OpenAI suffers data breach linked to Mixpanel: What you need to know
Data breach through Mixpanel analytics exposes OpenAI’s API user details, including names, emails, and IDs
OpenAI in a recent blog post shed a light on a security incident involving a third party, Mixpanel analytics. The resultant data breach exposed limited user data related to its API platform.
On November 9, 2025, Mixpanel became cognizant of the attack that gained unauthorized access to their systems and exported a dataset which contained the customers’ identifiable details and analytical information.
The security incident came to OpenAI’s knowledge when Mixpanel started to investigate. On November 25, Mixpanel shared the affected dataset with OpenAI.
As a result of data breach, the following details of users have been leaked.
User profile details associated with OpenAI platform may have been included in data exported from Mixpanel. Other types of information include:
- Name that on the API account
- Email address associated with the API account
- Approximate coarse location based on API user browser, including city, state, country
- Organization or User IDs associated with the API account
- Operating system and browser used to access the API account
- Referring websites
However, the ChatGPT users and other products were not affected in the data breach.
OpenAI also asserted that sensitive data, including API requests, chat logs, passwords, payment details, government IDs, and sensitive identification documents remained safe.
Upon hearing of the security incident, OpenAI ended the use of analytics provider Mixpanel services and reviewed all datasets involved in this leak.
According to OpenAI, the incident did not impact any systems outside of Mixpanel.
To ensure transparency, the maker of ChatGPT is pursuing security audits across its vendor ecosystems and enhancing security requirements for third-party and external vendors.
-
Trump administration eyes ban on Chinese AI models, including Kimi K3: Report
-
Meta's Instagram faces Tennessee addiction trial: Check details here
-
AI agents are reshaping enterprise identity security, experts say
-
'Don't buy the AI drama': Anthony Scaramucci dismisses mass layoff fears
-
China's Kimi K3 fixes 15 security bugs, challenging US AI guardrails: Report
-
Anthropic ends temporary Claude Fable 5 rollout, updates subscription access
-
Pocket-sized AI-powered phones take center stage at China show
-
Google and Apple are clashing with the EU over AI assistants: What to know
