Clearview AI Faces $33.7 Million Fine for Violating GDPR with Biometric Data Harvesting

The Dutch data protection authority (DPA) fined Clearview AI €30.5 million for building an illegal facial recognition database by scraping billions of images from the internet without user consent. The DPA stated that the company's actions violate GDPR and privacy laws, noting that the database is used to provide facial recognition services to law enforcement agencies. Despite multiple fines across Europe, the company continues to operate its database, which reportedly contains up to 50 billion images.

Clearview AI was fined $33.7 million by the Dutch data protection authority for allegedly creating an illegal facial recognition database by scraping billions of images from the Internet without consent. The company used AI to convert these images into biometric data and sold the service to law enforcement. This act was in violation of privacy laws and the GDPR.

Source: AI Incident Database

Risk classification

  • Primary risk domain: 2 Privacy & Security
  • Primary risk subdomain: 2.1 Compromise of privacy by obtaining, leaking or correctly inferring sensitive information

The incident centers on Clearview AI obtaining and processing sensitive biometric data from billions of individuals without their consent, violating fundamental privacy regulations.

Additional risk subdomains

  • 4.1 Disinformation, surveillance, and influence at scale: The database is sold to law enforcement and intelligence agencies, enabling large-scale, automated surveillance and tracking of the global population.

Causal factors

  • Entity: Human
  • Intent: Intentional
  • Timing: Post-deployment

The privacy risks and regulatory violations were caused by the intentional decisions of Clearview AI's management to scrape public images and build a commercial biometric database.

EU AI Act risk tier

  • Risk tier: 2 High Risk

High Risk: The report describes a facial recognition system used for law enforcement applications, which is explicitly classified as High Risk under the EU AI Act definitions.

AI system and alleged parties

  • AI system: Clearview AI facial recognition software (Clearview AI)
  • AI purpose: Face Recognition; Identification
  • Behaviour type: Tool
  • Alleged developer: Clearview AI
  • Alleged deployer: Clearview AI
  • Alleged harmed parties: General public

Harm severity

Highest direct severity in any category: Catastrophic. Severity is scored from Negligible to Catastrophic in each harm category, for harm the reports describe as caused directly or indirectly by the AI system.

  • Physical: direct Negligible, indirect Negligible
  • Infrastructure: direct Negligible, indirect Negligible
  • Property: direct Negligible, indirect Negligible
  • Financial: direct Substantial, indirect Negligible
  • Environmental: direct Negligible, indirect Negligible
  • Malicious content: direct Negligible, indirect Negligible
  • Differential treatment: direct Negligible, indirect Negligible
  • Civil rights: direct Severe, indirect Severe
  • Democracy: direct Negligible, indirect Minor
  • Privacy: direct Severe, indirect Severe
  • Psychological: direct Negligible, indirect Negligible
  • Epistemic: direct Negligible, indirect Negligible
  • Child sexual exploitation and abuse: direct Negligible, indirect Negligible

Financial

Reported: The report explicitly describes financial losses in the form of regulatory fines imposed on Clearview AI.

Directly caused: Clearview AI was fined 30.5 million euros (33.7 million dollars) by the Dutch DPA, with an additional non-compliance penalty of up to 5 million euros (5.5 million dollars).

Indirectly caused: N/A

Inferred additional harm: N/A

Civil rights

Reported: The report explicitly describes violations of human and civil rights caused directly and indirectly by the incident.

Directly caused: The Dutch DPA stated that Clearview AI built an illegal database of billions of faces without consent, violating fundamental privacy and data protection rights.

Indirectly caused: The database is sold to law enforcement and intelligence agencies, enabling potential mass surveillance and tracking of individuals without their knowledge.

Inferred additional harm: Millions of citizens in the Netherlands and the EU have had their civil rights to privacy and data protection violated through unauthorized biometric processing.

Democracy

Reported: The report explicitly describes concerns regarding the erosion of democratic norms caused indirectly by the incident.

Directly caused: N/A

Indirectly caused: The DPA chairman warned that the threat of such databases affects everyone and risks creating dystopian, authoritarian tracking environments.

Inferred additional harm: N/A

Privacy

Reported: The report explicitly describes massive privacy violations caused directly and indirectly by the incident.

Directly caused: Clearview AI scraped 30 to 50 billion photos of people from the internet without their knowledge or consent and converted them into unique biometric codes.

Indirectly caused: Law enforcement and intelligence agencies can use the database to identify and track individuals in images without their consent.

Inferred additional harm: Virtually anyone with photos on the internet (potentially billions of people) has had their privacy compromised by being included in the database.

People affected

  • Occurrences reported: 1
  • People reportedly harmed: 8000000000
  • People reportedly exposed: 8000000000

Potential causes

Management

  • Prioritizing Growth Over Compliance: Management expanded database to 50 billion faces despite EU sanctions.
  • Disregard for GDPR Compliance: Leadership claims GDPR does not apply to their offshore operations.
  • Failure to Object to Rulings: Management failed to formally object, losing Dutch appeal rights.

Technology

  • Automated Photo Scraping: Software automatically harvested billions of images from the internet.
  • Biometric Code Generation: Converts scraped photos into unique biometric templates without consent.
  • Mass Facial Recognition Database: Built a massive database of 30-50 billion images for search matching.

Data Inputs

  • Unconsented Data Harvesting: Images were scraped from social media without user knowledge or consent.
  • Lack of Biometric Opt-In: No mechanism for individuals to opt-in or prevent their data collection.
  • Public Internet Data Exploitation: Leveraged publicly available social media photos for commercial tracking.

Human Factors

  • User Unawareness of Scraping: General public is unaware their uploaded photos are scraped into databases.
  • Law Enforcement Overreliance: Agencies embrace intrusive tech to bypass local bans or constraints.

Process and Methods

  • Insufficient Transparency: Company operates without clear disclosures on database inclusion.
  • Unregulated Sales to Police: Selling highly intrusive tracking software directly to law enforcement.

Regulatory Environment

  • Jurisdictional Loopholes: Non-EU companies exploit lack of physical presence to evade GDPR.
  • Inconsistent Global Regulation: Differences in international privacy laws allow regulatory evasion.
  • Difficult Enforcement Mechanisms: Regulators struggle to enforce fines on foreign, non-established firms.

Information quality

  • Classification confidence: High
  • Reason for confidence: The reports provide clear, consistent details about the Dutch DPA's regulatory action, the scale of Clearview AI's database, and the company's response. There is no significant ambiguity regarding the nature of the AI system or the privacy violations.

Clearview AI built an illegal facial recognition database of 30 to 50 billion images without consent, used by global law enforcement. Despite multiple millions in EU fines, the company refuses to comply, posing significant long-term risks to global privacy, human rights, and state regulatory sovereignty.

  • Overall national security impact: Severe
  • Response level: Severe
  • Scope: Multiple nations
  • Primary target: No clear primary
  • Other affected: EU countries
  • Alleged perpetrator: Clearview AI

Threat characteristics

  • Imminence: Long-term. Represents an ongoing strategic and capability concern regarding mass surveillance rather than an immediate, fast-moving crisis.
  • Autonomy: Human-supervised. The AI facial recognition system acts as a search tool assisting human law enforcement and intelligence operators who make the final decisions.
  • Novelty: Evolved capability. While facial recognition is established, the scale of scraping 30 to 50 billion images to build a global biometric database represents a significant advancement.

Impact by dimension

  • Physical security: Negligible. No physical security threat, kinetic targeting, or critical infrastructure compromise indicated in the incident details.
  • Information security: Substantial. The database contains 30 to 50 billion images used by global intelligence and law enforcement agencies, enabling unprecedented mass surveillance and tracking capabilities.
  • Sovereignty: Substantial. Clearview AI, a foreign entity, operates in EU sovereign territory by scraping citizens' data and explicitly refuses to comply with EU regulations and regulatory fines, challenging state authority.
  • Economic security: Minor. Clearview AI faced a substantial 30.5 million euro fine, but the impact is largely limited to corporate regulatory penalties with minor strategic economic impact.
  • Societal stability: Severe. Massive scale privacy violations affecting billions globally, creating potential for state-level mass surveillance and tracking, threatening fundamental human rights and civil liberties.
Explore in the interactive Incident Tracker