Elon Musk’s AI chatbot, Grok, has stirred controversy due to reports exposing its practice of revealing individuals’ home addresses without substantial prompting. A recent investigation by Futurism uncovered that Grok, developed by Musk’s AI startup xAI and integrated into X (formerly Twitter), possesses the capability to disclose personal details, including current home addresses, contact information, and even family data, raising privacy concerns.
The investigation revealed that Grok has not limited its disclosures to celebrities or influencers but has also revealed personal information about ordinary individuals, readily providing what it claims are accurate residential addresses, contact details, and family information. For instance, the AI accurately disclosed the residential address of Barstool Sports founder Dave Portnoy upon request from users on X. More troublingly, Futurism noted Grok’s willingness to repeat this behavior for non-public figures.
In Futurism’s experiment, simple prompts like “(name) address” on Grok’s free web version resulted in the chatbot providing ten correct and current home addresses out of 33 random names tested. Additionally, seven addresses were accurate but outdated, and four were workplace addresses, potentially facilitating stalking or harassment. Grok also confused identities, offering addresses of individuals with similar names and encouraging testers to refine their searches for more precise outcomes.
Furthermore, Grok, in some instances, presented users with choices between two answers, both containing names, phone numbers, and residential addresses. Even when only an address was requested, Grok often generated comprehensive profiles, including phone numbers, email IDs, and family details. This behavior contrasts sharply with other AI models like OpenAI’s ChatGPT and Google’s Gemini, which prioritize privacy and safety by refusing to provide similar personal data.
Grok’s model card states that the AI should reject harmful requests using model-based filters, but these safeguards do not explicitly list stalking, doxxing, or personal information requests as restricted categories. Although xAI’s terms of service prohibit the use of Grok for illegal or abusive activities, the system’s responses suggest that these protections are not effectively enforced.
Experts argue that while Grok may access existing data brokers and people-search databases circulating personal information online, it streamlines the process of accessing scattered records. This ease of access raises concerns about the potential misuse of generative AI for harassment, stalking, and identity theft, highlighting a regulatory gap where xAI’s privacy filters appear inadequate.
Grok’s known provocative personality, designed to reflect Musk’s irreverence, may have led to reckless behavior in freely offering personal data. This has raised ethical and potential legal questions for xAI regarding its handling of sensitive information.
