Italy has become the first Western country to block advanced chatbot ChatGPT.

by Shiona McCallum for BBC – The Italian data-protection authority said there were privacy concerns relating to the model, which was created by US start-up OpenAI and is backed by Microsoft. The regulator said it would ban and investigate OpenAI “with immediate effect”. OpenAI told the BBC it complied with privacy laws.

Millions of people have used ChatGPT since it launched in November 2022. It can answer questions using natural, human-like language and it can also mimic other writing styles, using the internet as it was in 2021 as its database. Microsoft has spent billions of dollars on it and it was added to Bing last month.

It has also said that it will embed a version of the technology in its Office apps, including Word, Excel, PowerPoint and Outlook. There have been concerns over the potential risks of artificial intelligence (AI), including its threat to jobs and the spreading of misinformation and bias.

Earlier this week key figures in tech, including Elon Musk, called for these types of AI systems to be suspended amid fears the race to develop them was out of control.

The Italian watchdog said that not only would it block OpenAI’s chatbot but it would also investigate whether it complied with General Data Protection Regulation.

GDPR governs the way in which we can use, process and store personal data. The watchdog said on 20 March that the app had experienced a data breach involving user conversations and payment information. It said there was no legal basis to justify “the mass collection and storage of personal data for the purpose of ‘training’ the algorithms underlying the operation of the platform”. It also said that since there was no way to verify the age of users, the app “exposes minors to absolutely unsuitable answers compared to their degree of development and awareness”.

Bard, Google’s rival artificial-intelligence chatbot, is now available, but only to specific users over the age of 18 – because of those same concerns. The Italian data-protection authority said OpenAI had 20 days to say how it would address the watchdog’s concerns, under penalty of a fine of €20 million ($21.7m) or up to 4% of annual revenues.

Elsewhere, the Irish data protection commission told the BBC it is following up with the Italian regulator to understand the basis for their action and “will coordinate with all EU data protection authorities” in connection to the ban. The Information Commissioner’s Office, the UK’s independent data regulator, told the BBC it would “support” developments in AI but that it was also ready to “challenge non-compliance” with data protection laws.

Dan Morgan, from cybersecurity ratings provider SecurityScorecard said the ban shows the importance of regulatory compliance for companies operating in Europe. “Businesses must prioritise the protection of personal data and comply with the stringent data protection regulations set by the EU – compliance with regulations is not an optional extra.”

X