404 Media reveals OpenAI contractors read sensitive ChatGPT conversations
Leaked documents show hundreds of human reviewers analyze real user chats including personal details to improve the model.
Part of a larger narrative
OpenAI Security and Privacy Crisis
- ChatGPT Voice gets plugin access and GPT-6 models
- 404 Media reveals OpenAI contractors read sensitive ChatGPT conversationsyou are here
What to know
- OpenAI employs hundreds of human contractors who read real ChatGPT user prompts and conversations to improve model responses, a practice unknown to most of the platform's 900+ million users.
- Sensitive personal information reaches reviewers despite company claims to anonymize and filter data before human review; some user prompts explicitly request privacy, suggesting users do not expect human access.
- The practice, dubbed "Project Lily" internally, aims to reduce ChatGPT's sycophancy and anthropomorphization; Anthropic confirmed it operates a similar human review system.
This is a significant privacy concern that users should know about.
-
“OpenAI has hired an army of contractors who read real ChatGPT users' chats. I've seen internal docs, the review system, and real user prompts. Sometimes they contain very personal and sensitive information”
josephcox@infosec.exchange · Mastodon ↗
Human review is a necessary and often overlooked part of AI training and model improvement.
-
“Let's not forget that, in part, humans train AI”
arjen@idf.social · Mastodon ↗
“OpenAI is hiring hundreds of contractors who read a massive stream of real users' ChatGPT prompts, with the prompts sometimes including sensitive personal information.”
404 Media, Publication · 404 Media ↗
OpenAI AI company operating ChatGPT404 Media Investigative publicationAnthropic AI company
How it unfolded 1 development · click the chart to see its coverage articlesposts
-
1
Anthropic confirmed to use human review for model improvement
404 Media reported that Anthropic confirmed it also employs human reviewers to improve its models, indicating the practice is industry-wide rather than specific to OpenAI.
“No, I don't think they would imagine some contractor somewhere [...] is analyzing the conversations.”
— OpenAI human reviewer, Prompt reviewer · source -
This article makes two important points: 1. People using ChatGPT expose sensitive data because they think it is private 2. OpenAI relies on hundreds of human contractors reviewing replies to improve their models https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
2 more of the top 3 · 20 posts in this stretch
-
There is a lot of new info in this article, based on documents, Slack chats, instruction guides, and me seeing real ChatGPT user prompts in the review system. Firstly, a worker we spoke to thinks ChatGPT users have no idea their chats may be read by someone else www.404media.co/inside-proje... …
-
M
"You don't have to go very far beneath the surface — beneath the mirror — to find that not only are these things built in the image, but usually a fairly bad facsimile thereof, of what human abilities can do. But they require constant, constant intervention from humans…" Inside ‘Project Lily’: The Humans Reading Your ChatGPT Chats https://www…
-
-
background
OpenAI acknowledges sensitive personal data reaches human reviewers despite safeguards — The company attempts to anonymize prompts (removing usernames) and claims it tries to strip personal information before contractors review them, but acknowledged that sensitive details still get through. Some user prompts explicitly ask ChatGPT to keep information private, suggesting users do not expect human review.
-
background
Contractors rate ChatGPT responses across three-stage review process — Human reviewers access a dashboard where they select tasks and view real user prompts without usernames. They then summarize the user's intent and rate ChatGPT-generated responses, training the model to reduce anthropomorphization and sycophancy.
-
background
404 Media discloses OpenAI's "Project Lily" human review operation — 404 Media published an investigation based on leaked internal documents, instruction guides, Slack channels, and real user prompts, revealing that OpenAI has hired hundreds of contractors to read and review ChatGPT conversations to improve model responses.
Also covered reported alongside — the timeline has no entry for these yet
-
first by Tom's Guide, 9d ago · also The Decoder, India Today, 404 Media
3 more headlines
- OpenAI has hundreds of contract workers reading your ChatGPT conversations The Decoder · 9d ago
- OpenAI is reading ChatGPT chats, humans look at what people say to AI India Today · 8d ago
- Podcast: Humans Are Reading Your ChatGPT Conversations Mastodon · 7d ago
-
first by Inshorts, 8d ago · also 404 Media
2 more headlines
- Project Lily: Why humans may review your ChatGPT chats YourStory.com · 8d ago
- Inside ‘Project Lily’: The Humans Reading Your ChatGPT Chats 404 Media · 8d ago
-
first by Tom's Hardware, 9d ago
and 1 smaller piece
What people are saying 12 voices from 2 sites · best of 20 · verbatim
- Sep 16
-
J
humans are reading your ChatGPT prompts. I've seen the prompts myself, they can included sensitive information. Watch the whole conversation and subscribe here:
- Sep 15
-
F
404 Media on Project Lily, the ChatGPT project where humans read users’ prompts – including sensitive and personal information – to better train the product. https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
- Sep 14
-
C
CDT’s Luria: “This is quite distinct from content moderation on social media, where publishing content already carries expectations of platform moderation and public exposure.” https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
-
C
CDT’s Luria: “That said, it's important to keep in mind that current chatbot interfaces automatically create a false sense of intimacy and privacy in what feel like one-on-one interactions, when in reality there may be human reviewers reading on the other end.” https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
-
C
“Michal Luria, a senior research fellow at the Center for Democracy & Technology, told 404 Media: ‘Human review of conversations with chatbots can be essential to safety, especially as companies work to strike the right balance on complex chatbot behaviors.’” https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
-
Humans are reading ChatGPT users’ prompts to improve OpenAI’s models, and those chats can include sensitive, personal information, according to leaked internal documents and real prompts seen by 404 Media. # AI # news # privacy # technology # 404media https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
-
A
yikes 😬 > OpenAI is hiring hundreds of contractors who read a massive stream of real users’ ChatGPT prompts, with the prompts sometimes including sensitive personal information.... The prompts these people review can include whole conversations between users and the chatbot, conversations that most of ChatGPT’s more than 900 million users…
-
T
Who's reading your ChatGPT messages? OpenAI has hundreds of contractors reviewing conversations with the aim of improving the chatbot's responses to users. While the company says it tries to remove personal information, sensitive details can still get through. @ 404mediaco breaks down how it works. https:// flip.it/6ztLgb # Tech # AI # OpenAI
-
M
screaming. https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
-
Here is the setting you need to turn off if you don't want a human potentially reading through your ChatGPT conversations. I've seen some of the prompts; these ChatGPT users clearly have no idea a human is reading www.404media.co/inside-proje... [image]
-
A
Let's not forget that, in part, humans train AI https://www. 404media.co/inside-project-lil y-the-humans-reading-your-chatgpt-chats/
-
J
New from 404 Media: humans are reading ChatGPT conversations. OpenAI has hired an army of contractors who read real ChatGPT users' chats. I've seen internal docs, the review system, and real user prompts. Sometimes they contain very personal and sensitive information https://www. 404media.co/inside-project-lil…