The OpenAI ChatGPT app on macOS is not sandboxed and stores all the conversations in **plain-text** in a non-protected location:

~/Library/Application\ Support/com.openai.chat/conversations-{uuid}/

So basically any other running app / process / malware can read all your ChatGPT conversations without any permission prompt:

@pvieito I mean.... yeah. The 2 apps are un-sandboxed. That's sort of what that means.
I'm not sure what the point of this demo is?