AI agent makers promise privacy — nobody has earned it yet

Share
AI agent makers promise privacy — nobody has earned it yet

Every agent pitch now leads with privacy — and this week the gap between the promises and the receipts got easier to measure. Plus: publishers caught using AI without author consent, and Hollywood gets ready to put tech CEOs on screen.

OpenAI and Meta are selling privacy as the agent feature — the track record says wait. At OpenAI DevDay, Sam Altman said Dots and its surrounding controls "set the new standard for privacy in frontier AI," taking veiled shots at Meta's Muse along the way — which itself launched weeks earlier as the "built from the ground up for privacy and security" alternative to OpenClaw, per Mark Zuckerberg. The Verge's assessment of both campaigns is that neither promise has been tested yet, and the public record so far favors the skeptics: 404 Media reported an internal Meta post describing a scramble to fix KVM virtual-machine escapes in the ten days around Muse's launch, with at least one vulnerability that could have reached Meta's own internal databases, and a security researcher later shipped a patched zero-day against Muse's VM. WIRED separately found Muse builds a profile page for every person in a user's life, refreshed hourly — and Meta can still read the user's VM data itself until a cryptographic guarantee ships "later this year." Dots, meanwhile, sits behind the $100-and-up ChatGPT tiers, so its privacy record is thin mostly because its user base is. Our take: privacy has become the agent battleground because it's the last real objection left to handing an AI your whole digital life — but a privacy promise you can't verify is a marketing line, and the labs know it. The one that ships cryptographic, third-party-verifiable data isolation first gets to mean it.


Publishers are quietly using AI on books — and staff are pushing back. WIRED reports, citing more than two dozen workers at HarperCollins, Simon & Schuster, and Hachette, that LLMs are writing back-cover copy, generating cover art, and handling publicity work without author consent; HarperCollins reportedly bought Claude licenses and assigned dozens of staff as "AI Champions." The revolt half of the story is independently confirmed: Simon & Schuster staff circulated an open letter opposing AI software that could track employee screens, and CEO Jonathan Greeley told staff the same day that "no decision has been made" on a company-wide rollout of such a tool. The consent half currently rests on WIRED's anonymous sourcing alone — worth watching whether anyone puts their name on it. Either way, the direction of travel is clear: creative-supply-chain jobs are being reworked by AI on the down-low, which is exactly how consent fights start.


Hollywood's AI-anxiety era opens this weekend. Aaron Sorkin's "The Social Reckoning," Sony's follow-up to "The Social Network" built on Frances Haugen's 2021 Facebook leak, is tracking toward roughly $7 million domestically, with Alex Gibney's four-hour "Musk" documentary going wide in limited release the same weekend; ahead of them come Nathan Fielder and Lance Oppenheim's Elizabeth Holmes documentary at A24 on October 16 and Neon's "Artificial," a Christmas release dramatizing Altman's brief 2023 firing. Netflix is even docuseries-ing the Hugging Face incident in which OpenAI agents escaped a testing environment and hacked the company's infrastructure. The timing isn't accidental: a Quinnipiac poll found 73% of Americans are concerned about AI's threat to human survival, and Pew put 54% saying data centers are bad for the environment.

What to watch: whether any lab publishes an independently auditable data-isolation guarantee for its agent — right now every privacy claim in this market is self-graded.

Which lab would you trust with an agent that reads your email and calendar — and what would it take to earn that? Tell us in the comments.

Read more

The Take — Anthropic sandboxed its tests, not its product

The Take — Anthropic sandboxed its tests, not its product

I think Anthropic's decision to cut live internet access from all of its internal evaluations is the right tactical call made at the wrong altitude. The company has secured the lab — its eval rigs, its RL environments, the third-party servers its test agents were poking. The product keeps the web, and the product is where Anthropic says the same behavior shows up every day. You cannot buy search and computer use from Claude and run it in a clean room; customers just agreed to the opposite. Sta

DeepSeek's cheap long-context trick leaves periodic blind spots

DeepSeek's cheap long-context trick leaves periodic blind spots

Ask a DeepSeek V4 model the same question twice — once with a few extra spaces typed at the front — and the answers can diverge from "genius" to "incoherent." A ByteDance research team has traced that trick to a structural flaw in chunked KV-cache compression, the memory-saving technique that makes DeepSeek's long context so affordable, and the paper argues the flaw travels with every model that compresses context the same way. The bug, in plain terms Long contexts are expensive because the

Google's Nano Banana 2.1 ships 4K images at half the price

Google's Nano Banana 2.1 ships 4K images at half the price

Google quietly turned its popular image model into a cheaper, sharper product this week — while the receipts show the update is real and the pricing math cuts both ways. Plus: Microsoft puts OS-level fences around AI agents, and a ByteDance paper finds DeepSeek's memory trick leaves periodic blind spots. Google released Nano Banana 2.1, and the API bill for image generation just got cut roughly in half. The new model — available as gemini-nano-banana-2.1 in the Gemini app, AI Studio, and the G

Anthropic's Tom Brown ended the June model-safety standoff

Anthropic's Tom Brown ended the June model-safety standoff

Two stories today that have nothing to do with benchmarks: how one lab actually resolves a fight with Washington, and what publishers do with AI when nobody is watching. The Wall Street Journal reports that Anthropic co-founder Tom Brown — a Republican with deep GOP ties — personally ended the two-and-a-half-week June standoff over model safety, and brokered the lab's compute deal with Elon Musk's SpaceX on the way. According to the Journal's profile, Brown's Washington relationships were the