⚡ Uncle Cat AI Radar
AgentsIndustry

Gemini Spark gains Chrome auto browse for US users

Google wired its agent into Chrome, letting Spark act on live pages using a user's own logged-in sessions, while expanding Spark access to 160-plus countries.

Google began rolling out an integration between Gemini Spark and Chrome on Thursday, giving its agent the ability to drive the browser directly through a feature the company calls auto browse.

How it works

With explicit user permission, Spark operates inside Chrome on desktop rather than in a separate sandboxed browser, which means it inherits the user's logged-in accounts and saved credentials. Google's examples centre on multi-step web errands that previously stalled at authentication walls: scheduling apartment viewings, comparing flight options and beginning a booking flow. The integration is rolling out to Google AI Pro and Ultra subscribers in the United States, with Google saying other regions will follow. It is not available in the European Economic Area, the United Kingdom, Switzerland or Nigeria.

Google paired the Chrome work with a geographic expansion, extending Spark access to AI Pro subscribers in more than 160 additional countries — a substantial widening from the US-only footprint the agent carried a week earlier. Separately, the Gemini app added a Viator integration on the same day, surfacing more than 425,000 bookable tours and activities directly inside Gemini and Gemini Spark for US users, an early signal of how Google intends to monetise agentic transactions.

Why it matters

Browser agents have generally been confined to isolated environments precisely because credentialed browsing is the hard part: an agent without the user's session can read the public web but cannot complete anything that requires an account. By running inside the user's own Chrome profile, Google converts its browser distribution — the largest on the consumer internet — into an agent execution surface that startups building standalone agentic browsers cannot match on reach.

That advantage carries the corresponding risk. An agent operating with live session cookies on arbitrary pages is exposed to prompt injection from page content, and the consequences of a successful injection escalate from a wrong answer to an unauthorised action on a logged-in account. The exclusion of the EEA and UK also underlines how regulatory divergence is now shaping where agentic features ship first — and how quickly the capability gap between markets can widen.

Sources