Technology

ChatGPT's Computer History Feature Has a Privacy Problem

OpenAI's Computer History feature for Mac stores user activity in unencrypted plain-text files. While the feature is opt-in, the lack of encryption raises concerns about data exposure.

OpenAI's Computer History feature for ChatGPT Mac stores user activity in unencrypted plain-text files, potentially accessible by other programs running under the same macOS user. The feature is opt-in and includes controls to exclude apps and delete entries, but the lack of encryption raises privacy concerns.

OpenAI has introduced a Computer History feature for the ChatGPT Mac app that remembers what users have been doing across apps and websites. The feature tracks interaction events — clicks, typing, and app switching — rather than taking screenshots or recordings[reference:48]. But a concerning detail has emerged: the files containing that history aren't encrypted[reference:49].

What Computer History Does

Computer History is designed to give ChatGPT context about what you're doing on your Mac. It captures a fairly broad picture of your activity — which apps and websites you used, what documents you interacted with, and other potentially sensitive information[reference:50]. The feature doesn't record screen, audio, or video, but the interaction data can still reveal a significant amount about your behavior[reference:51].

OpenAI says the temporary event files are deleted after 48 hours. The local memories are stored as plain-text Markdown files[reference:52]. The company explicitly warns that these files aren't encrypted and other programs running as the same macOS user may be able to access them[reference:53].

The Risk

The biggest risk isn't someone physically stealing your Mac. It's malware or another malicious application already running under the same macOS user account[reference:54]. If that software can reach the local files, the lack of encryption potentially gives it another source of information about your activity[reference:55].

There's also a broader concern with giving AI systems this much context. Malicious instructions hidden inside websites or other content could potentially influence what an AI sees in its history, creating a prompt-injection risk on top of the underlying data exposure[reference:56].

The Trade-Off

Computer History is opt-in, and OpenAI gives users controls to exclude apps and websites and delete entries[reference:57]. That's better than silently recording everything. But the documentation makes the trade-off clear: the more ChatGPT remembers about your Mac, the more sensitive information it potentially leaves behind[reference:58].

What You Should Do

If you're using Computer History, consider whether the convenience is worth the risk. Review the apps and websites you're allowing the feature to track. Delete entries regularly. And be aware that even if you trust OpenAI, the unencrypted files could be accessed by other software on your system.

For users who prioritize privacy, the safest choice may be to leave Computer History turned off entirely. The feature is useful, but the current implementation leaves too much sensitive data exposed for comfort.