Skip to main content
This is a research prototype. The data and analyses are preliminary and not yet validated — we'd welcome your .

Personal information in prompt

AI Risk Atlas

IBM (2025)

Sub-category
Risk Domain

AI systems that memorize and leak sensitive personal data or infer private information about individuals without their consent. Unexpected or unauthorized sharing of data and information can compromise user expectation of privacy, assist identity theft, or cause loss of confidential intellectual property.

"Personal information or sensitive personal information that is included as a part of a prompt that is sent to the model."

Supporting Evidence (1)

1.
"If personal information or sensitive personal information is included in the prompt, it might be unintentionally disclosed in the models’ output. In addition to accidental disclosure, prompt data might be stored or later used for other purposes like model evaluation and retraining, and might appear in their output if not properly removed. "

Other risks from IBM (2025) (63)