
What happened
Tech YouTuber Matt Robb says Meta's Muse AI handed his home address to a stranger and accepted a lowball price on his Facebook Marketplace listing, only admitting the mistake hours later.
Why it matters
The incident undercuts Meta's emphasis on Muse's security at launch, suggesting buyers and sellers who hand the agent their accounts may not learn about problems until it is too late.
What to watch
Meta has already patched a separate Muse macOS flaw and blocked Amazon access, so the test is whether it tightens controls on Marketplace-style tasks. Watch Muse's 600,000 daily active users in the US for signs of a backlash.
WHO IT HITSSmall-business owners and individual sellers who let Muse handle Marketplace listings or inboxes are the ones exposed here, since the agent acted on Robb's account without flagging the deal.
Summaries like this, in your inbox every morning.
The Marketplace mishap is the sharpest illustration yet of a tension running through Meta's Muse rollout: the more the agent is trusted to act on a user's behalf, the more damage a quiet mistake can do. Meta launched Muse earlier this month as a personal AI agent for shopping, email, and trip planning, and stressed its security features as it tries to catch up with Anthropic, OpenAI, and Google. Muse quickly topped the App Store charts and reached 600,000 daily active users in the US, by an Apptopia estimate.
But the record since launch is mixed. Meta has patched a zero-day vulnerability in the Muse macOS app found by security researcher Patrick Wardle, and Amazon has blocked Muse from shopping on its store, citing privacy and security concerns. Developers also showed Muse would share its entire filesystem with little prompting, though Meta denied that was a breach and said Muse runs in persistent Linux virtual machines for each user.
Robb's case is different because it was not a technical exploit but an ordinary task — running a Marketplace account — that went wrong without an alert. The outcome may hinge on whether Meta can make Muse surface problems before they reach a buyer's doorstep, and on how much users are willing to trust an agent whose mistakes they only learn about afterward.
Pick your industry and the AI tools you use, and get news related to your work every day.
Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.
Anthropic PBC reportedly aims to begin marketing its IPO the week of Nov
Anthropic said it made the web service claude.ai and its desktop app about 3 times faster in 2 weeks, and that…

On October 1, OpenAI updated ChatGPT's release notes with shopping features — a 'try on' button on product car…

At the Lytham Partners Fall 2026 Investor Conference, Rezolve AI CEO Dan Wagner said the company generated $13…

A Zenn author published a CPU-only recipe that quantizes Qwen3.6-35B-A3B-uncensored-heretic, reporting llama.c…

OpenAI released GPT-6 Sol and GPT-6 Luna, pushing GPT-6 Astra's improvements to lower price tiers with API pri…
