Your AI Assistant Is Leaking Your Conversations
This research disclosure reveals structural privacy risks in four major generative AI products — Perplexity, Anthropic's Claude, xAI's Grok, and OpenAI's ChatGPT — caused by third-party trackers embedded in LLM services that leak user conversations, identities, and sensitive metadata. The researchers found 13+ third-party trackers across the four platforms, including Meta Pixel, Google Analytics, TikTok, Datadog, Intercom, and Segment. Key findings include: conversation URLs (often publicly accessible permalinks) are disclosed to advertising and tracking services; trackers can link activity to user identities via cookies and email hashes; and in Grok's case, shared conversations generate publicly accessible screenshot images with verbatim message content exposed in Open Graph metadata. The disclosure also documents that Claude forwards user events server-to-side to eleven ad platforms (Meta, LinkedIn, TikTok, Reddit, Google, Amplitude, Iterable, HubSpot, Pinterest, Podscribe, DCM Floodlight) via Segment, evading ad blockers. Perplexity removed its Meta Pixel in April 2026, possibly in response to a US class action. The researchers submitted findings to Data Protection Authorities and notified xAI (no response received) before public disclosure on May 4, 2026. The page includes detailed leakage matrices, access control tables, platform-specific findings, and mitigation guidance.
Comments
Post a Comment