How to Use AI Chatbots While Protecting Your Privacy
Conversations with AI chatbots are often highly personal and leave users vulnerable to surveillance. Experts advise on how to maintain privacy when interacting with these systems.

The Privacy Honeypot
The rapid adoption of artificial intelligence has turned many tools into modern-day confessionals. When users interact with an AI chatbot, they often share sensitive details about their health, finances, and personal relationships. According to privacy experts, these platforms essentially act as a honeypot for sensitive information, as most models are configured by default to collect and store user conversations on a distant data center.
Matt Green, a computer science professor at Johns Hopkins University, warns that users are effectively building a massive profile of their private lives with every prompt. Because these records can be sold, used for further training, or surrendered to law enforcement through legal processes, the potential for surveillance is significant.
From Messaging to AI
Moxie Marlinspike, known for his work in creating Signal, suggests that the privacy risks once associated with text messaging have migrated to the AI sector. He argues that the stakes are now significantly higher due to the depth of data users willingly divulge to these systems.
To address these concerns, Marlinspike recently launched Confer, an AI chatbot designed to use cryptography to prevent service providers from logging or surveilling user interactions. This development is part of a broader trend where developers seek to implement technical guardrails that restrict a service's own ability to access user input.
Navigating Enterprise Protections
For corporate users, the most common defense against data harvesting is a Zero Data Retention (ZDR) policy. These contracts mandate that the AI provider deletes user interactions immediately after processing. However, even these policies have limitations. For instance, specific high-end products, such as “Mythos-class” models, often lack ZDR coverage due to concerns regarding autonomous misbehavior and potential security risks.
Despite these safeguards, enterprise providers may still monitor activity for policy violations. While some companies state they sanitize data by stripping identifiers, they may still flag certain interactions for manual review by staff, as seen in several high-profile AI-driven breaches reported across the industry.
The Consumer Reality
Most consumers lack access to enterprise-grade ZDR, forcing them to rely on the privacy promises of consumer-targeted services. Many of these platforms claim they do not log conversations, though experts caution that a policy promise is not a mathematical guarantee. While services like Proton or DuckDuckGo offer user-friendly tools that proxy requests to larger models, the level of protection often relies on the reputation of the service provider rather than absolute encryption.
Ultimately, the current landscape of AI usage requires a cautious approach. Users who prioritize privacy should treat interactions with standard chatbots as non-private and consider that information shared with these systems may be accessible to third parties, including contractors who help fine-tune the systems.
Sources
- WIREDHow to Use AI With Your Privacy Intact