TechBriefly
  • Tech
  • Business
  • Crypto
  • Science
  • Geek
  • How to
  • About
    • About TechBriefly
    • Terms and Conditions
    • Privacy Policy
    • Contact Us
    • Languages
      • 中文 (Chinese)
      • Dansk
      • Deutsch
      • Español
      • English
      • Français
      • Nederlands
      • Italiano
      • 日本语 (Japanese)
      • 한국인 (Korean)
      • Norsk
      • Polski
      • Português
      • Pусский (Russian)
      • Suomalainen
      • Svenska
No Result
View All Result
TechBriefly
Home Tech Security
Google uses Gemini “critic” model to monitor Chrome agents

Google uses Gemini “critic” model to monitor Chrome agents

TB EditorbyTB Editor
9 December 2025
in Security, Tech
Reading Time: 2 mins read
Share on FacebookShare on Twitter

Google detailed its security approach for Chrome’s agentic features, which enable automated actions like booking tickets or shopping, addressing potential data and financial risks.

Google employs several models to manage agentic actions. A User Alignment Critic, built with Gemini, scrutinizes action items generated by the planner model. If the critic model determines planned tasks do not align with user goals, it prompts the planner to re-evaluate the strategy. The critic model accesses only metadata of proposed actions, not actual web content.

To restrict agent access to disallowed or untrustworthy sites, Google utilizes Agent Origin Sets. These sets confine the model to specific read-only and read-writeable origins. Read-only origins define content Gemini can consume; for example, product listings on a shopping site are relevant, but banner ads are not. The agent can only interact with designated iframes on a page.

In a blog post, the company stated, “This delineation enforces that only data from a limited set of origins is available to the agent, and this data can only be passed on to the writable origins. This bounds the threat vector of cross-origin data leaks. This also gives the browser the ability to enforce some of that separation, such as by not even sending to the model data that is outside the readable set.”

Google monitors page navigation via another observer model to prevent access to harmful model-generated URLs.

For sensitive tasks, Google requires user consent. If an agent attempts to access sensitive sites, such as banking or medical platforms, it requests user permission. Should a site require signing in, Chrome will prompt for user permission to utilize the password manager; the agent’s model does not access password data. Users will be asked before the agent initiates actions like making a purchase or sending a message.

Google also employs a prompt-injection classifier to prevent unwanted actions and is evaluating agentic capabilities against attacks developed by researchers. Earlier this month, Perplexity released an open-source content detection model to counter prompt injection attacks against agents.


Featured image credit

Tags: ChromeGeminiGoogle
ShareTweet
TB Editor

TB Editor

Related Posts

Disney+ brings TikTok-style scrolling to its streaming app

Disney+ brings TikTok-style scrolling to its streaming app

9 January 2026
Xbox reveals lineup for next Developer Direct: Fable, Forza and more

Xbox reveals lineup for next Developer Direct: Fable, Forza and more

9 January 2026
FIFA and TikTok partner to stream live World Cup clips

FIFA and TikTok partner to stream live World Cup clips

9 January 2026
YouTube updates search filters to separate Shorts from long videos

YouTube updates search filters to separate Shorts from long videos

9 January 2026

LATEST

How to choose the right reset method for Samsung Galaxy devices

What resetting end-to-end encryption does on iPhone, iPad or Mac

How to easily monitor your AT&T data usage and avoid overages

How to reset your Bosch dishwasher when buttons won’t respond

Disney+ brings TikTok-style scrolling to its streaming app

Xbox reveals lineup for next Developer Direct: Fable, Forza and more

FIFA and TikTok partner to stream live World Cup clips

YouTube updates search filters to separate Shorts from long videos

Google introduces AI Inbox to organize Gmail tasks and updates

Announcements made by Samsung Display at CES 2026

TechBriefly

© 2021 TechBriefly is a Linkmedya brand.

  • Tech
  • Business
  • Science
  • Geek
  • How to
  • About
  • Privacy
  • Terms
  • Contact
  • | Network Sites |
  • Digital Report
  • LeaderGamer

Follow Us

No Result
View All Result
  • Tech
  • Business
  • Crypto
  • Science
  • Geek
  • How to
  • About
    • About TechBriefly
    • Terms and Conditions
    • Privacy Policy
    • Contact Us
    • Languages
      • 中文 (Chinese)
      • Dansk
      • Deutsch
      • Español
      • English
      • Français
      • Nederlands
      • Italiano
      • 日本语 (Japanese)
      • 한국인 (Korean)
      • Norsk
      • Polski
      • Português
      • Pусский (Russian)
      • Suomalainen
      • Svenska