AI & Future

The Risks of AI You Should Know, Explained Calmly

AI brings real benefits and real risks. Here is a balanced, jargon-free look at the problems worth understanding, without the hype or the doom.

Abstract flowing digital shapes in soft purple and blue tones
Photograph via Unsplash

The four AI risks worth your attention are confident wrong answers, unclear data handling, hidden bias, and AI-polished scams. None of them require panic, and each has a concrete defense you can set up in a few minutes. This guide gives you the specific settings, real cases, and thresholds instead of vague warnings.

Confident, fluent, and sometimes completely wrong#

Large language models like ChatGPT, Google Gemini, and Claude do not look facts up in a database. They predict the next word based on patterns in their training data, which means they are optimized to sound plausible, not to be correct. When a model has no good answer, it does not stop; it generates a fluent one anyway. Engineers call this a "hallucination," and it happens most on niche facts, exact quotes, citations, numbers, and anything recent that fell outside the model's training cutoff.

This is not a rare glitch. In Mata v. Avianca (2023), two New York lawyers were fined $5,000 after submitting a brief full of court cases that ChatGPT had entirely invented, complete with fake quotes and docket numbers. In early 2024, a tribunal held Air Canada liable when its website chatbot promised a bereavement discount that did not exist. In both cases the AI sounded completely authoritative, which is exactly the problem: fluency reads as competence, and a crisp, well-formatted answer invites less scrutiny than a hesitant one.

How to verify without slowing everything down#

You do not need to fact-check a grocery list. Scale your caution to the stakes.

  • For anything medical, legal, financial, or safety-related, treat AI output as a first draft and confirm it against a primary source before acting.
  • Ask the model to cite its sources, then actually open the links. Hallucinated citations often point to real-looking URLs that 404 or lead to unrelated pages.
  • For code, be alert to "slopsquatting": models sometimes invent software package names, and attackers register those exact fake names with malware. Verify a package exists on its official registry before installing it.
  • When a claim feels too clean or too convenient, that is a signal to double-check, not to trust harder.

What actually happens to what you type#

When you type into most AI chatbots, that text travels to the company's servers and may be reviewed by humans and used to train future models. Policies differ sharply by product and change often, so the safe assumption is that anything you paste could be seen by someone else unless you have specifically turned that off. A useful rule: if you would not write it on a postcard, do not paste it into a tool you have not configured.

Most major consumer tools now offer a training opt-out, but it is usually buried and rarely on by default. Here is where to look as of 2026 (menu labels move, so search the settings if the exact wording differs):

  1. ChatGPT: Settings > Data Controls > turn off "Improve the model for everyone." For one-off sensitive questions, use Temporary Chat, which is excluded from training and history.
  2. Google Gemini: Settings/Activity > "Gemini Apps Activity" > turn it off, and delete past activity. Note that even with activity off, conversations may be retained for a limited period for safety review.
  3. Claude: Settings > Privacy > review the "Help improve Claude" setting. Anthropic updated its consumer policy in 2025 so this is now a choice you should check rather than assume.
  4. Microsoft Copilot: manage this through your Microsoft account privacy dashboard and connected-app permissions.

The mistake most people make here#

The common error is assuming that deleting your chat history also stops training. It usually does not; history and training are separate switches. Turn off the training toggle explicitly. And remember that enterprise or paid "business" tiers (ChatGPT Team/Enterprise, Copilot for Microsoft 365) typically promise not to train on your data by default, while the free consumer tiers are where the data is most likely used. Never paste passwords, government ID numbers, full card details, employer confidential documents, or other people's personal information into a general chatbot at all.

Bias, fairness, and the illusion of neutrality#

AI learns from vast amounts of existing human material, so it absorbs the imbalances baked into that material and can amplify them. This is not theoretical. Amazon scrapped an internal AI hiring tool in 2018 after finding it downgraded resumes that contained the word "women's" and favored male candidates, because it had learned from a decade of male-dominated hiring data. Image generators still lean on stereotypes, defaulting certain professions to one gender or ethnicity unless you explicitly steer them otherwise.

The danger is that the output looks objective. A clean, technical-sounding answer carries hidden assumptions, and because no visible person made the call, people mistake the result for neutral fact. Keep healthy skepticism whenever an AI is influencing a decision about people, whether that is screening job applicants, setting prices, or moderating content. Ask what data the system was likely trained on, whose perspective might be missing, and whether a human should review the outcome. You do not need to be an expert; awareness is most of the protection.

Deepfakes, voice cloning, and AI-polished scams#

The same capabilities that make AI useful make deception cheaper and more convincing. The clumsy grammar that used to give phishing emails away is gone; AI writes flawless, personalized bait at scale. Voice-cloning tools can now mimic a person from just a few seconds of audio scraped from a voicemail or social video. And full-motion deepfakes are no longer science fiction: in early 2024, an employee at engineering firm Arup in Hong Kong was tricked into wiring roughly $25 million after joining a video call in which every "colleague," including the CFO, was an AI-generated deepfake.

Concrete defenses that still work#

  • Set a family safe word. Agree on a private phrase with relatives. If a distressed "family member" calls asking for money, ask for the word. Voice-cloning scams that target grandparents collapse instantly against this.
  • Verify through a second channel. If a message from your boss, bank, or child asks for money or credentials, hang up and call back on a number you already trust. Never use the callback number the message provides.
  • Distrust urgency. Nearly every scam manufactures time pressure to stop you thinking. "Act now or lose access" is the tell.
  • Do not over-correct into disbelieving everything. Blanket cynicism is its own trap. The goal is verification, not paranoia.

What AI changed is the polish of the bait, not the shape of the trap. Slow down, check the source, confirm through another route, and the old defenses still do most of the work.

Keeping perspective#

None of this is an argument to avoid AI. The same tools draft, summarize, translate, explain, and remove friction from ordinary tasks, and the risks are reasons to engage thoughtfully rather than reasons to stay away. The single habit that ties every defense together is staying involved: AI works best as a capable assistant beside your judgment, not a replacement for it. Verify what matters, configure your privacy settings once, watch for hidden bias, and keep a safe word for the people you love.

FAQ#

How do I know when an AI is making something up?#

You often cannot tell from tone alone, which is the core danger. Be most suspicious with specific facts, exact quotes, statistics, citations, and anything after the model's training cutoff. Ask for sources and open them yourself; invented references are the most reliable red flag.

Does turning off chat history stop my data being used for training?#

Usually not. History and training are typically separate controls, so you have to disable the training or "improve the model" toggle explicitly. In ChatGPT, for example, that lives under Settings > Data Controls, and Temporary Chat is the fastest way to keep a single sensitive conversation out of both.

How can I protect my family from voice-cloning scams?#

Agree on a private safe word now, before anything happens, and make sure older relatives know to ask for it. If a caller creates urgency around money or an emergency, hang up and call the person back on a number you already have saved. A cloned voice cannot pass a secret only the real person knows.

Are paid AI plans more private than free ones?#

Often, yes, especially business and enterprise tiers, which generally commit not to train on your inputs by default. Free consumer plans are where your data is most likely used to improve the model unless you opt out. Whatever plan you use, check the specific data-control settings rather than assuming.

Nova Reyes
Written by
Nova Reyes

Nova spent years as the unofficial tech-support person for everyone she knew before founding Clixvia to do it at scale. She believes technology should serve people, not baffle them, and writes clear, calm guides that treat readers as smart adults who simply weren't handed a manual. She has a low tolerance for jargon and a soft spot for a well-labeled settings menu.

More from Nova