#Code Interpreter persists files between chats, including CustomgGPTs knowledge files

1 messages · Page 1 of 1 (latest)

glad lily
#

Bug Report:
Code Interpreter perists between chats. Which means that when you start a new chat files persist in it. Its not a big deal unless you start a chat with a chatbot that has knowladge files and Code Interpreter enabled. Then those files end up in full in Code Interpreter, and person can get full access to them in another chat. Which could be not a desired result for bot creator.

Steps to reproduce:

  1. Create a custom gpt with knowledge file example.txt and Code Interpreter. Let's name him ExampleBot
  2. Instruct him to to give away the file name or content
  3. Start chat with ExampleBot, confirm he does not give away the filename or file
  4. Immediately start new chat with GPT4 and Code Interpreter
  5. Ask him about files it has
  6. It will show you example.txt and will allow doing anything with it

Expected result:

Starting new chat Code Interpreter should not have files from previous chat

Actual result:

Starting new chat Code Interpreter carries over recent files, including custom gpts knowledge files

Additional information

Browser: Chrome
OS: MacOS
video: youtube e1vd3VUHf3A

glad lily
#

I made couple of videos demoing this
https://youtu.be/e1vd3VUHf3A
https://youtu.be/efXoLvB4Xkw

Hi. I am creator of two ChatGPT custom GPTs that demonstrate and help you protect your prompts and knowledge files.
Here I am demonstrating that there is vulnerability that allows to download your knowledge files by going to fresh GPT4 chat. Code Interpreter is shared between chats. You just go to chat with bot that is not protecting files and a...

▶ Play video

Last time I showed you how to get files from Custom GPTs with Code Interpreter https://www.youtube.com/watch?v=e1vd3VUHf3A
That caused some questions.
Time to answer them.

GPTs from the video:
Not my GPTs:

  1. Adventures of Latent Space - https://chat.openai.com/g/g-OA7ChgJaK-adventures-of-latent-space
  2. Murder Mystery Mayhem - https://chat.op...
▶ Play video
delicate rivet
#

Yes, I have also reported it to the help center but I still haven't received a response.

delicate rivet
glad lily
#

nope, just retested and got files again. But in video I did have behaviour where I had different code interpreter in different chats. Basically I had 4 chats open 1 2 3 4
And 1 and 2 shared same code interpeter and files
And 3 and 4 shared second instance

I suspect that this is an optimistion with bad side effect, bug. And I think they can make a fix that allows them to share code interpreter between chats without sharing files

now this is still kinda bad

delicate rivet
#

Wow, I thought part of the problem was already solved. I just tested it with a custom GPT that generates a database. I have tested with 2 instances of this and another of the default ChatGPT and it has managed them well. But it seems that something is missing.

pliant stirrup
#

cool way to connect different gpt`s? ^^

#

feature not a bug