Your AIs don’t do what you want. This is really bad

3,607user-reported incidents of AI agents misbehaving

Read the writeup >

Read the writeup >

Search the corpus

loading…

The numbers

Incidents are multi-label (one report can be both a destructive action and overeagerness), so the category counts sum to more than the 3,607 total.

How bad were they

negligibleno real damage1,468 40.7%

minorrecoverable loss1,373 38.1%

significantreal cost to recover618 17.1%

severeirreversible or critical harm121 3.4%

unratedrating missing or unparsed27 0.7%

Methodology

Reports are collected from GitHub issues, Hacker News, LessWrong, and X under ToS-compliant access, normalized into a shared record format, and labeled by an LLM classifier across fourteen misbehavior categories. The numbers above cover the published subset (excludes AIID and X, confidence >= 0.9). X posts and AI Incident Database records are collected but not republished here: X expects posts to be embedded rather than their text rehosted, and AIID is share-alike licensed. Collection and classification code, and the full pipeline, are open at GitHub.

GitHub