Skip to main content
Black Friday Sale - Get 40% off Vantage
Published loading...Updated

OpenAI Cuts Mixpanel After Vendor Breach Exposes API User Metadata

The breach exposed limited metadata tied to some OpenAI API users, prompting OpenAI to remove Mixpanel and notify affected users amid ongoing investigations.

  • This past week OpenAI notified some ChatGPT API customers after a breach at its third‑party analytics provider Mixpanel and informed all subscribers despite only API users being affected.
  • Mixpanel, the analytics vendor, attributes the access to an SMS‑phishing campaign detected on November 8, linking compromised data to frontend API interactions used by OpenAI.
  • Exposed analytics reportedly include names, emails, coarse location and device/browser metadata, while some third parties like CoinTracker reported impact with device metadata and limited transaction counts.
  • OpenAI, which removed Mixpanel from production, opened an investigation while notifying organizations, administrators and individual users, as Mixpanel secured accounts, revoked sessions, rotated credentials and blocked attacker IPs.
  • With contact data exposed, companies warn users and organizations to expect phishing and verify suspicious messages come from official OpenAI domains; Mixpanel CEO Jen Taylor says all impacted customers have been contacted.
Insights by Ground AI

44 Articles

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 50% of the sources are Center
50% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

IBTimes broke the news in United States on Thursday, November 27, 2025.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal