DeepSeek000 Archives a Chinese AI chatbot similar to OpenAI'sChatGPT, is the most downloaded free app in the U.S. — but its swift rise to the top of the app store charts has raised potent privacy concerns at a time when the U.S. is banningTikTokover its ties to the Chinese government.
Like most apps, DeepSeek requires you to agree to its privacy policy when you sign up to access it — but you probably don't read it.
SEE ALSO: What AI experts are saying about DeepSeek R1In summary, "DeepSeek’s privacy policy, which can be found in English, makes it clear: user data, including conversations and generated responses, is stored on servers in China," Adrianus Warmenhoven, a cybersecurity expert at NordVPN, said in a statement. "This raises concerns because of data collection outlined — ranging from user-shared information to data from external sources — which falls under the potential risks associated with storing such data in a jurisdiction with different privacy and security standards."
It collects "Information You Provide"
Profile information like date of birth, username, email address, telephone number, password
The text, audio, prompt, feedback, chat history, uploaded files, and other content you provide to DeepSeek
Information when you contact them, like proof of identity or age and feedback or inquiries
It collects "Automatically Collected Information"
Internet and other network activity information like your IP address, device identifier, and cookies
Technical information like your device model, operating system, keystroke patterns or rhythms, IP address, system language, diagnostic and performance information, and an automatically assigned device ID and user ID
Usage information like the features you use
Payment information, which is self-explanatory
It collects "Information from Other Sources"
Log-in, sign-up, or linked services and accounts, like if you sign up using Google or Apple
Advertising measurement and other partners share user information with DeepSeek, such as what you've bought at their stores
DeepSeek's privacy policy states that it collects "keystroke patterns or rhythms," which might seem unusual but not completely uncommon. For instance, TikTok collects the same information, while Instagram does not.
DeepSeek didn't immediately respond to a request for clarification from Mashable, but there's a bit unknown regarding its keystroke data collection. We don't know what DeepSeek will do with the information. For its part, TikTok has said that collecting "keystroke patterns or rhythms" specifically refers to the timing of when keys are pressed — not the specific keys that are pressed. This creates a form of biometric identification that makes one user different from another. TikTok told Snopesthat this practice is "fundamentally" different from keylogging, a type of monitoring originally developed in the mid-1970s by the Soviet Union that's still used today by hundreds of popular sites.
SEE ALSO: Could Trump ban DeepSeek? What the TikTok ban saga tells us.Nicky Watson, the co-founder and chief architect of consent management platform Syrenis, told Mashable that "the biometrics space is growing rapidly, and the accuracy [at which] it can verify identities is unmatched."
"However, with more companies collecting biometrics, a whole new set of data privacy and security risks need to be addressed, including security breaches, identity theft, impersonation, and fraud. Biometrics' inability to be revoked or reset, unlike compromised passwords, makes it a much higher-stakes form of identification," Watson said.
It uses all this information for various purposes, like ensuring it sends users relevant advertising and notifying them about changes to its services, which is pretty typical. But it will also "comply with our legal obligations, or as necessary to perform tasks in the public interest, or to protect the vital interests of our users and other people." Moreover, its "corporate group" can access its data and share information with law enforcement agencies.
Many companies include that blanket statement in their privacy policies, but DeepSeek's data is stored "in secure servers located in the People's Republic of China." China has some notable legal requirements under its cybersecurity and privacy laws, including laws that demand tech companies cooperate with national intelligence efforts. This, combined with the current TikTok ban, leads to propaganda fears. For example, you can't ask DeepSeek questions about the 1989 Tiananmen Square massacre.
"DeepSeek’s privacy policy openly states that the wide array of user data they collect goes to servers in China," Watson said. "This alone raises big questions about how that data could be used beyond just running the app. It’s so easy to get swept up in the hype of a new trending AI tool and accept the terms of use without thinking twice, but this privacy policy should make users stop and ask: Am I giving away private details like my location, browsing activity, or even personal messages without realizing it?"
WIRED reviewed the website's activityand found that DeepSeek appears to send data to Baidu Tongji, the widely used web analytics tool owned by Chinese tech giant Baidu, and the Chinese internet infrastructure firm Volces, among other companies.
It's easy to ignore the importance of data security. At its core, reading through the fine print of privacy terms and conditions can be remarkably boring, which is precisely what makes it so dangerous. DeepSeek is subject to government access under China's cybersecurity laws, which mandate that companies provide access whenever the Chinese government demands it. We don't know how many AI models are trained or how they operate, and that's concerning, too, especially if your data could be misused or maliciously exploited.
SEE ALSO: Apple opens up about Siri privacy in wake of lawsuitPlus, you don't want your identity stolen. You don't want your bank account information in the wrong hands. Let's say you give an abundant amount of personal information to a chatbot or use a credit card to pay for it, and that data is stored by the company and later hacked or improperly shared — you could be in trouble. In a situation like that, at best, it's reallyannoying to change your passwords; at worst, you're out of your life's savings. A company like DeepSeek, or even Meta or OpenAI, might not actively steal your information to take your identity. Still, cyberattacks happen — and if they're hosting your data, your data can be taken. Just yesterday, DeepSeek faced "large-scale malicious attacks,"which forced the company to temporarily limit new registrations.
"There is always the risk of cyberattacks," Warmenhoven said. "As AI platforms become more sophisticated, they also become prime targets for hackers looking to exploit user data or the AI itself. With the rise of deepfakes and other AI-driven tools, the stakes are higher than ever."
"It shouldn’t take a panic over Chinese AI to remind people that most companies in the business set the terms for how they use your private data," John Scott-Railton, a senior researcher at the University of Toronto’s Citizen Lab, told WIRED. "And that when you use their services, you’re doing work for them, not the other way around."
Safeguarding your data from DeepSeek is probably a good idea — but experts urge users not to stop there.
"To mitigate these risks, users should adopt a proactive approach to their cybersecurity," Warmenhoven suggested. "This includes scrutinizing the terms and conditions of any platform they engage with, understanding where their data is stored and who has access to it."
However, ultimately, it shouldn't be up to an individual. As F. Mario Trujillo, a staff attorney for the Electronic Frontier Foundation, told Mashable, "When you type intimate thoughts and questions to a chatbot or search engine, that content should be protected and not be unnecessarily used or shared. The best way to do that is to enact strong data privacy laws that apply to all companies, whether it be Google, OpenAI, TikTok, or DeepSeek."
Protecting your privacy shouldn’t be up to you alone. Stronger data privacy laws would help everyone, whether it concerns apps located in China or apps with similarly questionable data privacy laws in the U.S., like Meta and OpenAI.
This story has been updated to add more context and clarity about the data DeepSeek allegedly sends to other companies, specifically about Baidu Tongji.
Topics Artificial Intelligence Privacy DeepSeek
Disney has reportedly joined the Facebook ad boycottSeth Rogen slipped into Donald Trump Jr.'s DMs to ask for his dad to resignSave up to 30% on select products from The Home Depot and upgrade your learning spaceDeFi could become the next big thing in financeFitbit sponsors Timberwolves, becomes NBA's first official wearable5 potential Trump theme songs as sung by his lawyer's '70s rock cover band'Breatharian' couple magically defies biology, subsists only on clicks and BS'Father Soldier Son' is wellZuckerberg criticizes Trump response to coronavirus in Fauci Q&AAmazon rolls out little delivery robot to more cities8 essential keyboard tips every iPhone owner should know'Ghost of Tsushima' is a triumph in video game storytelling: ReviewTV news reporter dies after being ejected from Revel mopedBitcoin hasn't hit $500K, so now John McAfee has to eat his own...well, just clickAmazon finally confirms Prime Day is delayed'Ghost of Tsushima': How to master the virtual samurai waysNew emoji in iOS 14 include ninja and pinched fingersBeyoncé's dad tweeted about the twins and is probably having a great Father's Day'Ghost of Tsushima': How to master the virtual samurai waysSnapchat says it is 'actively going after' political ads as revenue YouTube will be slower if you're using an ad blocker Staff Picks: Dopamine, Magazines, and Exhaustive Guides from A to Z by The Paris Review NYT's The Mini crossword answers for January 15 Time Puts Its Stamp on Everything by Eileen Myles Remembering Janet Malcolm by Katie Roiphe The Winners of 92Y’s 2021 Discovery Poetry Contest by The Paris Review Cooking with Sigrid Undset by Valerie Stivers How to watch Texas vs. WVU basketball livestreams: game time, streaming deals, and more The Voice of ACT UP Culture by Sarah Schulman Redux: Have No Mercy, Gardener by The Paris Review Flower Moon by Nina MacLaughlin Watching 'True Detective: Night Country'? Chase it with this 'X Diving into the Text by Emilio Fraia The Travels of a Master Storyteller by Yasmine Seale Announcing Our Summer Issue by The Paris Review Watch a Conversation between Eloghosa Osunde and Akwaeke Emezi by The Paris Review The 'Mean Girls' directors break down how social media shaped their movie musical Artifact news app is shutting down, one year post The complete list of winners at the 2024 Critics' Choice Awards Celebrating Juneteenth in Galveston by Clint Smith
1.2068s , 10157.3203125 kb
Copyright © 2025 Powered by 【2000 Archives】,Evergreen Information Network