← Back to Latest
AI & Tech 30 SEPT 2026 · 12:30 ET

Meta Denies Its AI Agent Snooped on Private Messages

A dispute has erupted over whether Meta's new Muse AI assistant can peer into users' private conversations without their consent.

Reporting by LoopWire
Meta Denies Its AI Agent Snooped on Private Messages

The controversy began after a journalist reported that Muse appeared to have read his private Messages on a Mac even though the permission setting required for that access was switched off. Meta has pushed back firmly on that account, insisting the agent is technically incapable of reading a user's Messages unless the person has explicitly granted permission for it to do so.

The disagreement centers on Muse's growing role as an AI agent embedded across Meta's products, designed to act on a user's behalf by drawing on personal context and, in some configurations, message history. That kind of deep integration is precisely why the episode has drawn scrutiny: agentic AI tools are increasingly being built to tap into sensitive personal data — calendars, messages, contacts — in order to feel more useful and personalized. But that same design raises the stakes dramatically if permission systems don't work exactly as advertised.

Meta's position is that the reported behavior simply should not have been possible given the Mac setting's status, suggesting either a misunderstanding of how the permission worked, a software glitch, or a discrepancy between what the setting displayed and what it actually enforced. The company has not detailed which of these explanations it believes occurred, leaving the core factual question — did Muse actually access messages it shouldn't have — unresolved publicly.

The stakes go beyond one user's experience. Meta has faced repeated privacy controversies over the years, from data-sharing practices to facial recognition, and any credible claim that an AI agent bypassed a privacy control would reinforce longstanding skepticism about how carefully the company builds guardrails into new products. As AI agents from Meta, OpenAI, Google, and others gain the ability to act autonomously across apps and devices, users are increasingly being asked to trust that permission toggles and consent screens actually govern what these systems can see and do. A single credible failure can undercut that trust broadly, not just for one feature.

What happens next likely hinges on whether independent investigation — by security researchers, journalists, or Meta itself — can reproduce the reported behavior or identify a technical explanation. If the setting genuinely failed to block access, it would represent a serious breach of the permission model Meta has publicly described for Muse, with implications for how regulators and privacy advocates view agentic AI more broadly. For now, the incident stands as a test case for how much scrutiny AI agents' access to private data will receive as they become a standard feature of consumer tech products.

Share on XShare on BlueskyShare on Mastodon

Get the LoopWire Brief

Free weekly email, every Tuesday at 8am ET.

Subscribe free