this post was submitted on 20 Jul 2025
34 points (100.0% liked)

Cybersecurity

0 readers
44 users here now

An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!

Rules

Community Rules

founded 2 years ago
MODERATORS
 

"Not so long ago, you would be right to question why a seemingly innocuous-looking free “flashlight” or “calculator” app in the app store would try to request access to your contacts, photos, and even your real-time location data. These apps may not need that data to function, but they will request it if they think they can make a buck or two by monetizing your data.

These days, AI isn’t all that different.

Take Perplexity’s latest AI-powered web browser, Comet, as an example. Comet lets users find answers with its built-in AI search engine and automate routine tasks, like summarizing emails and calendar events.

In a recent hands-on with the browser, TechCrunch found that when Perplexity requests access to a user’s Google Calendar, the browser asks for a broad swath of permissions to the user’s Google Account, including the ability to manage drafts and send emails, download your contacts, view and edit events on all of your calendars, and even the ability to take a copy of your company’s entire employee directory.

Perplexity says much of this data is stored locally on your device, but you’re still granting the company rights to access and use your personal information, including to improve its AI models for everyone else.

Perplexity isn’t alone in asking for access to your data. There is a trend of AI apps that promise to save you time by transcribing your calls or work meetings, for example, but which require an AI assistant to access your real-time private conversations, your calendars, contacts, and more. Meta, too, has been testing the limits of what its AI apps can ask for access to, including tapping into the photos stored in a user’s camera roll that haven’t been uploaded yet."

https://techcrunch.com/2025/07/19/for-privacy-and-security-think-twice-before-granting-ai-access-to-your-personal-data

#CyberSecurity #AI #GenerativeAI #Chatbots #DataProtection #Perplexity

top 2 comments
sorted by: hot top controversial new old
[–] I_Has_A_Hat@lemmy.world 8 points 1 week ago* (last edited 1 week ago) (1 children)

Golly gee, why would an app that helps you with your daily tasks need access to things like your daily schedule?

Like, yes, there is obviously an issue with privacy and security, but the people downloading this app should expect that. That's not the same as a flashlight app asking for access to your location.

It's like asking what's the difference between your doctor and a McDonalds worker asking for your medical history. Well, one needs that info to do the job you are expecting them to do, and the other absolutely does not need that info and it's weird that they'd ask.

[–] Stillwater@sh.itjust.works 4 points 1 week ago

The shitty thing is, there's little to no protection for your data rights. You can either avoid using an AI to help you with your daily tasks entirely, or accept that they will track and sell everything about you. There's no way to use the technology and feel secure in your privacy at the same time.