XOOMAR
Screen displaying ChatGPT examples, capabilities, and limitations.
TechnologyAugust 16, 2026· 5 min read· By XOOMAR Insights Team

ChatGPT Secretly Logs Your Keystrokes On Mac Apps

Share
Updated on August 17, 2026

What if the AI you ask for help could watch everything you do first so it already knows the right answer?

XOOMAR Intelligence

Analyst Take

71/ 100
High
4 sources analyzedMedium confidenceTrend10Freshness99Source Trust88Factual Grounding88Signal Cluster40

That's the unsettling proposition behind ChatGPT's Computer History, a new opt-in feature in the desktop app for Mac users that logs clicks, keystrokes, and app switches to build a searchable timeline of a user's activity, according to The Verge. It's a feature that changes ChatGPT from a tool you consult into a persistent background process that observes your digital workday.

The core mechanism is simple: the app uses macOS's accessibility system — the same permissions infrastructure exploited in the recent Apple spyware alerts in 110 countries — to record your interaction events. It captures clicks, keystrokes, keyboard shortcuts, and app switches. OpenAI says it does not capture screenshots, screen recordings, microphone input, or system audio. Activity in private browser tabs is ignored.

These raw events are stored locally for up to 48 hours, then periodically sent to OpenAI's servers where a short-lived AI agent (Codex) summarizes them into a text "memory" file. This plaintext Markdown file is saved back to your Mac. The resulting timeline groups summaries by day and time, showing which apps were involved.

Why Is This More Than Just a Fancy Log?

On the surface, Computer History is a productivity booster. It lets you ask things like "what was I working on Tuesday?" or "show me the last document I edited" and get an accurate answer because ChatGPT has a memory of your actions, not just your chats. It can even spot repeatable workflows and suggest automations, echoing the type of AI inference mishaps seen with unpredictable smart home devices.

The deeper shift is from AI as a reactive tool to AI as an ambient observer. ChatGPT is no longer waiting for you to describe a problem; it is building a continuous model of your work from which it can infer problems and opportunities you haven't even articulated. As we’ve seen in OpenAI's push into premium business plans, other AI-driven efforts to improve daily tasks like taking better pet photos, and even Synchrony hijacking ChatGPT for credit offers, the company is betting that deeper integration, not just smarter chatting, is the path to enterprise value.


What Does OpenAI's Own Documentation Warn You About?

The privacy trade-offs are significant, and OpenAI's own documentation highlights them.

First, the memory files this creates are stored on your Mac as unencrypted plaintext. This means any other program running under the same macOS user account could potentially read your activity summaries. On a personally managed Mac, that's a minor concern. On a company-owned or shared device, it's a data exposure vector that most current IT policies aren't equipped to handle.

Second, OpenAI flags an elevated prompt injection risk. Because Computer History captures content from apps and websites, malicious instructions embedded in a webpage or document could be recorded and later influence ChatGPT's behavior. They recommend excluding apps where you browse untrusted content.

OpenAI also warns against using the feature with communication apps unless everyone in the conversation has given explicit consent. For apps that handle sensitive health, financial, or personal data, OpenAI recommends pausing recording or excluding those apps entirely.

Third, activation is a multi-layered opt-in. For Business and Enterprise workspaces, an administrator must enable the feature first. Then, each individual user must also consent. The feature is currently unavailable in the European Economic Area, Switzerland, and the United Kingdom.


Who Should Actually Turn It On?

The utility versus risk calculation breaks down along clear lines.

  • Turn it on if: You use ChatGPT for personal productivity on a personally managed Mac, and you can confidently exclude any apps holding sensitive data (financial, client, health info).
  • Leave it off or be extremely selective if: Your work involves regulated or confidential data. The unencrypted local storage creates a real risk, especially on managed corporate devices. This is a scenario where the convenience of an AI assistant could introduce security vulnerabilities, similar to the issues that can arise when proprietary prompts are exposed.

For professionals, the critical step is reviewing the app inclusion list in Settings and removing any application where sensitive work occurs. If you're on a Business or Enterprise plan, check whether your admin has enabled it and understand your organization's stance before opting in.


Where Does This Lead? From Feature to Foundation

Computer History is not just another checkbox in settings. It's a foundational experiment in making the AI a layer of the personal computing environment itself. Its true test won't be whether people use it, but what behaviors it changes.

For the user, it creates a potential for radical efficiency. It also introduces a subtle pressure: the feeling of working under observation, which could shift open-ended exploration into logged, metrics-driven activity. Will an AI that knows your every digital move become the perfect assistant or a subtle governor of your workflow?

For OpenAI, it's a move toward creating immense switching costs. An AI that learns your deepest, most personal workflows becomes harder to replace than one that just answers your questions. It directly ties the company's growth to becoming an indispensable, intimate layer of your daily work, a strategy reflected in its aggressive revenue growth targets.

For the industry, Computer History is a shot across the bow. It shows what a tightly integrated AI-agent future looks like on the desktop. The question now is who follows, and how quickly. Will Apple, Google, and Microsoft respond with their own deeply integrated observation systems, or will they champion a different, perhaps more privacy-preserving, architectural approach like the on-device processing seen in some emerging models?

The final calculation is personal, and it's active. Enabling Computer History means blurring the line between using a tool and forming a symbiotic relationship with a digital entity that knows your work habits intimately. The value will be measured not just in minutes saved, but in the personal and professional cost of that intimacy. Watch closely to see if the initial quiet acceptance of this feature holds, or if a backlash builds as more users discover what their new digital shadow truly means.

Impact Analysis

  • Introduces unprecedented surveillance capabilities directly into the daily tools consumers already trust, creating new privacy and security vulnerabilities at scale.
  • Represents a fundamental shift from reactive AI assistants to proactive background observers, potentially altering workplace dynamics and autonomy without employee input.
  • Raises critical questions about data ownership and use—activity logs are sent to OpenAI’s servers, blurring the line between local utility and corporate data harvesting.
XOOMAR

Written by

XOOMAR Insights Team

Research and Editorial Desk

The XOOMAR Insights Team pairs automated research with human editorial judgment. We track hundreds of sources across technology, fintech, trading, SaaS, and cybersecurity, cross-check the facts, and explain what happened, why it matters, and what to watch next. We do not just rewrite headlines. Every article is fact-checked and scored for reliability before it goes live, and we link back to the original sources so you can verify anything yourself.

Related Articles

Editorial image showing a classic news archive being intersected by a radiant AI data stream in a sleek tech environment.Technology

Two Newspapers Sue OpenAI for Scraping Paywalled News

The Seattle Times and Newsday sued OpenAI and Microsoft, alleging they scraped paywalled news to train AI and are now destroying the very local journalism that

Sep 7, 20268 min
A dimly lit home study setup with laptop displaying coding notes on a hollow square pattern.Technology

OpenAI Astra Shocks Mathematicians, Solves 10 Problems

OpenAI's Astra AI model has independently solved ten significant, career-defining math problems, directly challenging the prestige economy of academia and forci

Aug 22, 20266 min
Cinematic tech hub showing AI neural networks on screens surrounded by offline servers in a futuristic environment.Technology

Publishers Sue to Obliterate AI Models Trained on Their Work

The Seattle Times and Newsday sued OpenAI and Microsoft for copyright infringement, alleging AI models illegally scraped paywalled articles and can reproduce th

Sep 6, 20265 min
Close-up of a Macintosh Classic computer, showcasing vintage technology and nostalgia.Technology

AT&T Slashed AI Spending 56% by Ditching ChatGPT

AT&T slashed its AI costs by over half by routing most tasks to cheaper, open-source models, accepting a tiny performance dip for massive savings.

Aug 20, 20266 min
Futuristic AI hub with glowing neural networks, sleek tech environment, cinematic lighting.Technology

Instagram AI Agent Leaks Weeks From Public Launch

Meta plans to launch its Hatch AI agent directly inside Instagram within weeks, banking on its billions of users instead of raw technical power to challenge com

Aug 31, 20264 min
A glowing digital shield protects a strategic infrastructure node within an abstract, cinematic network security landscape.Cybersecurity

OpenAI Infiltrates U.S. Defense With $1 Billion Credits

OpenAI is deploying $1 billion in credits to embed its Daybreak AI into America's critical infrastructure, a strategic move to dominate the future of national c

Sep 4, 20267 min
A line of sleek, identical autonomous taxis sit parked ominously on a wet, foggy urban street at dusk.Future Fiction

How Autonomous Cabs Kill Your Jobs and Replace Human Faces

The horror of robotaxis isn't their novelty, but their sudden normalcy. They've become walking symbols of AI job displacement, Big Tech surveillance, and machin

Sep 6, 20267 min
A futuristic tech workspace with a central glowing AI neural core and holographic screens, representing advanced reasoning capabilities.Technology

China's AI Espionage Targets Claude's Firmware

Anthropic has exposed Chinese AI labs Alibaba, Moonshot AI, and DeepSeek for running a sustained industrial campaign to extract the core reasoning capabilities

Sep 11, 20267 min
Futuristic innovation hub with a glowing AI neural network hologram surrounded by data screens and circuit visualizations.Technology

Nvidia's $680 Billion Revenue Target Stuns Market

Nvidia CEO Jensen Huang projects revenue will surge to $680 billion next year, asserting the company is the indispensable foundation of the entire AI industry.

Sep 11, 20268 min
A futuristic tech hub with glowing AI neural networks and holographic data under dramatic cinematic lighting.Technology

Elon Musk Dismisses Anthropic AI Warnings as Psyop

Anthropic insiders warn of a >10% chance AI causes human extinction, triggering a public feud with Elon Musk, who dismisses their concerns as a manipulative 'ps

Sep 10, 20266 min

Don't miss the signal

Get our weekly roundup of the stories that matter across tech, fintech, and trading. No noise, just signal.

Free forever. No spam. Unsubscribe anytime.