Microsoft unveiled Recall as part of Copilot+ PCs in June 2024, marketing it as AI-powered "photographic memory" that screenshots your PC every few seconds to create a searchable timeline.
What it does: Captures screenshots continuously, stores in searchable timeline
Processing: On-device AI (requires NPU with 40+ TOPS)
Initial state: Enabled by default, no removal option
Storage: Unencrypted plaintext SQLite database
Security researchers immediately found critical flaws: passwords, credit cards, and personal data captured without filtering, and the database accessible to any malware with basic file access. The UK ICO announced an inquiry within days. Security researcher Kevin Beaumont called it "a potential security nightmare."
Sources: Wikipedia · ComputerWorld · Windows Blog