Close Menu
News Frame For You — Latest Updates on AI, Sports, Europe, Asia & Business
  • Home
  • AI
  • Asia
  • Business
  • Education
  • Europe
  • Life & Style
  • Sports
  • USA
  • Store

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

What's Hot

Arizona the new No. 1 in AP Top 25 men’s basketball poll

December 8, 2025

Can Southeast Asia cope with record-breaking storms? | Climate Crisis

December 8, 2025

Police describe arrest of Luigi Mangione, suspected in killing of UHC CEO

December 8, 2025
Facebook X (Twitter) Instagram
News Frame For You — Latest Updates on AI, Sports, Europe, Asia & Business
  • Home
  • About Us
  • Advertise With Us
  • Contact us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • Home
  • AI
  • Asia
  • Business
  • Education
  • Europe
  • Life & Style
  • Sports
  • USA
  • Store
News Frame For You — Latest Updates on AI, Sports, Europe, Asia & Business
Home » Google details security measures for Chrome’s agentic features
AI

Google details security measures for Chrome’s agentic features

adminBy adminDecember 8, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


An increasing number of browsers are experimenting with agentic features that will take actions on your behalf, such as booking tickets or shopping for different items. However, these agentic capabilities also come with security risks that could lead to loss of data or money.

Google detailed its approach to handling user security on Chrome using observer models and consent for user action. The company previewed agentic capabilities on Chrome in September and said these features will roll out in the coming months.

The company said it is using the help of a few models to keep agentic actions in check. Google said it built a User Alignment Critic using Gemini to scrutinize the action items built by the planner model for a particular task. If the critic model thinks that the planned tasks don’t serve the user’s goal, it asks the planner model to rethink the strategy. Google noted that the critic model only sees the metadata of the proposed action and not the actual web content.

A pair of screenshots showing what Chrome's agent model can see from a website.
Image Credits: Google

What’s more, to prevent agents from accessing disallowed or untrustworthy sites, Google is using Agent Origin Sets, which restrict the model to access read-only origins and read-writeable origins. Read-only origin is data that Gemini is permitted to consume content from. For instance, on a shopping site, the listings are relevant to the task, but banner ads aren’t. Similarly, Google said the agent is only allowed to click or type on certain iframes of a page.

“This delineation enforces that only data from a limited set of origins is available to the agent, and this data can only be passed on to the writable origins. This bounds the threat vector of cross-origin data leaks. This also gives the browser the ability to enforce some of that separation, such as by not even sending to the model data that is outside the readable set,” the company said in a blog post.

Google is also keeping a check on page navigation by investigating URLs through another observer model. This can prevent navigation to harmful model-generated URLs, the company said.

A screenshot showing Chrome's agent model asking user permission before paying for an item while shopping.
Image Credits: Google

The search giant said that it is also handing over the reins to users for sensitive tasks. For instance, when an agent tries to navigate to a sensitive site with information like banking or your medical data, it first asks the user. For sites that require sign-in, it’ll ask the user for permission to let Chrome use the password manager. Google said that the agent’s model doesn’t have exposure to password data. The company added that it will ask users before taking actions like making a purchase or sending a message.

Techcrunch event

San Francisco
|
October 13-15, 2026

Google said that, in addition to this, it also has a prompt-injection classifier to prevent unwanted actions and is also testing agentic capabilities against attacks created by researchers.

AI browser makers are also paying attention to security. Earlier this month, Perplexity released a new open-source content detection model to prevent prompt injection attacks against agents.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

You can buy your Instacart groceries without leaving ChatGPT

December 8, 2025

‘ONE RULE’: Trump says he’ll sign an executive order blocking state AI laws despite bipartisan pushback

December 8, 2025

OpenAI boasts enterprise win days after internal ‘code red’ on Google threat

December 8, 2025
Leave A Reply Cancel Reply

Don't Miss
Sports

Arizona the new No. 1 in AP Top 25 men’s basketball poll

Arizona took over the top spot in the AP Top 25 men’s college basketball poll…

Can Southeast Asia cope with record-breaking storms? | Climate Crisis

December 8, 2025

Police describe arrest of Luigi Mangione, suspected in killing of UHC CEO

December 8, 2025

Bessent divests soybean farmland holdings ahead of Trump farm aid

December 8, 2025
Top Posts

Can Southeast Asia cope with record-breaking storms? | Climate Crisis

December 8, 2025

India travel chaos: Are pilots overworked compared to other countries? | Aviation News

December 8, 2025

Indonesia counts human cost as more climate change warnings sounded | Environment News

December 8, 2025

IndiGo battles passenger fury over lost luggage chaos | Aviation News

December 8, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

About Us
About Us

Welcome to News Frame For You — Your Window to the World! 🌍

At News Frame For You, we bring you the latest and most reliable updates from across the globe, focusing on what truly shapes our modern world. From cutting-edge AI innovations to thrilling sports moments, from the heart of Europe’s business scene to the pulse of Asia’s emerging markets, we frame the news that matters to you — clearly, quickly, and intelligently.

Our Picks

Arizona the new No. 1 in AP Top 25 men’s basketball poll

December 8, 2025

Can Southeast Asia cope with record-breaking storms? | Climate Crisis

December 8, 2025

Police describe arrest of Luigi Mangione, suspected in killing of UHC CEO

December 8, 2025
Most Popular

Laude Institute announces first batch of ‘Slingshots’ AI grants

November 7, 2025

Sam Altman says OpenAI has $20B ARR and about $1.4 trillion in data center commitments

November 7, 2025

Amazon launches an AI-powered Kindle Translate service for e-book authors

November 7, 2025
  • Home
  • About Us
  • Advertise With Us
  • Contact us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
© 2025 newsframeforyou. Designed by newsframeforyou.

Type above and press Enter to search. Press Esc to cancel.