How to spot if ChatGPT, Claude, or Perplexity accounts got hacked

Discover the signs of a compromised AI account and learn essential steps to secure your data on ChatGPT, Claude, and Perplexity.

By Central
This guide explains how to detect unauthorized access to your AI accounts and prevent future hacks.
Highlights
  • ChatGPT and Perplexity offer multi-factor authentication; Claude does not.
  • Check for suspicious active sessions in your account settings on each platform.
  • Use unique passwords and a password manager to protect your AI accounts.

The rise of artificial intelligence tools has made accounts on platforms like ChatGPT, Claude, and Perplexity a prime target for hackers. As these services become integral to daily workflows, research, and even confidential business operations, a compromised account can lead to data loss, privacy breaches, or financial fraud. Understanding how to spot an intrusion and knowing the exact steps to regain control is no longer optional—it is essential digital hygiene.

Just like any other online service, hackers can target and break into your accounts on popular AI platforms. TechCrunch has created a comprehensive guide to help you protect yourself if you suspect someone has broken into your account on one of the internet’s most popular platforms, social networks, or messaging apps. Now, we’re here to show you how to check whether your accounts on AI platforms have been hacked.

As a foundational principle, we recommend using unique passwords stored in a password manager and enabling multi-factor authentication (MFA). This way, even if someone steals your password, they cannot log in without that second piece of information. ChatGPT and Perplexity offer MFA; Claude does not—instead, it sends a login link to your email address. All three platforms provide similar ways to inspect suspicious active sessions. Below is exactly how each platform works.

Why AI Accounts Are a Growing Target for Hackers

AI accounts often store extensive conversation histories, API keys, and personal data. A compromised ChatGPT account could expose sensitive business strategies, while a hacked Perplexity account might reveal proprietary research queries. Claude’s passwordless login offers some protection, but email account takeovers remain a vector. The rise of credential-stuffing attacks and phishing campaigns tailored to AI users underscores the need for vigilant session monitoring.

Beyond personal data, hackers may use hijacked accounts to perform malicious actions—such as generating harmful content or exploiting API rate limits—that could be traced back to the legitimate owner. This makes early detection and swift remediation crucial.

How to Check if Your ChatGPT Account Has Been Hacked

To find out if someone has broken into your ChatGPT account, open it on your computer’s browser, click on your username in the bottom left corner, go to “Settings,” then “Security and Login,” and finally click on “Active Sessions.” You will see a list of devices and locations where you are logged into your ChatGPT account. If you see any device you do not recognize, you can log out of that single device. You can also click on “Log out all.”

If you need to change your password—which you should do immediately if you suspect unauthorized access—you must first log out of your account. Then, on ChatGPT’s website, click “Log in” in the bottom-left corner, enter your email address, click on “Forgot password,” and then “Continue.” ChatGPT will send you an email containing a six-digit code. Enter that code on the login page, click “Continue,” and then enter a new password. You can also click “reset your password” in the email to follow the official instructions.

How to Check if Your Claude Account Has Been Hacked

Claude, developed by Anthropic, uses a passwordless login system—no password to steal. However, if an attacker gains access to your email account, they can log into Claude by clicking the magic link sent to your inbox. To review active sessions, open Claude in your computer’s browser, click on your username in the bottom-left corner, then “Settings,” and click on “Account.” There you will see your “Active sessions.”

If you do not recognize one of the sessions, hover over it, click the three vertical dots that appear on the right, and choose “Log out” or “Terminate.” If you want to be thorough, you can click “Log out of all devices.” After that, you will be able to log back into your account using your email address. You will receive an email with a link to log in. Because Claude does not use passwords, there is no password to change—but you should immediately secure your email account, enable MFA on your email provider, and change your email password if you suspect compromise.

How to Check if Your Perplexity Account Has Been Hacked

Perplexity, the AI-powered search engine, does not display active sessions in its settings. This makes it harder to spot an intrusion through session inspection alone. If you are worried someone may have broken into your account, the most effective action is to forcefully terminate all sessions. Go to Perplexity in your browser, click your username in the bottom-left corner, then “All settings.” Finally, click on “Sign out of all sessions,” and then “Confirm.”

At that point, you can log back in by entering your email address. You will then receive an email with a unique six-digit code. Enter the code on the website to log in, or click the “Sign in” button in the email to log in directly. As with ChatGPT, enabling MFA on your Perplexity account significantly reduces the risk of unauthorized access even if your password is compromised.

What to Do After You Regain Control

Once you have logged out all unknown sessions and changed passwords (or secured your email for Claude), consider taking these additional steps:

  • Review and revoke any connected third-party apps or API keys that you did not authorize.
  • Check recent activity logs if available—ChatGPT’s “Active Sessions” shows approximate location and device type.
  • Enable MFA on all three platforms where available (ChatGPT and Perplexity support it; Claude relies on email security).
  • Update your password manager with the new credentials and run a security audit on your other online accounts—especially email, which is the key to resetting most AI accounts.

How to Prevent Future Hacks on AI Accounts

The single most effective measure is enabling multi-factor authentication. For ChatGPT, go to Settings > Security and Login and set up an authenticator app or SMS code. For Perplexity, the option is under All settings > Security. Claude does not offer MFA, so you must protect your email account with strong, unique passwords and MFA.

Use a password manager to generate and store complex, unique passwords for each service. Avoid reusing passwords across different platforms. And always be cautious of phishing emails that mimic official correspondence from these AI companies—never click login links sent from unknown senders; navigate directly to the service’s website.

Regularly review your active sessions—at least once a month—especially on ChatGPT and Claude. For Perplexity, force a logout-and-reauthorize cycle if you suspect anything unusual. These simple habits can mean the difference between a quick fix and a prolonged security headache.

The threat landscape is evolving as fast as AI itself. Staying informed about the security features of each platform, knowing exactly how to spot an intrusion, and acting decisively are the best defenses. Your AI account holds conversations that may contain sensitive data, creative ideas, or professional communications—treat it with the same vigilance you would your banking or email account.

Share This Article