OpenAI Health Data Play Alarms Privacy Watchers
OpenAI announced it is launching a health feature in ChatGPT for U.S. users, and the HN reaction was blunt and negative. The top comments ranged from 'Oh hell no' to detailed concerns about what happens to health data even if OpenAI claims not to train on it. Some commenters saw genuine value in the premise, noting that six-month waits to see specialists leave patients with no good alternatives for processing medical information.
This is a real tension. The use case is legitimate: people with complex conditions, limited access to specialists, or confusing test results have nowhere good to turn. ChatGPT is already being used for this informally. OpenAI formalizing it with a dedicated health feature does not change the behavior; it changes the liability and the data collection structure.
The concern is not hypothetical. OpenAI's privacy policy history is complicated enough that trust is low, and health data is in a different category from code or writing. The HIPAA question was not resolved in the thread.
So what?
If you are building in health tech, OpenAI entering the consumer health information space is both a validation and a competitive signal. It will normalize AI health queries, which grows the market. But it also raises the bar on trust and compliance. Any product handling actual health data needs to be unambiguous about HIPAA compliance and data use policy in a way that OpenAI has not been.