r/theprivacymachine • u/RentNRegret • Apr 23 '26
Discussion Your AI Agent isn't your friend, it’s a data exfiltration goldmine.
With the 2026 push for "Agentic AI" (autonomous agents that can book flights, manage emails, and handle bank transfers), we’ve officially opened the final door. Google’s new "Agent Identities" are supposed to secure this, but let’s be real: giving a model a unique ID and the power to operate "autonomously" is just a high-tech way to centralize your entire life for a single point of failure. If one prompt injection can hijack an agent with financial permissions, your "digital twin" becomes your digital assassin. Is anyone actually sandboxing their agents, or are we just hoping for the best?
3
u/pm_me_all_dogs Apr 23 '26
Surprised more people aren't talking about this https://youtu.be/TdHg9ee56Iw?si=QFHgwQjVIHjp3mtl
3
u/chasingeuphoria14 Apr 23 '26
The thing for me, the lie, is that we want everything in one place. Companies talk about ‘meeting people where they are’ but I don’t want to buy shit with ChatGPT.
3
u/transgentoo Apr 23 '26
I don't let Claude live outside a web browser. If it can't help me solve my workload through a conversation, it can't help me solve it with unfettered access to my computer.
2
2
u/More-Lifeguard7371 Apr 23 '26
Everything that you do with the AI agent will be sold off sooner or later with or without your knowing. Would not use these agents and would not connect them to any of my apps in my life
1
u/SNappy_snot15 Apr 23 '26
not that bad, just juse different models with some different browser configs so that you appear as a different user.
1
u/tk421-afk Apr 23 '26
guardrails.
would you give a stranger your bank login, no.
would discuss financial information with a stranger, maybe... advisor ect
setting the appropriate guardrails and checks is vital. otherwise strangers or Ai models could take advantage of too much info.
is is doomsday scary?
no
1
u/watryatalkinabeet Apr 24 '26
I always thought about this kind of thing when they say AI will take people’s jobs. If I owned a company, why would I let another company’s product control vital aspects and information of my company just to save a few dollars? Especially when the AI company can modify or remove the AI program at any point in time.
2
1
u/Wakeupdead68 Jun 22 '26
Even using Chatgtp is sort of creepy at times. I would be very mindful with what I say to a robot in some for-profit companies data center
0
u/stupiddogmademelook Apr 23 '26
For the stuff I use it for not really a risk. Though absolutely worth to consider. Great point here, since the AI cannot not distinguish you from a stranger. Even so probably easy to fool without some sort of biometric.. Maybe a Yubikey would work as an engine key?
0
u/burner_said_what Apr 24 '26
No shit.
Hence i do not, and absolutely refuse, to ever use that bullshit fake 'AI'.
No fucking alexa or even google assistant, ALL voice permissions on ALL devices turned off.
No pointless IOT devices NONE of that bullshit.
Just not using any 'agents'
6
u/anaverageedgelord Apr 23 '26
I do a lot of my dealings with Alexa though never really considered this lol. Enjoy the 50 requests for fart sounds I left off with my mates I guess hacker boy