logoalt Hacker News

Coeur • today at 10:17 AM • 2 replies • view on HN

"multiple providers disclose sensitive conversation-derived artifacts — including titles, prompts, and screenshots — to third parties, often alongside persistent user identifiers that enable user attribution. We also find that some providers publicly expose conversation permalinks without access controls, allowing trackers to read the entire conversation."

Not good at all.


Replies

postalcoder • today at 10:50 AM

My least favorite trend I’ve noticed with so many AI chat services is they seem to equate a UUID in the url with privacy.

Perplexity does this. Visiting a past perplexity search url exposes your full conversation.

➕ show 2 replies
Aboutplants • today at 11:29 AM

“Screenshots”

The amount of sensitive information that accidentally gets left on screenshots is pretty large. This is a pretty massive security issue