Close Menu
  • Home
  • AI
  • Art & Style
  • Economy
  • Entertainment
  • International
  • Market
  • Opinion
  • Politics
  • Sports
  • Trump
  • US
  • World
What's Hot

Months of search for fugitive Sovereign Desi Freeman ends in police shooting

March 30, 2026

Roberto De Zerbi: Former Brighton manager intends to join Tottenham Hotspur immediately as new head coach | Soccer News

March 30, 2026

President Trump’s “favorite thing” is Iranian oil

March 30, 2026
Facebook X (Twitter) Instagram
WhistleBuzz – Smart News on AI, Business, Politics & Global Trends
Facebook X (Twitter) Instagram
  • Home
  • AI
  • Art & Style
  • Economy
  • Entertainment
  • International
  • Market
  • Opinion
  • Politics
  • Sports
  • Trump
  • US
  • World
WhistleBuzz – Smart News on AI, Business, Politics & Global Trends
Home » Google details security measures for Chrome’s agent function
AI

Google details security measures for Chrome’s agent function

Editor-In-ChiefBy Editor-In-ChiefDecember 8, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email


More and more browsers are experimenting with agent features that perform actions on your behalf, such as booking tickets or shopping for various items. However, these agent features also come with security risks that can lead to loss of data and money.

Google detailed its approach to handling user security in Chrome using the observer model and user action consent. The company previewed agent features on Chrome in September and said these features will be rolled out in the coming months.

The company said it utilizes several models to constrain agent actions. Google said it built the User Alignment Critic using Gemini to vet action items built by planner models for specific tasks. If the critic model determines that the planned task is not achieving the user’s objectives, it asks the planner model to reconsider its strategy. Google pointed out that the critic model only looks at the metadata of the proposed action, not the actual web content.

Image credit: Google

Additionally, to prevent agents from accessing unauthorized or untrusted sites, Google uses agent origin sets. This restricts the model to access read-only and read-write origins. Read-only origins are data that Gemini is allowed to consume content from. For example, on a shopping site, lists are task-related, but banner ads are not. Similarly, Google said agents are only allowed to click or enter specific iframes on pages.

“This boundary forces that only data from a limited set of origins is available to the agent, and that this data is passed only to writable origins. This limits the threat vector of cross-origin data leakage. It also gives browsers the ability to enforce some of the isolation, such as not even sending data outside of the readable set to the model,” the company said in a blog post.

Google also continues to check page navigation by inspecting URLs through a separate observer model. The company says this prevents navigation to harmful URLs generated by the model.

Image credit: Google

The search giant also said it is handing the reins of sensitive tasks to users. For example, when an agent attempts to navigate to a sensitive site containing information such as banking or medical data, it first asks the user questions. For sites that require sign-in, ask users for permission to use a password manager in Chrome. Google said this agent model is not exposed to password data. The company added that it asks users questions before taking actions such as making a purchase or sending a message.

tech crunch event

san francisco
|
October 13-15, 2026

In addition to this, Google said it also has a prompt injection classifier to prevent unwanted actions, and is also testing agent functionality against attacks created by researchers.

AI browser makers are also paying attention to security. Earlier this month, Perplexity released a new open-source content detection model to prevent instant injection attacks against agents.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Editor-In-Chief
  • Website

Related Posts

Why OpenAI really shut down Sora

March 29, 2026

Sora shutdown could be a reality check moment for AI video

March 29, 2026

Bluesky tackles AI with Attie, an app that creates custom feeds

March 28, 2026
Add A Comment

Comments are closed.

News

Republican Mace says sending U.S. troops to Iran must be approved by Congress | U.S.-Israel war against Iran News

By Editor-In-ChiefMarch 29, 2026

Republican U.S. Representative Nancy Mace said Congress should have a say in any decisions about…

‘Nowhere is truly safe’: Iranian dissidents grapple with US war in Iran | US and Israel’s war against Iran News

March 29, 2026

Vice President J.D. Vance tops CPAC straw poll and becomes U.S. president in 2028 | Election News

March 28, 2026
Top Trending

Why OpenAI really shut down Sora

By Editor-In-ChiefMarch 29, 2026

OpenAI’s decision last week to shut down its AI video generation tool…

Sora shutdown could be a reality check moment for AI video

By Editor-In-ChiefMarch 29, 2026

OpenAI announced this week that it is shutting down its Sora app…

Bluesky tackles AI with Attie, an app that creates custom feeds

By Editor-In-ChiefMarch 28, 2026

Bluesky’s team built another app. This time, it’s not a social network,…

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Welcome to WhistleBuzz.com (“we,” “our,” or “us”). Your privacy is important to us. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website https://whistlebuzz.com/ (the “Site”). Please read this policy carefully to understand our views and practices regarding your personal data and how we will treat it.

Facebook X (Twitter) Instagram Pinterest YouTube

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Advertise With Us
  • Contact US
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
  • About US
© 2026 whistlebuzz. Designed by whistlebuzz.

Type above and press Enter to search. Press Esc to cancel.