Perplexity wins on live web research and it wins clearly. The product was architected around web grounding from day one, the search index, the citation extractor, the answer composer, and the model router are tuned to produce a cited synthesis of publicly-indexed web content. When the job is "give me a referenced summary of the current state of X with links to the sources you used", Perplexity Pro is one of the best products in the category and Personal Agent does not compete on that axis. Personal Agent is a private assistant tuned for conversation, document reasoning against material the user supplies, drafting, summarisation, and code review. It does not run a live web crawl on every query, and it does not produce citations to publicly-indexed pages because that is not the surface it was built for.
Perplexity also wins on the multi-model switcher as a single-app convenience. The ability to ask the same question to GPT-5o, Claude Sonnet 4.6, Sonar, and Grok without leaving the search bar is a genuine product feature, and for users whose workflow benefits from comparing model outputs side by side, the switcher is the right surface. Personal Agent serves one model class, Qwen3-32B-TEE, chosen because it is the strongest open-weight model in the size class that fits the TEE security boundary in May 2026, and because running a single model is what makes the attestation measurement stable. The trade-off is real: Personal Agent users do not get the four-model comparison Perplexity offers. They get one model whose identity is hardware-signed.
Perplexity also wins on the Comet browser as a delivery surface. Comet is the only mainstream AI-first browser shipping with deep search integration in May 2026, and for users whose research workflow is browser-centric, open tabs, follow citations, ask follow-up questions on the page in front of them, Comet is a meaningfully better surface than a chat input box. Personal Agent delivers through Telegram, which is the opposite design choice: rather than a dedicated browser, the assistant lives inside the messaging app the user already opens dozens of times a day, with no new credential, no new install, and no new device-trust boundary. Both are legitimate surface decisions and neither dominates the other. They serve different user behaviours.
Where Perplexity wins less cleanly is privacy by default. The "AI Data Usage" setting in a new Pro account defaults to ON, Perplexity uses the user's queries to improve future models unless the user actively finds the toggle in Settings and disables it. Incognito mode exists but is per-session and must be enabled each time. For research on public-web topics this is unremarkable consumer-AI behaviour. For research that touches material the user would not want associated with their account, competitive intelligence, sensitive legal drafting, health-related queries, the default-ON posture means the burden of privacy is on the user. Personal Agent has no equivalent toggle because the assistant has no path to data egress: the conversation, the prompt, the tool outputs, and the model state all live inside the TDX-encrypted memory region of the guest VM, and the operator has no cryptographic capability to read them in the first place.