The public feed of the Meta AI app is filled with private and sensitive information, suggesting users might not be aware they are sharing their chats publicly
It sounds like the start of a 21st century horror film: Your browser history has been public all along, and you had no idea.
TechCrunchAmanda Silberling
Context & Ripple Effects
This disclosure lands after coverage raised concerns about Meta AI's retention of sensitive details in a Memory file, making the boundary between a personal assistant and a social product especially consequential. Earlier reporting on Meta AI’s sensitive Memory file had already put its data-handling design under scrutiny.
The immediate follow-up was a sharing pop-up for the Discover feed, indicating that the problem was not merely what users entered, but whether the publishing action was intelligible at the moment of consent. Meta’s subsequent sharing warning is a targeted product response to that gap.
First-order effects
People whose chats appeared in Discover face immediate exposure of personal information; other users may reconsider what they disclose to Meta AI until the sharing controls are clear.
Meta must make the distinction between private prompting and public posting more prominent, with the new warning addressing the highest-risk sharing step.
Second-order effects
AI assistants that combine chat, memory and social distribution face a higher usability burden: consent flows must communicate downstream visibility rather than rely on users to infer it.
Privacy concerns around retained sensitive context become more damaging when a product also has a public surface, potentially reducing willingness to use assistant features for personal tasks.
Third-order effects
If similar incidents persist, AI products will be pushed toward clearer, separate defaults for private interaction and public contribution—the core issue captured by the public-data permission boundary.
The later emergence of Meta AI private-chat tooling suggests a broader split between convenience features that use personal context and modes designed to limit provider access, though the durability of that split depends on implementation and user understanding. Meta AI’s later Incognito Chat launch points in that direction.
The trend: Consumer AI is moving toward explicit privacy boundaries as assistants blend personal context, persistent memory and public or shareable surfaces.
Get Your Parents Off the Meta AI App Right Now — As Moore notes, users are throwing all sorts of prompts into Meta AI without knowing that they're being displayed publicly, gizmodo.com/psa-get-your...
“Meta does not indicate to users what their privacy settings are as they post, or where they are even posting to. So, if you log into Meta AI with Instagram, and your Instagram account is public, then so too are your searches about how to meet ‘big booty women.’”
things i have seen on the meta AI app today: — audio of guy asking why some farts smell worse than others — guy asking meta AI to post his phone # on groups to get “big booty women” to text him — someone asking if their sister is in legal trouble — divorce court mario …
Meta's AI app is a privacy hot mess of people publishing their ostensibly private conversations with the chatbot, including their personal information, home addresses, sensitive court details, the occasional federal crime... https://techcrunch.com/...
Wild things are happening on Meta's AI app. The feed is almost entirely boomers who seem to have no idea their conversations with the chatbot are posted publicly. They get pretty personal (see second pic, which I anonymized). [image]
If a user's expectations about how a tool functions don't match reality, you've got yourself a huge user experience and security problem. Humans have built a schema around AI chat bots and do not expect their AI chat bot prompts to show up in a social media style Discover feed —…
what happens when you give one billion people access to an AI chatbot, and for some of that number, the ability to publish those conversations on social feed? well, now we know [image]
this is fucking crazy: some product manager at Meta decided their new AI app should post all conversations to a public feed by default. the app is full of boomers and young children talking about incredibly private or bizarre things, often with full audio recordings [video]
@DanSchoonmaker It gets worse! A lot of people seem to be using it on their Meta glasses - so they accidentally post pictures and audio, too 😬 (I anonymized this one) [image]
Fun fact: Meta axed the standalone app for their Meta Raybans and forced users to migrate to Meta AI. So any AI interactions that take place through the glasses - which can include the pics or videos from the users POV - can just as easily be shared by mistake.
I can't believe this is still up and public. You can just click right on the profiles and see the full names and profile photos of the people asking these questions. [image]
Obsessed with this man who tries to use the app to find a woman with a “big booty and nice rack.” When it won't post on his behalf in local FB groups, he asks the bot to “delete my number.” Instead, he (accidentally?) shares it publicly - I redacted. [image]
To clarify - conversations aren't public by default. You have to hit a “share” button, but many users seem to think it's posting to a private journal. Resulting in things like this...a man trying to write a romantic poem for his gf. You can hear a 6 min audio clip, here's a [imag…