Thursday, September 3, 2026
Science
No Result
View All Result
  • Login
  • HOME
  • SCIENCE NEWS
  • CONTACT US
  • HOME
  • SCIENCE NEWS
  • CONTACT US
No Result
View All Result
Scienmag
No Result
View All Result
Home Science News Social Science

AI-Powered Web Browser Assistants Spark Significant Privacy Concerns

August 13, 2025
in Social Science
Courtney Benton
By Courtney Benton Scienmag Editorial Profile - Science and Technology Policy
Reading Time: 4 mins read
0
AI-Powered Web Browser Assistants Spark Significant Privacy Concerns
68
SHARES
618
VIEWS
Share on FacebookShare on Twitter
ADVERTISEMENT

As generative artificial intelligence rapidly integrates into the digital tools we rely on daily, a recent investigative study has sounded an urgent alarm about the privacy pitfalls lurking beneath the convenience. Researchers from University College London (UCL) and Mediterranea University of Reggio Calabria have conducted the first large-scale audit uncovering how popular AI-powered web browser assistants, designed to enhance user experience, are simultaneously gathering and sharing deeply sensitive personal data without adequate protection mechanisms.

These AI extensions, including widely used tools like ChatGPT for Google, Merlin, and Copilot (distinct from Microsoft’s Copilot), require users to download and install them on their web browsers. While these assistants promise to augment web navigation by offering features such as succinct summarizations and contextual search assistance, the research reveals a far more invasive underbelly. The study’s findings, set to be presented at the prestigious USENIX Security Symposium, highlight the extent to which these tools collect comprehensive personal information from users’ web activity, often transmitting entire webpage content—including visible elements on the screen—to external servers.

Among the most concerning revelations was that Merlin, one of the examined assistants, captured form input data encompassing highly sensitive information such as online banking credentials and personal health records. Other browser assistants, like Sider and TinaMind, were found to relay user-generated queries and identifying information, including IP addresses, to third-party analytics platforms such as Google Analytics. This practice opens the door to covert cross-site tracking and aggressive advertisement targeting, effectively eroding user anonymity across the web.

Beyond mere data collection, several assistants demonstrated sophisticated profiling capabilities. ChatGPT for Google, Copilot, Monica, and Sider were shown to infer nuanced demographic attributes—age, gender, income level, and areas of interest—leveraging this insight to tailor responses and interactions. Remarkably, these personalized profiles could persist across multiple browsing sessions, indicating that user data was not only collected but actively stored and analyzed. Contrastingly, Perplexity stood out as the sole assistant in the study that did not engage in any detectable profiling or personalization practices.

Dr. Anna Maria Mandalari, who led the research team from UCL’s Electronic & Electrical Engineering department, emphasized the gravity of these findings: “While users are somewhat accustomed to search engines and social media collecting data for targeted ads, these generative AI assistants have unprecedented access to private online behaviors. The convenience they offer often masks the reality that user data is being harvested without clear consent, transparency, or adherence to existing privacy laws and terms of service.”

The implications of these privacy violations extend well beyond conventional online tracking concerns. In an era beset by rampant data breaches and hacking incidents, centralized aggregation of sensitive browsing data heightens the risk of exposure. The researchers warn that once this data leaves the user’s device, individuals lose control over its fate, with no assurance of responsible handling or protection from malicious theft.

To rigorously assess the behavior of these assistants, researchers devised an intricate real-world simulation. They constructed a digital persona embodying a wealthy, millennial male resident of California who engaged in typical web activities. The experiments included interactions in public spaces—unlogged browsing such as reading news articles, shopping on Amazon, or viewing YouTube content—as well as private, logged-in domains involving deeply personal browsing: accessing university health portals, logging into dating websites, and visiting adult content platforms. The privacy-sensitive nature of these scenarios was central to testing whether assistants appropriately respect boundaries and user privacy expectations.

The research team employed advanced techniques to intercept and decrypt real-time data transmissions between the AI assistants, their servers, and third-party trackers. This allowed an unprecedented granular view of data flows, revealing precisely what information was collected and shared during active browsing sessions. Additionally, the assistants were tested for their memory and inference capabilities by prompting them to summarize sensitive page content, followed by queries designed to unearth retained personal details, such as the specific reasons behind a medical appointment.

Starkly, several assistants—including Merlin and Sider—demonstrated a troubling lack of adherence to privacy promises by continuing to record browsing activity even after users transitioned to private or incognito modes. This oversight not only breaches trust but also evidences a fundamental disregard for user intent to compartmentalize or shield certain online behaviors from being tracked.

The study further highlights significant legal concerns. Some assistants were found to contravene U.S. regulations such as the Health Insurance Portability and Accountability Act (HIPAA) and the Family Educational Rights and Privacy Act (FERPA) by illicitly collecting protected medical and educational information. While the analysis concentrated on U.S.-based regulations, the researchers anticipate that these privacy infringements would similarly violate the stricter data protection frameworks of the European Union’s GDPR and the UK’s data privacy laws.

In response to their findings, the authors advocate for sweeping regulatory reforms to govern AI browser assistants, insisting that privacy protection must be integral—not ancillary—to the development process. They propose that developers embrace privacy-by-design principles, including ensuring data processing occurs locally on devices when possible and mandating explicit, informed user consent before collecting or sharing any personal information.

Dr. Aurelio Canino, co-author affiliated with both UCL and Mediterranea University, underscored the broader stakes: “As generative AI becomes a ubiquitous element of our digital ecosystems, safeguarding user privacy cannot be sacrificed for the sake of convenience or innovation. Our research establishes a foundational resource to guide future legislation and increase transparency in this rapidly evolving domain.”

This groundbreaking study not only exposes the hidden data surveillance woven into AI browser extensions but also challenges developers, regulators, and users to rethink trust in emerging digital assistants. As these tools continue to proliferate, the balance between AI-driven convenience and fundamental privacy rights has never been more precarious—or more urgent.


Subject of Research: Not applicable
Article Title: Big Help or Big Brother? Auditing Tracking, Profiling, and Personalization in Generative AI Assistants
News Publication Date: 13-Aug-2025
Web References: https://www.usenix.org/conference/usenixsecurity25/
Keywords: Computer science; Applied sciences and engineering

Article Title: AI-Powered Web Browser Assistants Spark Significant Privacy Concerns

Article References: Original research article

Image Credits: AI Generated

DOI: Not provided

Keywords: AI browser assistants privacy concerns, AI technology and personal information security, AI tools user data transmission, AI-powered web extensions privacy audit, ChatGPT privacy implications, generative AI data collection, invasive data practices in technology, online security and AI assistants, sensitive personal data protection, University College London AI study, user experience vs. data privacy, web browser privacy risks

Cite Scienmag News

Courtney Benton. (August 13, 2025). AI-Powered Web Browser Assistants Spark Significant Privacy Concerns. Scienmag. https://scienmag.com/ai-powered-web-browser-assistants-spark-significant-privacy-concerns/

Courtney Benton. "AI-Powered Web Browser Assistants Spark Significant Privacy Concerns." Scienmag, 13 August 2025, https://scienmag.com/ai-powered-web-browser-assistants-spark-significant-privacy-concerns/. Accessed 3 September 2026.

Courtney Benton. "AI-Powered Web Browser Assistants Spark Significant Privacy Concerns." Scienmag. August 13, 2025. https://scienmag.com/ai-powered-web-browser-assistants-spark-significant-privacy-concerns/

Tags: AI browser assistants privacy concernsAI technology and personal information securityAI tools user data transmissionAI-powered web extensions privacy auditChatGPT privacy implicationsgenerative AI data collectioninvasive data practices in technologyonline security and AI assistantssensitive personal data protectionUniversity College London AI studyuser experience vs. data privacyweb browser privacy risks
Share27Tweet17
Previous Post

Assessing Lung Recruitability in Neonatal Ventilation

Next Post

Ongoing Concerns About Sexual Function Extend Well Beyond Midlife

Related Posts

Simulation Program Sharpens Surgical Trainees’ Sternotomy Skills
Social Science

Simulation Program Sharpens Surgical Trainees’ Sternotomy Skills

September 3, 2026
Pepper the Classroom Robot Boosts Motivation but Needs Teachers at the Helm, Review Finds
Social Science

Pepper the Classroom Robot Boosts Motivation but Needs Teachers at the Helm, Review Finds

September 3, 2026
Graph-Powered AI Recommender Charts Smarter Learning Paths for Online Students
Social Science

Graph-Powered AI Recommender Charts Smarter Learning Paths for Online Students

September 3, 2026
How Hong Kong Rewrites Global Anti-Money Laundering Rules on Its Own Terms
Social Science

How Hong Kong Rewrites Global Anti-Money Laundering Rules on Its Own Terms

September 3, 2026
Watching Mukbang Videos Linked to Oral Health Problems in Korean Adolescents
Social Science

Watching Mukbang Videos Linked to Oral Health Problems in Korean Adolescents

September 3, 2026
Tests May Underestimate Cognitive Skills of Deaf Young Adults
Social Science

Tests May Underestimate Cognitive Skills of Deaf Young Adults

September 3, 2026
Next Post
Ongoing Concerns About Sexual Function Extend Well Beyond Midlife

Ongoing Concerns About Sexual Function Extend Well Beyond Midlife

  • Mothers who receive childcare support from maternal grandparents show more optimized

    Mothers who receive childcare support from maternal grandparents show more parental warmth, finds NTU Singapore study

    27656 shares
    Share 11059 Tweet 6912
  • University of Seville Breaks 120-Year-Old Mystery, Revises a Key Einstein Concept

    1061 shares
    Share 424 Tweet 265
  • Bee body mass, pathogens and local climate influence heat tolerance

    682 shares
    Share 273 Tweet 171
  • Researchers record first-ever images and data of a shark experiencing a boat strike

    546 shares
    Share 218 Tweet 137
  • Groundbreaking Clinical Trial Reveals Lubiprostone Enhances Kidney Function

    531 shares
    Share 212 Tweet 133
Science

Embark on a thrilling journey of discovery with Scienmag.com—your ultimate source for cutting-edge breakthroughs. Immerse yourself in a world where curiosity knows no limits and tomorrow’s possibilities become today’s reality!

RECENT NEWS

  • Browser-based studio simplifies WRF modeling and data assimilation setup
  • Scientists uncover genes controlling grain yield in harsh growing conditions
  • BraABCB transporter genes shed light on hormone responses in Chinese flowering cabbage
  • Cyclin gene evolution in Arabidopsis and Brassica links polyploid duplication to flowering time

Categories

  • Agriculture
  • Anthropology
  • Archaeology
  • Athmospheric
  • Biology
  • Biotechnology
  • Blog
  • Bussines
  • Cancer
  • Chemistry
  • Climate
  • Earth Science
  • Editorial Policy
  • Marine
  • Mathematics
  • Medicine
  • Pediatry
  • Policy
  • Psychology & Psychiatry
  • Science Education
  • Social Science
  • Space
  • Technology and Engineering

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 5,151 other subscribers

© 2025 Scienmag - Science Magazine

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • HOME
  • SCIENCE NEWS
  • CONTACT US

© 2025 Scienmag - Science Magazine

Discover more from Science

Subscribe now to keep reading and get access to the full archive.

Continue reading