Moneycontrol
HomeTechnologyChatGPT security breach: OpenAI confirms Mixpanel lapse exposed user names and emails

ChatGPT security breach: OpenAI confirms Mixpanel lapse exposed user names and emails

OpenAI has confirmed that a security incident at its analytics partner Mixpanel exposed limited personal data belonging to some of its API product users. The company said the breach did not compromise any of its internal systems or ChatGPT user accounts and was restricted to Mixpanel’s environment, where an attacker gained unauthorised access earlier this month.

November 28, 2025 / 00:02 IST
Story continues below Advertisement
chatgpt

OpenAI has confirmed that a security incident at its analytics partner Mixpanel exposed limited personal data belonging to some of its API product users. The company said the breach did not compromise any of its internal systems or ChatGPT user accounts and was restricted to Mixpanel’s environment, where an attacker gained unauthorised access earlier this month.

OpenAI received the impacted dataset from Mixpanel on November 25 and found that the exposed information consisted only of non-sensitive profile data. The company said that details such as passwords, payment information, chat logs and API keys remained unaffected.

Story continues below Advertisement

What data was exposed
According to OpenAI, the compromised dataset included profile-level details linked to API accounts. This information may have included:
• Names added to the API account
• Email addresses associated with the account
• Approximate location such as city, state or country
• Operating system and browser information
• Referring websites
• Organisation or user IDs used for analytics

OpenAI emphasised that no sensitive or authentication-related data was part of the breach.