uniladtech homepage
  • News
    • Tech News
    • AI
  • Gadgets
    • Apple
    • iPhone
  • Gaming
    • Playstation
    • Xbox
  • Science
    • News
    • Space
  • Streaming
    • Netflix
  • Vehicles
    • Car News
  • Social Media
    • WhatsApp
    • YouTube
  • Advertise
  • Terms
  • Privacy & Cookies
  • LADbible Group
  • LADbible
  • UNILAD
  • SPORTbible
  • GAMINGbible
  • Tyla
  • FOODbible
  • License Our Content
  • About Us & Contact
  • Jobs
  • Latest
  • Archive
  • Topics A-Z
  • Authors
Facebook
Instagram
X
TikTok
Snapchat
WhatsApp
Submit Your Content
ChatGPT users warned their private chats could be 'sold for profit'
Home>News>AI
Published 10:54 16 Dec 2025 GMT

ChatGPT users warned their private chats could be 'sold for profit'

Your 'private' chats aren't all that private

Rebekah Jordan

Rebekah Jordan

google discoverFollow us on Google Discover
Featured Image Credit: NurPhoto / Contributor via Getty
ChatGPT
AI
Cybersecurity

Advert

Advert

Advert

ChatGPT users have been warned that their private chats could be at risk of being 'sold for profit' according to new research.

Just when you thought your AI conversations were secure, new evidence suggests otherwise. Despite many users treating the chatbots like personal therapists, discussing finances, intimate questions and sensitive issues, warnings continue that these conversations aren't actually private.

The newest warning comes from Koi, a security research firm that has discovered a family of Google Chrome extensions harvesting user chats and selling them to third parties.

“Medical questions, financial details, proprietary code, personal dilemmas,” Koi said. "All of it, sold for ‘marketing analytics purposes.’"

Advert

Several AI chatbots are at risk (Robert Way/Getty)
Several AI chatbots are at risk (Robert Way/Getty)

These extensions don't target just one AI assistant either. Using any AI assistant through your browser poses a risk, including ChatGPT, Gemini, Claude, Microsoft Copilot, Perplexity, DeepSeek, Grok (xAI), and Meta AI.

Koi explained: "For each platform, the extension includes a dedicated ‘executor’ script designed to intercept and capture conversations. The harvesting is enabled by default through hardcoded flags in the extension’s configuration.

“There is no user-facing toggle to disable this. The only way to stop the data collection is to uninstall the extension entirely.” This is because, on the backend of things, 'the extension monitors your browser tabs' so that when you visit any of the targeted AI platforms, it 'injects an "executor" script directly into the page.'

Koi confirmed that 'each platform has its own dedicated script - chatgpt.js, claude.js, gemini.js, and so on.'

There are no limits on what's being collected, either.

Your conversations with AI aren't private (Thanasis Zovoilis/Getty)
Your conversations with AI aren't private (Thanasis Zovoilis/Getty)

“Every prompt you send to the AI. Every response you receive. Conversation identifiers and timestamps. Session metadata. The specific AI platform and model used,” Koi confirmed.

Disturbingly, the feature appeared in an extension update for Urban VPN Proxy, a service which has 6 million users.

“After documenting Urban VPN Proxy’s behaviour," Koi added. "We checked whether the same code existed elsewhere. It did. The identical AI harvesting functionality appears in seven other extensions from the same publisher, across both Chrome and Edge."

The extensions carry store approval from Google and Microsoft. All but one display 'Featured' badges to signal to users that 'the extensions have been reviewed and meet platform quality standards.'

While Urban VPN's privacy policies technically disclose this data collection, they're 'buried deep in the document,' which you can find 'if you know where to look.' The extension processes ‘ChatAI communication’ along with 'pages you visit’ and ‘security signals,’ claiming this is done ‘to provide these protections.’

According to Koi, UrbanVPN's privacy policy states: "As part of the Browsing Data, we will collect the prompts and outputs queried by the End-User or generated by the AI chat provider, as applicable.’ And: ‘We also disclose the AI prompts for marketing analytics purposes.’”

Bear in mind that these extensions 'remained live for months while harvesting some of the most personal data users generate online.' So if you've used them, Koi advises uninstalling them, adding: "Assume any AI conversations you've had since July 2025 have been captured and shared with third parties.”

  • ChatGPT users horrified after realizing disturbing detail about their private chats
  • Trump's cyber chief accidentally uploads highly sensitive private documents to the public ChatGPT
  • ChatGPT users getting their chatbots high on drugs, for a price
  • OpenAI axes NSFW adult feature ChatGPT users begged for

Choose your content:

2 hours ago
19 hours ago
20 hours ago
  • Andrew Chin / Stringer / Getty
    2 hours ago

    Shock over rapper Akon's $6 billion abandoned city inspired by iconic Marvel movie

    The abandoned megaproject looks 'so lonely'

    News
  • JOEL SAGET/AFP via Getty Images
    2 hours ago

    Bizarre reason Elon Musk just spent one billion dollars on a massive gas turbine company

    As the AI industry grows, so does its demand for power

    News
  • Kevin Dietsch / Staff via Getty
    19 hours ago

    OpenAI launch $230 keyboard just days after Apple sued them for stealing

    Apple's lawsuit relates to stolen hardware trade secrets

    News
  • China News Service / Contributor via Getty
    20 hours ago

    Terror as China reportedly releases thousands of human robots with dystopian mission purpose

    China is the leading nation worldwide when it comes to robotics

    News