A majority of consumers do not expect Google to track their activities
niemanlab.org
niemanlab.org
> "Do you expect Google to collect data about a person’s locations when a person is not using a Google platform or app?"
I have a feeling many people read that as "Do you want Google...." Saying "Do you expect" feels like a cynical "Do you think Google will do something you don't want them to do but are helpless to prevent, because they are a huge, uncaring, profit-obsessed corporation?" in which case, all questions can be answered "Yes" regardless of topic because the underlying cause is the same to the respondent.
"Are you aware that Google does X" might be a less loaded way to ask these.
Doesn’t sound technical to me.
You're sharing information and asking questions about it at the same time. Sort of a cross-contamination IMO.
I don't think that's what's being done here, but it's interesting to note that what you're seeing is definitely an issue regarding polls in general.
The hallmarks of a push poll are that it makes no attempt to gauge your response level, and that it tries to call far more people than a statistical survey would need to do. The most famous case, in recent US history, would have to be "John McCain's illegitimate Black baby" (https://www.vanityfair.com/news/2004/11/mccain200411)
So, any "survey" that is trying to sway or push opinions at all is a push poll in my book, even if they're also collecting information & using the information collected. You're trying to draw the line at one extreme, all push and no poll, but I believe the term "push poll" has long been used by many people for surveys that do both.
Since you can't influence the thing you're sampling and get an accurate sample at the same time, don't you think the line actually needs to be at 100% poll and 0% push, rather than requiring 0% polling before you can call it a push poll?
A push poll doesn’t provide information to authors. They don’t care about the results.
That's not necessarily true, there are polls in the middle, where the authors attempt to both push agenda, and also collect information on whether the push is working. I'm saying that any amount of pushing constitutes a push poll; the defining characteristic is not whether the authors care about the results, but whether they're attempting to influence the results.
Examples of what I'm talking about are even listed in the Wikipedia article on push polling: https://en.wikipedia.org/wiki/Push_poll
If a poll is really asking whether a certain line of negative attack is going to work better than another, and not attempting to influence the answer, not attempting to sway the respondent, then yes that would be an "honest" survey in some sense. However, there aren't actually many polls related to negative campaigns that do this, and it's also very difficult to do without influencing the respondent. Negative attack campaigns are rarely if ever interesting in doing careful neutral statistics. You'd have to be scientific about it and include controls as well as positive and neutral statements in addition to the negative ones.
So, I still don't buy the original claim that most polls on negative lines of attack aren't really push polls. They are push polls, but they might indeed be softer pushes than other more extreme push polls.
I disagree strongly that scale has anything to do with it whether you call a poll a push poll. Scale is irrelevant. Asking what you think about a candidate's drinking problem is a push intended to communicate the idea that the candidate has a drinking problem, without regard to context and without discussion. You're right that it's not scientific. You're wrong that it's neutral information gathering. It doesn't matter how many people you ask that question. You can ask the same question to a single person and it's still a push, or more commonly called, gossip or shade.
Your mistake here is assuming that a push poll needs to be influencing a "significant" number of voters. It does not. Again, the defining characteristic of a push poll is the push. Not the number of people surveyed, not whether the pollers are collecting results, not whether they're looking for an angle of attack versus attacking. If the poll is pushing an agenda, if it's trying to cast doubt on a candidate, or trying to "inform" them of something bad or good, then it's a push poll, and I think the WP page made this pretty clear.
Several small scale push polls done in search of or in preparation for a large scale attack are exactly the kind of poll that count as both push and poll. Your example is demonstrating exactly the case where the pollers care about the result, and they're pushing at the same time. The intent is to influence the voter, and also measure how influenced the voter was. That's more of less the definition of a push poll.
Surveys are hard.
Transparency is at the center of the argument of the morality of surveillance. There is nothing inherently immoral about collecting data from a consenting party, but it's impossible to gain consent from consumers who don't even know that they're under surveillance.
If you are attempting to test peoples existing knowledge of a situation, you don't want to offer new information before you gauge their existing knowledge.
But this is a difficult question as well. Speaking for myself, I cannot say that I am aware of what Google is doing with my data. I fully expect them to use my data for any and all purposes they can think of, and I'm not okay with any of that -- but I'm still not aware of what they're actually doing.
I'm not sure that's true. From the article itself: "DCN surveyed a nationally representative sample to find out what people expect from Google — and, as with a similar study we conducted last year about Facebook, the results were unsettling." Since the notion of "expect" is baked into the purpose, I think some manner of "okay with it" is fundamental to the survey. (Because when people don't expect something, that's usually not okay.)
Rather than "Are you aware that Google does X?" (which implies that Google does x implicitly) to something like "True/False: Google does X"
This is oriented to general to general users but as a G Suite customer you don't expect your business e-mails are used as input for machine learning since you are paying for the product.
Framing the question as "do you expect the online space to be like X" seems much more natural to me than "Google has already decided X", because the latter is likely to lead to far different answers. If we lead the question by defining it with the status quo, then naturally that's the default most people will want to agree with.
We (the public) just don't have the vocabulary and historical experience to draw from that gives us enough perspective. There really was only one super high-profile instance of what this actually means with Cambridge Analytical and Facebook. Even that, however, is brushed off by many people.
There will have to be more examples of things going horribly wrong before people wise up and are able to understand and think through the implications of surveillance capitalism.
It's all just too abstract right now, I expect that will change in the not-too-distant future.
They are combining google tools and data along with their own in ways that often violate the TOS, but everyone does it anyway. I think some companies have backtracked on this in the past few months, but it is still quite widespread.
Advertisers can't use this and don't have any way to extract identity. User ids have always been anonymous and are now completely removed from any data shared by Google's marketing software. The most an advertiser can do is target a list of users but there are limits on the minimum size and scope of these lists. It's incredibly hard to know a person's identity on the web unless they are logged into your service and it's only gotten harder.
Users are pumping out their data en-masse and entities are buying it from the surveillance capitalism "apparatus" provided by Google and the like.
That might be just fine if these entities are just companies that want to sell us soap and pop-tarts, but now we're seeing that there are other not-so-agreeable entities who want this data and are able to use in ways that the populace would find repulsive, including being incompatible with what they think is democracy.
In other words, the scary part of surveillance capitalism is that we "lose as a whole", not as individuals.
"Do you expect" is neutral except it has an additional normative meaning. "I expect you to do X" doesn't just mean "I predict that you will do X". It can also mean "This is the thing you're supposed to do", even if I predict that you'll fail to do it. This is common at least in American english.
"Do you expect Google to do X" doesn't explicitly state which sense it's intended, and that can result in people saying "no", meaning no in the former sense, despite thinking yes in the latter sense.
“Expect of” is often used to connote a kind of standard setting.
I expect power multinational companies to behave ethically to the best of their ability. I believe they behave ethically only to the degree that it allows them the political leeway to behave without scrutiny.
The cynicism you describe would only be felt if the respondent is aware that tracking is status quo, and thinks that it's problematic. In which case, you'd get the same answer.
The other problem is that there is are only two choices. They left out "I don't know". This means people who don't know probably picked more or less at random.
"Are you aware..." is totally different.
Just yesterday i watched Running Man on my Plex Player running on my raspberry pi. Again I now have multiple Running Man videos in my youtube queue.
I hate it but feel so helpless about it. Maybe it is all coincidence and i am just that lucky and should buy a lottery ticket. Does anyone else have this stuff happen?
Maybe I'm not paranoid enough, but I find that.. improbable? Not out of the question, I guess, but still pretty improbable.
Maybe you could run some experiments and try and disprove the null hypothesis?
[1] https://www.zdnet.com/article/hundreds-of-apps-are-using-ult...
[2] http://christian.wressnegger.info/content/projects/sidechann...
[3] https://www.nytimes.com/2017/12/28/business/media/alphonso-a...
[4] https://web.archive.org/web/20190309034942/https://recon.med...
I think this is the closest to the truth if you meant that the way I'm interpreting it. YouTube seems to base its search algorithm around certain, broadly defined parameters that are chosen purely based on advertiser demand. If I watch one "meme compilation" sent to me by a friend, my entire recommended section will be meme compilations for weeks afterward. These videos grab eyeballs, particularly eyeballs in my demographic category as a general rule. However, if I search for car repair videos surrounding a specific model, I will never see anything relevant in my recommendations except for general "auto enthusiast" videos that target a very broad audience (broad in terms of the demographics of this hobby segment). It seems like YouTube is very focused on serving videos that please their advertisers and that their major advertisers are only interested in very generic target categorization.
I'd say this is best explained by the fact that producing a compelling video advertisement is several orders of magnitude more expensive/difficult/labor intensive than simply choosing a set of keywords for a "click here to buy" ad to show up in google search results. This means microtargeting is effectively impossible as it just doesn't make sense to spend $15k+ filming a professional quality video advertisement (plus cost per impression/click expenses) just to sell a hyper-niche product like a manufacturer-specific diagnostic tool. That said, I am a huge fan of two specific channels which seem to draw a large enough and unique enough audience to get hyper-niche ads for things like capital pipeline maintenance equipment so maybe YouTube just doesn't have the volume of audience analytics to make such ads work on anything but the most obvious signals in the data.
Your actual identity is irrelevant, it's the "virtual" identity they've built of you that's important.
I know I can buy an iPhone but it costs about twice what my OP3 cost. I strongly feel like this is my own choice and should vote with my wallet, and I guess I did. I just feel dirty because of it.
>Do you expect Google to collect data about a person’s activities on Google platforms?
>Do you expect Google to collect and merge data about a person’s search activities with activities on its other applications?
The second got 10% more "yes" responses than the first, but answering "yes" to the second question logically requires a "yes" to the first one.
Someone might for example expect Google to try to tie your search history to other places, but at the same time expect Google to simply not collect much data in a variety of other services / business products / whatever.
The second question getting more “yes” responses seems perfectly consistent to me, and answering yes to the second does not at all require answering yes to the first to maintain logical consistency.
Personally of course I am aware that Google is engaged in extremely aggressive tracking and data harvesting on both. But if I was an otherwise uninformed consumer I would not expect my operating system to be harvesting and exfiltrating private information about myself and my behaviors for Google's commercial gain. By contrast, that behavior is more expected of applications/apps. It's even indirectly demonstrated in app permissions, which users are in many cases required to allow.
Opting out of data collection is inconvenient. When I need to log into Google or any other large company service, I have to do it in a private tab. When I want to run skype or slack, I have to create a separate OS account for them because major linux distributions don't have any protections preventing slack from reading my browser's history. Oh, and did you notice that Linux Slack app opens a browser to log in? I guess the reason for it might be that they want to store cookies in the browser and track the user across the Internet.
The dream is that the market will see this and can solve this problem without need of government intervention. Do you all think that this is feasible? Or do we need more legislation?
While the 1% or 2% of us who care may focus on it, it's extremely unlikely the general populace will really grasp the full ramifications of how these corporations operate. A company is far more likely to lose public support from it's tendency to axe beloved products with regularity than from it's privacy abuse, even though the former is not an inherent societal wrong.
That's really unclear. Users' behavior regarding their own personal data and their claims of privacy expectations seem to deviate pretty significantly.
I once nearly sold a company loyalty card to a guy at a bookstore buying a forearm-length stack of books on "Privacy in the digital age." We got as far as the part where I was asking him for his address and date of birth before he politely declined.
I've heard the issue most pithily described as "People, when asked, will consistently give two answers: (a) they would like more of their personal information kept private, and (b) yes, they would be happy to fill out the deeply-detailed shopper demographic survey in the mall for a Snickers bar."
Moo.
The market would be a lot more concerned about the happiness of cows if cows had the independence and the personal rights to switch farms.
Consumers are not property and have free will. Equating them to cows shows an extremely serious lack of faith in humanity from you.
Edit: Anecdote wise, Google has a more accurate list of all the addresses I have ever lived at, than I do. They record the address of every physical delivery at whichever place I asked my shipment to be delivered. I have lived at 7-8 different homes (in three cities) in the past 6 years, and I dont have those addresses on hand either. But yeah, google might.
How do they think that happened?!
Now understand that is only what Google is collecting when you're explicitly using their services. Any apps or sites that use GA or any other Google SDKs are also being collected and sent to Google and correlated back to your Google identity. I discovered this when I found that Google knew every restaurant I viewed on Seamless. Every Reddit post I saw.
Almost every job today from a Starbucks Barista to Uber driver depends on Google doing its job well and collecting all the data it does. Ask people if they still support data collection from Google.
As a small business owner are you happy if Google stops collecting private data but you make 5% less revenue ? (Small businesses depend on Adsense and other technologies to seek customers).
Need to move to a different town? They have your point to point transportation covered. Also your closet was automatically transported in the background. Your nomad belongings waiting for you as soon as you arrive.
Many people were surprised to find out Google was still tracking them even when location services were turned off, but only because they buried the option within the legal and TOS menu of their phone app instead of the separate privacy and location section[0]. These dark patterns are what surprise people.
[0]: https://www.wired.com/story/google-location-tracking-turn-of...
This is a ludicrous statement. If Google shut down, all of these jobs would still exist.
Edit: It seems the article title has been updated.
I’d say they crossed the “don’t be evil” line when they show me a sponsored link based on something than the current search.
2) If you're willing to pay a dollar per month for search then you are much more valuable to advertisers than most people, so 1 dollar won't be enough.
They made enough to be sustainable: https://www.investopedia.com/articles/personal-finance/04091...
> 2) If you're willing to pay a dollar per month for search then you are much more valuable to advertisers than most people, so 1 dollar won't be enough.
No. It seems as a Google user I am worth more to them when I am tied to advertisers https://arkenea.com/blog/big-tech-companies-user-worth/ or https://www.cheatsheet.com/money-career/heres-much-google-fa...
I don't get your point though. I want to be valuable to people building a search engine without adtech baked in, how much I am valuable right now to advertisers doesn't matter.
Android being designed to leak like a sieve and Google hoovering up your data without transparency is NOT the users fault, its Google and its engineers willfully engaging in unethical behavior in pursuit of profits. Its can't be that educated people do not know or understand privacy is a basic human right, and collecting and collating data is fundamentally shady and invasive behavior.
Once the public understand the full extent of the collection, collation and behavioral targeting in play and regulations start flowing these companies and the engineers who built these systems are going to be tainted.
I think people expect them to take those kinds of liberties but would rather they did not take those liberties.
1. It's free, why are you complaining 2. There's no choice 3. Google has the best products (this was referring to Google docs stuff)
May be you guys can let me know what you think about those answers.
In fact I wonder, under the GDPR, is this not illegal? It's my data, I need to be able to see it and approve what they do with it.
Tech is such a young industry- we still have time to shape it into a place that can be free in both senses of the word. Just because shareholders demand it doesn't mean that consumers should accept immorality.
This is exactly what we've been torpedoing towards since Google Docs came out and people didn't have to pay for Acrobat Reader to see PDFs. Unfortunately from free services where the user is the product, and free apps with in-app purchases on mobile, the general public has been conditioned to never spend a dime, privacy be damned. We did it to ourselves.
For important infrastructure pieces, like how businesses communicate with each other, we should strive for this level of privacy and availability.
If not, it's definitely an option but I'd generally anticipate it'll lose out in userbase to the alternative that has those features.
I wouldn't make this a morality based argument if we just had transparency. If they were perfectly transparent, their business model would be fine (in terms of morality at least). But I believe, personally, that they have the responsibility to better inform consumers exactly what data they're collecting and exactly where it's going.
If you are a well educated consumer who decides that they are comfortable with the level of surveillance in exchange for that product, than by all means. I just wish it wasn't impossible to be a well educated consumer in this field.
Google is collecting surveillance data on it's consumers, that the majority of it's consumers don't even know is being collected.
At what point does it become Google's responsibility to make a reasonable effort to inform people about their surveillance practices? I'd say if polling shows that the majority of your consumers aren't aware of your surveillance practices, you aren't being honest.
The last time we tried to push the responsibility onto individual organizations to inform the public of the basics of how the Internet works, we ended up with "This site uses cookies" dialogs popping up redundantly and annoyingly everywhere.
I think I'd rather see the money spent on a public education campaign, not unlike the US Health and Human Services videos of the 1950s. While hokey and hilarious by modern standards, they provided a real service in helping Americans reconcile with rapid advances in technology and hygiene (including now "common sense" ideas such as "Don't play in construction sites" and "Drinking and driving are dangerous").
How do IT security staff sign off on stuff like that?
I think you've hit on a very interesting point. The fact that IT security staff (with careers and reputations on the line) do sign off on companies using Google's platform for business applications that include passing sensitive data around might indicate that our assessment of the risk model is flawed?
It's no secret that a lot of companies don't have great information security.
I think that the fact that people are signing off on it just emphasizes how little some people care about information security.
The cost-benefit analysis of their individual industries and the risk tolerance of their companies.
The cost-benefit analysis and risk tolerance doesn't tell us about how much Google secures their privacy, it tells us about how much the company cares about their privacy/security.
Beyond that, it's a trust and a penalties-for-violating-policy exercise.
And I agree with you: you can probably tell volumes about how much a company cares about the risk factors based on who they trust. But I don't generally think companies are being ignorant placing their chips on Google---it's a big org with a lot to lose if something goes wrong. That gives it advantages over either smaller competitors or rolling one's own (factoring in that to match the security of a dedicated service's cloud offering while approaching the convenience of such an offering, you basically have to hire your own full-attack-surface-spectrum infosec team, and that's one more line item in a small company's budget).
Sure Google can solve one of those problems, but we also shouldn't pat ourselves on the back unless we solve both problems.
I still think that in the context of this discussion, open source does solve both the privacy problem and the accessibility problem. But you're right that there are problems, namely incentive, that open source does not solve.
Open source is not the only solution to those problems, and sometimes solving those problems (privacy and accessibility) just isn't practical. In those cases, I would just wish for more transparency.
Saying it's just your attention doesn't accurately convey concerns about their data collection.
prove it please
Exception would perhaps be a govt enforced one, with jail threats for those who leaked.
I can't prove that DDG doesn't track users, but their entire brand is based on very hardline privacy policy. If they are secretly tracking, and they are caught, their brand value will be reduced to near zero.
Depending on what you are hiding. If you want to hide that anyone searched for a term, no. If you want to hide that you searched for a term, yes.
so they record the most important thing a search engine can get from users in order to make profit from ads, true respect for privacy indeed!
> If you want to hide that anyone searched for a term, no. If you want to hide that you searched for a term, yes.
If you install privacy badger, block their IP addresses on your hosts file, don't use an Android phone(at least not a stock ROM), don't visit Google sites, etc. I don't think they would be able to gather much info about you.
Unless you have a strict policy of "stop using Gmail, or I will stop corresponding with you electronically", Google is going to read large parts of your private correspondence anyway.
I defend myself against Google as much as I can using the methods you cite (among others), but the reality is that it's impossible to avoid their spying entirely.
Don’t use credit cards (they buy the transaction data)
Don’t let your contacts with Gmail addresses email you
Don’t let your contacts with android or ios setup to sync contacts add you as a contact
I stand corrected.
Other people have already brought up Android and GMail contacts. Here's some purely web-based examples:
- Google Analytics
- ajax.googleapis.com
- fonts.gstatic.com
- Google Maps (embedded on other sites)
- ReCaptcha
There's way too many sites that simply break if you null-route googleapis.com. Trust me, I've tried.
Honestly, part of the problem may be that audiences for movies self-select for what they want to see, and there may be an upper bound on how many people you can pull in for a psychological thriller. That seems to echo the issue with online privacy in general---the hard first step is getting people to care, at all.