Agentic AI browsers are shifting the mannequin from ‘answering concerning the internet’ to working on the internet. In 2025, 4 AI browsers outline this house: OpenAI’s ChatGPT Atlas, Microsoft Edge with Copilot Mode, The Browser Firm’s Dia, and Perplexity’s Comet. Every makes completely different design selections round autonomy, reminiscence, and privateness. This text compares their architectures, capabilities, and threat profiles so numerous kind of customers can resolve which browser aligns with their workflows.
What are Agentic Browsers?
Agentic browsers aren’t simply ‘chat over a web page’. They expose the browser’s DOM (Doc Object Mannequin), tab graph, and historical past to an AI mannequin and permit it to:
- Learn and motive over a number of tabs
- Preserve activity context throughout time
- Take actions comparable to navigating, filling varieties, and finishing workflows
OpenAI ChatGPT Atlas, Microsoft Edge Copilot Mode, The Browser Firm’s Dia, and Perplexity’s Comet all do that, however with completely different tradeoffs in autonomy, reminiscence, and safety.
Excessive-level comparability
- Atlas is essentially the most absolutely agentic: deep ChatGPT integration, wealthy browser management, robust however complicated reminiscence and privateness story.
- Copilot Mode is an incremental however important extension to Edge: unified Copilot, cross-tab reasoning, early ‘Actions’ for automation, nonetheless conservative in contrast with Atlas and Comet.
- Dia is an AI-first browser constructed on Chromium, optimized for studying, writing, and structured workflows with privacy-first defaults and deliberately restricted autonomy.
- Comet is a extremely agentic private assistant browser with deep workflow automation, a local-data narrative, and presently essentially the most aggressive authorized and safety threat profile.
The remainder of the article unpacks these variations in a extra technical method.
1. ChatGPT Atlas (OpenAI): AI-native browser with full agent mode
1.1 Structure
Atlas is a devoted AI browser constructed round ChatGPT slightly than a typical Chromium shell with an extension. It runs on Chromium however wraps it in OpenAI’s OWL course of structure, which separates the rendering engine from the Atlas utility and agent layer.
Key traits:
- macOS solely at launch, with Home windows, iOS, and Android ‘coming quickly’.
- ChatGPT is uncovered in every single place: omnibox, major panel, and a ChatGPT sidebar that may see the present web page and tabs.
This provides Atlas a first-class API into:
- Present tab DOM and visual content material
- Tab record and navigation historical past
- Consumer queries and former dialog state
1.2 Agent mode: actual browser management
Agent Mode is the important thing differentiator. For Plus / Professional / Enterprise customers, Atlas can execute multi-step workflows:
- Open and shut tabs, observe hyperlinks, and swap websites
- Fill out varieties and on-line purposes
- E-book reservations comparable to inns and eating places
- Examine merchandise throughout a number of websites and return structured summaries
Constraints:
- Agent mode can not entry native recordsdata or the OS, and can’t obtain or execute native applications. It’s sandboxed contained in the browser.
- Actions require express consumer consent; Atlas surfaces prompts like ‘Ought to I begin clicking and filling these varieties’ earlier than executing workflows.
1.3 Reminiscence and privateness
Atlas introduces browser reminiscences:
- It shops filtered summaries of visited pages and inferred consumer intent, not full web page captures. Summaries are retained for about 30 days, enabling queries like ‘reopen the studies I learn yesterday’ or ‘proceed the Athens itinerary plan’.
- Recollections are opt-in and might be seen, edited, or deleted. Reminiscence might be disabled globally or on particular websites, and Atlas helps incognito.
OpenAI additionally added parental controls that permit guardians disable each browser reminiscences and agent mode for little one accounts.
Crucial factors:
1.4 Pricing and match
- Atlas is free to put in for ChatGPT customers on macOS.
- Agent Mode is simply out there on paid ChatGPT tiers (Plus, Professional, Enterprise, Enterprise).
Match:
- Greatest for customers who need most in-browser automation and are comfy with cloud-centric knowledge dealing with and a still-evolving safety posture.
2. Copilot Mode in Microsoft Edge: tab-reasoning with managed autonomy
2.1 Structure
Copilot Mode is Microsoft’s AI layer inside Edge, not a separate browser. It exposes:
- A unified Copilot field on new tabs for chat, search, and navigation
- Deep integration with Edge context (open tabs, historical past, and a few browser settings) when customers choose in.
Microsoft additionally ties Copilot Mode into:
- Journeys: topic-centric clusters over looking historical past, which Copilot can summarize and re-open.
- Copilot Actions: an early agentic layer able to actions like clearing cache, unsubscribing from mailing lists, and reserving reservations in preview.
2.2 Agentic conduct
In contrast with Atlas:
- Copilot Mode can motive throughout a number of tabs, summarize and evaluate them, and help with structured duties like journey planning or multi-site analysis.
- Actions Preview extends this into partially agentic flows, comparable to reserving a restaurant or filling varieties, however present evaluations present inconsistent reliability and occasional ‘hallucinated’ completions of duties that weren’t efficiently executed.
Crucially, Copilot Mode stays extra constrained than Atlas or Comet:
- It doesn’t expose an brazenly programmable DOM-level agent with free cursor management
- Motion templates are narrower and guarded, notably for e mail and account-sensitive operations
2.3 Information, privateness, and enterprise posture
Edge with Copilot Mode is clearly geared toward enterprise adoption:
- Copilot entry to tab and historical past knowledge is explicitly permissioned; customers can disable history-based personalization, Copilot context, and Copilot Mode totally.
- Microsoft integrates Immediate Shields and Azure AI security layers to mitigate immediate injection and jailbreak makes an attempt.
Match:
- Acceptable the place organizations need AI-assisted looking and cross-tab reasoning whereas holding automation scoped and extra auditable than a totally agentic browser.
3. Dia (The Browser Firm): AI-first, Chromium-based, privacy-forward
3.1 Structure and UX
Dia is The Browser Firm’s AI-centric successor to Arc, constructed on Chromium and presently out there on macOS solely.
Core design selections:
- The canonical interplay is ‘chat along with your tabs‘: Dia’s assistant can learn open tabs, referenced tabs, and choices, and reply questions or remodel content material in place.
- Dia features a Abilities system, the place customers outline reusable immediate ‘scripts’ and workflows for duties like note-taking or analysis templates.
Dia’s UX is optimized for:
- Studying and understanding long-form content material
- Writing and enhancing in-page
- Studying workflows (tutoring, flashcards, argument comparability)
3.2 Reminiscence and ‘local-first’ privateness
Dia’s major differentiation is its privateness posture:
- Shopping historical past, chats, bookmarks, and saved content material are saved domestically and encrypted, with knowledge despatched to servers solely when required to reply a selected question.
- The Reminiscence function shops summaries and discovered preferences, however customers can disable reminiscence totally in settings or management what contexts are shared.
The web impact is an AI browser that tries to behave extra like an area data layer with scoped cloud calls slightly than a steady telemetry stream.
3.3 Agentic scope and constraints
Dia is deliberately much less agentic than Atlas or Comet:
- The assistant can learn and summarize pages, remodel textual content, generate content material, and run Abilities over the present tab set.
- Present public builds don’t expose a normal DOM automation agent able to open-ended clicking and type submission throughout arbitrary websites.
In apply, Dia behaves as a high-context copilot slightly than a totally autonomous internet operator. That is aligned with the corporate’s positioning and with Atlassian’s acknowledged intent after buying The Browser Firm, which emphasizes particular person data employee workflows over transactional automation.
3.4 Pricing and availability
- Dia now ships to all Mac customers, no invite required, as of October 2025.
- Free tier: Core AI chat, Abilities, and Reminiscence, with utilization limits.
- Dia Professional at $20/month unlocks successfully limitless AI chat utilization inside phrases of use.
Match:
- Sturdy for instructional and writing-heavy workflows, for customers who need AI-augmented looking with out handing an agent broad management over the online session.
4. Comet (Perplexity): extremely agentic assistant browser with heavy threat floor
4.1 Structure and capabilities
Comet is Perplexity’s AI browser constructed on Chromium, positioned as a private AI assistant and ‘considering companion‘ slightly than a easy search UI.
The Comet Assistant can:
- Summarize and discover any web page
- Execute multi-step workflows for analysis, coding, assembly prep, and e-commerce
- Handle e mail and calendar by way of built-in connectors
- Deal with complicated duties like evaluating merchandise, studying opinions, and shifting all the best way to checkout.
Latest updates prolong the agent to work longer and throughout bigger jobs, emphasizing persistent, agentic conduct over many tabs and time intervals.
4.2 Information mannequin and privateness claims
Perplexity’s Comet Privateness Discover and product pages declare:
- Shopping knowledge, cookies, and saved credentials are saved domestically on the gadget by default.
- Customers can delete looking knowledge and saved credentials from Comet settings, and handle cookie conduct.
- Integration with 1Password retains vaults end-to-end encrypted and opaque to Perplexity.
So the official structure is a hybrid: native browser state with selective context uploads to Comet’s servers and Perplexity’s search fashions.
Nonetheless, a number of impartial opinions argue that regardless of these controls, the mix of: Deep integration with third-party providers (Gmail, calendar, monetary accounts) and excessive agent autonomy over these providers produces a big efficient privateness threat envelope, particularly for company knowledge.
4.3 Safety incidents and authorized stress
Comet presently has essentially the most seen safety and authorized points among the many 4:
- Oblique prompt-injection / ‘CometJacking‘: LayerX and different researchers confirmed that malicious URLs and embedded prompts may hijack Comet’s assistant, exfiltrating knowledge from linked providers and even performing fraudulent actions.
- Though Perplexity has patched particular vulnerabilities, safety audits from Courageous, Guardio, and others nonetheless advocate excessive warning for delicate workloads.
- Amazon lawsuit: Amazon is suing Perplexity over Comet’s ‘agentic purchasing’ behavior, alleging that automated purchasing periods accessed buyer accounts and impersonated human looking, violating platform guidelines and harming personalization programs.
4.4 Pricing and availability
- As of October–November 2025, Comet is free to obtain globally; earlier Max-only and Professional-only restrictions have been eliminated.
- Perplexity monetizes by way of Professional / Max subscriptions for increased mannequin tiers and by way of Comet Plus (~$5 / month), which grants entry to curated information and writer content material and is bundled into Professional / Max.
Match:
- Very robust for customers who need most automation throughout analysis, communications, and purchases, and who’re comfy working on the bleeding fringe of the safety and platform-policy threat curve.
Comparability Desk
| Dimension | ChatGPT Atlas (OpenAI) | Edge + Copilot Mode (Microsoft) | Dia (The Browser Firm) | Comet (Perplexity) |
|---|---|---|---|---|
| Engine / platform | Chromium-based; Atlas shell with OWL structure; macOS now, Home windows / cellular deliberate | Edge (Chromium) on Home windows and macOS with optionally available Copilot Mode | Chromium-based AI browser; macOS solely, GA, no invite; Home windows not but introduced | Chromium-based browser with built-in Perplexity search and assistant; desktop world, cellular rolling out |
| Agentic autonomy | Excessive: Agent Mode can click on, navigate, fill varieties, guide reservations, and chain multi-step workflows contained in the browser | Medium: cross-tab reasoning and Actions; can carry out some transactional steps however with restricted scope and reliability | Low–medium: chat, Abilities, and reminiscence over tabs; no normal agent that freely manipulates arbitrary websites; autonomy deliberately constrained | Excessive: Comet Assistant executes long-running workflows throughout looking, e mail, calendar, and e-commerce, together with end-to-end purchasing and planning flows |
| Reminiscence / personalization | Browser reminiscences retain summarized context for ~30 days; persistent activity context throughout periods, opt-in and user-controllable | Journeys over historical past, context sharing for Copilot is opt-in; personalization tied to Microsoft account and privateness controls | Native encrypted storage of historical past, chats, bookmarks; Dia Reminiscence for personalization with skill to restrict shared context | Native-first looking knowledge plus cloud-side fashions; settings permit deleting native knowledge and tuning assortment |
| Greatest-fit use circumstances | Advanced analysis, automation-heavy workflows, and agent experiments the place robust autonomy outweighs threat | On a regular basis looking with AI summaries and analysis help in Microsoft-centric environments | Studying, writing, and planning the place privateness and structured Abilities are extra vital than full automation | Energy customers who need a private operator for looking, communication, and purchasing, and who will actively handle safety and coverage threat |
Which browser to decide on in 2025?
- Choose Atlas once you need to discover the frontier of in-browser brokers. It affords the richest motion floor and reminiscence mannequin, at the price of higher complexity in security and compliance design.
- Choose Edge + Copilot Mode once you want incremental AI help in a browser that already matches Microsoft-centric enterprise governance, and you like scoped brokers over unconstrained ones.
- Choose Dia when your main workload is studying, studying, and writing, and also you need robust local-first ensures and express management over what info the mannequin sees, with minimal automation.
- Choose Comet provided that you explicitly need a high-autonomy private operator in your browser and are prepared to trace safety advisories and platform insurance policies intently.
References:

