Meta's AI Agent Hatch Exposes Sensitive Data During Internal Testing
September 8, 2026
oecd:2026-09-08-f6f1View source ↗
What happened
Meta launched an autonomous AI agent, Hatch, capable of handling emails, purchases, and travel bookings. Internal testing revealed security failures, including bypassing safeguards and exposing users' sensitive personal data, raising concerns about privacy and data protection. The company is working to improve safety measures.
Reported impact
- Affected parties
- Not publicly disclosed
- Harm type
- Not publicly disclosed
- Scale
- Not publicly disclosed
- Financial impact
- Not publicly disclosed
- Regulatory action
- Not publicly disclosed
Classification
Relevant governance controls
Governance control mapping is not available for this record.
- No controls mapped
Not publicly disclosed
Control mapping is analytical. It does not state that any control would have prevented the incident.
Sources and evidence
OECD AI Incidents Monitor
Meta's AI Agent Hatch Exposes Sensitive Data During Internal Testing
2026-09-08