An internal Meta AI agent used to assist engineers generated faulty instructions that exposed sensitive company and user-related data to employees who lacked proper authorization, a “confused deputy” failure in which the agent’s own valid credentials bypassed intended access restrictions. Meta classified the incident as Sev1, its highest internal severity level, and contained the exposure within roughly two hours; no external breach was confirmed. The incident was publicly reported in late March 2026.