Home Arrow Icon Knowledge base Arrow Icon Global Arrow Icon What are the potential risks of DeepSeek's data being stored on servers in China


What are the potential risks of DeepSeek's data being stored on servers in China


The storage of DeepSeek's user data on servers in China poses several significant risks, primarily related to privacy, security, and national security concerns.

Privacy Concerns

1. Data Access by Chinese Authorities: Since DeepSeek stores data on servers in China, it is subject to Chinese laws, which require companies to cooperate with government requests for data. This means that Chinese authorities could potentially access user data stored by DeepSeek, raising concerns about privacy and surveillance[2][3][4].

2. Lack of GDPR Protections: Unlike data stored in the European Union, which is protected by the General Data Protection Regulation (GDPR), data stored in China does not have these safeguards. Users cannot demand to see what information is stored about them or request its deletion[3][6].

3. Censorship and Content Control: Users have reported instances of censorship on DeepSeek, particularly regarding sensitive topics like critiques of the Chinese government. This suggests that the platform may be influenced by Chinese regulations, further compromising user privacy and freedom of expression[2][3].

Security Risks

1. Vulnerabilities in Data Transmission and Storage: DeepSeek has been found to have vulnerabilities in data transmission and storage, including unencrypted data transmission and insecure storage practices. These vulnerabilities could be exploited by malicious actors to intercept or manipulate user data[3][9].

2. Hidden Code and Unauthorized Data Transmission: Recent investigations have uncovered hidden code in DeepSeek's browser-based version that sends user data to China Mobile, a state-controlled telecom company. This raises concerns about unauthorized data collection and transmission[1][7].

3. Integration with State-Controlled Entities: The connection to China Mobile indicates a more direct association with the Chinese government than previously understood, heightening fears of state surveillance and espionage[1][7].

National Security Concerns

1. Potential for Espionage: The collection and storage of sensitive user data in China could be exploited for espionage purposes. This is particularly concerning given China's history of using technology for geopolitical intelligence gathering[4][8].

2. Risk of Data Misuse: The aggregated data collected by DeepSeek could provide insights into user behaviors, which could be used for malicious purposes such as phishing or social engineering attacks[10].

3. Legislative and Regulatory Scrutiny: The risks associated with DeepSeek have prompted legislative actions in the U.S., with proposals to restrict U.S. involvement in advancing AI capabilities in China. This reflects broader concerns about the national security implications of Chinese AI technologies[1][10].

In summary, the storage of DeepSeek's data on Chinese servers poses significant risks related to privacy, security, and national security. These concerns are exacerbated by China's legal framework, which mandates cooperation with government requests for data, and the potential for unauthorized data transmission to state-controlled entities.

Citations:
[1] https://www.feroot.com/news/the-independent-feroot-security-uncovers-deepseeks-hidden-code-sending-user-data-to-china/
[2] https://mashable.com/article/deepseek-ai-privacy-policy-keystroke-data-chinese-servers
[3] https://neontri.com/blog/deepseek-features-and-risks/
[4] https://www.cybersecuritydive.com/news/deepseek-companies-security-risks/739308/
[5] https://www.wired.com/story/deepseek-ai-china-privacy-data/
[6] https://vinciworks.com/blog/is-chinas-deepseek-ai-compliant-with-gdpr/
[7] https://apnews.com/article/deepseek-china-generative-ai-internet-security-concerns-c52562f8c4760a81c4f76bc5fbdebad0
[8] https://carnegieendowment.org/research/2025/01/managing-the-risks-of-chinas-access-to-us-data-and-control-of-software-and-connected-technology?lang=en
[9] https://securityscorecard.com/blog/a-deep-peek-at-deepseek/
[10] https://www.npr.org/2025/01/31/nx-s1-5277440/deepseek-data-safety