D

Amazon Alexa

Surveillance

by Amazon · www.amazon.com/alexa

"A corporate spy you bought with your own money, placed in your bedroom, and thanked for the weather report."

High Risk Published March 15, 2026 · Updated August 14, 2026

Overview

Amazon Alexa lives in over 600 million devices worldwide. Echo speakers, Fire TVs, Ring doorbells, smart thermostats, car dashboards. Amazon’s voice assistant is embedded so deeply into the consumer electronics ecosystem that many people interact with it without knowing they’re interacting with it.

Alexa launched in 2014 as a voice-controlled speaker. It now controls your lights, locks your doors, monitors your home security cameras, orders your groceries, reads your kids bedtime stories, and listens. Always listens. That’s the product’s core function: listening to your home and waiting for a wake word.

In February 2026, Amazon rolled Alexa+ out nationwide to every US user, free for Prime members and $19.99 a month for everyone else. Built on Amazon’s Nova models combined with Anthropic’s Claude, it drops the old command-and-response format for something closer to an agent: multi-turn conversation, memory of your stated preferences across sessions, and the ability to complete tasks on its own instead of just answering questions. Amazon has since expanded Alexa+ to Australia, to a browser version at alexa.com, and into car dashboards.

Amazon has lost billions on the Alexa division over the years. A product that costs billions and makes nothing from device sales isn’t a product. It’s an investment. The return on that investment is your data, and Alexa+ widens the collection surface considerably.

What It Knows About You

Alexa records every command you give it. Every question, every timer, every smart home interaction. False activations happen regularly too. Amazon’s own data shows Alexa activates without a wake word multiple times per day in active households.

Those recordings are stored on Amazon’s servers. Amazon employees have listened to them. In 2019, Bloomberg revealed that Amazon employed thousands of people worldwide to listen to and transcribe Alexa recordings, including intimate moments and what sounded like a sexual assault. Amazon confirmed the practice and called it “quality improvement.” In March 2025, Amazon removed the one privacy option that let some Echo models process voice requests locally instead of in the cloud. Every Alexa+ request now goes to Amazon’s servers by default, because the generative AI features it depends on cannot run on-device.

The data Alexa collects extends far beyond voice. Through Ring, it has your doorbell camera footage. Through Amazon shopping, your purchase history. Through Kindle, your reading habits. Through Whole Foods, your grocery list. Through AWS, possibly your employer’s entire infrastructure. Alexa+ adds a persistent memory layer on top of that: it is built to remember facts about you across conversations, so the assistant now maintains a standing profile rather than a pile of transcripts.

In 2023, Amazon paid the FTC to settle charges that it illegally retained children’s voice recordings and used them for its own purposes, violating COPPA. The fine was a rounding error on their quarterly revenue.

The Real Risks

Privacy is catastrophic. There is no sugar-coating this. You have placed a live microphone connected to one of the world’s largest data companies in your home. The company has been caught letting employees listen to your recordings. The company has been fined for illegally retaining children’s data. Alexa+ needs more of your information, not less, to hold a conversation and remember your preferences.

Autonomy loss has moved from insidious to direct. The old Alexa nudged your habits through routines and reorders. In May 2026, Amazon retired its Rufus shopping chatbot and replaced it with Alexa for Shopping, an agent built into Amazon’s own search bar. It can auto-buy items once they hit a target price, run recurring purchases on a schedule, and use a “Buy for Me” feature to check out on other retailers’ sites without you clicking buy yourself. A 2026 industry survey found only 20% of consumers trust an AI to actually complete a purchase on their behalf, even though 48% trust one to recommend a product. Amazon shipped the feature anyway. In January 2026, outside sellers pushed back over who owns the customer relationship once an agent sits between the shopper and the store.

Lock-in is severe, and now subscription-shaped. Once you’ve built a smart home around Alexa, switching to Google Home or Apple HomeKit means replacing dozens of devices, reconfiguring automations, and relearning routines. Alexa+ adds a second kind of lock-in on top: it ships free with Prime, so leaving Alexa now also means giving up a bundled AI assistant across your home, car, and browser, not just a speaker.

Amazon Sidewalk extends your network to share bandwidth with neighbors’ devices without clear consent. Your Echo can relay data from Amazon devices up to half a mile away. You are an unpaid node in Amazon’s mesh network.

Alternatives

  • Apple HomePod / Siri: Processes most requests on-device. Apple’s business model is hardware, not data. Privacy is genuinely better, though the ecosystem lock-in is comparable.
  • Home Assistant: Open-source home automation that runs locally on your own hardware. No cloud, no corporate surveillance. Requires technical setup.
  • Physical switches: Light switches, manual thermostats, and alarm clocks all work without an internet connection or a corporate surveillance apparatus. They also never auto-buy the wrong size of anything because an agent misread a price threshold.

Our Verdict

Alexa stays a D, and it’s still generous. The letter grade did not move, but the shape of the risk did. Through 2026 Amazon turned Alexa from a listening device into an agent that acts on your behalf: remembering your preferences, reordering, and now completing purchases without a click. Autonomy and lock-in both moved up a point this refresh to reflect that. The privacy picture, already the worst on this Index, only got more entrenched once local processing was dropped and Alexa+ made cloud storage of your conversations mandatory. If you have one, at minimum disable voice recording storage, turn off Amazon Sidewalk, and think hard about whether letting Alexa complete purchases for you is a convenience worth the control you’re handing over.

Sources

Reporting and primary documents this rating was based on.

  1. https://www.aboutamazon.com/news/devices/alexa-plus-international-launch
  2. https://techcrunch.com/2026/05/13/amazon-launches-an-ai-shopping-assistant-for-the-search-bar-powered-by-alexa/
  3. https://letsdatascience.com/blog/amazon-retires-rufus-alexa-for-shopping-agent
  4. https://www.thestar.com.my/tech/tech-news/2026/05/25/039agentic-commerce039-what-are-the-risks-when-ai-buys-things-for-you
  5. https://www.theregister.com/2025/03/17/amazon_kills_on_device_alexa/
  6. https://www.malwarebytes.com/blog/news/2025/03/amazon-disables-option-to-store-echo-voice-recordings-on-your-device
  7. https://finance.yahoo.com/news/amazon-has-sold-more-than-500-million-alexa-enabled-devices-drops-4-new-echo-products-140013808.html