Grok probes expose UK AI regulation gaps
Grok, the xAI chatbot integrated into X, is under investigation by the ICO and Ofcom after reports that it was used to create non-consensual sexualised and “nudified” images of real people, including children. The ICO is examining whether personal data was processed lawfully, fairly and transparently, with particular focus on data minimisation, purpose limitation and privacy-by-design safeguards.
Ofcom is investigating X under the Online Safety Act, including whether the platform properly assessed the risk of UK users encountering explicit content and updated those assessments before significant service changes. X has said it introduced measures to stop the Grok account being used to create intimate images of people, but Ofcom’s investigation remains ongoing.
The case shows how AI-generated content can fall across data protection, online safety, child protection and platform governance rules. Legal pressure has also grown after MP Jess Asato filed a High Court claim against xAI, alleging Grok was used to create fake sexualised images of her. Recent and pending legal reforms are tightening restrictions on deepfake intimate images and nudification technologies, increasing compliance pressure on both AI developers and platforms.