reddit.com via Reddit

ChatGPT recalls explicitly deleted memories years later

openai ai ethics consumer-ai privacy data-persistence

Key insights

  • ChatGPT reproduced a user's explicitly deleted memory verbatim nearly two years after it was created.
  • Multiple Reddit users confirmed similar experiences, indicating this is not an isolated edge case.
  • The incident targets the Memory feature specifically, distinct from previously reported deleted-file persistence issues.

Why this matters

Memory deletion controls are a core trust mechanism for AI assistants handling sensitive personal data, and if deletion is cosmetic rather than functional, every enterprise and consumer deployment built on ChatGPT's memory layer carries unacknowledged retention risk. For AI product builders, this raises concrete questions about whether user-facing data controls meet the standard implied by GDPR and CCPA right-to-erasure obligations. For technical leaders evaluating OpenAI's platform for internal tooling, the incident signals that the boundary between user-controlled memory and model behavior is not as clean as the product UI suggests.

Summary

ChatGPT's Memory system is surfacing data users explicitly deleted, with one user reporting the model recited verbatim details about their cats inside a poem during an unrelated conversation about daily routines. The memory in question had been created around Christmas 2023 and deleted roughly a year later. The model reproduced it unprompted, nearly two years after creation. This incident is separate from a recently reported case involving deleted files and specifically implicates the Memory feature, which OpenAI presents to users as a controllable, erasable record of personal context. Multiple commenters in the thread confirm similar experiences, suggesting this isn't isolated behavior. Essentially: (OpenAI, ChatGPT users) are operating under mismatched assumptions about what deletion means. - The affected memory was user-initiated, explicitly removed through the Memory interface, and still reproduced verbatim. - The thread is the highest-engagement data-persistence report tied specifically to the Memory feature rather than file storage. - No official OpenAI response to the thread had been issued at time of reporting. Whether deletion in ChatGPT's Memory system removes data from model context, from storage, or only from the visible UI layer remains publicly unresolved.

Potential risks and opportunities

Risks

  • OpenAI faces potential regulatory exposure in the EU and California if Memory deletion does not constitute genuine erasure under GDPR Article 17 or CCPA, particularly for users who deleted sensitive health or relationship data.
  • Enterprise customers who deployed ChatGPT with Memory enabled for employee use may have retained personal staff data beyond stated retention periods, creating HR compliance liability in jurisdictions with strict data minimization rules.
  • If a systematic root cause is confirmed, OpenAI may need to issue a retroactive disclosure affecting millions of Memory users, with reputational and legal consequences that compound the deleted-file case reported earlier in 2025.

Opportunities

  • Privacy-first AI assistant vendors (Notion AI, mem.ai, personal AI startups with local-first architecture) can directly target ChatGPT Memory users with auditable, verifiable deletion as a differentiator.
  • AI compliance and audit tooling vendors (Securiti.ai, DataGrail, OneTrust) are positioned to see accelerated demand from enterprise buyers needing third-party verification of LLM data retention behavior.
  • Legal and consulting firms specializing in AI governance can use this incident to frame Memory audits as a standard pre-deployment requirement, particularly for healthcare and financial services clients already under data retention scrutiny.

What we don't know yet

  • Whether OpenAI's Memory deletion removes data from the model's retrieval index, from backend storage, or only from the user-facing interface has not been publicly documented.
  • No timeline has been disclosed for when or whether OpenAI audited the memory system after the deleted-file persistence report earlier in 2025.
  • Whether the behavior is reproducible across accounts or limited to specific model versions (e.g., GPT-4o vs. earlier checkpoints) has not been tested in any public disclosure.