Technologist Mag
  • Home
  • Tech News
  • AI
  • Apps
  • Gadgets
  • Gaming
  • Guides
  • Laptops
  • Mobiles
  • Wearables
  • More
    • Web Stories
    • Trending
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On
Samsung quietly dropped a loaded editing upgrade for Galaxy users

Samsung quietly dropped a loaded editing upgrade for Galaxy users

20 April 2026
The Assassin’s Creed 4: Black Flag Remake Will Be Revealed This Week

The Assassin’s Creed 4: Black Flag Remake Will Be Revealed This Week

20 April 2026
One of the most controversial US agencies is reportedly taste-testing Anthropic uber-powerful Mythos AI

One of the most controversial US agencies is reportedly taste-testing Anthropic uber-powerful Mythos AI

20 April 2026
Hyundai Ioniq 3 2026: Price, Specs, Availability

Hyundai Ioniq 3 2026: Price, Specs, Availability

20 April 2026
The Elden Ring movie just got a release date, a stacked cast, and it’s shooting in IMAX

The Elden Ring movie just got a release date, a stacked cast, and it’s shooting in IMAX

20 April 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Technologist Mag
SUBSCRIBE
  • Home
  • Tech News
  • AI
  • Apps
  • Gadgets
  • Gaming
  • Guides
  • Laptops
  • Mobiles
  • Wearables
  • More
    • Web Stories
    • Trending
    • Press Release
Technologist Mag
Home » An AI Toy Exposed 50,000 Logs of Its Chats With Kids to Anyone With a Gmail Account
Tech News

An AI Toy Exposed 50,000 Logs of Its Chats With Kids to Anyone With a Gmail Account

By technologistmag.com29 January 20263 Mins Read
An AI Toy Exposed 50,000 Logs of Its Chats With Kids to Anyone With a Gmail Account
Share
Facebook Twitter Reddit Telegram Pinterest Email

Even now that the data is secured, Margolis and Thacker argue that it raises questions about how many people inside companies that make AI toys have access to the data they collect, how their access is monitored, and how well their credentials are protected. “There are cascading privacy implications from this,” says Margolis. ”All it takes is one employee to have a bad password, and then we’re back to the same place we started, where it’s all exposed to the public internet.”

Margolis adds that this sort of sensitive information about a child’s thoughts and feelings could be used for horrific forms of child abuse or manipulation. “To be blunt, this is a kidnapper’s dream,” he says. “We’re talking about information that let someone lure a child into a really dangerous situation, and it was essentially accessible to anybody.”

Margolis and Thacker point out that, beyond its accidental data exposure, Bondu also appears—based on what they saw inside its admin console—to use Google’s Gemini and OpenAI’s GPT5, and as a result may share information about kids’ conversations with those companies. Bondu’s Anam Rafid responded to that point in an email, stating that the company does use “third-party enterprise AI services to generate responses and run certain safety checks, which involves securely transmitting relevant conversation content for processing.” But he adds that the company takes precautions to “minimize what’s sent, use contractual and technical controls, and operate under enterprise configurations where providers state prompts/outputs aren’t used to train their models.”

The two researchers also warn that part of the risk of AI toy companies may be that they’re more likely to use AI in the coding of their products, tools and web infrastructure. They say they suspect that the unsecured Bondu console they discovered was itself “vibe-coded”—created with generative AI programming tools that often lead to security flaws. Bondu didn’t respond to WIRED’s question about whether the console was programmed with AI tools.

Warnings about the risks of AI toys for kids have grown in recent months, but have largely focused on the threat that a toy’s conversations will raise inappropriate topics or even lead them to dangerous behavior or self-harm. NBC News, for instance, reported last month that AI toys its reporters chatted with offered detailed explanations of sexual terms, tips about how to sharpen knives and claimed, and even seemed to echo Chinese government propaganda, stating for example that Taiwan was a part of China.

Bondu, by contrast, appears to have at least attempted to build safeguards into the AI chatbot it gives children access to. The company even offers a $500 bounty for reports of “an inappropriate response” from the toy. “We’ve had this program for over a year and no one has been able to make it say anything inappropriate,” a line on the company’s website reads.

Yet at the same time, Thacker and Margolis found that Bondu was simultaneously leaving all of its users’ sensitive data entirely exposed. “This is a perfect conflation of safety with security,” says Thacker. “Does ‘AI safety’ even matter when all the data is exposed?”

Thacker says that prior to looking into Bondu’s security, he’d considered giving AI-enabled toys to his own kids, just as his neighbor had. Seeing Bondu’s data exposure firsthand changed his mind.

“Do I really want this in my house? No, I don’t,” he says. “It’s kind of just a privacy nightmare.”

Share. Facebook Twitter Pinterest LinkedIn Telegram Reddit Email
Previous ArticleWant pink earbuds? Sony may have you covered with the upcoming WF-1000XM6
Next Article Pixelmator Pro, one of the best image editing apps, finally lands on the iPad

Related Articles

Samsung quietly dropped a loaded editing upgrade for Galaxy users

Samsung quietly dropped a loaded editing upgrade for Galaxy users

20 April 2026
One of the most controversial US agencies is reportedly taste-testing Anthropic uber-powerful Mythos AI

One of the most controversial US agencies is reportedly taste-testing Anthropic uber-powerful Mythos AI

20 April 2026
Hyundai Ioniq 3 2026: Price, Specs, Availability

Hyundai Ioniq 3 2026: Price, Specs, Availability

20 April 2026
The Elden Ring movie just got a release date, a stacked cast, and it’s shooting in IMAX

The Elden Ring movie just got a release date, a stacked cast, and it’s shooting in IMAX

20 April 2026
There’s New Evidence for How Loneliness Affects Memory in Old Age

There’s New Evidence for How Loneliness Affects Memory in Old Age

20 April 2026
Motorola just opened Android 17 beta to more Razr and Edge phones

Motorola just opened Android 17 beta to more Razr and Edge phones

20 April 2026
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Don't Miss
The Assassin’s Creed 4: Black Flag Remake Will Be Revealed This Week

The Assassin’s Creed 4: Black Flag Remake Will Be Revealed This Week

By technologistmag.com20 April 2026

Ubisoft has announced a special livestream airing this week that will reveal the long-rumored remake…

One of the most controversial US agencies is reportedly taste-testing Anthropic uber-powerful Mythos AI

One of the most controversial US agencies is reportedly taste-testing Anthropic uber-powerful Mythos AI

20 April 2026
Hyundai Ioniq 3 2026: Price, Specs, Availability

Hyundai Ioniq 3 2026: Price, Specs, Availability

20 April 2026
The Elden Ring movie just got a release date, a stacked cast, and it’s shooting in IMAX

The Elden Ring movie just got a release date, a stacked cast, and it’s shooting in IMAX

20 April 2026
The Elden Ring Movie Has A Release Date And Cast, Which Includes Dark Souls II’s Peter Serafinowicz

The Elden Ring Movie Has A Release Date And Cast, Which Includes Dark Souls II’s Peter Serafinowicz

20 April 2026
Technologist Mag
Facebook X (Twitter) Instagram Pinterest
  • Privacy
  • Terms
  • Advertise
  • Contact
© 2026 Technologist Mag. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.