Agentic AI browsers are transferring the mannequin from ‘answering in regards to the internet’ to working on the net. In 2025, 4 AI browsers outline this area: OpenAI’s ChatGPT Atlas, Microsoft Edge with Copilot Mode, The Browser Firm’s Dia, and Perplexity’s Comet. Every makes totally different design selections round autonomy, reminiscence, and privateness. This text compares their architectures, capabilities, and threat profiles so numerous sort of customers can resolve which browser aligns with their workflows.
What are Agentic Browsers?
Agentic browsers usually are not simply ‘chat over a web page’. They expose the browser’s DOM (Doc Object Mannequin), tab graph, and historical past to an AI mannequin and permit it to:
- Learn and purpose over a number of tabs
- Keep activity context throughout time
- Take actions reminiscent of navigating, filling kinds, and finishing workflows
OpenAI ChatGPT Atlas, Microsoft Edge Copilot Mode, The Browser Firm’s Dia, and Perplexity’s Comet all do that, however with totally different tradeoffs in autonomy, reminiscence, and safety.
Excessive-level comparability
- Atlas is essentially the most totally agentic: deep ChatGPT integration, wealthy browser management, robust however advanced reminiscence and privateness story.
- Copilot Mode is an incremental however vital extension to Edge: unified Copilot, cross-tab reasoning, early ‘Actions’ for automation, nonetheless conservative in contrast with Atlas and Comet.
- Dia is an AI-first browser constructed on Chromium, optimized for studying, writing, and structured workflows with privacy-first defaults and deliberately restricted autonomy.
- Comet is a extremely agentic private assistant browser with deep workflow automation, a local-data narrative, and at the moment essentially the most aggressive authorized and safety threat profile.
The remainder of the article unpacks these variations in a extra technical means.
1. ChatGPT Atlas (OpenAI): AI-native browser with full agent mode
1.1 Structure
Atlas is a devoted AI browser constructed round ChatGPT quite than a regular Chromium shell with an extension. It runs on Chromium however wraps it in OpenAI’s OWL course of structure, which separates the rendering engine from the Atlas utility and agent layer.
Key traits:
- macOS solely at launch, with Home windows, iOS, and Android ‘coming quickly’.
- ChatGPT is uncovered in every single place: omnibox, primary panel, and a ChatGPT sidebar that may see the present web page and tabs.
This offers Atlas a first-class API into:
- Present tab DOM and visual content material
- Tab checklist and navigation historical past
- Consumer queries and former dialog state
1.2 Agent mode: actual browser management
Agent Mode is the important thing differentiator. For Plus / Professional / Enterprise customers, Atlas can execute multi-step workflows:
- Open and shut tabs, observe hyperlinks, and swap websites
- Fill out kinds and on-line purposes
- Guide reservations reminiscent of lodges and eating places
- Examine merchandise throughout a number of websites and return structured summaries
Constraints:
- Agent mode can not entry native recordsdata or the OS, and can’t obtain or execute native applications. It’s sandboxed contained in the browser.
- Actions require express person consent; Atlas surfaces prompts like ‘Ought to I begin clicking and filling these kinds’ earlier than executing workflows.
1.3 Reminiscence and privateness
Atlas introduces browser recollections:
- It shops filtered summaries of visited pages and inferred person intent, not full web page captures. Summaries are retained for about 30 days, enabling queries like ‘reopen the studies I learn yesterday’ or ‘proceed the Athens itinerary plan’.
- Recollections are opt-in and may be considered, edited, or deleted. Reminiscence may be disabled globally or on particular websites, and Atlas helps incognito.
OpenAI additionally added parental controls that allow guardians disable each browser recollections and agent mode for baby accounts.
Important factors:
1.4 Pricing and match
- Atlas is free to put in for ChatGPT customers on macOS.
- Agent Mode is barely accessible on paid ChatGPT tiers (Plus, Professional, Enterprise, Enterprise).
Match:
- Greatest for customers who need most in-browser automation and are comfy with cloud-centric information dealing with and a still-evolving safety posture.
2. Copilot Mode in Microsoft Edge: tab-reasoning with managed autonomy
2.1 Structure
Copilot Mode is Microsoft’s AI layer inside Edge, not a separate browser. It exposes:
- A unified Copilot field on new tabs for chat, search, and navigation
- Deep integration with Edge context (open tabs, historical past, and a few browser settings) when customers decide in.
Microsoft additionally ties Copilot Mode into:
- Journeys: topic-centric clusters over looking historical past, which Copilot can summarize and re-open.
- Copilot Actions: an early agentic layer able to actions like clearing cache, unsubscribing from mailing lists, and reserving reservations in preview.
2.2 Agentic conduct
In contrast with Atlas:
- Copilot Mode can purpose throughout a number of tabs, summarize and evaluate them, and help with structured duties like journey planning or multi-site analysis.
- Actions Preview extends this into partially agentic flows, reminiscent of reserving a restaurant or filling kinds, however present evaluations present inconsistent reliability and occasional ‘hallucinated’ completions of duties that weren’t efficiently executed.
Crucially, Copilot Mode stays extra constrained than Atlas or Comet:
- It doesn’t expose an overtly programmable DOM-level agent with free cursor management
- Motion templates are narrower and guarded, significantly for e-mail and account-sensitive operations
2.3 Information, privateness, and enterprise posture
Edge with Copilot Mode is clearly aimed toward enterprise adoption:
- Copilot entry to tab and historical past information is explicitly permissioned; customers can disable history-based personalization, Copilot context, and Copilot Mode fully.
- Microsoft integrates Immediate Shields and Azure AI security layers to mitigate immediate injection and jailbreak makes an attempt.
Match:
- Acceptable the place organizations need AI-assisted looking and cross-tab reasoning whereas conserving automation scoped and extra auditable than a totally agentic browser.
3. Dia (The Browser Firm): AI-first, Chromium-based, privacy-forward
3.1 Structure and UX
Dia is The Browser Firm’s AI-centric successor to Arc, constructed on Chromium and at the moment accessible on macOS solely.
Core design selections:
- The canonical interplay is ‘chat along with your tabs‘: Dia’s assistant can learn open tabs, referenced tabs, and choices, and reply questions or rework content material in place.
- Dia features a Abilities system, the place customers outline reusable immediate ‘scripts’ and workflows for duties like note-taking or analysis templates.
Dia’s UX is optimized for:
- Studying and understanding long-form content material
- Writing and modifying in-page
- Studying workflows (tutoring, flashcards, argument comparability)
3.2 Reminiscence and ‘local-first’ privateness
Dia’s primary differentiation is its privateness posture:
- Searching historical past, chats, bookmarks, and saved content material are saved regionally and encrypted, with information despatched to servers solely when required to reply a particular question.
- The Reminiscence function shops summaries and discovered preferences, however customers can disable reminiscence fully in settings or management what contexts are shared.
The web impact is an AI browser that tries to behave extra like an area data layer with scoped cloud calls quite than a steady telemetry stream.
3.3 Agentic scope and constraints
Dia is deliberately much less agentic than Atlas or Comet:
- The assistant can learn and summarize pages, rework textual content, generate content material, and run Abilities over the present tab set.
- Present public builds don’t expose a normal DOM automation agent able to open-ended clicking and type submission throughout arbitrary websites.
In observe, Dia behaves as a high-context copilot quite than a totally autonomous internet operator. That is aligned with the corporate’s positioning and with Atlassian’s said intent after buying The Browser Firm, which emphasizes particular person data employee workflows over transactional automation.
3.4 Pricing and availability
- Dia now ships to all Mac customers, no invite required, as of October 2025.
- Free tier: Core AI chat, Abilities, and Reminiscence, with utilization limits.
- Dia Professional at $20/month unlocks successfully limitless AI chat utilization inside phrases of use.
Match:
- Robust for instructional and writing-heavy workflows, for customers who need AI-augmented looking with out handing an agent broad management over the net session.
4. Comet (Perplexity): extremely agentic assistant browser with heavy threat floor
4.1 Structure and capabilities
Comet is Perplexity’s AI browser constructed on Chromium, positioned as a private AI assistant and ‘considering companion‘ quite than a easy search UI.
The Comet Assistant can:
- Summarize and discover any web page
- Execute multi-step workflows for analysis, coding, assembly prep, and e-commerce
- Handle e-mail and calendar through built-in connectors
- Deal with advanced duties like evaluating merchandise, studying critiques, and transferring all the way in which to checkout.
Latest updates lengthen the agent to work longer and throughout bigger jobs, emphasizing persistent, agentic conduct over many tabs and time intervals.
4.2 Information mannequin and privateness claims
Perplexity’s Comet Privateness Discover and product pages declare:
- Searching information, cookies, and saved credentials are saved regionally on the system by default.
- Customers can delete looking information and saved credentials from Comet settings, and handle cookie conduct.
- Integration with 1Password retains vaults end-to-end encrypted and opaque to Perplexity.
So the official structure is a hybrid: native browser state with selective context uploads to Comet’s servers and Perplexity’s search fashions.
Nevertheless, a number of unbiased critiques argue that regardless of these controls, the mix of: Deep integration with third-party providers (Gmail, calendar, monetary accounts) and excessive agent autonomy over these providers produces a big efficient privateness threat envelope, particularly for company information.
4.3 Safety incidents and authorized stress
Comet at the moment has essentially the most seen safety and authorized points among the many 4:
- Oblique prompt-injection / ‘CometJacking‘: LayerX and different researchers confirmed that malicious URLs and embedded prompts may hijack Comet’s assistant, exfiltrating information from related providers and even performing fraudulent actions.
- Though Perplexity has patched particular vulnerabilities, safety audits from Courageous, Guardio, and others nonetheless advocate excessive warning for delicate workloads.
- Amazon lawsuit: Amazon is suing Perplexity over Comet’s ‘agentic purchasing’ behavior, alleging that automated purchasing periods accessed buyer accounts and impersonated human looking, violating platform guidelines and harming personalization programs.
4.4 Pricing and availability
- As of October–November 2025, Comet is free to obtain globally; earlier Max-only and Professional-only restrictions have been eliminated.
- Perplexity monetizes through Professional / Max subscriptions for increased mannequin tiers and through Comet Plus (~$5 / month), which grants entry to curated information and writer content material and is bundled into Professional / Max.
Match:
- Very robust for customers who need most automation throughout analysis, communications, and purchases, and who’re comfy working on the bleeding fringe of the safety and platform-policy threat curve.
Comparability Desk
| Dimension | ChatGPT Atlas (OpenAI) | Edge + Copilot Mode (Microsoft) | Dia (The Browser Firm) | Comet (Perplexity) |
|---|---|---|---|---|
| Engine / platform | Chromium-based; Atlas shell with OWL structure; macOS now, Home windows / cellular deliberate | Edge (Chromium) on Home windows and macOS with non-compulsory Copilot Mode | Chromium-based AI browser; macOS solely, GA, no invite; Home windows not but introduced | Chromium-based browser with built-in Perplexity search and assistant; desktop world, cellular rolling out |
| Agentic autonomy | Excessive: Agent Mode can click on, navigate, fill kinds, e-book reservations, and chain multi-step workflows contained in the browser | Medium: cross-tab reasoning and Actions; can carry out some transactional steps however with restricted scope and reliability | Low–medium: chat, Abilities, and reminiscence over tabs; no normal agent that freely manipulates arbitrary websites; autonomy deliberately constrained | Excessive: Comet Assistant executes long-running workflows throughout looking, e-mail, calendar, and e-commerce, together with end-to-end purchasing and planning flows |
| Reminiscence / personalization | Browser recollections retain summarized context for ~30 days; persistent activity context throughout periods, opt-in and user-controllable | Journeys over historical past, context sharing for Copilot is opt-in; personalization tied to Microsoft account and privateness controls | Native encrypted storage of historical past, chats, bookmarks; Dia Reminiscence for personalization with skill to restrict shared context | Native-first looking information plus cloud-side fashions; settings permit deleting native information and tuning assortment |
| Greatest-fit use instances | Complicated analysis, automation-heavy workflows, and agent experiments the place robust autonomy outweighs threat | On a regular basis looking with AI summaries and analysis help in Microsoft-centric environments | Studying, writing, and planning the place privateness and structured Abilities are extra necessary than full automation | Energy customers who desire a private operator for looking, communication, and purchasing, and who will actively handle safety and coverage threat |
Which browser to decide on in 2025?
- Choose Atlas once you wish to discover the frontier of in-browser brokers. It presents the richest motion floor and reminiscence mannequin, at the price of larger complexity in security and compliance design.
- Choose Edge + Copilot Mode once you want incremental AI help in a browser that already matches Microsoft-centric enterprise governance, and you like scoped brokers over unconstrained ones.
- Choose Dia when your main workload is studying, studying, and writing, and also you need robust local-first ensures and express management over what data the mannequin sees, with minimal automation.
- Choose Comet provided that you explicitly desire a high-autonomy private operator in your browser and are keen to trace safety advisories and platform insurance policies carefully.
References:

