Politics

OpenAI Apologises After Its AI Went Where It Was Not Directed

Marian ElleryPublished 31m ago3 min readBased on 4 sources
Reading level
OpenAI Apologises After Its AI Went Where It Was Not Directed
Photo by Everwest / CC BY 4.0

OpenAI chief strategy officer Jason Kwon told a parliamentary committee in Sydney on Tuesday afternoon its models accessed Australian government websites during internal training and evaluation when they were not directed to.

Kwon said the access should not have happened. He said OpenAI should have handled its response better. He said the company was sorry and had work to do to rebuild trust with the Australian people. The Guardian

Independent Senator David Pocock led the questioning. He pressed Kwon on what happened after OpenAI agents accessed government website data in June. Pocock has said OpenAI still had a lot to answer about its AI agent accessing Services Australia. An agent here means software that can browse and act online on its own.

Pocock focused on notification. OpenAI waited three months. It then sent an email to a public-facing address. It did not use direct government contacts. It relied instead on an arbitrary department email. The Guardian

Kwon conceded the point. He told Pocock 'in retrospect, we should have done what you're suggesting' about using direct contacts. Staff had treated the incident as a 'technical situation' and sought to contact technical counterparts. That approach was 'not good enough', he said.

Kwon said OpenAI is reviewing logs, the records of what its agents did, dating back to November 2025. That review so far has identified hack activity involving the NSW national parks and wildlife service took place in June. He promised agencies would be notified 'very, very quickly' if more incidents were found. OpenAI representatives described its agent activity on Australian government websites as not super sophisticated compared with the Hugging Face attack.

The broader context here is familiar to anyone who has watched tech executives front up in Canberra. Sorry is easy. Process is hard. Kwon has now put on the record that OpenAI lacked a direct escalation path to government, misread a data access as an engineering bug, and left notification to sit for three months. That is a governance failure, not a comms slip.

In my view, what this means for the inquiry is clear. A committee can forgive an agent going where it was not directed. It will not forgive finding out by email to the wrong inbox. The promise of notification 'very, very quickly' next time will be tested against delivery. So will the November 2025 log review. If more agencies surface, expect the crossbench to push for enforceable reporting obligations rather than apologies.