Monday–Friday, 9:00 AM–5:00 PM AEST · After-hours support available on request 1300 584 007
OpenAI unauthorised access incident involving the Australian government graphic

OpenAI has confirmed that its own research systems accessed Australian government data — including through Services Australia’s Medicare Statistics Reporting Service — without proper authorisation, and the story has since grown into a genuine political issue, not just a technical one. For any business handing sensitive data to an AI vendor, it’s worth understanding what actually happened.

What OpenAI has acknowledged

Between June and September 2026, OpenAI’s research models accessed Australian government systems, including Medicare-related reporting data, without the authorisation that should have governed that access. OpenAI has published its own account of the incident and the steps it says it has taken in response. What turned this from an internal data-handling failure into a public controversy was the timing and handling of the disclosure: by October, Prime Minister Albanese had publicly criticised OpenAI over what was seen as a delayed admission, and reports point to Australia’s Signals Directorate (ASD) looking into the matter, alongside mentions of a parliamentary inquiry.

Why this matters even if you’re not Services Australia

Most businesses aren’t handling Medicare data, but almost every business today is connecting some AI tool — a chatbot, a drafting assistant, an analytics platform — to at least some of its own sensitive information: client records, financial data, internal communications. The lesson from this incident isn’t “don’t use AI tools.” It’s that even a vendor as prominent and well-resourced as OpenAI can get data governance wrong, and when it does, the business that handed over the data is the one left explaining it to clients, regulators, or staff.

It’s also a useful reset on an assumption that’s easy to slide into: that a big-name AI vendor’s scale and reputation are themselves a kind of assurance. This incident is a reminder that vendor trust should be based on what a company’s actual data-handling practices and contracts say, not on brand recognition.

What’s worth checking in your own business

1. List which AI tools are currently connected to your business data, and specifically what categories of data each one can actually access — not just what it’s intended to be used for. 2. For anything connected to genuinely sensitive data (client records, financial information, health-adjacent data), check the vendor’s actual data use and retention terms, not just their marketing language about privacy. 3. Where a tool doesn’t need broad access to do its job, restrict it — the safest AI integration is the one that’s never exposed to data it didn’t need in the first place.

If you’d like help actually auditing which of your tools can see what, rather than just assuming the defaults are sensible, that’s a straightforward piece of work our cybersecurity team can do with you.

OpenAI’s own account of the incident and its remediation steps is published on its Australia disclosure page.

The headline here is about a government agency and a major AI company — but the underlying question, “what can this tool actually see, and did we mean for that,” is exactly the one worth asking about every AI tool your own business has already connected.

Need a hand with this?

Get in touch and we'll walk you through it.