Signal President Meredith Whittaker warned Friday that agentic AI could come with a risk to user privacy.
Speaking onstage at the SXSW conference in Austin, Texas, the advocate for secure communications referred to the use of AI agents as โputting your brain in a jar,โ and cautioned that this new paradigm of computing โ where AI performs tasks on usersโ behalf โ has a โprofound issueโ with both privacy and security.
Whittaker explained how AI agents are being marketed as a way to add value to your life by handling various online tasks for the user. For instance, AI agents would be able to take on tasks like looking up concerts, booking tickets, scheduling the event on your calendar, and messaging your friends that itโs booked.
โSo we can just put our brain in a jar because the thing is doing that and we donโt have to touch it, right?,โ Whittaker mused.
Then she explained the type of access the AI agent would need to perform these tasks, including access to our web browser and a way to drive it as well as access to our credit card information to pay for tickets, our calendar, and messaging app to send the text to your friends.
โIt would need to be able to drive that [process] across our entire system with something that looks like root permission, accessing every single one of those databases โ probably in the clear, because thereโs no model to do that encrypted,โ Whittaker warned.
โAnd if weโre talking about a sufficiently powerful โฆ AI model thatโs powering that, thereโs no way thatโs happening on device,โ she continued. โThatโs almost certainly being sent to a cloud server where itโs being processed and sent back. So thereโs a profound issue with security and privacy that is haunting this hype around agents, and that is ultimately threatening to break the blood-brain barrier between the application layer and the OS layer by conjoining all of these separate services [and] muddying their data,โ Whittaker concluded.
If a messaging app like Signal were to integrate with AI agents, it would undermine the privacy of your messages, she said. The agent has to access the app to text your friends and also pull data back to summarize those texts.
Her comments followed remarks she made earlier during the panel on how the AI industry had been built on a surveillance model with mass data collection. She said that the โbigger is better AI paradigmโ โ meaning the more data, the better โ had potential consequences that she didnโt think were good.
With agentic AI, Whittaker warned weโd further undermine privacy and security in the name of a โmagic genie bot thatโs going to take care of the exigencies of life,โ she concluded.


