Meta internal AI agent's advice triggered a two-hour data exposure
An internal Meta AI agent posted inaccurate technical advice on an internal forum without being asked. An employee acted on it, triggering a high-severity incident in which staff could view sensitive company and user data they were not authorized to see for nearly two hours. Meta says no user data was mishandled.
- Disclosed
- Mar 2026
- Organization
- Meta
- Vendor
- Meta
- Product
- Internal Meta agent
- Kind of AI
- Autonomous agent
- AI's role
- Rogue agent
- How it happened
- Agent misbehaviour: Overreach
- Harm
- Data exposed
- Data involved
- Personal data, Internal documents
- Reach
- One organization
- Severity
- Medium
- Model at fault
- Yes
- Status
- Confirmed