bbieron@platformeconomyinsights.com

Austrian Privacy Advocates File Criminal Complaint Against Clearview AI

Nov 1, 2025

Report from Courthouse News

In Brief – Austrian data privacy advocacy group Nyob (None of Your Business) announced that it filed a criminal complaint with Austrian authorities aiming to have executives of US-based facial recognition firm Clearview AI held personally liable for amassing an allegedly illegal database of billions of photos of faces. Clearview AI, which describes itself as a search engine for faces posted online, developed its facial recognition technology using images gathered from social media websites. The service is now sold almost exclusively to law enforcement and government agencies. After the company burst onto the scene in 2020, privacy regulators in many countries, including several in Europe, fined the firm for violating national privacy and data protection regulations, including the EU’s General Data Protection Regulation. Noyb calls on Austrian prosecutors to hold Clearview AI’s corporate leadership personally liable and even send them to jail.

Context – Until OpenAI made Chat-GPT available, Clearview AI was the most notorious AI start-up. Although a small enterprise, it built facial recognition technology that outperformed giants like IBM, Microsoft, and Google. Under pressure from regulators, the company drastically pared back its business aspirations, agreeing to limit sales to government authorities, primarily in the US. Fights over extraterritorial jurisdiction of national laws regulating digital platforms are certain to grow as regulators attempt to enforce rapidly proliferating online regulations on small, entirely remote digital firms. For example, 4chan has filed suit in US federal court to block enforcement of the UK Online Safety Act on its business, arguing that it has no operations in the country. The UK’s Upper Tribunal recently rejected that argument from Clearview AI and sided with the UK Information Commissioner’s Office that the company was subject to the British GDPR. In the EU, the GDPR is primarily a civil law, but it does allow Member State privacy authorities to impose criminal penalties for certain violations of the regulation. If a US company executive is arrested for violating the law, it will accelerate the extra-territorial jurisdiction controversy.

View By Monthly
Latest Blog
Major Brazilian Law to Protect Teens on Social Media Goes into Effect

Report from AP News In Brief – A Brazilian law enacted last September to shield minors from harmful online content has taken effect with experts calling it a milestone in the protection of children and adolescents. The Digital Statute of Children and Adolescents does...

European Commission Expands Their DSA Probe of Online Porn Sites

Report from CBC News In Brief – The European Commission has announced that they have preliminarily found four large adult content platforms to be in breach of the Digital Services Act (DSA) for failing to protect minors from being exposed to pornographic content on...

UK Government Targeting Manosphere Content on Online Platforms

Report from The Guardian In Brief – More than 60 Labour MPs have urged Ofcom, the country’s communications and digital regulator, to use its authority under the Online Safety Act to press platforms to better protect young men from risks they argue are linked to...

Google Proposes a Publisher Opt-Out for AI-Enabled Search in the UK

Report from MediaPost In Brief – Google has outlined plans to give publishers more authority over how their content appears in AI-driven search features in response to the consultation by the UK Competition and Markets Authority (CMA) regarding application of the...

Platform Economy Insights produces a short email four times a week that reviews two top stories with concise analysis. It is the best way to keep on top of the news you should know. Sign up for this free email here.

* indicates required