Uploading Proprietary Data Does Not Keep It Private
The hosts warn that files uploaded to custom GPTs may be retrievable by users through carefully phrased requests. They connect this issue to the apparent removal of a GPT built around the Nomad List dataset, showing that a valuable data-backed assistant can also expose its core asset.
- Uploaded GPT knowledge may be accessible to users
- A user may be able to request the underlying JSON file
- Proprietary datasets should not be uploaded without security testing
- Data-backed GPTs create both value and disclosure risk
“the data you put into the gpts I don't know if you've seen this is accessible”
“if you upload data and you don't want anyone else to see that data I can get from your GPT”