{"id":"https://openalex.org/W7154024474","doi":"https://doi.org/10.1145/3772318.3791809","title":"The Privacy Paradox of LLMs: User Perceptions and the Reality of PII Leakage","display_name":"The Privacy Paradox of LLMs: User Perceptions and the Reality of PII Leakage","publication_year":2026,"publication_date":"2026-04-13","ids":{"openalex":"https://openalex.org/W7154024474","doi":"https://doi.org/10.1145/3772318.3791809"},"language":null,"primary_location":{"id":"doi:10.1145/3772318.3791809","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3772318.3791809","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2026 CHI Conference on Human Factors in Computing Systems","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://doi.org/10.1145/3772318.3791809","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Shuai Cheng","orcid":"https://orcid.org/0009-0001-8731-5587"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shuai Cheng","raw_affiliation_strings":["Zhejiang University, HangZhou, China"],"raw_orcid":"https://orcid.org/0009-0001-8731-5587","affiliations":[{"raw_affiliation_string":"Zhejiang University, HangZhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5055561370","display_name":"Haitao Xu","orcid":"https://orcid.org/0000-0002-0353-3879"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Haitao Xu","raw_affiliation_strings":["Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-0353-3879","affiliations":[{"raw_affiliation_string":"Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5133528680","display_name":"Shu Meng","orcid":"https://orcid.org/0009-0007-0442-6585"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shu Meng","raw_affiliation_strings":["Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0009-0007-0442-6585","affiliations":[{"raw_affiliation_string":"Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101933593","display_name":"Shuai Hao","orcid":"https://orcid.org/0000-0001-7483-5252"},"institutions":[{"id":"https://openalex.org/I81365321","display_name":"Old Dominion University","ror":"https://ror.org/04zjtrb98","country_code":"US","type":"education","lineage":["https://openalex.org/I81365321"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Shuai Hao","raw_affiliation_strings":["Old Dominion University, Norfolk, Virginia, USA"],"raw_orcid":"https://orcid.org/0000-0001-7483-5252","affiliations":[{"raw_affiliation_string":"Old Dominion University, Norfolk, Virginia, USA","institution_ids":["https://openalex.org/I81365321"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101641878","display_name":"Chuan Yue","orcid":"https://orcid.org/0000-0002-6095-4768"},"institutions":[{"id":"https://openalex.org/I167576493","display_name":"Colorado School of Mines","ror":"https://ror.org/04raf6v53","country_code":"US","type":"education","lineage":["https://openalex.org/I167576493"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Chuan Yue","raw_affiliation_strings":["Department of Computer Science, Colorado School of Mines, Golden, Colorado, USA"],"raw_orcid":"https://orcid.org/0000-0002-6095-4768","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Colorado School of Mines, Golden, Colorado, USA","institution_ids":["https://openalex.org/I167576493"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5133546765","display_name":"Zhao Li","orcid":"https://orcid.org/0000-0002-5056-0351"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhao Li","raw_affiliation_strings":["Hangzhou Yugu Technology, Hangzhou, China and Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-5056-0351","affiliations":[{"raw_affiliation_string":"Hangzhou Yugu Technology, Hangzhou, China and Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.5956565,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"25"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.14980000257492065,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.14980000257492065,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11045","display_name":"Privacy, Security, and Data Protection","score":0.11729999631643295,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.061400000005960464,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/leakage","display_name":"Leakage (economics)","score":0.6133000254631042},{"id":"https://openalex.org/keywords/mainstream","display_name":"Mainstream","score":0.5449000000953674},{"id":"https://openalex.org/keywords/phone","display_name":"Phone","score":0.5385000109672546},{"id":"https://openalex.org/keywords/perception","display_name":"Perception","score":0.48429998755455017},{"id":"https://openalex.org/keywords/information-leakage","display_name":"Information leakage","score":0.36570000648498535},{"id":"https://openalex.org/keywords/risk-perception","display_name":"Risk perception","score":0.35409998893737793},{"id":"https://openalex.org/keywords/confidentiality","display_name":"Confidentiality","score":0.3427000045776367}],"concepts":[{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.6837000250816345},{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.6133000254631042},{"id":"https://openalex.org/C2777617010","wikidata":"https://www.wikidata.org/wiki/Q18957","display_name":"Mainstream","level":2,"score":0.5449000000953674},{"id":"https://openalex.org/C2778707766","wikidata":"https://www.wikidata.org/wiki/Q202064","display_name":"Phone","level":2,"score":0.5385000109672546},{"id":"https://openalex.org/C26760741","wikidata":"https://www.wikidata.org/wiki/Q160402","display_name":"Perception","level":2,"score":0.48429998755455017},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.46810001134872437},{"id":"https://openalex.org/C2779201187","wikidata":"https://www.wikidata.org/wiki/Q2775060","display_name":"Information leakage","level":2,"score":0.36570000648498535},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.365200012922287},{"id":"https://openalex.org/C163355716","wikidata":"https://www.wikidata.org/wiki/Q2154783","display_name":"Risk perception","level":3,"score":0.35409998893737793},{"id":"https://openalex.org/C71745522","wikidata":"https://www.wikidata.org/wiki/Q2476929","display_name":"Confidentiality","level":2,"score":0.3427000045776367},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.33640000224113464},{"id":"https://openalex.org/C175202939","wikidata":"https://www.wikidata.org/wiki/Q2892912","display_name":"Self-disclosure","level":2,"score":0.32089999318122864},{"id":"https://openalex.org/C18762648","wikidata":"https://www.wikidata.org/wiki/Q42213","display_name":"Work (physics)","level":2,"score":0.3174999952316284},{"id":"https://openalex.org/C2776305056","wikidata":"https://www.wikidata.org/wiki/Q7257723","display_name":"Public disclosure","level":2,"score":0.31029999256134033},{"id":"https://openalex.org/C137822555","wikidata":"https://www.wikidata.org/wiki/Q2587068","display_name":"Information sensitivity","level":2,"score":0.288100004196167},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.2851000130176544},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.27549999952316284},{"id":"https://openalex.org/C169093310","wikidata":"https://www.wikidata.org/wiki/Q3702971","display_name":"Personally identifiable information","level":2,"score":0.2694000005722046},{"id":"https://openalex.org/C198477413","wikidata":"https://www.wikidata.org/wiki/Q7647069","display_name":"Survey data collection","level":2,"score":0.2581999897956848}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3772318.3791809","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3772318.3791809","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2026 CHI Conference on Human Factors in Computing Systems","raw_type":"proceedings-article"},{"id":"pmh:oai:digitalcommons.odu.edu:computerscience_fac_pubs-1452","is_oa":true,"landing_page_url":"https://digitalcommons.odu.edu/computerscience_fac_pubs/447","pdf_url":null,"source":{"id":"https://openalex.org/S4377196314","display_name":"ODU Digital Commons (Old Dominion University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I81365321","host_organization_name":"Old Dominion University","host_organization_lineage":["https://openalex.org/I81365321"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Computer Science Faculty Publications","raw_type":"conference"}],"best_oa_location":{"id":"doi:10.1145/3772318.3791809","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3772318.3791809","pdf_url":null,"source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2026 CHI Conference on Human Factors in Computing Systems","raw_type":"proceedings-article"},"sustainable_development_goals":[{"score":0.9003929495811462,"display_name":"Quality Education","id":"https://metadata.un.org/sdg/4"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":54,"referenced_works":["https://openalex.org/W1545190392","https://openalex.org/W1603920809","https://openalex.org/W1970809283","https://openalex.org/W2001363652","https://openalex.org/W2006860836","https://openalex.org/W2007684736","https://openalex.org/W2025829466","https://openalex.org/W2076328095","https://openalex.org/W2081430061","https://openalex.org/W2088064201","https://openalex.org/W2091261347","https://openalex.org/W2099647042","https://openalex.org/W2102303925","https://openalex.org/W2131896026","https://openalex.org/W2153852789","https://openalex.org/W2157989366","https://openalex.org/W2207884471","https://openalex.org/W2562328000","https://openalex.org/W2617872846","https://openalex.org/W2774392561","https://openalex.org/W2798247400","https://openalex.org/W2896125123","https://openalex.org/W3006221238","https://openalex.org/W3094045953","https://openalex.org/W4200460397","https://openalex.org/W4255691726","https://openalex.org/W4285225959","https://openalex.org/W4385570888","https://openalex.org/W4385573569","https://openalex.org/W4385679821","https://openalex.org/W4385734162","https://openalex.org/W4388939858","https://openalex.org/W4389518968","https://openalex.org/W4396832466","https://openalex.org/W4402047017","https://openalex.org/W4402683393","https://openalex.org/W4405181291","https://openalex.org/W4406063062","https://openalex.org/W4406152291","https://openalex.org/W4409363928","https://openalex.org/W4409720803","https://openalex.org/W4409736232","https://openalex.org/W4409749427","https://openalex.org/W4409883976","https://openalex.org/W4409885180","https://openalex.org/W4411337303","https://openalex.org/W4411337316","https://openalex.org/W4411724140","https://openalex.org/W4412888194","https://openalex.org/W4414192430","https://openalex.org/W4414359343","https://openalex.org/W4415795709","https://openalex.org/W4416093088","https://openalex.org/W7126385719"],"related_works":[],"abstract_inverted_index":{"Large":[0],"language":[1],"models":[2],"(LLMs)":[3],"are":[4],"increasingly":[5],"deployed,":[6],"yet":[7],"they":[8],"introduce":[9],"significant":[10,100],"privacy":[11,131],"risks":[12],"by":[13],"disclosing":[14],"personally":[15],"identifiable":[16],"information":[17],"(PII)":[18],"during":[19],"interactions.":[20],"Although":[21],"prior":[22],"work":[23],"has":[24,36],"demonstrated":[25],"the":[26,38,143],"feasibility":[27],"of":[28,41,67,116],"extracting":[29],"PII":[30,42,68,111],"from":[31],"LLMs,":[32,72],"no":[33],"comprehensive":[34],"study":[35,90],"evaluated":[37],"actual":[39],"extent":[40],"leakage":[43,69,112],"across":[44],"mainstream":[45],"LLMs":[46,124],"or":[47],"investigated":[48],"user":[49,103],"perceptions,":[50],"literacy,":[51],"and":[52,80,94,105,113],"behavioral":[53],"responses":[54],"to":[55,122,126],"these":[56,60,135],"risks.":[57],"To":[58],"address":[59],"gaps,":[61],"we":[62,98,137],"conduct":[63],"a":[64,88],"large-scale":[65],"evaluation":[66],"in":[70,146],"popular":[71],"demonstrating":[73],"that":[74],"attackers":[75],"can":[76],"extract":[77],"email":[78],"addresses":[79],"phone":[81],"numbers":[82],"with":[83],"high":[84],"success":[85],"rates.":[86],"Through":[87],"mixed-methods":[89],"involving":[91],"20":[92],"interviews":[93],"204":[95],"survey":[96],"participants,":[97],"identify":[99],"discrepancies":[101],"between":[102],"concerns":[104,109],"behavior:":[106],"despite":[107],"strong":[108],"about":[110],"limited":[114],"understanding":[115],"training":[117],"data":[118],"provenance,":[119],"users":[120],"continue":[121],"use":[123],"due":[125],"perceived":[127],"utility,":[128],"often":[129],"exhibiting":[130],"cynicism.":[132],"Based":[133],"on":[134],"findings,":[136],"propose":[138],"design":[139],"implications":[140],"for":[141],"enhancing":[142],"privacy-utility":[144],"balance":[145],"future":[147],"LLM":[148],"deployments.":[149]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-04-14T00:00:00"}
