Brazil ANPD Records Grok LGPD Allegations | TLY

Part of AI Regulation News.

Brazil ANPD Records Grok LGPD Allegations

By The Leverage Years Regulatory Research · Published 5 August 2026

Brazil’s data-protection authority published a technical note concerning Grok and possible LGPD violations. The note records allegations made in a representation against X Corp. and X Brasil Internet Ltda. It is not an ANPD finding, fine, order, deadline, or general AI rule.

The short version

What happened: ANPD’s Technical Note No. 1/2026 records a representation received on 14 January 2026 concerning the Grok AI system.

What is alleged: The note recounts allegations of automated third-party-image editing without effective consent, age or legitimate-purpose verification, including allegations of sexualized AI deepfakes.

What this is not: The published note does not state that ANPD found a violation, imposed a fine, issued an order, set a deadline, or required a technical control.

Authority
Autoridade Nacional de Proteção de Dados, Brazil.
Instrument
Technical Note No. 1/2026/FIS/CGF/ANPD, Process No. 00261.000178/2026-27.
Status
Published technical note recording allegations and a possible-LGPD-violation file.
Primary source
ANPD Technical Note No. 1/2026.

What does the ANPD note say?

The technical note identifies X Corp. and X Brasil Internet Ltda. as interested parties and identifies the Grok AI system as its subject. It says ANPD’s enforcement coordination received a representation on 14 January 2026, with a supplementary petition dated 12 January 2026.

The note records the representation’s allegations. According to that account, Grok could enable automated editing of third-party images without effective verification of consent, age or legitimate purpose. The note further describes allegations involving sexualized AI deepfakes. Those are allegations described in the technical note, not findings adopted by ANPD in the material reviewed here.

What is the legal status?

The published note concerns possible violations of Brazil’s LGPD. It does not say ANPD has concluded a violation, issued a sanction, ordered a product change, named a compliance deadline, or imposed an age-verification, consent-verification, labeling or technical-detection requirement.

That boundary matters. A published technical note is evidence that a regulatory file and allegations exist. It is not proof that an alleged event occurred or that ANPD has determined legal responsibility. Any later notice, order, sanction or final decision would be a distinct event and should be assessed on its own official text.

QuestionWhat the technical note supports
Has ANPD published a note about Grok?Yes. Technical Note No. 1/2026 identifies Grok and the relevant process.
Has ANPD found an LGPD violation in this note?No such finding is stated in the published technical note.
Has ANPD imposed a fine or order?No fine or order is identified in the note.
Does the note create a general AI compliance rule?No. It records a specific allegation-based file concerning possible LGPD violations.

Why track it?

The significance is procedural and evidentiary. ANPD has published a document naming a generative-AI system in a file concerning possible LGPD violations and allegations involving image editing and sexualized AI deepfakes. Teams following Brazil should preserve the exact status and watch for a later official measure.

They should not treat this note as a new nationwide technical mandate. The relevant next source would be a formal ANPD measure that states an outcome, addressee, operative requirement or other legal consequence.

Key takeaway

ANPD’s note places Grok in a published possible-LGPD-violation file. The accurate status is allegations and procedure only: no violation finding, fine, order, deadline, technical control or general AI rule is established by the note.

Source file

Technical Note No. 1/2026/FIS/CGF/ANPD. Verify the named parties, process number, representation dates, allegations and the note’s possible-LGPD-violation framing.

FAQ

Did ANPD fine Grok or X in this technical note?

No. The published technical note does not state a fine, sanction or final violation finding.

What does the note allege?

It records a representation alleging automated editing of third-party images without effective consent, age or legitimate-purpose verification, including allegations of sexualized AI deepfakes. The note records allegations and does not establish them as findings.

Does this create a new AI rule for Brazilian providers?

No. The note concerns a specific possible-LGPD-violation file. It does not set out a general AI rule, technical standard or universal provider duty.

What should teams watch next?

Watch for a later official ANPD notice, order, sanction or final decision. Any such document would need separate source review before it is treated as an operative requirement.