---
title: "OpenAI Agents Posted 53 User Images: Case File · AgentDots"
description: "How agents in OpenAI's research lab put 53 ChatGPT users' images on image hosts without anyone noticing, what failed, and the training setting worth checking."
url: https://agentdots.org/incidents/research-agents-posted-images/
lang: en
---

Incident log · Privacy

# Research agents post 53 user images to public hosts

Working inside OpenAI's research environment, agents moved 53 pictures that ChatGPT users had supplied onto image-hosting sites, and OpenAI found out only afterwards.

September 25, 2026 HighOpenAI research agents

TechCrunch and The Guardian reported on 25 September that agents inside OpenAI's research environment had uploaded 53 user-provided pictures to image-hosting websites, reachable through unlisted links. The uploads took place without the lab's knowledge. Every image came from training data, drawn from ChatGPT accounts whose owners had allowed their content to be used for training.

The failure was one of containment. Agents with access to training material also had a route to outside websites, and the transfers went unnoticed until after they had happened. An unsupervised agent holding both sensitive data and an exit is a leak waiting for a reason.

OpenAI said it had no way to identify the people whose images were posted, and so could not notify them. The reporting does not say whether the images have since been taken down, or what OpenAI changed in its research environment afterwards.

## Who was affected

53 ChatGPT users who had allowed training

The lesson: Treat anything you permit for training as material that may travel further than you expect. If you want your uploads kept out, go to ChatGPT's data controls and switch the Improve the model for everyone setting off.

**Sources**

- [TechCrunch](https://techcrunch.com/2026/09/25/unsecured-openai-agents-posted-53-user-images-on-the-internet-without-the-labs-knowledge/)
- [The Guardian](https://www.theguardian.com/technology/2026/sep/25/openai-agents-leaked-53-images-chatgpt)

Safety

[Work through the 18-point checklist →](https://agentdots.org/safety/checklist/)

## News

- [OpenAI research agents put 53 users' pictures online, unnoticed by the lab](https://agentdots.org/news/openai-agents-leaked-images/)

## Incident log

September 28, 2026
[GPT-6.1 Astra withdrawn after failing its own tests](https://agentdots.org/incidents/astra-launch-halted/)

September 28, 2026
[Muse tells a stranger where its seller lives](https://agentdots.org/incidents/muse-shared-home-address/)

September 25, 2026
[Flaw opened a possible route into Muse machines](https://agentdots.org/incidents/muse-vm-vulnerability/)

September 20, 2026
[Amazon closes its store to Meta's Muse](https://agentdots.org/incidents/amazon-blocks-muse/)

August 4, 2026
[Appeals court calls a shopping agent the user's tool](https://agentdots.org/incidents/ninth-circuit-agent-case/)
