Chrome silently downloads 4GB Gemini Nano weights to a billion devices without consent
AnalysisPrivacy researcher Alexander Hanff documented on May 4 that Chrome 147 and recent stable builds silently fetch a 4GB weights.bin file (Google's Gemini Nano on-device LLM) into the OptGuideOnDeviceModel directory without a consent dialogue. The download triggers when AI features are on, which is the default. Hanff's filing argues this breaches Article 5(3) of the ePrivacy Directive (the EU rule that forbids storing files on user devices without informed consent) and GDPR data-minimisation. He estimates the climate cost between 6,000 and 60,000 tonnes of CO2 across roughly one billion Chrome installs, using a 0.06 kWh/GB factor and the EEA 2024 grid emissions baseline.