People walk behind a logo of Meta Platforms company, during a conference in Mumbai, India, September 20, 2023. REUTERS/Francis Mascarenhas

Meta to pause internal mouse-tracking tech while examining data security issues

· CNA · Join

Read a summary of this article on FAST.
Get bite-sized news via a new
cards interface. Give it a try.
Click here to return to FAST Tap here to return to FAST
FAST

(Corrects to say 'documentation showed' not 'document said' in paragraph 12)

By Katie Paul and Jaspreet Singh

June 22 : Meta said on Monday it will pause an internal program that tracks employee mouse movements and digital activity for AI training as the social media giant investigates data security concerns.

The company's announcement follows revelations that sensitive employee data, intended to monitor digital interactions within Meta's internal systems, was accessible to all Meta staffers, according to documents reviewed by Reuters.

CNA Games

Guess Word
Crack the word, one row at a time

Buzzword
Create words using the given letters

Mini Sudoku
Tiny puzzle, mighty brain teaser

Mini Crossword
Small grid, big challenge

Word Search
Spot as many words as you can
Show More
Show Less

The pause was first reported by Business Insider.

While Meta confirmed the investigation, it declined to say how long Meta planned to halt the program.

"We have carefully designed this program with privacy safeguards and while we have no indication at this time that any data was improperly accessed by Meta employees, we're pausing it while we investigate," said company spokesperson Tracy Clayton.

The tool, Model Capability Initiative, or MCI, rolled out in April, captures mouse movements, clicks and keystrokes on U.S.-based employees' computers to train Meta's AI models.

The tool was still recording as of Monday afternoon, a source told Reuters.

The company spokesperson said the pause was rolling out and it would take time to halt the program for everyone.

Meta's decision to pause MCI came after an employee filed an SEV, or high-priority security incident report, over its exposure of employee data.

Data exposed included "full prompts and transcriptions, private conversations, people & performance data, DSS sensitivity ratings (1-4)," according to the internal documentation.

Reuters reported in May the program was collecting more information than initially described and storing that data in unencrypted form, raising privacy concerns among employees.

The internal documentation showed that an employee commented on the SEV discussion, asking for a deeper investigation into the issues.

"I have accessed both personal tax and medical information through my work computer, as have many thousands of employees. We were told this data would be protected and only used for valid business purposes after aggressive filtering," the employee wrote.

Source: Reuters

Newsletter

Week in Review

Subscribe to our Chief Editor’s Week in Review

Our chief editor shares analysis and picks of the week's biggest news every Saturday.

Sign up for our newsletters

Get our pick of top stories and thought-provoking articles in your inbox

Subscribe here

Get the CNA app

Stay updated with notifications for breaking news and our best stories

Download here

Get WhatsApp alerts

Join our channel for the top reads for the day on your preferred chat app

Join here