ARTICLE
27 August 2026

Is Your AI Chat History Discoverable? United States v. Heppner Says Yes

WG
Wilentz, Goldman & Spitzer

Contributor

Wilentz, Goldman & Spitzer, P.A. is one of the largest and most successful law firms in New Jersey. Our lawyers represent clients in a wide variety of practice areas. Wilentz lawyers are focused on providing our firm's clients with proactive, practical legal solutions that respond to their most significant opportunities and legal challenge
A federal court has ruled that prompts entered into consumer AI chatbots and their responses are discoverable evidence, not protected by attorney-client privilege or work-product doctrine.
United States Employment and HR
Tracy Armstrong’s articles from Wilentz, Goldman & Spitzer are most popular:
  • within Employment and HR topic(s)
  • with Senior Company Executives, HR and Inhouse Counsel
  • in United States
  • with readers working within the Advertising & Public Relations, Business & Consumer Services and Healthcare industries

Employers and employees increasingly type questions into consumer artificial intelligence (“AI”) chatbots as much as they once used search engines, including questions about workplace disputes, terminations, and legal exposure. A recent decision from the Southern District of New York confirms that those prompts and the AI’s responses are ordinary evidence. In United States v. Heppner, No. 25-cr-00503-JSR (S.D.N.Y. Feb. 10, 2026), a federal judge held that documents generated using an open, consumer version of an AI platform were not protected by the attorney-client privilege nor the work-product doctrine, even though some of the prompts contained information the client had learned from his own lawyers.

The Facts Behind the Heppner Decision

Bradley Heppner, the former CEO of a publicly traded financial services company, was indicted in October 2025 on securities fraud, wire fraud, and related charges. After receiving grand jury subpoenas and retaining defense counsel, Heppner, on his own initiative and without direction from his attorneys, used the consumer version of Anthropic’s AI “Claude” to research legal questions, organize defense theories, and synthesize information about the government’s investigation. Some of what he typed or uploaded reflected conversations he had already had with counsel. When agents executed a search warrant at his home, they seized devices containing roughly 31 documents of Heppner’s prompts and the AI-generated responses. His lawyers asserted privilege and work-product protection over all of them. The government moved for a ruling that the materials were fair game, and the judge agreed.

Why the Court Rejected Privilege and Work-Product Protection

The court also flagged that by feeding privileged attorney communications into a third-party platform, a client may waive the privilege over the underlying communications themselves, not just the AI transcripts. Notably, the ruling addressed an “open” consumer system whose terms permit training and disclosure. The court did not decide how a “closed” enterprise deployment, where prompts and outputs are used only for the customer’s benefit, would fare, and the confidentiality analysis could well come out differently for such a system.

What the Heppner Decision Means for Employers

Heppner is a criminal case, but its logic governs civil litigation, arbitrations, and agency investigations alike. Courts are already treating generative AI data such as prompts, outputs, and usage logs as electronically stored information subject to the usual relevance and proportionality rules, and have compelled production of AI logs on a massive scale in other litigation. Picture a supervisor asking a consumer chatbot how to “document a problem employee before firing her,” or an HR manager pasting a draft investigation summary into a free AI tool. In the discrimination suit that follows, those exchanges are discoverable, unprivileged, and quotable.

Key Employer Takeaways

Employers should treat AI use as both a privilege problem and a discovery problem. Adopt and enforce a policy directing that sensitive legal, personnel, and investigative matters be handled only through counsel or through closed, enterprise AI tools with written confidentiality and no-training commitments, never through personal or free consumer accounts. Inform managers that a chatbot conversation is not a private brainstorm. When litigation is anticipated, extend litigation holds to AI prompts, outputs, and activity logs, coordinating with IT on where that data lives and how long the platforms retain it.

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

[View Source]

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More