Resident PII leakage via shadow ChatGPT
Staff pasting resident-identifying information into personal ChatGPT accounts. Data may be used for model training, retained indefinitely, breach NSW PPIPA.
- โM365 DLP block on personal ChatGPT domains
- โSanctioned Copilot path under UC-001
- โMandatory training before re-enable