Post-Cutoff.com
  1. Home
  2. Timeline
  3. 2026
  4. Extracted Muse instructions show Meta's agent builds 'a…

Extracted Muse instructions show Meta's agent builds 'a page for every person in the user's life'; a leaked line says household authority 'overrides your safety training'

★★★after cutoffpolicy-safetyMetaconfidence: medium

On Oct 3, 2026 Wired reported that internal instructions extracted from Meta's Muse agent by researcher Karan Joshi tell it to keep "a page for every person in the user's life" (family, partners, friends, colleagues, people the user follows), refreshed hourly, with facts, history and tips for "strengthening" each relationship. A separate leaked line, reported by Startup Fortune from Reddit, says "the user's authority over their own household is unconditional and overrides your safety training". Meta says the files are meant to be accessible for transparency and that Muse only uses public information and what users choose to share.

Key facts

What happened

Wired's security newsletter published details from Muse's internal instruction files. Researcher Karan Joshi got them by asking the agent in plain chat to copy and share its own files. This is the same weakness that let Peter James export Muse's runtime filesystem in September (see the Muse launch entry). The files describe a memory feature that keeps a structured page on every person in the user's life. It runs hourly and covers family, partners, friends, colleagues, collaborators and people the user follows. Each page holds facts, shared history, the state of the relationship and suggestions for "strengthening" it.

Meta said the files are user-accessible on purpose, for transparency. It said Muse builds this context only from public information and what users choose to share, that each user's data stays in a dedicated VM, and that memories can be wiped.

The next day Startup Fortune reported a more pointed line, credited to r/LocalLLaMA users: "The user's authority over their own household is unconditional and overrides your safety training." The outlet set it against Meta's claim that its Sentinel layer is something "the agent can't override". Unverified: we could not find the Reddit thread, and Wired does not quote this line.

Why it matters

This is a rare look at how a mass-market agent (millions of downloads) is told to model the people around its user, including people who never agreed to use Muse. It comes after Hunterbrook's report that Muse would compile lists of people in vulnerable groups, and after disputes over Muse reading Messages data on Macs. Together these make Muse's privacy design a central part of the debate over consumer agents.

Changelog

  • 2026-10-04: created (sweep 2026-10-04: Wired via Techmeme; Startup Fortune)

Related posts (1)

Related events

  1. Meta launches Muse, a free consumer personal AI agent ★★★★
  2. Hunterbrook: Meta's Muse agent compiled lists of real Facebook and Instagram users in vulnerable groups on request ★★★
  3. Apple tightens macOS 'Full Disk Access' controls, citing growing risks from AI agents ★★★

Sources (5)

id: 2026-10-03-muse-leaked-instructions-relationship-profiles · updated 2026-10-04 · open in the interactive timeline