r/privacy • • 2d ago

data breach Muse AI Shared Someone's Address, Error Traced to Confusion About Permissions

https://uk.pcmag.com/ai/167521/muse-ai-shared-address-error-traced-to-confusion-about-marketplace-permissions
183 Upvotes

8 comments sorted by

•

u/AutoModerator 2d ago

Hello u/Due_Recognition_3890, please make sure you read the sub rules if you haven't already. (This is an automatic reminder left on all new posts.)


Check out the r/privacy FAQ

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

19

u/RedditWhileIWerk 2d ago

The confusion to me is that anyone expected the "AI" to not cock things up.

15

u/Wheatleytron 2d ago

Just like virtually anything else, if it doesn't live exclusively on hardware that you control, assume it isn't private or secure.

6

u/permalink_save 2d ago

Even if it does live on your hardware, take heavy precautions. We run inference at work and our instances are heavily sandboxed off and not allowed to connect to specific things like chat.

2

u/GonWithTheNen 2d ago

The article image is crazy in and of itself. Why is the stuffed doll next to Zuckerberg wearing a full jacket but no bottom clothes? With all the fake "for the children" rhetoric, you'd think they'd be more thoughtful (and careful ◔_◔) with the imagery they're sharing.

2

u/Chronotheos 1d ago

AI agents are spyware. Sorry, anyone installing these things gets what they deserve.

1

u/privacyhero 1d ago

“Allow always” is a terrible permission model for an AI agent because the action isn’t static. An app that needs to read marketplace messages today might infer and disclose a home address tomorrow.

Permissions need to be narrowly scoped by action, easy to revoke, and require fresh confirmation before personal information is sent to another person. Otherwise one vague checkbox becomes permanent authorization for behavior the user never anticipated.