is an AI Incident due to the realized harm. However, since the article focuses on the investigation results and regulatory responses rather than describing a new or ongoing incident, it fits best as Complementary Information that provides context and updates on a known AI Incident.
Thumbnail Image

Grok's AI image generation tool violates Canadian privacy law, watchdog rules

2026-06-11
Crypto Briefing
Why's our monitor labelling this an incident or hazard?
The AI system (Grok's AI image generation tool) was used to create millions of non-consensual deepfake images, including explicit content involving children, which is a direct violation of privacy rights and causes significant harm to individuals and communities. The regulatory investigation confirms the AI system's role in causing this harm. The event involves the use of an AI system leading directly to realized harm, meeting the criteria for an AI Incident rather than a hazard or complementary information.
Thumbnail Image

Elon Musk's X violated Canadian privacy law with Grok deepfakes, watchdog finds | BetaKit

2026-06-11
BetaKit
Why's our monitor labelling this an incident or hazard?
The AI system Grok was used to generate sexualized deepfake images without consent, including of minors, which is a clear violation of privacy rights and legal protections. This use of AI directly caused harm to individuals by creating and enabling the spread of non-consensual explicit content, fulfilling the criteria for an AI Incident under violations of human rights and privacy law. The investigation and findings by the privacy commissioner confirm the AI system's role in causing this harm. The company's remedial actions are complementary information but do not negate the incident classification.
Thumbnail Image

Privacy commissioner to release results of Grok deepfake investigation

2026-06-11
CHAT News Today
Why's our monitor labelling this an incident or hazard?
The event involves an AI system (Grok AI chatbot) that generates deepfakes, which are AI-generated synthetic media. The investigation is about the use of personal information without consent to create sexual deepfakes, which constitutes a violation of privacy rights, a form of harm under human rights and legal protections. However, the article describes the investigation and the upcoming release of results, not the actual findings or confirmed harm. Therefore, this is a complementary information event providing context and updates on an AI-related issue rather than reporting a confirmed AI Incident or a plausible future hazard.
Thumbnail Image

Canada says xAI's Grok broke privacy law over Deepfake images

2026-06-11
The American Bazaar
Why's our monitor labelling this an incident or hazard?
The article explicitly describes an AI system (Grok) used to generate harmful deepfake images without consent, which is a direct violation of privacy laws and human rights. The privacy commissioner's investigation confirms that the AI system's use led to actual harm through non-consensual sexualized deepfakes. This meets the criteria for an AI Incident because the AI system's use directly caused violations of fundamental rights and harm to individuals. The subsequent mitigation efforts by xAI are noted but do not negate the occurrence of the incident.
Thumbnail Image

Canada's Privacy Czar Set To Release Report On Grok Sexual Deepfakes

2026-06-11
Breaking News, Latest News, US and Canada News, World News, Videos
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions the involvement of an AI system (Grok AI chatbot) generating sexual deepfakes, which implicates privacy and consent issues, a recognized form of harm under human rights violations. However, the article focuses on the investigation and expected report rather than describing a specific AI Incident where harm has already occurred or a hazard where harm is imminent. The investigation and potential legislative responses represent governance and societal responses to AI harms, fitting the definition of Complementary Information.
Thumbnail Image

Hypertrucages à caractère sexuel | Grok viole la loi, selon le commissaire à la vie privée

2026-06-11
La Presse.ca
Why's our monitor labelling this an incident or hazard?
The event involves an AI system (Grok) used to generate hyper-realistic sexual deepfake images, which constitutes an AI system generating content. The use of this AI system has directly led to violations of privacy rights under Canadian law, a breach of legal obligations protecting fundamental rights. The investigation and the described harms (privacy violations and unauthorized use of personal data) meet the criteria for an AI Incident, as the AI system's use has directly caused harm to individuals' rights.
Thumbnail Image

Protection de la vie privée | Les hypertrucages de Grok violent la loi

2026-06-11
La Presse.ca
Why's our monitor labelling this an incident or hazard?
The event involves an AI system (Grok) that generates hyper-realistic sexual deepfake images, which have been used to create and share non-consensual sexual content, including child exploitation material. This constitutes a violation of privacy rights and causes harm to individuals and communities. The AI system's use directly led to these harms, fulfilling the criteria for an AI Incident. The report and calls for legal reform are responses to this incident, but the primary event is the realized harm caused by the AI system's outputs and the companies' failure to prevent it.
Thumbnail Image

L'IA Grok blâmé au Canada pour avoir généré des représentations...

2026-06-11
Le Devoir
Why's our monitor labelling this an incident or hazard?
The AI system Grok was used to generate non-consensual sexual deepfake images, which directly harms the privacy and dignity of the individuals depicted, violating their rights. The large scale of such content generation and the involvement of personal data indicate a clear AI Incident under the framework, as the AI system's use has directly led to harm (violation of rights and harm to communities). The involvement of the privacy commissioner and legislative responses further confirm the seriousness of the incident. Therefore, this event qualifies as an AI Incident.
Thumbnail Image

Le commissionnaire à la vie privée publiera les résultats de son enquête sur Grok | L'actualité

2026-06-11
L’actualité
Why's our monitor labelling this an incident or hazard?
The event involves an AI system (Grok) generating deepfake content, which is a clear AI system involvement. The investigation is about whether the use of personal data to create non-consensual sexual deepfakes constitutes a violation of privacy rights, which would be a breach of fundamental rights if confirmed. However, the article mainly reports on the investigation and legislative proposals, not on confirmed incidents of harm or legal breaches. Therefore, this is a plausible risk scenario where harm could occur if the AI system is misused or operates without proper consent, but no confirmed harm or legal violation is reported yet. Hence, it fits the definition of an AI Hazard rather than an AI Incident or Complementary Information.
Thumbnail Image

Hypertrucages sexuels : l'IA d'Elon Musk a violé les lois sur la vie privée, dit un commissaire

2026-06-11
Pèse sur start
Why's our monitor labelling this an incident or hazard?
The event explicitly involves an AI system used to generate harmful sexual deepfake images without consent, which is a direct violation of privacy rights and causes significant harm to individuals. The involvement of the AI system in producing these images is clear, and the harms (privacy violations, psychological distress, reputational damage) have materialized. The official investigation and report by the Privacy Commissioner confirm the legal and societal recognition of these harms. Hence, this is an AI Incident as per the definitions provided.
Thumbnail Image

Les hypertrucages de Grok violent la loi, dit le commissaire

2026-06-11
Radio Canada
Why's our monitor labelling this an incident or hazard?
The article explicitly mentions that Grok, an AI image generation system, was used to create millions of sexual deepfake images without adequate privacy protections or valid consent, violating privacy laws. This constitutes a direct harm to individuals' privacy and rights, which is a breach of applicable law protecting fundamental rights. The official investigation and the legislative response further confirm the recognition of harm caused by the AI system's use. Therefore, this event qualifies as an AI Incident.