Live data from Hacker News

Italian privacy regulator bans ChatGPT

politico.eu

141–150 of 709 posts

Re: Italian privacy regulator bans ChatGPT

#141
post #87

Earlier quoted context omitted.

Singapore has to be one of the worst places to live. I don't care how 'nice' their society might seem, their overstep is too steep by far. "Custom officers can subject travellers to a drug screening test at the point of entry to Singapore. If you test positive for drugs, you can be arrested and prosecuted, even if the drugs were consumed prior to your arrival in the country." That's insanity.

[flagged]

> Reportedly some of the happiest people on earth

They seem pretty far from the Scandinavian countries.

Besides, I'd find it hard to trust any results from a totalitarian country.

> It sounds insane to you because you’re used to the filth we live in and don’t even see the decay that’s all around us anymore. Crime and violence are normal in our world and a government that won’t tolerate it is a foreign concept.

There are plenty of civilized countries with low crime rates that are not totalitarian.

Re: Italian privacy regulator bans ChatGPT

#142

'exposes "minors to absolutely unsuitable answers compared to the their degree of development and self-awareness."' So do (certain) books. That's another issue right? If you let your minor access stuff, they.. access stuff. Hard to control? I know and it is. How is this specific to OpenAI?

So does the internet.

Re: Italian privacy regulator bans ChatGPT

#144

Earlier quoted context omitted.

GDPR tries to enforce its rules on servers outside of its territory. I'm still waiting to see how well that holds up in court.

It’s not trying to do that. It’s trying to regulate the data collection and processing of users in its territory. On the other hand, CLOUD act was trying to regulate data on foreign servers.

The GDPR act clearly does state that though, so if they are not trying to do that, why did they try to give themselves the authority?

This isn't just my take by the way, it's common knowledge and was the cause for much discussion and speculation.

Re: Italian privacy regulator bans ChatGPT

#145
Italian developer here, who frequently uses ChatGPT Pro

I, as an EU resident citizen, have the right to know where MY data goes: Basically with GDPR the user must be informed clearly, as concisely as possible, in terms understandable even to a layman, about where his data ends up, giving active consent to its use (in this case consent has no inertia)

After the data breach on March 20, the Italian authority opened an investigation to examine the lack of user information and other related things! It doesn't seem to me that this is so wrong; I guess you want to know what data a big company has on you

OpenAI has 20 days to communicate the measures taken; it is not a ban on the service, but a response to possible data leaks

Re: Italian privacy regulator bans ChatGPT

#146
post #89

Earlier quoted context omitted.

Everyone who opposes Silicon Valley is a fascist? Meloni hasn't really done much and appeases the EU on most issues. Berlusconi was already called a fascist 20 years ago. If Italy has a problem, it is too much bureaucracy, not fascism.

It's authoritarian to prevent their citizens from using a tool that makes them more productive and gives them a way to explore a new technology. Imagine if Italy banned Google searches in 2002. Actually, China did that and we rightfully called them authoritarian then, just like we should call Italy authoritarian now.

…right, all of the world should give away their secrets for training purposes to make OpenAI more money ?

Give me a break…

Re: Italian privacy regulator bans ChatGPT

#147
post #98
post #77

Good summary: https://www.politico.eu/article/italian-privacy-regulator-ba... The key issue under GDPR seems to be that OpenAI: > lacks a legal basis justifying "the mass collection and storage of personal data ... to 'train' the algorithms" of ChatGPT" My reading: OpenAI could comply with this by modifying ChatGPT to give users protected by GDPR a clear choice to opt-in vs opt-out on their chats being used as future…

They already stopped using chats as training material for everyone anyway, so if that's the basis for the ban then it's already wrong. But what do you expect? This is exactly the kind of problem people have constantly pointed out with the GDPR. It's vague, has many unintended consequences, massively empowers low-competence regulatory regimes and constantly interferes with innovation and new tech. The EU will continue…

How is this ban vague? Have you read the full announcement?[1]

Here are the reasons:

DETECTED, from a check carried out in this regard, that no information is provided to users, nor to interested parties whose data has been collected by OpenAI, L.L.C. and processed through the ChatGPT service;

NOTING the absence of an appropriate legal basis in relation to the collection of personal data and their processing for the purpose of training the algorithms underlying the functioning of ChatGPT;

NOTING that the processing of personal data of the interested parties is inaccurate as the information provided by ChatGPT does not always correspond to the real data;

DETECTED, moreover, the absence of any verification of the age of users in relation to the ChatGPT service which, according to the terms published by OpenAI L.L.C., is reserved for individuals who are at least 13 years old;

CONSIDERING that the absence of filters for minors under the age of 13 exposes them to absolutely unsuitable responses with respect to their degree of development and self-awareness;

CONSIDERING therefore that in the situation outlined above, the processing of personal data of users, including minors, and of interested parties whose data is used by the service is in violation of articles 5, 6, 8, 13 and 25 of the Regulation;

RECOGNIZING, therefore, the need to have, pursuant to art. 58, par. 2, lit. f), of the Regulation - as a matter of urgency and pending the completion of the necessary investigation with respect to what has emerged so far against OpenAI L.L.C., a US company that develops and manages ChatGPT, the extent of the temporary limitation of the treatment;

CONSIDERING that, in the absence of any mechanism for verifying the age of the users, as well as, in any case, of the complex of violations detected, said temporary limitation must extend to all personal data of the interested parties established in the Italian territory;

CONSIDERED it necessary to order the aforementioned limitation with immediate effect from the date of receipt of this provision, reserving any other determination to the outcome of the definition of the preliminary investigation started on the case;

RECALLING that, in the event of non-compliance with the measure established by the Guarantor, the criminal sanction pursuant to art. 170 of the Code and the administrative sanctions provided for by art. 83, par. 5, letter. e), of the Regulation;

CONSIDERING, on the basis of the foregoing, that the prerequisites for the application of art. 5, paragraph 8, of Regulation no. 1/2000 on the organization and functioning of the Guarantor's office, which provides that «In cases of particular urgency and in which the Guarantor cannot be convened in good time, the president can adopt the measures pertaining to the body , which cease to have effect from the moment of their adoption if they are not ratified by the Guarantor in the first useful meeting, to be convened no later than the thirtieth day";

[1]https://www.garanteprivacy.it/web/guest/home/docweb/-/docweb...

Re: Italian privacy regulator bans ChatGPT

#149

Europe on top of innovation once again. Watch out US and China! /s (I say this as a French citizen)

Yeah, well, that good old world some people (and politicians) are reminiscing about, simply doesn't exist any more. That said I don't mind different countries taking a different approach on things, if that pairs with a reformed immigration approach - aka I can gtfo if I don't like it there.

Re: Italian privacy regulator bans ChatGPT

#150
post #97

Earlier quoted context omitted.

Nobody is touching other countries' servers. Not even close. Companies can either adapt to the ruling or take their business elsewhere.

> Nobody is touching other countries' servers. Not even close. No one claimed otherwise. It's still fascinating (and, I believe, a first) that the EU thinks they have extraterritorial jurisdiction just because their citizens are affected.

It's not extraterritorial. If an international company wants to sell goods or services in a country, it must abide by the country's laws.
Post reply on HN