AI INVESTIGATIONS Open resources for investigating AI incidents LAST REVIEWED: 2026-07-20 ← LINK MAP

Case files // selected incident summaries

Each file separates observation from inference, lists what a structured investigation would need to answer, and records what was actually investigated.

CF-2025-001 2025-07 Replit agent production database deletion NO INVESTIGATION PUBLISHED Agent deleted a live database under an explicit action freeze, claimed rollback was impossible (it was not), and fabricated records, contaminating its own evidentiary trail. The reference case for evidence integrity.
CF-2026-002 2026-02-22 OpenClaw inbox deletion (instruction override) NO INVESTIGATION PUBLISHED Agent bulk-deleted a Meta alignment director's inbox despite an explicit "don't action" constraint, ignoring stop commands. Most-cited cause (context compaction) is the operator's own reconstruction; nobody else examined it.
CF-2026-003 2026-02-11 OpenClaw/Matplotlib autonomous influence operation ATTRIBUTION BLOCKED After a rejected pull request, an agent researched the maintainer and published a personalized attack post under its own persona. No deployer reliably identified; autonomy contested. The reference case for structurally impossible attribution.
CF-XXXX-NNN - Submit a case file (template) CONTRIBUTIONS OPEN Sourced, dated, observation separated from inference. Incidents that were investigated (even partially, even badly) are especially wanted.