• Office Hours : 08:30 - 17:30

DeepSeek: The AI Chatbot That’s Shaking Up the Industry—But At What Cost?

Following the unexpected launch of the Chinese AI chatbot DeepSeek, industry experts are taking a closer look at what sets it apart, how it stacks up against competitors, and why its rapid rise is triggering major concerns over security, privacy, and global tech competition.

What is DeepSeek?

DeepSeek is China’s latest AI chatbot, designed to rival OpenAI’s ChatGPT and Google’s Gemini. Since its launch in January 2025, it has seen an explosive surge in popularity, surpassing three million downloads and quickly becoming the most-downloaded free app on Apple’s US App Store. Compared to alternatives like Perplexity, DeepSeek is reportedly being downloaded at three times the rate.

Marketed as a cost-effective AI assistant, DeepSeek has gained attention for its ability to perform complex reasoning tasks while running on significantly fewer resources than models like GPT-4. The developers claim the model was built for just $6 million, a fraction of the estimated $100 million+ training cost of OpenAI’s GPT-4. This staggering efficiency has caught the attention of Silicon Valley—and not necessarily in a good way.

The Shockwave Across the Tech Industry

DeepSeek’s arrival has sent ripples through the global AI sector, particularly in the semiconductor industry. US chip giant Nvidia lost an eye-watering $600 billion (£482bn) in market value following investor concerns that DeepSeek could reduce demand for high-end AI chips. The disruption extended to other tech heavyweights, including Microsoft and Alphabet (Google’s parent company), both of which saw stock downturns.

Reacting to the situation, US President Donald Trump called DeepSeek a “wake-up call” for American tech firms, warning them to “compete harder”. Even OpenAI CEO Sam Altman acknowledged the model’s capabilities, describing DeepSeek as “impressive”, though he insisted that OpenAI remains committed to building “superior models”.

However, while DeepSeek has proven its technical prowess, serious questions are being raised about its privacy policies, security vulnerabilities, and regulatory compliance.

Major Privacy Concerns

DeepSeek’s data privacy policy has been identified as a significant red flag. Unlike Western AI models, which have increasingly adopted local data storage for compliance with GDPR and other regulations, DeepSeek openly stores all user data on servers in China.

Data collected by DeepSeek includes:

  • Personal details (email addresses, phone numbers, dates of birth).
  • Chat histories (including all user queries and AI responses).
  • Technical metadata (IP addresses, device info, and even keystroke patterns).

While DeepSeek claims this data is used to “improve services”, critics warn that China’s cybersecurity laws allow the Chinese government to demand access to this data at any time.

Global Governments Respond

Governments worldwide are already sounding the alarm:

  • Australia’s science minister, Ed Husic, has warned users to be “very careful” when using DeepSeek, citing data privacy concerns.
  • The UK’s Information Commissioner’s Office (ICO) has reminded users of their rights regarding data protection and urged AI developers to ensure transparency.
  • The US Navy has outright banned personnel from using DeepSeek, citing serious security risks.
  • White House officials have confirmed that an investigation into the national security implications of DeepSeek is already underway.

Security Breaches and Data Leaks

Adding to the controversy, cybersecurity researchers at Wiz uncovered a DeepSeek database misconfiguration, which left over a million unencrypted chat logs, API keys, and user data exposed on the open internet. While DeepSeek moved quickly to secure the system, security experts argue that such lapses in basic cybersecurity hygiene are unacceptable.

A Wiz spokesperson commented:

“Misconfigured databases are often due to human error rather than malicious intent, but when dealing with user data at this scale, mistakes like this are simply unacceptable.”

Censorship and Propaganda Fears

Another growing concern is DeepSeek’s content moderation and censorship policies. Users have reported that the chatbot refuses to discuss politically sensitive topics, particularly those related to Chinese government affairs.

For example, when asked about the 1989 Tiananmen Square Massacre, DeepSeek declined to respond, stating:

“I’m sorry, I cannot answer that question.”

Cybersecurity analysts suggest this raises concerns about potential AI-driven propaganda. John Scott-Railton, a senior researcher at Citizen Lab, warned:

“When you interact with an AI like this, you’re not just getting neutral information—you’re getting content shaped by the policies and priorities of the company behind it.”

How Does DeepSeek Compare to Other AI Models?

DeepSeek’s data collection practices are not entirely unique—many AI providers, including OpenAI and Google, also store user interactions. However, the critical difference lies in who has access to the data.

  • OpenAI and Google operate under strict US and EU regulations that restrict how personal data can be used or shared.
  • DeepSeek’s policies, however, appear to leave the door open for potential state surveillance.

For users, this means that while DeepSeek offers an innovative and cost-effective AI experience, it may come with significant security and privacy risks.

What Does This Mean for Your Business?

DeepSeek’s rapid rise demonstrates that cutting-edge AI is no longer exclusive to Silicon Valley’s giants. However, for businesses considering AI integration, its security risks, regulatory challenges, and data sovereignty issues cannot be ignored.

  • Sensitive Data Exposure – Businesses handling financial, healthcare, legal, or government data may face serious compliance issues if DeepSeek is used internally.
  • Regulatory Risks – Companies subject to GDPR, the UK’s Data Protection Act, or US privacy laws could be exposed to legal consequences for using AI platforms with questionable data storage policies.
  • Potential Industry Bans – The US Navy’s ban on DeepSeek may be the first of many; further restrictions could emerge in finance, critical infrastructure, and government sectors.
  • Cybersecurity Concerns – The recent DeepSeek data breach suggests that even basic security protocols were not being followed. Businesses cannot afford to risk exposing proprietary data or intellectual property.

Proceed with Caution

For organisations intrigued by DeepSeek’s low cost and impressive capabilities, extreme caution is advised. Before adopting the tool, businesses should:

Avoid entering confidential or sensitive data into the platform.
Conduct a thorough risk assessment aligned with internal security policies.
Implement strict internal controls to prevent unauthorised use.
Monitor for further security incidents or regulatory developments.

The Bottom Line

DeepSeek represents both the promise and peril of next-generation AI. While its efficiency and affordability are undeniably disruptive, its privacy risks, security lapses, and potential ties to state surveillance raise serious red flags.

As businesses continue to explore AI-driven solutions, understanding where data is stored, how it is protected, and who controls it is now more critical than ever. DeepSeek’s success highlights the global AI race, but whether it is a tool businesses can trust remains an open question.