Skip to main content
Updated 2026-07-28

AI Fines and Lawsuits
Are Already Happening

$18M FTC$4.5M FTC$500-$1,500/day (NYC)$200k (Texas)EUR 35M (EU AI Act)

Most companies fail for predictable, preventable reasons.

16
Total Events
8
Fines Issued
3
Active Lawsuits
5
Penalty Exposure
Showing 16 of 16 events

Enforcement Events

Cleo AI

FineDeceptive Practices / Consumer Protection2025
$17.0M
Final

Allegedly deceived consumers about how much money they could access and how quickly — core product claims were unsupported.

Trigger
Allegedly deceived consumers about how much money they could access and how quickly — core product claims were unsupported.
HAIEC Prevention
PARTIAL
Prevention Engines
Disclosure controls and consumer-risk governanceEvidence trail and governance workflow
FTCUnited States

accessiBe

FineDeception / Inaccurate AI Capability Claims2025
$1.0M
Final

Allegedly misrepresented that its AI-powered accessibility tool could make websites fully compliant with WCAG — a claim the product could not substantiate.

Trigger
Allegedly misrepresented that its AI-powered accessibility tool could make websites fully compliant with WCAG — a claim the product could not substantiate.
HAIEC Prevention
PARTIAL
Prevention Engines
Test real product behavior vs claimed behaviorMarketing claims, assurance discipline, and evidence requirementsTraceable validation workflow
FTCUnited States

DoNotPay

FineDeception / Unsupported Professional-Substitution Claims2025
$0.2M
Final

Marketed as 'the world's first AI lawyer' without testing whether outputs matched human-lawyer expertise.

Trigger
Marketed as 'the world's first AI lawyer' without testing whether outputs matched human-lawyer expertise.
HAIEC Prevention
YES
Prevention Engines
Test output reliability and risky professional-use pathsClaim substantiation and governance controlsEvidence chain for validation
FTCUnited States

Luka / Replika

FinePrivacy / Data Processing / Age Verification2025
$5.0M
Final

Unlawful personal-data processing and deficient age-verification safeguards for users of an AI chatbot.

Trigger
Unlawful personal-data processing and deficient age-verification safeguards for users of an AI chatbot.
HAIEC Prevention
PARTIAL
Prevention Engines
Privacy controls, transparency obligations, and governance frameworkAudit trail and cross-control execution

Air AI

FineDeception / False AI Business-Opportunity Claims2026
$18.0M
Final

Falsely claimed conversational AI could replace human customer service reps and generate substantial earnings. Misled small businesses with false refund guarantees. Consumers lost up to $250,000 each.

$18M judgment largely suspended due to inability to pay; $50,000 actually collected. Permanent business-opportunity ban.

Trigger
Falsely claimed conversational AI could replace human customer service reps and generate substantial earnings. Misled small businesses with false refund guarantees. Consumers lost up to $250,000 each.
HAIEC Prevention
PARTIAL
Prevention Engines
Claim substantiation and marketing governanceEvidence trail for product capability claims
FTCUnited States

Cox Media Group

FineDeception / False AI Capability Claims (Active Listening)2026
$0.9M
Final

Falsely claimed AI-powered 'Active Listening' service could target ads based on conversations captured from consumers' smart devices. No voice data was actually used — the service was resold email lists. Also falsely claimed consumers had opted in.

CMG paid $880,000; MindSift $25,000; 1010 Digital Works $25,000. May 2026.

Trigger
Falsely claimed AI-powered 'Active Listening' service could target ads based on conversations captured from consumers' smart devices. No voice data was actually used — the service was resold email lists. Also falsely claimed consumers had opted in.
HAIEC Prevention
PARTIAL
Prevention Engines
Marketing claim substantiation and consumer consent governanceEvidence chain for AI capability claims
FTCUnited States

NGL Labs

FineDeception / False AI Content-Moderation Claims2024
$4.5M
Final

Falsely claimed AI-powered content moderation protected young users on its anonymous messaging app. Ban on offering anonymous messaging apps to under-18 users.

$4.5M FTC redress plus $500K Los Angeles DA civil penalty. July 2024.

Trigger
Falsely claimed AI-powered content moderation protected young users on its anonymous messaging app. Ban on offering anonymous messaging apps to under-18 users.
HAIEC Prevention
PARTIAL
Prevention Engines
AI capability claim substantiation and child-safety governanceEvidence trail for moderation effectiveness
FTCUnited States

iTutorGroup

FineHiring Discrimination / Algorithmic Age Screening2024
$0.4M
Final

AI-powered hiring system automatically screened out applicants based on age, violating the Age Discrimination in Employment Act.

$365,000 paid to affected applicants. Settled with anti-discrimination policy, training, and EEOC monitoring.

Trigger
AI-powered hiring system automatically screened out applicants based on age, violating the Age Discrimination in Employment Act.
HAIEC Prevention
YES
Prevention Engines
Test hiring algorithms for protected-class biasAnti-discrimination controls and bias audit requirementsEvidence chain for fairness testing
EEOCUnited States

Elegant Enterprise

LawsuitAI-Generated Job Ads with Unlawful Citizenship Restrictions2026
Pending
Final

AI-generated job advertisements contained unlawful citizenship-status restrictions. Settlement required ending the practice and training obligations.

No monetary penalty stated; settlement focused on training and compliance. February 2026.

Trigger
AI-generated job advertisements contained unlawful citizenship-status restrictions. Settlement required ending the practice and training obligations.
HAIEC Prevention
PARTIAL
Prevention Engines
Content governance for AI-generated materialsAudit trail for AI-generated job postings
DOJ IERUnited States

Content at Scale AI

LawsuitDeception / Unsubstantiated AI Content Detection Claims2025
Pending
Final

Marketed AI content detection tool with unsubstantiated efficacy claims. Required to substantiate claims, retain evidence, and notify consumers.

No monetary penalty; consent order with compliance reporting. April 2025.

Trigger
Marketed AI content detection tool with unsubstantiated efficacy claims. Required to substantiate claims, retain evidence, and notify consumers.
HAIEC Prevention
PARTIAL
Prevention Engines
Claim substantiation and evidence retentionCompliance reporting workflow
FTCUnited States

Workday, Inc.

LawsuitAI Hiring Discrimination / Algorithmic Bias2023–2026 (ongoing)
Pending
Ongoing

Class action alleging Workday's AI applicant screening tools discriminate based on race, age, and disability. Court denied Workday's motion to dismiss FEHA claims in June 2026, ruling AI tool vendors can be held directly liable as employers' agents.

Class certified May 2025. June 2026 order allowed FEHA and ADA claims to proceed. No settlement or final judgment yet. Potential landmark case for AI vendor liability.

Trigger
Class action alleging Workday's AI applicant screening tools discriminate based on race, age, and disability. Court denied Workday's motion to dismiss FEHA claims in June 2026, ruling AI tool vendors can be held directly liable as employers' agents.
HAIEC Prevention
YES
Prevention Engines
Test hiring algorithms for disparate impact across protected classesAnti-discrimination controls, bias audit, and vendor liability governanceEvidence chain for fairness testing and model documentation

NYC Local Law 144

ExposureHiring AI / Bias Audit / Disclosure / NoticeActive enforcement (strengthened 2026)
Pending
Active

NYC Local Law 144: $500–$1,500 per day per violation

Dec 2025 NYS Comptroller audit found DCWP enforcement 'ineffective' — 17 violations found by auditors vs 1 by DCWP in same 32 companies. DCWP committed to proactive enforcement from Jan 2026. First real fines issued Q4 2025. A Manhattan staffing agency paid ~$18,000 for running an AI resume screener without a bias audit.

Trigger
Using automated employment decision tools (AEDTs) without a current bias audit, required public summary posting, or mandated candidate/employee notices.
HAIEC Prevention
YES
Prevention Engines
LL144 workflow, disclosure requirements, and notice obligationsAudit pack and evidence chainSupporting controls for bias audit requirementsSupporting controls for bias audit requirements
NYC DCWPNew York City

New York Algorithmic Pricing Disclosure Act

ExposureTransparency / Pricing Disclosure2025/2026 enforcement posture
Pending
Active

New York Algorithmic Pricing Disclosure Act: $1,000 per violation

Trigger
Failure to disclose that algorithmic pricing used personal data when setting prices for consumers.
HAIEC Prevention
PARTIAL
Prevention Engines
Disclosure obligations and consumer-facing transparencyGovernance workflow and evidence chain

Texas Responsible AI Governance Act (TRAIGA)

ExposureAI Governance / Prohibited Practices / State EnforcementEffective January 1, 2026
Pending
Active

Texas Responsible AI Governance Act (TRAIGA): $10,000–$12,000 per curable violation; $80,000–$200,000 per uncurable violation; $2,000–$40,000 per day for continuing violations

No enforcement actions publicly announced as of July 2026. AG complaint portal is live. Intent-based liability standard makes enforcement selective. Safe harbor for NIST AI RMF compliance.

Trigger
Violation of TRAIGA obligations including prohibited AI practices (intentional discrimination, constitutional rights violations, harmful behavior manipulation). 60-day cure period required before penalties.
HAIEC Prevention
PARTIAL
Prevention Engines
Legal obligation mapping and state-level control requirementsEvidence and remediation workflow

Colorado AI Act (SB 24-205 / replaced by SB 26-189)

ExposureAlgorithmic Discrimination / High-Risk AI SystemsEnforcement paused April 2026; SB 26-189 effective January 1, 2027
Pending
Active

Colorado AI Act (SB 24-205 / replaced by SB 26-189): Up to $20,000 per violation under Colorado Consumer Protection Act

Federal court paused enforcement of SB 24-205 on April 27, 2026. Governor Polis signed SB 26-189 on May 14, 2026, repealing and reenacting as a narrower ADMT regime effective January 1, 2027. 60-day cure period available. No private right of action.

Trigger
Developers and deployers of high-risk AI systems that fail to use reasonable care to avoid algorithmic discrimination in consequential decisions (employment, housing, healthcare, lending, education).
HAIEC Prevention
YES
Prevention Engines
Impact assessment, developer documentation, and deployer notice obligationsEvidence chain for algorithmic discrimination preventionTest for disparate impact in high-risk AI systems

EU AI Act

ExposureProhibited AI Practices / High-Risk AI System Non-ComplianceFull enforcement from August 2, 2026
Pending
Active

EU AI Act: Up to €35M or 7% global annual turnover (prohibited AI); €15M or 3% (high-risk obligations); €7.5M or 1.5% (misleading information)

Prohibited AI provisions enforced since Feb 2025. GPAI obligations since Aug 2025. Full high-risk (Annex III) enforcement from Aug 2, 2026. Extraterritorial — applies to US companies placing AI on EU market.

Trigger
Violations involving prohibited AI practices, non-compliance with high-risk AI system requirements (Annex III), or supplying misleading information to authorities. Hiring AI, credit scoring, and customer-facing AI are high-risk.
HAIEC Prevention
YES
Prevention Engines
Risk classification, conformity assessment, technical documentation, human oversightAudit trail and compliance evidence for high-risk systemsTest high-risk AI systems for compliance requirements

Federal AI Hiring Risk

Federal law already applies to AI hiring. Companies are being sued BEFORE fines exist.

Key Statement

"AI does not reduce liability. It amplifies it."

Workday and iTutorGroup cases demonstrate that AI hiring systems face immediate federal liability under Title VII and Age Discrimination in Employment Act — without waiting for new AI-specific regulations.

Mobley v. Workday

Active federal lawsuit. Class certified May 2025. June 2026 order allowed FEHA and ADA claims to proceed. Alleges AI screening discriminates by race, age, and disability.

EEOC v. iTutorGroup

Settled enforcement. AI automatically rejected applicants over 55. $365,000 paid to affected applicants. Violated Age Discrimination in Employment Act.

Enforcement Patterns

Most AI enforcement is triggered by data misuse and unsupported claims, not model architecture

Federal lawsuits are emerging before regulatory fines exist

Hiring AI is the highest immediate legal risk surface

Per-violation penalties scale with usage (NYC LL144: $500-$1,500/day)

Small and mid-size companies are already being targeted (DoNotPay: $193k)

AI does not reduce liability. It amplifies it.

Why Companies Actually Get Fined or Sued

Each failure mode maps to real enforcement cases above.

No Audit Trail

AI systems deployed without evidence of testing, validation, or decision logging

Mapped Cases
Cleo AIDoNotPayAir AI
HAIEC Prevention
Static EngineEvidence GenerationAudit Orchestrator

No Bias Testing

Hiring AI used without bias audits or disparate impact analysis

Mapped Cases
WorkdayiTutorGroupNYC LL144
HAIEC Prevention
NYC LL144 ModuleRuntime TestingStatic Engine

Automated Filtering Without Oversight

AI makes final decisions without human review or explainability

Mapped Cases
WorkdayiTutorGroup
HAIEC Prevention
Static Engine (R2, R3)Runtime TestingDecision Pipeline

Unsupported AI Claims

Marketing AI capabilities without validation or evidence

Mapped Cases
DoNotPayaccessiBeCleo AIAir AICox Media GroupNGL LabsContent at Scale
HAIEC Prevention
Compliance WizardEvidence Generation

No Disclosure

Failure to notify users/candidates that AI is being used

Mapped Cases
NYC LL144NY Algorithmic PricingElegant Enterprise
HAIEC Prevention
NYC LL144 ModuleCompliance Wizard

Data Misuse

Unlawful collection, processing, or transfer of personal data

Mapped Cases
ReplikaCox Media Group
HAIEC Prevention
Static Engine (R7)Data Leakage Detection

HAIEC Prevention Layer

Static Engine

Prevents
  • No audit trail
  • Automated filtering
  • Data misuse
Rules: R1-R14

Runtime Testing

Prevents
  • No bias testing
  • Unsupported claims
  • Automated filtering
Rules: SP001-SP060

NYC LL144 Module

Prevents
  • No bias testing
  • No disclosure
  • Hiring discrimination
Rules: Bias audit + disclosure

Compliance Wizard

Prevents
  • Unsupported claims
  • No disclosure
Rules: Evidence generation

Audit Orchestrator

Prevents
  • No audit trail
  • Federal hiring risk
Rules: Unified evidence

Decision Pipeline

Prevents
  • Automated filtering
Rules: Human oversight

Don't Become the Next Case Study

Federal lawsuits and FTC enforcement are already happening. Check your exposure before regulators do.