Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Critical infrastructure giant Itron says it was breached

OpenAI ends Microsoft’s legal risk over $50 billion Amazon deal

Investors back Skye’s AI home screen app for iPhone ahead of launch

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    OpenAI ends Microsoft’s legal risk over $50 billion Amazon deal

    28 April 2026

    China blocks Meta’s $2 billion deal with Manus after months-long investigation

    27 April 2026

    DeepSeek previews new AI model that ‘closes the gap’ with frontier models

    27 April 2026

    Why Cohere is merging with Aleph Alpha

    26 April 2026

    OpenAI CEO apologizes to Tumbler Ridge community

    26 April 2026
  • Apps

    Investors back Skye’s AI home screen app for iPhone ahead of launch

    28 April 2026

    Spotify’s next frontier: fitness content

    27 April 2026

    Meta is revamping its cross-app management system

    27 April 2026

    Instagram is testing a new ‘Instants’ app for sharing photos that disappear

    26 April 2026

    Apps that distract you from the endless cycle of scrolling

    26 April 2026
  • Crypto

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025

    Why Benchmark Made a Rare Crypto Bet on Trading App Fomo, with $17M Series A

    6 November 2025

    Solana co-founder Anatoly Yakovenko is a big fan of agentic coding

    30 October 2025
  • Fintech

    Steve Ballmer slams founder he backed, who pleaded guilty to fraud: ‘I was cheated and I feel stupid’

    25 April 2026

    Salmon raises $100 million in equity and debt to bring digital credit to unbanked Filipinos

    24 April 2026

    Cash App targets a new type of customer: children aged 6 to 12 years

    22 April 2026

    Revolut eyes up to $200 billion valuation in potential IPO

    22 April 2026

    Once close enough for a takeover, Stripe and Airwallex are now going after each other

    18 April 2026
  • Hardware

    OpenAI could be building a phone with AI agents that replace apps

    28 April 2026

    SpeakOn’s dictation device is a good idea marred by platform limitations

    27 April 2026

    What Tim Cook Built | TechCrunch

    27 April 2026

    Apple under Ternus: what’s next for the tech giant’s hardware strategy

    26 April 2026

    In another crazy turn for AI chips, Meta signs deal for millions of Amazon AI processors

    25 April 2026
  • Media & Entertainment

    India’s app market is booming — but global platforms are raking in most of the profits

    23 April 2026

    YouTube extends its AI similarity detection technology to celebrities

    21 April 2026

    Deezer says 44% of songs uploaded to its platform every day are created with artificial intelligence

    20 April 2026

    Netflix plans to add a vertical video stream, use AI for recommendations

    17 April 2026

    Netflix co-founder and chairman Reed Hastings is stepping down from the board

    17 April 2026
  • Security

    Critical infrastructure giant Itron says it was breached

    28 April 2026

    The hacker who allegedly carried out cyberattacks for China is extradited to the US

    27 April 2026

    UK government says 100 countries have spyware that can hack people’s phones

    25 April 2026

    Surveillance vendors caught abusing telecom access to track people’s phone locations, investigators say

    25 April 2026

    Another spyware maker was caught distributing fake Android tracking apps

    24 April 2026
  • Startups

    Lachy Groom to back Indian startup Pronto at $200m valuation, sources say

    26 April 2026

    Why Tokyo is the most important tech destination of 2026

    25 April 2026

    From Stage to Future: Where Are Startup Battlefield Alumni Now?

    25 April 2026

    Don’t stop hiring people – stop hiring the wrong people, says Artisan founder

    24 April 2026

    Redwood Materials loses COO amid layoffs, restructuring

    24 April 2026
  • Transportation

    TechCrunch Mobility: Elon’s Acceptance | TechCrunch

    27 April 2026

    Production of the Rivian R2 has begun despite tornado damage at the factory

    25 April 2026

    Porsche is adding an all-electric Cayenne coupe to its lineup

    24 April 2026

    Tesla’s Q1 revenue rises, driven by EV sales and FSD subscriptions

    24 April 2026

    Tesla withdraws Musk’s $29 billion ‘interim’ award after Delaware court restores bigger pay package

    23 April 2026
  • Venture

    Stanford freshmen who want to rule the world. . . he will probably read this book and try even harder

    27 April 2026

    India’s Snabbit is seeking fresh funding at a $400 million valuation, sources say

    25 April 2026

    ComfyUI hits $500M valuation as creators seek more control over AI-generated media

    25 April 2026

    The first StrictlyVC of 2026 starts in one week in San Francisco

    23 April 2026

    Esther and Anne Wojcicki support new healthcare accelerator, fund

    23 April 2026
  • Recommended Essentials
TechTost
You are at:Home»AI»A Meta AI security researcher said an OpenClaw agent ran into her inbox
AI

A Meta AI security researcher said an OpenClaw agent ran into her inbox

techtost.comBy techtost.com24 February 202604 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
A Meta Ai Security Researcher Said An Openclaw Agent Ran
Share
Facebook Twitter LinkedIn Pinterest Email

THE now-viral X post Meta AI security researcher Summer Yue reads, at first, like satire. She told her OpenClaw AI agent to check her overflowing inbox and suggest what to delete or archive.

The agent went on a rampage. She began deleting all her emails in a “speed run” while ignoring commands from her phone telling her to stop.

“I had to RUN to my Mac mini like defusing a bomb,” she wrote, posting images of the ignored stop prompts as proof.

The Mac Mini, an affordable Apple computer that sits flat on a desk and fits in the palm of your hand, has become the go-to device these days for running OpenClaw. (The Mini is selling “like hotcakes,” a “confused” Apple employee apparently said Famous AI researcher Andrej Karpathy when he bought one to run an OpenClaw alternative called NanoClaw.)

OpenClaw is, of course, the open source AI agent that rose to fame through Moltbook, an AI-only social network. OpenClaw agents were at the center of that largely debunked Moltbook episode in which AIs appeared to conspire against humans.

But OpenClaw’s mission, according to her GitHub pageit is not focused on social networks. It aims to be a personal AI assistant that runs on your own devices.

The Silicon Valley crowd has fallen so in love with OpenClaw that “claw” and “claws” have become the buzzwords of choice for agents operating with personal hardware. Other such factors include; ZeroClaw, IronClawand PicoClaw. Y Combinator’s podcast team even appeared on theirs latest episode dressed in lobster suits.

Techcrunch event

Boston, MA
|
June 9, 2026

But Yue’s post serves as a warning. As others have noted on X, if an AI security researcher could tackle this problem, what hope do mere mortals have?

“Did you test his guardrails on purpose or did you make a rookie mistake?” a software developer asked her at X.

“Rookie mistake tbh,” she replied. She was testing her agent with a smaller inbox “game,” as she called it, and it worked well on less important emails. He had earned her trust, so he figured he’d let it slip away from the real thing.

Yue believes the sheer volume of data in her actual inbox “caused compression,” she wrote. Condensation occurs when the context window—the current record of everything the AI ​​has said and done in a session—grows too large, forcing the agent to begin summarizing, compressing, and managing the conversation.

At that point, the AI ​​can override instructions that the human deems too important.

In this case, he may have skipped the last prompt – where he was told not to act – and reverted to his instructions from the “game” inbox.

As did several others at X pointed out, messages are not reliable to act as guardrails. Models may misinterpret or ignore them.

Various people offered suggestions ranging from the exact syntax Yue should have used to stop the agent, to various methods to ensure better adherence to the guardrails, such as writing instructions in special files or using other open source tools.

In the interest of full transparency, TechCrunch could not independently verify what happened in Yue’s inbox. (He did not respond to our request for comment, although he did respond to several questions and comments were sent to X.)

But it doesn’t really matter.

The point of the story is that knowledge worker agents, at their current stage of development, are dangerous. People who say they use them successfully combine methods to protect themselves.

One day, maybe soon (by 2027? 2028?), they may be ready for widespread use. Goodness knows many of us would love to help with emails, grocery orders, and scheduling dentist appointments. But that day has not yet come.

after c agent inbox Meta open nail OpenClaw ran researcher security
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleCanva acquires startups working in animation and marketing
Next Article Marquis Sues Firewall Provider SonicWall, Claims Security Flaws With Firewall Backup Led To Ransomware Attack
bhanuprakash.cg
techtost.com
  • Website

Related Posts

OpenAI ends Microsoft’s legal risk over $50 billion Amazon deal

28 April 2026

China blocks Meta’s $2 billion deal with Manus after months-long investigation

27 April 2026

DeepSeek previews new AI model that ‘closes the gap’ with frontier models

27 April 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Critical infrastructure giant Itron says it was breached

28 April 2026

OpenAI ends Microsoft’s legal risk over $50 billion Amazon deal

28 April 2026

Investors back Skye’s AI home screen app for iPhone ahead of launch

28 April 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Steve Ballmer slams founder he backed, who pleaded guilty to fraud: ‘I was cheated and I feel stupid’

25 April 2026

Salmon raises $100 million in equity and debt to bring digital credit to unbanked Filipinos

24 April 2026

Cash App targets a new type of customer: children aged 6 to 12 years

22 April 2026
Startups

Lachy Groom to back Indian startup Pronto at $200m valuation, sources say

Why Tokyo is the most important tech destination of 2026

From Stage to Future: Where Are Startup Battlefield Alumni Now?

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.