Facebook denies it collects call and SMS data from phones without permission
techcrunch.com
techcrunch.com
Even though legally they are in the right, we as users should make this fact irrelevant and just abandon the platform. Let them be right, let them win the argument but lose the battle with the general public.
The problem is that very few people cared.
So even if people start leaving facebook in mass, it will just start all over again with another bad actor.
unless they want to prevent this from happening in the long run?
How many tons of people are leaving Facebook now?
As another example, if you translated tete a tete into "head to head", those actually have slightly different meanings in English. Tete a tete translates idiomatically to "one on one", a private meeting of the minds, while "head to head" is a direct--usually public--confrontation or encounter, as one might find in a sporting match.
Do I do it right ?
You could think of English as a contest between other languages, to see which one can get the biggest share of the etymology. French is one of the leaders. A lot of the core words come from Norman, but modern terms, particularly those drawn from cuisine and fashion, have made it in as well.
I found French class hard growing up. Until I realized that this "latin" language had as much in common with English as it did my two romanance language.
Even that is dubious. Law is interpreted by judges for this exact reason: people pushing it to extremes.
The legal system (at least in US and EU) needs to catch up to this, but it does. In the EU, the GDPR [0] will require "freely given, specific, informed and unambiguous indication of the data subject", which is a lot more than Facebook's claim of having "permission". We will see how judges interpret that.
I'm not so sure about that, but that's what courts are for.
Judges are getting more tech-savvy, and I think lawyers are also getting better at explaining the deceit. There is hope, the question is how long it will take at this point.
If the pop-up does not adequately convey the consequences of agreeing, it cannot reasonably be considered a form of consent.
GDPR won't dent Facebook in the least. They'll bend where they have to, and no further. They'll pay occasional fines and that won't matter either.
If you take it to an extreme and the only thing they can do is show non-personalized advertising and do zero tracking, they'll still print billions in profit in the EU market. That's what owning most of Europe does for you. Their gross profit margin globally is just under ~87%. Cut that in half and they still have a very profitable business with margins comparable to Google.
Facebook could run entirely untargeted advertising on their platform globally and still yield enviable profit margins. Their platform is extremely tightly run on costs compared to most tech giants.
People talking about doom on this, aren't discussing facts or using logic, they're projecting a revenge fantasy out of emotion. It's driven by a desire to punish Facebook.
Living in EU, and I am thrilled at the party we will have, when 1-2 million people/facebook users will send this letter to FB [1]. I strongly believe that this will hurt them financially (where it actually matters/hurts).
I (try to) sinkhole every tracker, advertiser etc. on my PC and jailbroken iphone. I am sure that I don't block every one, but 90% is better than 0%.
It may keep me busy, but when I start receiving the answers that FB, Amazon, etc. have provided my data to XYZ broker, and then I will be more thrilled when I send THOSE guys the same letter.
Of course after every inquiry they will be receiving a "right to be forgotten" letter.
Hurt them where it does until they learn to respect people and not see them as items to be traded.
[1]: https://www.linkedin.com/pulse/nightmare-letter-subject-acce...
Ps: I am not a hater. I enjoyed FB until it started to try to manipulate me e.g. altering my timeline and showing me what THEY deemed is 'good for me' (profitable for them).
Pps: They make enough from advertising. It was excessive greed that got them to start the sell-out.
As someone who’s Jailbroken dozens of iPhones, I understand the appeal. That said, you seem to prefer privacy/security, and I can unequivocally state having a jail broken iphone is a huge step backwards on both.
Will Facebook even check or will they just play it safe and accept most requests?
So yes, it does matter, and them being compliant is a good thing.
Facebook's revenue is almost exclusively from advertising. Advertising costs on Facebook depend on reach, PPM, and/or PPC. Facebook advertisers don't pay for "active users" or even "users" -- they pay for PPM/PPC. In other words, your data is relatively worthless if you aren't around to be targeted based upon it.
Despite having a profile, if a user isn't there to see the ads, that means less reach and fewer clicks. When advertisers realize the apparent ineffectiveness of FB advertising, ad rates will decline, reducing revenues for FB. It's unlikely FB would actually run out of money because with reduced scale comes reduced costs -- eventually the entire platform might be operated by Zuckerberg at at a WeWork rented desk after having laid off everyone else.
My point is that your data is pretty much useless if you aren't there to be exploited because of it.
Facebook and Google are huge really for one main reason -- self-service advertising. Some local bike shop can experiment with $200 in PPC super-easily. That local bike shop can't as easily run a radio ad or TV ad and measure the results as easily. So Google and FB have made advertising something that is accessible to those with both lower budgets and lower sophistication. The Coca Colas and General Motors of the world don't care about FB or Google at all -- they have the resources to sponsor the Olympics or national TV shows or pro baseball teams.
I downloaded my Facebook archive this weekend and it was a massive 12kb. I know entirely what it means to have a living account and not feed the beast, but I am also the rarest exception that disproves the norm. Deleting a Facebook account means the drug addict cannot relapse.
Advertising isn't the whole story by a long shot... hence CA / SCL Group (and whom else shall we add next?)
Google plus failed, so why wouldn't Facebook eventually do so also? The youth don't have Facebook, it's mostly the 20-40 year olds who do. This 20-40 generation follow the mainstream media news and most of them are capable of realizing the harm in not protecting ones own privacy. Also, the current theme of news regarding social media is that it's being seen as a threat to democracy due to the ease of massive manipulation through political propaganda. A huge attack! Threaten democracy and the people will hate it.
Facebook does have the network effect, so killing its network effect will be much more difficult.
Google have contributed to privacy issues, e.g. with poor permission management.
It's not a ideal solution however. If as a society we have decided social networks are important a not for profit, or decentralised federated scheme is probably the way to go.
Oooh if only Apple did "social" apps well; they are famously not-so-great at doing them, I'm not sure where that comes from at root though.
Shooting from the hip: Maybe their intense internal secrecy translates into a worldview where the hyper-focus on the 1:1 relationship with their customer obscures their ability to see how their customers (and potential non-customers!) could interact; might even be dangerous.
Many people didn't realize that we still living in a global society that pretty much made by many super large sized Black Pearl[0]s and Jack Sparrow(s) is the captain.
Dear Captain Jack is cool sometimes, and could bring you to the treasure, but you should never trust him that he will taking care of you. In fact, regardless what he said, he don't care about you even a little, all he care about is himself. If you fell off board, he will not bother to save you, unless it's out of coincidence.
So yes, you may follow him closely for an amazing adventure if you want to, but whether or not you will survive in the end, it's all depends on you.
[0] Yes, that pirate ship.
Plus, how effective is the advertising in motivating purchase versus sowing seeds of discontent?
It has utility, yes, but what the majority seem to consider, "not good".
Facebook's controlling minds don't care about you, they care about if there's reduction in profit [or profit generating ability].
Except they do care about their associations and brand management:
'At least three companies -- Sonos, Commerzbank (CRZBF) and Mozilla -- have pulled advertisements off Facebook after a data scandal engulfed the social network. Others are asking tough questions.
Unilever, which owns brands including Dove, Lipton, and Ben & Jerry's, issued a forceful warning to the platforms in February, saying they had become a "swamp" of fake news, racism, sexism and extremism.
"We cannot continue to prop up a digital supply chain which at times is little better than a swamp in terms of its transparency," said Unilever marketing boss Keith Weed'[1]
[1] http://money.cnn.com/2018/03/23/technology/advertisers-faceb...
We'll, they're contributing to this [1].
As much as they "hate" the platform, they still love the ad targeting it provides. They all do. Which is probably one of the only reasons these brands even bother.
They just can't help themselves when it comes to being able to push $X towards women only, in their 30's, who have small impressionable children at home, are affluent enough to buy expensive soap, etc, etc, etc.
[1] https://www.nytimes.com/2017/10/08/business/dove-ad-racist.h...
Exactly. That's why they must be regulated. Pharma companies, food companies, and airlines, to mention three, have the same sorts of characteristics in their businesses.
Examples: Airlines have regulations because the typical user has no way to evaluate maintenance regimes or navigation procedures. The big information-hoovering dotcoms need the same sorts of regulations for the same sorts of reasons. "We obtained user permission" needs to be a stronger claim than "we tricked users into checking a box."
But because European politicians have some integrity left and internet is inherently global, most internet companies need to do these for everyone.
Yes, it’s not perfect, but a great first step.
Having that in mind, the project Gutenberg lawsuit makes sense. Imagine a service that copies a requested book and sends you that copy, all by postal services. If that company shipped into a country where the book in question stills protected by copyright, then it is clear that there will be legal action.
If regulations were introduced because of users not knowing what's good and beautiful, believe me, IT industry would be the most regulated thing in the world.
a social media platform that can be used to organize and manipulate hundreds of millions of people globally is far more dangerous than any airplane.
The formula is simple: promote emotionally powerful events that support your agenda, ignore events that inspire feelings counter to your agenda, deify supporters, demonize opponents, censor and ostracize anyone who speaks against the agenda.
That formula has led nations to war, sent innocent people to prison, changed laws, overthrown governments, led to acts of terror, and caused hundreds of millions (perhaps billions) of deaths throughout history.
But with digital information replacing newspapers, magazines, and TV, and with access to digital information being filtered through a handful of companies, those companies have immense power approaching that of governments that strictly regulate the media.
I don't agree with GP's assessment that users "haven't realized" but I do agree that the "majority however won't care". So why regulate if a majority of people are ok with it? They're not too stupid, they just don't prioritize the way some here do. Doesn't have to be a law to force them to prioritize this way. This false equivalence to expertise of airplane mechanics is completely different in a security context and these kinds of analogies only help to make others want to dismiss the point quicker. You want to regulate transparency, ok. But if some accept these things, let them.
While I agree that most people aren't stupid, I would argue that many people are ignorant. They simply don't know why they should care, probably due to a lack of understanding what it means for a company to have a copy of their data, and what that could enable those companies to do and figure out.
If that's true, solve that problem directly via education and enforcing transparency. There are also other solutions such as grants w/ stipulations, enforcement of existing fraud statutes, etc.
Let's assume there are 3 segments of people here: 1) the ignorant, 2) the non-ignorant accepting, and the 3) non-ignorant unaccepting. We have to stop letting #3 (arguably the smallest group but probably consisting of most here) run the show wrt to laws. There are too many consequences to pieces of legislation that all of us business owners have to conform to regardless of whether it is targeted to us. Most often we don't even recognize the consequences because we are so focused on how good we're going to do and how much we're going to help everyone. I dub it digital security theater.
This doesn't always apply. Should car regulations be abolished in favor of educating the ignorant?
Is your friend into tech news a lot? If not maybe that's why it wasn't shown. The only people I know who care about this story are tech people.
Don't like CNN nor FOX but still skim them for news, articles not TV nor videos.
Ok, fine, this is anecdata. But we're talking heavily tech leaning people and we didn't hear anything from them.
Nothing is going to come of this.
They'll probably be damaged if FB becomes a downmarket social network only used by those who are unsophisticated and unaware. It may not be apparent now, but it will be when some new product captures those users and starts building social momentum that FB can't counter. That's literally how FB got big, and I think they've only been able to so far prevent it happening to them because they've been allowed to buy their competition.
California is a two-party consent state for recording, and it's not an unreasonable stretch to say this should also include call metadata. If one party (i.e. Me) opted out, and someone else didn't, they now have a log that I didn't give them permission to make.
I think this is probably the most strong case users will have against Facebook, and I honestly think it's a pretty damned good one, but IANAL, YMMV, etc.
Either way, if you're still using the Facebook app after this has come to light... you're probably setting yourself up for a world of pain. Even if you don't delete Facebook outright, the risks of having their terribly coded app on your phone vastly outweigh the benefits at this point (you know, if you didn't delete it when people realized it decreased their battery life by 10-20%, or that it asked for every permission Android had an option for, with no way to tell Android to restrict access back-in-the-day...)
Yes. It is an unreasonable stretch. Cal. Penal Code § 632 prohibits "eavesdrop[ping] upon or record[ing] [a] confidential communication." There is no set of circumstances in the history of telecommunications where seeing your itemized phone bill is the same as eavesdropping.
I understand you feel violated. You should. What Facebook did is vile. But that's not a reason to throw due process out the window.
If a law said i couldn't "record your visit to a shop" and I shared commercially that you "went to the shop at X time and stayed Y minutes" even if I didn't record the details of your purchases, or what you were wearing, or whatever, it would still appear to be a contravention of the letter of that law.
It is very unreasonable. All modern phones automatically keep a log of your phone calls (call history). Should I ask for the consent of anyone I call or delete the phone call from phone history immediately after, otherwise I face criminal penalties?
People simply do not care about their privacy if its in conflict with convenience. It has been common knowledge for years that Facebook will directly use that data against you and still people, completely aware of this, didn't care.
The only thing that made people care about their loss of privacy was a change in fashion. A new trend. Somehow, now, it is suddenly bad where before it wasn't. I simply cannot find the words to blame Facebook for this.
Also, Zuck arguing he has your consent is like the spouse saying "You mumbled 'okay' when I badgered to take pictures of you naked! That's permission!". Also Zuck saying it's secure is like your spouse having those pictures in a Windows share in his frat house but telling his frat bros "tell me that you agree not to look at those pictures." (More like your spouse saying the small print says he's allowed to distribute those pics to other people, but only if they promise not to misuse them...).
> People simply do not care about their privacy if its in conflict with convenience
is only partially correct.
So far I have been able to distinguish these kinds of people:
- people unaware
- people aware that try their best to keep privacy (if they are on facebook, they limit their usage - more or less like "lurkers")
- people aware and still posting stuff on FB/giving some permissions and they still do "something" (a bit more than lurkers above)
- people aware but "I don't have anything to hide", yet still unaware of the full potential of lack of privacy and they post whatever they want
- people aware and educated about privacy and "I don't have anything to hide" (yes, they do exist) and they still post whatever they want
> I simply cannot find the words to blame Facebook for this.
I have to disagree here as well. There are certain things which I agree with you on, e.g., this feature was enabled by default, because users want to have more convenience. Indeed! However, what about last week's scandal with Cambridge Analytica? And what else aren't we aware of? I am trying my best not to connect these two facts, yet, it seems there is a pattern when it's about user data => who cares, they don't know what they want.
This isn't news to me. Any data submitted by a user to Facebook is forever surrendered to Facebook who then owns it. Facebook can do whatever they want with their property.
The only surprise there is that users so happily agree to this madness only to be shocked by the result. What did they think was going to happen? Still, I don't blame Facebook for this.
It reminds me how people (Twitter addicts) were shocked at this website 10 years ago: http://pleaserobme.com/
Is that consent? Do you have a hard time finding the words to blame the malware creators?
It's not great, but it's a little better than you suggest.
https://techcrunch.com/wp-content/uploads/2018/03/opt-in_scr...
The no button is barely recognizable as button. But the No button is barely recognizable as a button and it and the explanation are gray on white, while the Yes button and misleading title are much more emphasized. And even half the explanation is bullshit like "better experience for everyone". Plenty dark UX in my book.
(Though I assume a lot of people would have agreed to this, even without the dubious UI)
The concept in medicine is that consent for treatment is done in a simple way that encompasses things that are commonly an issue (but often a minor inconvenience), things that are rarely an issue but are disastrous, and things that might specifically be an extra-big issue for the patient (i.e. damage to fingertip sensation for a typist, or something like that).
This gives the responsibility of getting the salient issues communicated to the person requesting consent - forcing it to be phrased in an understandable way. I see some companies are doing a summary of the terms and conditions (seen it with Virgin and Google), which is welcome, as long as they are including what is common and important in that summary and not hiding things in the T&Cs.
I remember when Google and Microsoft changed their privacy policies 2-3 years ago to become much more generic and "unified" - as in they could now use your data however they found fit from across all of their services and products. Great piece of PR that "unified" trick, though, so props to the PR team, I suppose.
The tech media mostly treated it with a shrug even when there was something that sounded quite suspicious in there, and had a tone of "yeah, but that's probably just used for X, and it's unlikely Google/Microsoft will use it for other nefarious purposes. It's just for legal reasons, you see."
No, those provisions weren't put in there "just for legal reasons" and they were put in there on purpose because they were meant to be used. Also, if they put it in there "for legal reasons" it's also because they intend to use it and need the legal cover. It's weird how the media took out exactly the wrong message from it back then.
It also bares repeating, because the media didn't cover it much back then, and it was quite a sneaky thing for Google to do - Google changed its privacy policy to no longer keep your data "anonymized." Many people even on HN like to defend the companies' data collection "because they anonymize it", which in itself has always been a joke, as studies have proven, but they no longer even do that:
https://www.extremetech.com/internet/238093-google-quietly-c...
Assumed consent of an ignorant party is effectively no consent at all.
They have done great things in that regard by pushing the whole industry forward
Unfortunately, there's also the little matter of EULAs.
What the legal precedence is for UX patterns considered deceptive enough to be intentionally malicious?
The best I could find was a settlement with linkedin in 2015: https://www.fastcodesign.com/3051906/after-lawsuit-settlemen...
Just wrote about it here: http://www.tnhh.net/posts/shitty-by-default.html
It was required in 8.0 to tell the users that they're collecting this data. So the question is, did they collect it before 8.0 w/o permission?
https://developer.android.com/about/versions/oreo/android-8....
I posted this in another thread, but it's relevant here too:
Isn't this an Android issue? I mean, Facebook is collecting the data, but they're asking for it like every other Android app does.
As an example, iOS used to just show a dialog that mentions an app wants to use your location, and it was later changed to:
1. a dialog that asks if it's ok to use your location while "you use the App" with,
2. a required blurb by the app that specifies how it's used, and
3. a separate dialog for when the usage of your location also applies "even when you are not using the app", with a clear option to instead grant the permission only if the app is running in the foreground.
iOS also warns you when you use a custom keyboard if the keyboard wants "full access". And clearly explains this means it can "transmit anything you type, including things you have previously typed with this keyboard", including "sensitive information such as your credit card numbers or street address".
I quoted directly from the dialog boxes because I think the wording is well crafted to make it very clear for non-savvy users. Android on the other hand literally just asks you if you want to use Messenger as your "SMS app". This tells nothing to the user, doesn't inform them what data can be accessed, what can be done with it (can it leave the phone?), nor gives the user any further options.
I know Facebook privacy is the hot-topic right now, but my problem with this is there's lots of other apps that can and probably have used these permissions too, and are probably storing this information. This is the opportunity to put Google under fire for their terrible Android permission system, which extends to random games asking for full phone access and a myriad of other sketchy things, but by focusing on Facebook this opportunity is being lost.
Video: https://www.youtube.com/watch?v=39iKLwlUqBo&app=desktop
Transcript: https://www.digitalmusicnews.com/2018/03/25/steve-jobs-user-...
Recent article: https://qz.com/1236322/apples-steve-jobs-tried-to-warn-faceb...
Sarcasm aside, it's a good quote, but misses the crux of the issue: incentives. User data sharing/selling (whether through partnerships or advertisement targeting) is Facebook's revenue model. Everything else they make money off of is insignificant compared to that. This, I think, is what people mean when they say something is "in a company's DNA": was a dubious partnership with Cambridge Analytica or an only-deceptively-authorized potential collection of contact/SMS data some sinister plot, or the goal all along? Probably not. Was behavior like this considered less-than-scary to Facebook's decision-makers, swept under the rug, or seen as a minor extension of what they already do to make money? Almost certainly.
What pisses me off is that while I can choose what information I share, I haven't given other people nor Facebook permission to read phone call logs that involve me.
Not to mention that I rarely use my phone's "phone" features, including SMS. I live an ocean away from most family and have never had many friends. I have a couple here in the country outside my spouse, and we talking is sporadic at times since they both have young children.
So "I called $phoneNumber" is OK but "I'll sell you details of $person's phone calls" is not.
While (an abstract) you may be OK with trading your privacy for a convinience of a free email account, it automatically means me also getting sweeped by Google's information dragnet.
Make a facebook account and befriend all (and only) your competitors, market to the suggested friends.
I really hope they will eventually crater like all the other social networks before them and I should have a way of asking them to delete all data they have on me including meta data from sms/phone calls they might have collected.
1. how well can this be actually used currently to create a proper psychosocial(?) profile of an individual? What's the current state of the art? Any suggestions for books or papers to read on the matter?
2. do we have any idea of how much our ability to do 1 will improve over time, given the same data? I often find it difficult to separate the Derren Brown style 'profiling' bullshit from what's actually possible. And I also keep reading that 'big data' is not quite as easy to use as it's often made out to.
3. how valuable does this 'stale' data remain? Personality is by definition supposed to remain stable, but I recall learning that even things like friendships, political/world views, other non-personality characteristics are relatively unchanging for most people after somewhere (early?) in their twenties. This could mean that even if Facebook does privacy 'properly', or somehow disappears, there's a rich dataset of individuals that, even if only in the future, be shockingly powerful to manipulate. And we're already scarily susceptible to manipulation using 'conventional' means.
I suspect quite poorly.
It's 2018 and I've been hearing pitches and narratives to do with fancy targeting of advertisements and user profiling now for 22 years.
And what do we have ? If I search for something obscure related to an (product), I will see unbelievably blunt and almost comically generic (product) ads for a week. Even if my search makes it obvious that I am not a prospective customer.
What advertisers receive for their money on these platforms is laughable and I am sure there's a complicated sales pitch with graphs and fancy terms of art and mentions of "AI" ... and it's all just bullshit, just like it has always been.
But a few things made me (sort of) change my mind over time, and worry more actively:
1. the ability to properly use the data available is a skill in itself. The fact that this 'new, non-private' internet is still relatively young (really just a decade, post-smartphone I'd say) could mean that most companies/governments simply didn't know yet how to properly use it. Considering the many examples of the slowness with which organizations tend to adapt, that doesn't seem unlikely.
2. There's a huge difference between the data available, and the targeting achievable pre-smartphone, and post-smartphone. On top of that, I distinctly remember that throughout most of my youth (so up until a few years before world-wide Facebook) it was still very much a 'default' attitude to be very careful about your personal information online. Not quite the "don't go into chatrooms" of my childhood, but still the "don't use your real name, ideally, on <national social network>".
3. We've made quite a number of advances already in storing and analyzing 'big data', from what I understand. And a decade or two of research on this new world of personal internet data must have led to some significant advances, no? I mean, so far we've gotten really good at manipulating people with whatever new technology entered the scene. Just not right away, necessarily.
4. from personal experience, and conversations with people who do/did targeted advertising on Facebook, it really does seem shockingly easy to target specific messages to specific groups. I find it hard to believe that this does not fundamentally change the whole game of manipulation, compared to things like TV and newspapers. Hell, 'old fashioned' direct marketing / door to door sales is perhaps a precursor of all this. I remember reading quite a while back how advanced the techniques were to decide what neighborhoods to visit or snailmail-spam for particular products or services. If companies were willing to spend the amount of money necessary for that, it must have some effect. Being able to target essentially large parts of the entire world in that same way has got to be at least somewhat more powerful, which is scary enough maybe.
I'm not sure of any of this, though. Just thinking out loud and very curious to hear what others think (although ideally I'd also love some suggestions of where to find the best research/articles on the matter).
I hate ads propagating alcohol so I always report them to FB. Once I misclicked and instead of reporting it I opened linked article. Based on that click FB added alcohol to my interests. It did not matter that I reported all other similar adds before and also after that.
Facebook ad campaigns most definitely work (though I'd imagine there's some variance of effectiveness based on what exactly you're trying to sell with the ad campaigns), and lookalike audiences are an effective way of determining who to show your ads to.
It's really quite simple, as a company you can spend money on Facebook ads and you will get traffic/conversions/etc.
With GDPR they will have a legal requirement that "delete your account" deletes all of your data if you're in the EU. Currently they don't delete conversations with other people, and don't delete any ML data which was based on your data, but hopefully that will be ruled illegal under the GDPR requirements.
IANAL, but I think that would be okay, as long as they don't associate any/strip all personal identifiable information from your phone number, and don't store the phone number in plaintext.
This may not happen in the next few decades with the likes of Facebook, but imagine what kind of data that much smaller companies have that will just be sold off to the highest bidder, possibly de-anonymized to increase it's value. Does a user privacy contract hold any weight when a company is about to dissolve?
It would hold about the same weight as it does now: Effectively ignored.
TANSTAAFL. If you don’t pay with money, you’re paying with something else. Facebook is not a charity. The question is not whether they’re allowed to obtain (non-monetary) payment for using their service, it’s whether it was (and is) clear what the price is.
What irks me is why non of these services allow monetary payment. Why can’t I pay for facebook with the express agreement that none of my data is sold? It wouldn’t have mass market appeal, but it would silence many of the critics. (Same deal for all ad-funded platforms: just let me pay with money instead of time or attention.)
FB users : 2,129,000,000 [2]
$7.47/year
This is quite affordable. Curious how would marketing companies react to such idea.
[1] https://www.nasdaq.com/symbol/fb/financials?query=income-sta... [2] https://www.statista.com/statistics/264810/number-of-monthly...
Bless you?
(Seriously what does this mean?)
[0]: https://fbnewsroomus.files.wordpress.com/2018/03/opt-in_scre...
Btw. something I am required by law here in Germany. I would need written permission of every contact in my phonebook for this upload, before uploading. Same goes for WhatApp.
The UI is intentionally deceptive.
The text is deceptive. The big text says "Text anyone in your phone," which sounds great, but doesn't actually say anything about data sharing. The small low contrast text, describes what they're doing. They know that by putting it small and grey, most people wont read it.
The buttons are deceptive. It looks like there's only one button.
Even by putting all the permission stuff in a row on first startup is push ploy. Everyone knows, people just keep clicking OK until they get to actual app. People don't read the pages. People don't read the user agreements. They just want to get through the roadblocks as fast as possible so they can get to what they want.
None of this is by accident. All of these elements are chosen to push people towards the desired outcome, to upload your contacts, SMS, and call history as quickly as possible.
Then maybe "people" shouldn't act completely outraged when they find out that their call history was uploaded?
The best description I recently heard of these types push questions is "exploiting a bug in human behavior. And when the bug is in the brain, there is no patch."
This point has been the subject of numerour articles and documentaries.
Hoback states that if one was to read everything in these user/service agreements, it would take one full month, that’s 180 hours every year” and that according to The Wall Street Journal “consumers lose over $250 million dollars due to what’s hidden in these agreements.”
https://en.m.wikipedia.org/wiki/Terms_and_Conditions_May_App...
But first of all, the prompt shown in the article's screenshot was not hidden in a long ToS.
Second of all, I agree that we should work towards solving the problem that overly-long ToSs represent. What I do not agree with is the assertion that, in the presence of an overlong-ToS, we allow people to click-through, then get outraged at the company for doing something they were allowed to do by the ToS. If it really is far too long and complex for you to read, don't use the product.
Facebook is the Internet for many people, is required for authenticating by numerous services, and is how numerous groups and communities organise.
As such, its terms and services as those of numerous other services, should be defined in a standard set of obligations, rights, and responsibilities, by law.
I see this sentiment in some form a lot. Is there a name for this principle? Where does it come from? I don't in general agree with it - speaking generally, I think enforcing this principle is a way to solve some problems, but not the best way - and would be interested in discussions about the principle itself.
"Common weal", that is, the common wealth or common good, a/k/a social benefit, is probably the best general description. The notion being that there are positive externalities not addressed by the market (or there are offsetting negative externalities not imposed on the producer).
In either case, a useful functioning requires some entity with the interest, capacity, and power, to act in the public interest. The notion is an old one. It comprises Book V of Adam Smith's Wealth of Nations ("The Expenses of the Sovereign"), or in contemporary economics, the area of public sector economics (or welfare economics).
And is the domain of government, as my initial response indicated.
https://www.etymonline.com/word/commonweal
https://en.wikisource.org/wiki/The_Wealth_of_Nations/Book_V/...
If you needed a Facebook account to file a tax return or something, then I would agree that it's not discretionary.
This permission screen is a push poll.[0]
The bit about minimizing bias means that you couldn't possibly give users the A/B variants to choose from but instead must assert the best you can that no user is exposed to different variants of the same experiment. You would typically do this by giving the client a cookie with a random seed which you can then hash with a secret and the id of the experiment to get a randomly distributed but sticky/consistent variant assignment that doesn't scale client storage with the number of experiments. Where things get more interesting is how to change behavior when a user logs into a new device. Do you switch to the users set of variant assignments or keep the experience on this device consistent?
This being said, yeah, I'm pretty sure this is the result of optimization on "what fraction of users give consent" while keeping an eye on uninstall rate as a health metric.
Source: Redesigned/rewrote A/B testing (and general optimization) framework for large e-commerce company many years ago.
(Its grey-on-white designed to look identical to the copy text above the button. The only difference is placement, and a small difference in font size.)
All of this is clearly made to get people to opt-in. Heck, it is not even clear that the "not now" option is clickable.
At least it used to, and it was really abrasive about it. Definitely dark pattern behaviour
That specific popup is a clear example of how to maximize acceptance in a big portion of the population. I can almost guarantee you that popup design was chosen based off A-B testing, and had the highest rate of acceptance among designs.
Nice easy-to-read high-contrast giant-font headings that seem legit: "Text anyone in your phone!" - Yay! that's exactly what I want!!!
Tricky hard-to-read low-contrast micro-font fine print that looks like way to much trouble to try to read, detailing what ACTUALLY happens when you're tricked into clicking the:
One brightly-colored-only-thing-that-looks-remotely-like-I-should-click-it call to action.
Add in the cute emoji looking user who obviously LOVES giving up his privacy, and you've got a winner!
Wow project manager, would you look at these great test results!!! everyone wants to give us their private info!!! what idiots!
-every front-end engineer ever
Access what? Read access? Write access? Get all of their name and contact fields? Send them text messages? Call them? Spam?
If I don't give them the access, what happens next? Can I not use the app? Will the app break? Will the app just ignore it?
There's no information. If you google it for more information you will have to dig for it in some obscure google groups forum, and then yet it's not really clear. Because when you google for Android App Permissions you get results meant for Android Developers, and not normal human beings (jk about the normal human beings part).
So doesn't that mean a single party will control Signal? What prevents them from becoming the next Facebook?
Nonprofit doesn't mean the developers don't have to eat. Money has to come from somewhere.
Signed/Unsigned is only a stopgap, we need user friendly UX to control which app has access to what data and even within the same app, establish Chinese Walls between personal data access and networked code.
This attitude is just an example of the constant weasel to get access to the data.
Wouldn't it be consistent to abandon all Facebook services?
I know WeChat is more popular in East Asia, and I know a few Telegram/Signal users, but I can find about almost everyone on WhatsApp.
I was surprised by how popular it is.
Whatsapp uses the Signal protocol for message encryption[0], so they ostensibly cannot read your messages. They probably have a good handle on who you talk to and when, though.
Such a thing was considered a virus in my time.
So all these different controversies are not just a coincidence but are very much baked into their organizational culture. They are obsessed with winning at all costs and clearly see privacy issues as just inconveniences to achieving their goals.
I am not sure if it is possible to imagine a social network that truly respected privacy at its core, that didn't try to get away with as much as it could, that put its users interests ahead of increasing Daily Active Users.
But if Facebook actually operated like that, I suspect there would be a lot less concern.
I don't know if that is even possible though.
As soon as facebook would be installed without even running the app, it would access the contact database and do network operations (very probably uploads .. ).
For this reasons, well among many others, I never installed the facebook app on one of my personal devices at the time.
In their credit, when M arrived, they have updated their app pretty quickly to the new permission model.
Still, I try to be as conservative as possible with critical permissions.
The only one I regret is whatsapp now that facebook owns them.
Thankfully now that permissions are incremental, this issue is solved.
Except some apps still target an old API in order to keep install time permissions .. like SnapChat.
This will soon no longer be possible since Google will force apps to target the last API level.
Still, people don't seem to realize what giving an app access to 'contacts' or 'SMS' means.
I am not sure how to solve that tbh :/
They're an American company so profit is of course precedent over everything else. If users are naive enough to think everything they ever did on Facebook could be private, then they just cease to use it for private communications.
Culturally, there's a giant lack of people wanting to actually pay for most things digital. I don't see why it's ok to pay $5 for a mobile game on your phone but people aren't willing to fork over $10/yr for a modicum of privacy.
Should take a poll on this....
Thoughts?
I suspect I know the answer, but I have faint hope that it's not true and somebody can provide a bit more "sane" explanation.
As it is just there for SMS, I've completely removed it's access to the internet which is possible through NetGuard.
1. https://play.google.com/store/apps/details?id=eu.faircode.ne...
2. https://play.google.com/store/apps/details?id=com.textra&hl=...
Why FB needs users call and text history in first place? These privacy options are enabled by default when you install Massenger app and majority of the people are not aware of these privacy settings on their phones. And even if you alter a privacy setting on you phone then upon next update of the Massenger application it gets reset to defaults! And we all know the high frequency of app updates. It is like all of these are part of a bigger systemic issue and it smells foul play.
The thing I'm struggling to get alternative for is WhatsApp. How could I talk to all my contacts in a cross platform way without annoying them about installing yet another app?
Text/SMS - costs money because of shitty carriers.
IMessages - Works great but only on iPhones. :-(
Signal - good on paper - still have to trust Moxie not selling out, and needs people to install to be any useful.
I would love to use Signal, but I have to use Telegram. The Telegram desktop app is awesome, and it doesn't need a cellphone.
While Signal's QR code pairing method is more awkward than Telegram's SMS one, it also prevents your account from getting hacked remotely in Iran by stealing your SMS messages: https://securityaffairs.co/wordpress/49976/intelligence/tele...
https://github.com/wireapp/wire-desktop
The Russian government recently asked for the encryption keys and they have like one more week to comply.
CORRECTION: They're currently in Dubai and are relocating as needed.
As far as I know the team is in Dubai right now.
I can only vote for Matrix/Riot once again.
- federated
- multiple devices with different client software
- own server
It certainly isn't perfect, as there are a lot of 'classic' clients which lack the modern extensions (e.g. OMEMO [1], Carbons, MAM).
Clients ranked by personal preference:
- Conversations: very good, Android only, Downside: no calls (neither audio nor video)
- Gajim: 'classic' client, requires a few additional modules (slightly better than Pidgin when is comes to pictures)
- Pidgin: 'classic' client, requires a few additional modules
- Dino: very good Desktop client on paper (XEP wise), sadly it is lacking a few important desktop integration features like a tray icon, but as those should be easy to implement that client has a lot of potential.
- ChatSecure: iOS, Downsides: I never really got it to work properly. Without server side Push Notification extension it only received messages when the app was open. With the extension it worked for a few minutes, but still not what I would consider usable.
- Jitsi: certainly could be a good client, but at the moment it has no OMEMO support and therefore I stopped testing it.
While I am not a particular Matrix fan, I can recommend their Matrix vs. XMPP comparison:
https://matrix.org/docs/guides/faq.html#what-is-the-differen...
It basically boils down to: In 2012 XMPP was lacking some basic functionality required for mobile use-cases, so they went to build something technologically very different (Matrix). In the meantime, XMPP has developed its own extensions to support those use-cases and now we have two technologically very different solutions, set to solve similar use-cases.
[1]: https://omemo.top
EDIT: removed the indention from the list
Second, I never put my phone number in Facebook, but I know they have it, because at one time, it was pre-filled in the enable account recovery by phone-dialog.
So what you can export isn’t the full story. The question however is: how do you prove that and really ask for ALL data they have on you?
The download-your-data feature for a time showed the truth, in 2013: http://www.zdnet.com/article/firm-facebooks-shadow-profiles-...
So we may presume FB, especially in the US with little-to-no privacy laws against corporations, won't tell you what the really know.
The social graph should be one way not two-way and unrelated data should be discarded.
Like in the post we had a few days ago where someone exported his Facebook data and got call histories from his mother in his data.
Secondly, were they just siphoning text or did they get a whole bunch of nudie photos too?
The phone/call permissions, especially for Android, were needed for any app that wants to suspend when a call comes in and for analytics/social libs.
I always hated that about Android especially because even harmless games made it look like you were taking contacts and monitoring calls.
Of course this would be abused and it is all over the place. Unfortunately lots of apps/games are specifically built to harvest data and this was a major flaw in their permissions handling. You shouldn't need a monitor phone calls permission to allow a call to come in over your app while someone is using or playing it.
Which part of the blame goes on Apple?
[1] https://www.ftc.gov/news-events/press-releases/2013/02/path-...
"Users can grant or deny access to contact data on a per-app basis. Any call to CNContactStore will block the app while the user is being asked to grant or deny access. Note that the user is prompted only the first time access is requested; any subsequent CNContactStore calls use the existing permissions."
> The operator of the Path social networking app has agreed to settle Federal Trade Commission charges that it deceived users by collecting personal information from their mobile device address books without their knowledge and consent.
Android didn't really close/tighten permissions until 2014 with Android 4 Ice Cream.
[1] https://www.ftc.gov/news-events/press-releases/2013/02/path-...
No they weren't
For instance you are playing a game and a call comes in, you needed them to allow that and to possibly not crash your game and save your data as well as for some analytics/social network integration.
Also if you allowed os level music to be played over game audio, you need that to handle music and app state when a call came in.
It was/is a default on many large app platforms including game engines like Unity and any social network app integration such as Google Play Game Services and Unity analytics [1][2]. When you have READ_PHONE_STATE you could get the number and more.
For games it wasn't such a big thing but for apps like Facebook that are always running and kept alive playing a silent sound [3], it could get every call that ever came in on record and apparently did. With these holes, apps could scrape everything and they did [4].
[1] https://forum.unity.com/threads/unity-5-1-adds-android-permi...
[2] https://stackoverflow.com/questions/39668549/why-has-the-rea...
[3] https://www.reddit.com/r/iphone/comments/3opxhm/facebook_app...
[4] https://arstechnica.com/information-technology/2018/03/faceb...
> Where's the reference that you needed READ_PHONE_STATE to suspend your app? Shouldn't the app be automatically suspended when the caller app goes into the foreground?
Mostly for analytics and social platforms to access unique identifier for analytics you needed it such as in Unity up to 2015 [3][4].
> The Android build enforces READ_PHONE_STATE if the code has references to SystemInfo.deviceUniqueIdentifier. INTERNET is added when any network classes are referenced. ACCESS_NETWORK_STATE is added when calling Application.internetReachability
Also, early on it was required for saving state and or ensuring the app didn't crash. Mobile OSes were moving fast and without it the apps didn't auto suspend which they mostly do now. You can see some of this discussion in the links I included above. Anything older than Android Ice Cream required it as well.
It is added in by many plugins as well such as Google Game Play Services or other Analytics packages that most people didn't check. There was a reason the market was and is flooded with analytics packages.
It seems to re-pop up in analytics packages quite a bit and many aren't checking close enough per this example 2016 [4][5][6][7].
Largely it is due to people just building and shipping fast, there are other things that trigger it but the most common are doing things on suspend when a call comes in or to help allow the music to play in your game/app and turn off when a call comes in or analytics packages.
For the most part it is not needed now but up to 2016 it still was in many areas since Android started.
[1] https://play.google.com/store/apps/details?id=com.facebook.k...
[2] https://play.google.com/store/apps/details?id=com.facebook.o...
[3] https://answers.unity.com/questions/987433/read-phone-state-...
[4] https://forum.unity.com/threads/unity-5-1-adds-android-permi...;
[5] https://stackoverflow.com/questions/39668549/why-has-the-rea...
[6] https://github.com/facebook/facebook-sdk-for-unity/issues/58
[7] https://forum.unity.com/threads/read_phone_state-permission-...
There also seems a lot of pro-Apple bias that seems unwarranted/
Next earnings call will be early May probably.
It’s easy for us to say “stupid user, wtf did you think fb was doing?” But, the truth is we don’t actually know.
As tech people we are even just guessing at the real scope of FB’s collection and how they use that data. It’s not like this is something a typical user could really know because there hasn’t been a Facebook before.
It's 50/50 now if everyone will forget this next month, or if the new trend continues to remove facebook.
Only exit from the trap is turn off the internet.
IMHO Google is to stop abuses like this on the Android OS level by means of allowing users to deny any particular permission an app demands and still install the app, encouraging users to grant/deny every particular permission consciously and forcing the app authors to handle denial of any particular permission gracefully without crashes and without denying to function (but in the cases when it is absolutely physically impossible to fulfill the function the user invokes without the missing permission).
E.g. if I use whatsapp for 3 people out of my 100 contacts saved in my phone, I want to be able to give to whatsapp only the access to the phones of these 3 contacts. Others should be invisible for whatsapp, if I want so.
And they should not get the addresses, birth dates and my notices about even these 3 contacts. They should not be able to see them, unless I explicitly want to allow.
I know, users are lazy, but at least the fine grained control and white-listing should be an option. Now it's all or nothing.
You should really blame phone manufacturers/carriers and Congress for giving you the privilege of paying for a piece of locked hardware that you don't own. They're only loaning you a billboard, after all, so what do you expect? Personally I wouldn't put any important information on a locked device, nor do I ever acquire unlockable devices. People have lost their minds giving up all of the most important electronic freedoms that form the backbone of the future.
Do you mean non-unlockable?
My opinion is still that those terms of services are silly. If I ever do start my own business, one of the things on the checklist is to have a minimal, if any, terms of service, because nobody wants to waste time reading them, and 99% of what is in ToSes is in the law anyway. Except, of course, data collection beyond functional requirements. That would be a good thing to hide in long ToSes.
Other people's lawyers are the worst.
Big firms acting for small clients generally doesn't work out so well for the small client.
For example, I assume all warranty disclaimers include "not even the implied warranty of merchantability or fitness for a particular purpose" because somewhere, in a legal dispute, "no warranty" was not enough.
My take away is that you can tell users exactly what you're doing and they'll still be outraged. So don't do creepy stuff.
Indeed. :\
> The iOS security model would have served you better; Facebook could never accidentally forget you’d said no.
Interesting, so you mean this is the case even if I uninstall and reinstall the app? What if I wipe the OS and reinstall (as "cleanly" as is possible)?
If you say no, facebook can't access the data. Facebook can't conveniently forget that you said no and access the data anyway - if you say no at the system prompt, the OS won't give the app access to that data in the first place.
The system isn't perfect - it turns out my mum wasn't getting chat notifications on her iphone because she doesn't know what notifications are and she's been saying no to the prompts. But I find it somewhat refreshing to see beginner users erring on the side of saying no, rather than always saying yes to every random prompt the computer spits out. Fail-private is better than fail-public.
Also note that Android's new security model (version 6+?) is pretty similar to what you described, but yes, I do believe this incident occurred on an older version.
Ask for permission at 3am on Sunday. People will press Allow just to get done whatever they thought they were doing, and forget they ever pressed it.
This is why encryption on our phones is so important. I want my phone knowing all sorts of "creepy" things about me (medical records, etc) so that it can be more useful. What I don't want is that information anywhere except under my immediate control.
Storing encrypted in the cloud is OK as well, I suppose, as long as the encryption key is only available to me.
I did not see in the screenshot an OS permission prompt, so if the app had the access locally a bug in the settings could have reset/flip the options and upload the data anyway, like how Windows forgets about your privacy settings on updates.
How about a law that requires the party presenting legal paperwork to show that the recipient could have read the document. Use an algorithmic method to estimate the reading time, take off ~33% to account for variance in reading ability, and declare that the minimum time that must be spent with the document.
If you cannot show that e.g. someone clicked "I Agree" at lest 5 minutes (or whatever) after they received the ToS text, then the court will assume prima facie that the have not read the ToS and are not responsible for anything in it. The friction this would add to the checkout/signup process grows with the document size, creating an incentive to write short and simple ToS.
How about present your TOS in a form that is understandable by the average user in a span of 2 minutes? Without being a lawyer...(and I doubt you have 2 minutes at all)
Don't do creepy things should be a different law
It was so patently obvious that they would do this with any app that I am surprised there's a stink being made about it now.
I don't understand why people fall prey to the "install our privacy invading app" when the service works just fine via a browser.
And this is pre-installed on the phone, with the same dark patterns that would push any non-privacy conscious person to activate it, even by mistake.
"Pay us money, and we won't allow companies to manipulate you via advertising."
Or
"Pay us money, and we won't use every tool at our disposal to suck every bit of possible data out of your life"
Both of them are gross, and no user should be subject to either of those dilemmas. I'm not saying that every product should be free of use without any cost. Advertising is absolutely necessary to keep certain products and services free. Some companies take it too far though.
Put it this way: eating beef requires that a cow is slaughtered. Should we go for the painless, instantaneous kill, or since it's going to die anyway, should we vivisect it?
For example, if you make a photo editing app, you need to request access to the user's photo gallery at runtime of the app.
If they refuse, it's fully expected that your app will continue to work with reduced functionality. IIRC you will have trouble getting approved for the app store if your app breaks after permissions are refused.
- What is the minimum amount of data sharing required?
- What happens when permission is denied? Does the app close?
- Do people even understand what is being shared?
- Are these click through "consent" screens really giving informed consent? Are they deceptive and biased to get users to give permission without really understanding what is going on? ("Text anyone in your phone" doesn't sound like "Continuously upload SMS and call history." Nor does a giant blue button versus no button, look like there's even an option to say no.)
- Why is this data even allowed to be shared?" (I understand that SMS and call data has neverbeen shareable on iOS.)
Nobody asks about cars that don't come with a face stabbing device nor writes long comparative reviews about the best car to get if you prefer not to get stabbed in the face.
Has it been established anywhere that this was not the case (i.e. that just installing the app uploaded all calls and text messages)?
CyanogenMod's Privacy Guard[2] - basically a proxy that sits between the apps and the ContentProviders, and provides user-configurable "fake data" - was another good approach. Not sure if its successor LineageOS has this feature working - a search shows user complaints that it doesn't work as expected - but I hope it has retained the feature.
I feel a distro that combines both approaches would have been best. Both approaches also prove that there was no technical impediment to implementing them in stock Android.
[1]: https://copperhead.co/android/docs/usage_guide#permission-mo...
[2]: https://www.androidcentral.com/cyanogen-os-privacy-guard-kee...
I think you make fair points, but I think this does not prove anything. CopperheadOS has a different user base than Android. A permission model that CopperheadOS users understand (e.g., CopperheadOS users are likely to be more technical) may not work for Android user base.
Personally, I feel it was because Google's main business did not, and does not, provide any incentives to design stronger permission and privacy models because it itself depends on collecting information about users.
Was usability also a factor? It may very well have been.
However, I disagree with a thinking that uses usability as an excuse to treat a user base numbering in the hundreds of millions as a homogeneous set who don't know anything, and who can't learn anything new.
People fall in a spectrum of capabilities, and more importantly, every individual is capable of moving around in that spectrum with time.
For example, a non-technical user who started out giving one app all permissions may realize their mistake when their email or phone number turn up in google searches, and become more careful with other apps.
Stock Android could have catered to that and standardized on a very granular runtime permissions as the default model. They already had existing ACL models like iOS / Windows policies / SELinux to copy from. They could have left the simplification to the market - the equipment manufacturers and users - to decide. But stock Android made it a binary all or nothing choice for a long time, and left it to equipment manufacturers to provide any additional protection, who of course didn't implement anything either because they too had no incentives to protect user information or standardize the security APIs.
Even now, Android's runtime permissions, while comparatively more granular, are not granular enough, and in practice become a binary choice where some apps refuse to work if a particular permission is not granted.
I have also noticed how Google in their PlayStore keep the permission information hidden away in an obscure location at the bottom of the page, and don't provide any way to filter apps by permissions. How do I search an app that lets me draw on images without asking for contact book information? Not possible without opening every app's page and checking their permissions. I usually try a bit, give up, and head back to gimp on desktop. Is it for better usability? Does better usability mean keeping users ignorant and uneducated? I think it's not a good approach, and based on anecdotes from my personal network, I also think it's a mistaken assumption.
For anyone with a basic appreciation of "honesty" or "ethical behaviour", it is fairly obvious that simple improvements would include:
Don't deceive the user about why the app is requesting permission. Don't deceive the user about what you will do with the permissions. Provide the user with an app that does what you say it does, for the purposes you say it is for.
Examples of platforms with a good model: in this context, it is well documented that Apple has been superior to Android.
And I trust everything Facebook say precisely as much a Zuckerberg told us all we should with his much-quoted quip "They trust me. Dumb fucks."
> Maybe I'm the only one on HN that hasn't heard about it, but even so, sources shouldn't be omitted.
You asked for sources and I merely provided one such source as "proof" that Zuck actually did use those words in the past.
For me, it's kind of a geek culture equivalent of a pop culture reference - not quite as ubiquitously recognised as "Oh my god! They killed Kenny!", but probably (in this audience) as recognisable as 'Quoth the Raven, "Eat my shorts!"'