In a recent development, Microsoft’s Recall feature has come under scrutiny for its ongoing collection of sensitive information, including credit card and social security numbers. Despite the introduction of a setting designed to prevent the harvesting of such data, reports indicate that Recall continues to capture this information, raising significant privacy concerns among users.
Microsoft initially aimed to integrate Recall as a central component of the Copilot+ experience. However, following substantial backlash regarding privacy issues, the company opted to delay the rollout to address these concerns. Now, as Recall makes its return, it appears that the feature is still not fully compliant with user privacy preferences, as it continues to collect private data even when instructed not to do so.
Privacy Concerns Persist
As highlighted by Avram Piltch from Tom’s Hardware, the functionality of Recall is not living up to its promises. The feature includes a toggle setting intended to prevent the collection of sensitive information, a response to previous complaints about its indiscriminate data capture. However, evidence suggests that this setting does not always function as intended.
In a demonstration, Piltch noted that when entering a credit card number alongside a fictitious username and password in a Windows Notepad window, Recall still managed to capture the sensitive information. Similarly, while filling out a loan application PDF in Microsoft Edge, Recall recorded a social security number, name, and date of birth, despite the presence of the new privacy controls.
Interestingly, it appears that Recall may rely on contextual cues from websites rather than merely the content of a Notepad window. In a test involving a self-created website for payment details, Recall successfully captured the data entered. However, it did refrain from recording credit card information when used on legitimate payment platforms such as Pimoroni and Adafruit, indicating some level of detection capability.
While Microsoft is making strides to improve Recall, the persistence of these privacy issues suggests that users should exercise caution and discretion when utilizing the feature. The balance between innovation and user privacy remains a critical challenge for the tech giant as it navigates these complex waters.