35 AI Apps, Including Kimi, Flagged for Data Privacy Violations
A recent government inspection has uncovered widespread privacy violations among AI-powered mobile applications in China. The National Network and Information Security Information Bulletin Center reported that 35 apps on the Application Treasure platform failed to comply with personal data protection regulations.
Source: Image generated by AI, provided by Midjourney image licensing service.
Widespread Compliance Failures
The Ministry of Public Security's Computer Information System Security Product Quality Supervision and Inspection Center conducted tests between April 16 and May 15, 2025. Their findings reveal multiple categories of violations:
- 12 apps failed to present personal information collection rules in a structured format
- 18 apps collected data beyond users' authorized scope
- 2 apps had privacy policies unrelated to actual business functions
- 5 apps contained misleading advertisements
Notable offenders include Kimi (version 2.0.8), Zhipu Qingyan (version 2.9.6), and AI Smart Secretary (version 1.0.25). These applications either collected unnecessary personal data or failed to provide proper transparency about their data practices.
Specific Violation Categories
The report details eleven distinct violation types:
- Structural presentation failures: Apps like Smart AI Chat and Virtual Love AI didn't properly format their data collection policies.
- Overcollection: Zhipu Qingyan and Wink gathered more user information than declared.
- Irrelevant data collection: AI Smart Secretary requested permissions unrelated to core functions.
- Premature authorization: Some apps demanded permissions before users accessed relevant features.
- Deceptive advertising: Five apps including AI Genie showed misleading promotional content.
Industry Implications
This crackdown signals China's increasing scrutiny of AI applications handling personal data. With artificial intelligence becoming ubiquitous in mobile apps, regulators appear determined to enforce stricter compliance with privacy standards.
The findings raise important questions: How many users unknowingly surrendered sensitive information? What measures will developers take to rebuild trust? As consumers grow more privacy-conscious, transparent data practices may become a competitive advantage.
Key Points
- 35 mobile applications violated China's personal data protection regulations
- Violations included excessive data collection and misleading advertising
- Popular AI tools like Kimi and Zhipu Qingyan were among the offenders
- Testing occurred between April 16-May 15, 2025 on Application Treasure platform
- The report identifies eleven distinct categories of violations