Request for comments regarding topics to be discussed at Dark Patterns workshop
regulations.gov
regulations.gov
Websites need to ask for consent before sending system notifications via the Notifications API. If a user declines, that website is blocked from asking again (for obvious reasons)
But many websites cheat this by showing a fake consent popup designed to mimic what the browser would show. If a user clicks "Decline" on the fake popup, the website won't show the real one to avoid being blocked. So the next time you visit the site, they'll be able to show you that popup again as many times as they want.
If a user finally clicks "Accept" on the fake popup (out of frustration probably) then they'll show the real popup. To most people, seeing two popups might seem like a glitch, and will just mindlessly click "Accept" twice.
The only way to circumvent this is to click "Accept" on the fake popup, and then click "Decline" on the real one. 99% of people aren't going to know how to do that.
...I'd post this myself as a comment, but I don't like that it's asking for so much personal information (full name, email, state, city, phone, etc)
I suppose a site could trick me by making their fake popup look exactly like the real one. But in that case I would tap Block and be no worse off, other than seeing the same notification again the next time, at which point I would probably figure out their trick.
I thought of explaining this to some friends to help spare them some needless popups, but decided it was too complicated and would likely just confuse them. This is not an insult toward my friends, just a reminder that something that seems simple to you or me may be very puzzling for most people, no matter how intelligent they are.
##.js-consent-banner
##.js-dismissable-hero
in your filter config does it.For uBlock Origin, go to the Dashboard, Filter lists tab, and look at the Annoyances lists.
Both Fanboy’s Annoyances and EasyList Cookie include ##.js-consent-banner, which deals with Stack Overflow’s huge obnoxious banner.
What the push notification pattern is, is annoying. And it is specially annoying because of a prevalence of confirmation dialogs all over the Web with GDPR/CCPA, paid subscriptions, etc. But does it cause harm or monetary loss as the sneak into basket pattern? Or the opt-out unnecessary "insurance" that airlines continue to put in the checkout flow?
We do a disservice to ourselves littering the web with these constant asks. But it's not what needs regulation and enforcement.
Similar to how apps used to ask “how do you like app?” And then only prompt to review the app if you responded favorably. Goes entirely against the app store’s intent to uniformly sample users, and I’m glad Apple at least has cracked down on this practice.
Just honestly make a product and stop trying to fool the user!
Why do you talk as if money is more important than time?
If it's not a dark pattern to ask again every time you hit Deny, then why don't they do it again every time you hit Allow?
I’m not saying this isn’t abused all over, but when used effectively it can provide the user with more information to decide if they want to accept or not as well as allow the website to request it again at a future time possibly for a different reason.
If you have a "decline" button that bypasses the browser, then you are using a dark pattern.
Telling a user why they're about to get a permissions dialog, and displaying a real system dialog, is obviously not a dark pattern.
They're common as hell, but I can't seem to find a live example of what I'm talking about right now.
I'm sure if you asked, everyone who does this is going to tell you that "MY use of it is not nefarious. It's everyone else's fault that technique is abused."
Stop breaking the users browser. If you are, regardless of your intent; you are making a shitty experience for somebody, somewhere.
What I'm reading here is that you (not you specifically) want to ask for my browser permission, but know that the popup is non-descriptive and your one shot.
If you are nefarious, creating a fake popup makes perfect sense. You lower the risk and increase your chances.
If you are not nefarious, why even go for fake popups? Why not have a button in the corner? A choice in some menu? "Hey? Want updates from us? Click here!"
Wanting to do more commentary on why you want to send push notifications never non-nefariously leads to creating fake popups.
https://developer.apple.com/app-store/review/guidelines/
> Use the provided API to prompt users to review your app; this functionality allows customers to provide an App Store rating and review without the inconvenience of leaving your app, and we will disallow custom review prompts.
Every time I login it prompts to show notifications; I always decline so it shows it again next time I log in. This time I accepted, but blocked it from within firefox.
I get it's not a dark pattern because it's clear it's not the browser asking, but still it's very annoying.
I disagree... that does make it rather a dark pattern.
It's actually a good idea to ask the user for feedback internally, a lot of low star reviews are bug reports or help requests that wouldn't help anyone(those who don't have the app yet wouldn't know how relevant that issue is for them and the developers won't have a channel to communicate and help the user who is having the issues).
But importantly ask the user once, and only once, do not force the user to leave a review. Doing so will lead to more one star reviews along the lines of “wouldn’t stop asking for a review”
Also I immediately hate any app asking for a review. It may be useful for the developer but it’s user hostile imo.
Interrupting a user action on the other hand, asking for a review over and over again are extremely annoying and can easily backfire. For the official review UI, Apple enforces "2 times per year per user per app" restrictions but if you annoy the user enough through your self made review request dialogs, they can get angry enough to find their way into your App Store page and give you 1 star review.
Forcing the user do something, trying to coerce them into a 5 star review in order to use the app backfires easily.
There’s that user hostility again! Also I’m not sure how the YouTube example is related. When a YouTuber says hit subscribe the user can take a second to do it. They don’t stop what they’re doing and get forwarded to a different website entirely.
In my humble experience, the opposite is true, and the gap ever widens
I guess I’m a robot, then.
When setting up a new unlinked kindle device, Amazon tries to trick you into connecting to the internet by showing a wifi setup screen that cannot be skipped. The only way to skip it is to supply the device with bad credentials and let it attempt to connect and fail. Only when it fails will it allow its owner to skip that step.
Microsoft has also started employing the same strategy in windows 10. Within the first year of setting up windows 10 locally, the user will be presented with a screen they can't dismiss until they link their local user account with an online microsoft account. Again, the workaround here is to let windows try to connect with bad credentials. Once it has failed to login, it will allow the user, a child who urgently needed to get to her online classes in my case, to skip this step.
Words can't describe the contempt I have for companies who engage in these patterns.
I suppose this might be the difference due to the N version. If I recall this leaves out some of the default media encoders to avoid some anti-trust legislation in Europe. Might be that they are slightly less aggresive with these dark patterns in that version.
There might have been some obscure way of avoiding connecting via installer (perhaps a link inside EULA text). But as long the internet is not available for the machine I believe that this workaround should be possible to use, until MS decides that internet is required for installation.
Edit: After doing the install without Internet, I do remember that they were trying to get me to create MS account. However I have not created one. It is possible that they give up after some time or maybe I found some way of disabling this.
This was for windows pro, I believe they are more pushy on online accounts in windows home.
Not sure when they'll inevitably change install again to try to force more issues.
So many offline devices are forced to have an online component.
Simple IoT devices with just bluetooth - they require an app that will phone home.
More complicated devices with wifi or ethernet - they will nag you again and again until you are connected to the mothership.
Even apple with all it's "privacy is a right" won't turn off bluetooth or wifi in the quick menu - they just toggle it and it comes back. You have to dig into settings to turn them off "for real".
Unfortunately, many people simply click on the "accept all" button and don't care about their privacy that much.
The idea of GDPR was that consumers would be hesitant upon seeing the massive amount of third parties that use your data and demand change from the providers, turns out people don't care / providers rather let privacy-oriented customers suffer than to take a hit on their advertising profits.
Unlike GDPR, which uses a website as the gate for all cookies, the ad industry also has self-regulatory programs. Participation in these programs require that a website allow a user to opt out of all ad networks present on their site. TrustArc built a module to do that: https://preferences-mgr.truste.com/.
If you run the tool there, it will make a call to the ad networks listed. Of course if you're running an ad blocker, the call will get blocked and it will look like the tool doesn't do anything.
Last time I checked, there were no requests being made client-side in the 1-2 minutes it took to cancel. It was pretty much the same number of requests for both accepting and denying. Maybe they changed it since it's too blatant.
Also, since it should be opt-in, then accepting should obviously take longer.
Knowing how some scams and tax evasion schemes work I wouldn't be surprised if they could just set up a separate company that ends up with all the liability without any of the assets and just have that declare bankruptcy the moment the first fines hit. Rinse/Repeat as often as necessary.
LinkedIn is underrated as a platform to call out brands, it's where many spend a lot of their money on PR / image.
I think one reason is that we have reached a tipping point where website owners now view these banners as a signal of a "legitimate" website, without bothering to look into actual compliance.
Without enforcement, these things shouldn't exist. They are just a nuisance to everyone
Essential only -> Processing please wait (but you can cancel)
Customize -> Trying to trick me into allowing more, then processing as above
Accept -> Instant success
Took some screenshots since this is ridiculous (I may just not be used to the modern web since I aggressively block scripts): https://imgur.com/a/fJB0aHz
My favorite part is having to pull a bar up to decrease my consent-level.
The web app has a workspace switcher sidebar, but it only appears on ChromeOS, where you can't install the native client.
https://webapps.stackexchange.com/questions/144258/slacks-we...
I also disable all custom subreddit styles, because so many of them are horrible.
It's basically "install our shitty app, or keep using the web version?", except it's worded and displayed in a confusing/misleading way with what seems to be an attempt to mimic a system dialog.
[0] https://www.reddit.com/r/apolloapp/comments/9ijiji/siri_shor...
Once that stops working, I'll have to always use old.reddit on my phone, which won't be great UI on mobile - but I suppose it can't be too hard to make a Stylus stylesheet to make it usable. And once old.reddit is gone, well, that's the end of Reddit for me.
Just yesterday, I got tired of the annoying "use the app or login" messages when tapping to view more comments on a post, so I caved and installed the app - given the language of the nag, I thought I wouldn't have to login, and the Reddit UX of constant full-page reloads just to view more comments is such a joke I figured the app had to be better.
But no, you have to login with a Reddit account to use the app :/
I was trying to research a vinyl cutter purchase instore with spotty coverage and every bloody reddit page would be blocked within seconds of loading with this stupid unknown content crap.
I often land in a comment section of a specific post, and then want to see more of the subreddit by clicking the link of the subreddit in the top of the page. Since about a month now, every subreddit shows me it’s only available through the app. I used to then preface the url with old. however now they’ve somehow done it that I will see the specific (locked) subreddit page, but the url will just be Reddit.com with nothing else, effectively making it impossible to add the old. before the url.
If they remove that then they'll finally have pushed me off reddit on mobile, but I think it's obscure enough that it'll stay in the near future
https://reports.exodus-privacy.eu.org/en/reports/com.Slack/l...
I think we should be careful to distinguish between exploitation / malicious intent vs. airing of grievances of about UI/UX feature completeness.
I ask because I can easily imagine that if most customers are using apps, they might choose to remove functionality from the website rather than maintain it, just because it’s not worth it.
Some users are obviously going to be unhappy about this.
It’s not a dark pattern.
If we’re going to call any design we don’t like a ‘dark pattern’, then the term becomes meaningless.
I mean to many people here commercial software is all a ‘dark pattern’ because they prefer FOSS.
But this isn’t what ‘dark patterns’ means.
Generally it’s about tricking people into agreeing to things based on false beliefs, or making things hard to cancel.
I don’t see how it has anything at all with what features are placed in what products as long as there is no deception.
Is it?
This seems like something you can’t know without corporate espionage.
It really could be as simple as wanting to focus support on one platform.
I agree that data gathering and surveillance capitalism is pretty much evil.
However to just assume that’s all every decision is about makes us incapable of understanding the complexity of what is going on.
To be clear, I'm mostly talking about apps that are just a collection of views for a remote API. The only valid reason I can think of for these kinds of apps is because you're an ios/android developer and you're not good at making webpages. In that case, the best tool is the one you know.
iOS apps that use system controls generally have far better accessibility than web pages do, indeed accessibility is a primary reason for creating a native app.
My mother struggles with any ios App because of how the zoom is implemented in the different apps. She can get by with the built in magnifier tool, but only when she already knows the app well.
Personally, I recently had nerve damage in my hands, and it was very difficult for me to enter text. There were many times in native apps where it would have been much better for me to copy/paste random text on the screen, but I was not able to. I know that some web developers like to try to block that too, but I would also consider that a dark pattern.
Also copying a pasting working across all text is often an anti-feature for accessibility too depending on what condition you are working with. For people who have trouble with fine motor control, it’s much easier to have only the content text selectable and not the controls.
There is no one-size fits all accessibility solution.
This seems to be a good argument for an accessibility option to make all text selectable, and nothing to do with dark patterns.
https://i.judge.sh/hot/Flare/chrome_eC7WqUYKPX.png
https://i.judge.sh/mealy/Sparkle/chrome_5RItK5j3Yl.png
Edit: Doing some digging, on the iOS user agent, the `toolbar` portion is null, while with the Chrome windows user agent it's set to include the entire element:
https://i.judge.sh/flickering/Twilight/chrome_q978GUiwQ8.png
https://i.judge.sh/pleasant/Coco/chrome_cNh0eBIHQL.png
This looks to be the function that determines it:
https://i.judge.sh/qualified/Velvet/chrome_CxUBug0q1P.png
So it's just a 'if mobile' check - maybe it breaks on some mobile screens (on a iphone 5/SE you end up being unable to view the channel name, not that it's an enjoyable experience anyways https://i.judge.sh/brave/Flare/chrome_nW26bTRXDe.png) or maybe it's a motive to get you to use the mobile app. This is just the desktop UI with some `if mobile` checks probably thrown in by a small number developers that want to support mobile browser support but aren't getting paid to do it.
This seems far worse than their IE-bundling issue back in the day... at least users have a few web browsers to choose from, but what good is that when user preference is overridden?
It's a valid concern but I'm fairly certain it's nowhere near the top reasons that they do this. They have a history of trying to shove users into Microsoft's unwanted browser against their (often informed) wishes.
It shouldn't have to be a separate setting from the overall default browser, but at least it's relatively easy to change.
An alternative is to use Firefox Focus (Firefox Klar on F-Droid) as your default browser, then its "open in" feature if you want to make it a permanent session.
Only reason I assume this is all the Google apps on my phone bring up a sheet when I tap a link asking which browser I want to use-- with "system default" being one of the options.
Really there's no excuse for this, it can't be too difficult to adapt system apps to fall in line with the expectations for third-party apps.
It's funny how Apple gets away when doing the same thing or worse than Windows, yet Windows is always the one getting criticism. Like how Apple always try to enable Siri after an update. Or how managing when an update should be done is incredibly worse on macOS than on Windows.
Windows forces you to use bing/edge when you accidentally search from the launch programs menu, but I never intentionally search from there so it’s a minor inconvenience (for me). Never had it fail to respect that setting elsewhere. It also does a good job letting you set default apps for all types of files (and in fact letting apps change that setting themselves with a little user interaction) unlike iOS which only lets you change it for a few types of apps (and then through the worst designed settings menu I’ve ever seen). Can’t leave iOS behind though because I need my iMessaging.
Do you have some more context? I have found this trivial to change...
Apparently this was an issue with the user, not the OS. My bad.
EDIT: Actually, I remember now that I had to use duti to change this from the command line.
They bill months in 4 week intervals— so a month = 28 days which = 13 months per year. This is all in their fine print.
Screenshot: https://twitter.com/stevebenjamins/status/138531992456700313...
Booking.com pioneered a lot of e-commerce dark patterns like “X units left” and “Y people viewed this today”.
The EC pushed Booking.com to change its online sales tactics to be more transparent.
I haven't been there for six years now, but one of the problems I worked on at Etsy was getting people to stop using their cart as a bookmarking tool. While I was there I worked on the functionality to fave an item as well as the functionality to add items to a List of favorites. There was another tool called Treasuries for this purpose that we phased out, so there were at least three systems that Etsy built to try to help people keep track of items they like without putting them in their cart. I know when we introduced Lists, several colleagues and I worked on that functionality for a few months before it ever saw the light of day. Even so, users continued to put things in their cart "so they wouldn't forget them". It was a very frustrating result; this was the exact behavior we were hoping that Lists would eliminate.
It wouldn't surprise me if it's true that the item really is in that many carts. I would also agree that it's not useful or accurate information for you, another shopper, since an Etsy user "having it in their cart" is in many cases not a very strong signal that they will purchase the item in question. Inflating the number intentionally would definitely be a dark pattern. If that number is intentionally inflated or is known to be inaccurate or fictional, dark pattern for sure.
Whether the current functionality qualifies as a dark pattern or not is a lot harder to judge. Is it poor design? Yes. For sure. Is it harmful to the user? Again, I think yes.
Is it a dark pattern if you design something poorly unintentionally? Does that term measure intent or impact? In a legal context I would expect the measure to be intent, so in that context this is probably not a dark pattern, but HN is not a court of law, so in this context... probably yes?
My wife does this, not just to Etsy, but on all kinds of e-commerce sites. So I apologize on her behalf.
I suspect that it's related that she's also one of those people who will never bookmark a web page. Instead, she keeps a hundred tabs open. I don't understand it. Some people are just wired that way.
For places that sell expensive stuff like synths, guitars, tech stuff, I add it so I can see the total amount. Then I sleep on it. Sometimes more than one night. It might get bought along the way, so it's a great deterrent for impulse purchases.
It's obvious why this happens. The shopping cart, as an e-commerce pattern, is a bookmarking tool. You put stuff there, it stays there while you browse the store for other stuff. If you step out for an hour and come back, things you added to the cart are still there. If you close the tab and open it later, the things are still there. If the price changes in between, it's updated. If an item goes out of stock, it's reflected on the cart screen. If it quacks and walks like a bookmarking tool, ...
The way for the e-commerce sites to stop it is obvious: put a time limit on the basket. Purge it if the user leaves it be for more than a couple hours. But for some reason, nobody seems to do that :).
As for the browser bookmarks, I also don't use them much (nor does anybody I know). They map badly to actual use cases. For short-term storage, tabs are perfect (especially when the browser saves them between restarts). For mid-to-long-term storage, you want to save your links where you can find them on any device, and often you also want to store them within the service itself (see also: stars on GitHub - they're not an expression of appreciation for the project, they're just bookmarks).
Project maintainers often don’t think so. I think they should be just bookmarks and not a measure of popularity, better to hide the number of stars. It’d hopefully make some maintainers more humble and helpful. Maybe!
And maybe in some cases you would like to know amount of issues per amount of stars.
With issue count if it's a simpler type of library you would imagine there are quite few issues, but you'd still like to know whether this library is validated by enough folks. If it has plenty of stars and very few issues, this seems to be indicative of a very good option.
Ideally you look at all signals, also download counts from packagist/other managers as well.
I just don't think it would be a valid idea to remove the star count in an attempt to make some folks more humbler. I doubt it would make maintainers more helpful.
Seems like the reasonable thing to do in the above case is to have a default "shopping list", and if someone puts an item into their cart and doesn't buy it within the allotted time, it gets automatically moved to the "shopping list". Make the shopping list highly visible on all the cart-related views. Problem solved?
Inflating the number intentionally would be criminal fraud, plain and simple.
A dark pattern is making the „Delete account“ button smaller and grey while making the „No, take me back“ button huge and green.
Literally lying with the intent of getting money from somebody is fraud and has nothing to do with dark pattern.
Btw not attacking you personally, just wanted to clarify this misconception.
With the amount of Math.floor(Math.random() * 1000) out there, I doubt any case has proven this to be something you can bring charges against a company for.
I bookmark things in my cart in both Etsy and Reverb because the bookmarking requires an account, and I'm definitely not making one. But at least that doesn't seem to count in the "x users have this in their cart".
It’s the one that does it for the smiles
They assigned it to another engineer. The new "feature" was deployed.
He forgot to round the random number. So let's just say the home page reported the number of active users with very fine precision.
Unfortunately it was quickly fixed.
Anti trust regulators came after Microsoft for deep bundling of functionality of browser and OS and I think they should do the same for facebook, google, reddit, etc. for the web view.
Edit: If my comment looks confusing, the comment I replied to has been edited. "compelling first class experience" is really a more vague term for "web sites being able to push their app on users"
I too wish it would go away, but both sites not having equal access the users in a similar way is anti competitive imo. Especially for businesses who increasingly need to participate on these platforms due to the fact that so many of their customers use their services.
If you're asking from the point of view of the social media site, the "good" thing is that a native app can steal much more personal information than a website.
In this case, it nearly cost the app maker a sale (I doubt they'll go out of business on the loss of my sale. As it happened, they didn't actually lose the sale).
I wanted to ID some of the plants in my yard, looking for native vs. introduced, so I downloaded a couple of apps. One was a good one, but was really a "crowdsourced" one. I had to sign up for an account, and participate in a community. Not a showstopper; but not really what I was looking for. I'm into instant gratification.
The other one was an ML-type app that would analyze photos in realtime.
When I started it up, it immediately wanted me to get the in-app purchase to the "premium" version, which is actually a yearly subscription.
The dark pattern, was how they did that. They obfuscated and deprecated the navigation to the free variant. It was almost impossible to see the buttons behind the premium banner, and it was difficult to actually touch them.
At first, I immediately shitcanned the app, as I assumed that you were required to get a subscription before using it at all.
I did a bit more research, and everyone was saying it was a decent app, and that it could be used without the subscription.
So I tried it again. This time, I squinted, and found the links.
It worked really well. I'll be getting the subscription.
The moral of the story is that they were so big on a dark pattern, trying to force new users to start paying immediately, that they actually drive off sales. The app works well. They don't need to hide it. That's what apps that suck do. This app does not suck.
I should qualify this by saying I have a small yard on Long Island, NY. The weeds and plants are fairly distinct and well-known.
Depending on where you are, YMMV.
The captcha where you slide the puzzle piece into place I’ve found is a much better user experience and presumably achieves the same goals (minus helping train image recognition). It’s a little bit ugly/looks like one of those spam interactive banner ads but I wish more sites used it anyway if they need protection.
"Slide the control to complete the picture". I interpreted it the first time as looking like the old iOS slide-to-unlock convention: "Once I slide the control over, it will complete the picture correctly." Now, this may be a well-intentioned accessibility thing, but it wasn't obvious that the slider was connected to the puzzle piece in the same way.
This was reinforced by the fact it was a bit janky on my entirely overkill rig, so the puzzle piece was moving out of synch with the slider until after I had overshot and failed the CAPTCHA.
I always wondered if we had much hard data on both the efficacy and the necessity of captchas. If you're not selling 3080s, you probably just need the most minimal deterrence to auto-scrapers-- the old "seven + 4 = " CAPTCHA probably does enough at a very low processing and accessibility cost.
Worst part is that NO ONE has ever called them out for such a dark pattern, but the pattern forces ppl to send unsolicited emails to their contacts AND pretends it's meant to be sent by the person.
Incredibly devious
This results in a LinkedIn invite getting sent out to thousands, if not tens of thousands of people. Literally malware-level behavior.
To manage your contacts? The permission to access all your contacts does need to exist, even if it's currently overused.
It’s very much not free.
That got shut down pretty quickly, but it's telling that they even thought they could get away with something so brazen.
It should be illegal for any gym to force you to come in their physical location or too require mailing in forms to cancel.
EDIT: also, I still don't 100% know what it is. Afaik, it's like shark tank but IRL for people in silicon valley.
As YC scales and graduates more companies, they want to optimize their return on investment. Those companies that graduate from YC want to make sure their companies raise capital at a premium when future fundraising and ultimately IPOing or being acquired. The YC network is a thing in the VC community and a mark of a high opportunity investment.
Today, some purchasing managers are aware of its alumni companies and use it as a litmus that the company is cutting edge and innovative. Maybe most don't. Since sales ultimately lead to higher company valuations, perhaps this is something YC would want to focus on?
This could then become a default way for companies to self-appraise their software on distribution platforms. Anyone including distribution platforms should be able to validate such ratings based on certain objective criteria.
The big button in the usual OK position will let the organisation manage your device, including pushing software to it and remote wiping. Even if it's not their device. Even if you're just logging in to one app, one time.
Microsoft is blatantly using dark patterns to inflate their InTune numbers, at the expense of user privacy and choice.
https://i.judge.sh/heavy/Sunburst/ApplicationFrameHost_nhjT7...
https://i.judge.sh/stupid/Derpy/ApplicationFrameHost_G2GR6fW...
https://i.judge.sh/blind/Yasuko/ApplicationFrameHost_60KjQ1V...
Dev builds it the user-friendly way. PM uses Google Tag Manager to inject JS that changes the stylesheets to the evil way.
My Nord subscription went from $5/month to $200/month recently. When I complained, the CSR told me to just cancel the account and sign up using the special offer link and a throwaway e-mail address.
That tells me there are deeper problems, and I'm not interested in doing business with that company.
Their instructions were login and go to the cancel button but the cancel button was broken and said call this number. But no one ever picked up the number.
I will never buy a NBA branded thing after that obvious bullshit scam.
Just repeat the phrase "I want to cancel my subscription" to any question they ask. They'll get the message pretty quickly.
I guess the law that I would be in favor of is twofold:
1) You must be able to cancel subscriptions from the same website that you created it from. After you cancel, the subscription must last until the end date. (So you aren't forced to set a calendar reminder for the day before.)
2) Sending an account to collections falsely should carry a 100x penalty. If they make a mistake and their billing system sends your account worth $300 to collections, they pay a $30,000 fine. Should motivate someone to write some unit tests for that.
1. The customer intentionally authorized that specific transaction. A specific transaction means one transaction. If a merchant wants to use this approach, they need to ask for authorization each time they charge.
2. The merchant may register a subscription or other recurring charge arrangement with the customer’s bank or card provider. The customer must explicitly authorize this registration at the time it occurs and may, by contacting their bank, revoke the authorization at any time. The merchant may not recreate the authorization without the customer re-authorizing it at the time of creation.
Eventually, the whole pull model of money transfers needs to go away. Taking money from someone by knowing their account number is nonsensical and should not be possible.
You already have the ability to "audit" the EULA/ToS/PP; it's that link you never click next to the "I agree" button.
The powerful (in money, size, skill, fame, strength, etc.) always try to (ab)use systems to bully the weak. Smart contracts only amplify their ability to do so.
Why would a company, which (reasonably) declines to deploy its limited legal resources negotiating with each user, possibly be interested in deploying its limited engineering resources to negotiate a smart contract with each user—especially when one screw-up can "legally" bankrupt the company? (See The DAO.)
If there can be no negotiation, the options are:
1. You reject their terms and don't use the service.
2. You accept their terms and legally use the service.
3. They accept your terms and you legally use the service. (Usually too risky/costly for them.)
4. You reject their terms and illegally use the service anyway.
We could legalize option 4, but that is a very bold move—the equivalent of the Chicxulub impact on legal and business practices.It would be worthwhile to consider not letting "click agree" create a binding contract. I think I'm in favor of that.
I agree that things like newspapers don't need to be a subscription or have a contract. On the first of the month they should just pop up a dialog that asks if you still want the subscription, and if so, it charges your card for 1 month. I would certainly like that, but it does carry a risk on my end -- if they go out of business on the second of the month, I'm stuck paying for 29 days of the subscription I can't use.
Like I said, the big problem is not being able to cancel. That's why I buy subscriptions through Apple -- there's always a cancel button. I think we should make that mandatory for every subscription provider.
When you pay your medical bills it’s still an explicit payment.
Businesses probably need contracts in order to function, but they are overused in business-to-consumer transactions. That's the underlying problem that we should solve -- you should be able to walk away, no questions asked, from paying for a newspaper or magazine.
Attacking the latter might make a large difference even if the former remains unsolved. The New York Times can get away with making cancellation difficult because they have the power to unilaterally take money from their (former?) customers. But, if anyone could trivially revoke their authorization to charge them money, I doubt that the New York Times would actually try to sue or collect from their customers en masse. Sure, they could try, but that would be a fantastic way to piss everyone off and to recover very little money.
An advantage of Direct Debits in the UK is that I see them all in my banking app and can cancel them individually. A company is legally required to gain my consent again before charging again.
They can still send demand letters and "send you to collections".
More to the point, it should be required that canceling/downgrading is as easy as or easier than signing up/upgrading. Want to offer 1-click-buy, you also need to offer 1-click-cancel.
How long ago was your experience?
I informed the person who canceled my subscription over the phone that I'd never consider doing business with them again, unless they fixed the problem.
I hope it's fixed now! That'd be a great improvement
Be wary if a company avoids Google. For example Tinder started forcing users to subscribe directly instead of using Google. This is because most people cancel almost immediately since once you subscribe you find all your matches are bots.
The entire purpose is to make it just hard enough so you think ohh it's only 10$ a month. Another trick is to offer a month free. Hulu does this. If you cancel on their website you get several pages which try to convince you to stay.
Google also makes it easy to manage all your subscriptions in one place. What is all this crap I'm paying for, I can quickly see what and delete it. Also I'm much more likely to try a service ( I'm studying Chinese right now and have used various apps) if I can do it via Google Play .
First-party trials annoy me since cancelation is instant, unlike trials from third-party apps (those cancel after the trial period if you cancel during). Fortunately, you can go to Report A Problem and just say you didn't mean to have the subscription charged and they'll refund it as long as it's a few days from the charge date.
And yet there are scams that are costing users $5 million a year, or more, on the iOS App Store[1].
1: https://youtu.be/VrKW58MS12g (it’s the Mark Rober phone scammer video)
Of course, the app's premise is a scam, but my comment was about the ease of canceling and managing subscriptions. Dare I say that apps like this would be even more bold and prevalent if alternative app stores were available.
More likely it's because Google takes a 30% cut. Adyen takes a ~4% cut. I still maintain that if Apple and Google took a 5% cut from their app stores, no one would have complained.
I did have to interact with a chat window, which was of course annoying.
I also made damn sure I received a cancellation email. Too many horror stories to not do my due diligence.
If you have problems cancelling a subscription, you can simply cancel the temporary card that privacy.com created for you
Me: what’s their contact info? Agent: inquiries@nymag.com Me: This is a third party but they have an NY Mag email address? Agent: Yes. Me: ... How are they a third party then? Agent: One second, I’m transferring you to my supervisor.
Nothing turns me off a brand I like and want to support more than 1) autorenewals at 2x your intro price and 2) making cancellations both arbitrarily difficult and insulting.
They intentionally make it extremely high friction.
This was about 2 years ago so maybe they've changed since.
https://www.nytimes.com/2021/04/30/opinion/dark-pattern-inte...
Related, I really hate Apple taking a permanent 30% cut of iOS subs, but I will use that route whenever possible. Canceling an iOS sub is always a painless single click experience from a known location. In fact I usually subscribe and immediately cancel so I’ll renew only if I actively choose to do so.
I wonder if someone can start a service to facilitate this for people. So many dark patterns, so many opportunities to ease the transaction costs/friction of disentangling? ;)
It's also a pretty big negative mark for merchants that get charge-backs issued against them, if just a small percentage of people used charge backs to cancel these "subscriptions" it would make their processing fees skyrocket or even get them dropped by the major processors
Yup
This actually works quite well. I've had no trouble cancelling any subscriptions in the past few years, including the New York Times, which took maybe 3 or 4 clicks from the account screen (IIRC, there was an optional "why are you cancelling?" screen, then they offered a discount, and that was it).
[1] https://leginfo.legislature.ca.gov/faces/billTextClient.xhtm...
Of course, it's a different story if you signed some kind of contract, but for the pay-montly kind of things, it's a no brainer. You also keep your real cards number private in case the service gets hacked and Privacy doesn't seem to check the name, so you can give a fake name to the service.
Edit: crap, looks like it's US-only :/
I'd be interested to hear about any other UK/EU firms offering similar.
While this works, depending on the service and what it says, they can send your debt to collectors.
And that’s why there needs to exist regulation around it.
I haven't used the Scribd app, but cancelling the service through the web similarly takes more than one extra page of customer retention "special offer" pages.
I’m SOL on this month’s charges but you’d better believe I disputed the original charge with Amex. Scribd even sent me a “receipt” for my “free” trial showing a total of $0.00 at the exact time they charged me $9.99.
It’s just bad business. I should have heeded the many warnings about Scribd’s deceptive billing and now they’ve added yet another unhappy customer who will complain about their shady business practices at every opportunity I get.
https://twocents.lifehacker.com/heres-why-everyone-already-h...
It's not like it would have to be super technical, most judges would have no problem interpreting it.
However in my experience, you can usually accomplish it with a phone call and can often dispute the most recent charge as well.
IMHO, chargebacks are the best way to fight back against companies that use dark patterns in their billing/cancelation process.
Forcible corporate dissolution, chapter 7 style.
Once its real skin in the game, I'd imagine they would have a real good look at their company-level actions.
If it takes more than a couple of clicks from the accounts section, or so ambiguously states the cancellation process that it suddenly seems hazardous, then I just cancel the temporary privacy.com card.
To be fair to Amazon though, they do let you cancel the subscription online with no bullshit & you still get to keep the 90 day free trial -- presumably they hope you’ll like the service enough to decide to pay for it anyway.
(The worst example I know of this “single button press sign-up” pattern was Nassim Taleb accidentally signing up to pay for a software upgrade to his Tesla in the Tesla App that cost $1000s & having no way to undo it except shouting loudly at Tesla / Elon Musk on Twitter.)
The option was hidden behind several pages of "Here's what you'll miss out on" and "You still have x days remaining, why not check out these shows" and "confirm" buttons with slightly different position/text/color.
Edit: Here is a link to that comment [0].
As far as I'm concerned, this makes the Teams software malware. I have never had any other software that repeatedly put itself into my login items that wasn't clearly malware. If I worked on Teams, I would be embarrassed.
This is very common with price calculators and online image editors.
It has 4 effective choices [0] with no clue about what's going to happen to your windows account and what data or remote control permissions will be sent to your organization.
[0]: https://engineering.purdue.edu/ECN/Support/KB/Docs/HomePCsud...
An e-commerce website that offers a subscription page for signup but requires you to contact customer service by phone or email in order for you to cancel. Went through this recently with Bespoke Post. I sent the cancellation email, their customer service person replied saying that they would instead suspend my subscription for three months, and required me to send them another email.
I'd LOVE to see an FTC rule that requires companies who take subscriptions by web have link on the account page to unsubscribe by web.
Actually this reminds me of another annoyance: playing ads at a higher volume than the content. I tend to listen to content very softly to prevent hearing loss, and whenever an ad comes on I find myself turning the volume down, only to turn it up again when the content comes back.
Every time I get a paper bill I'm annoyed, like, just send me an email, then I drag it into the right folder and it's done. Speedy, sortable, searchable. (Of course you will want to have back-ups, but one generally wants backups for one's files anyway.) The weirdest instance of this is my electricity company that has a fairly high price but also invests in renewable energy and they send me paper bills. Like, they of all companies should get that I don't want someone to drive to my house to deliver information that, usually, I already knew about anyway. Dutch tax office also takes their time to send me letters from abroad... two weeks after I already received it digitally and opened it. They can see I read it on their website, but they still post a physical letter more than a week later. And it always contains "you owe us nothing & we owe you nothing" because I don't live/work there anymore. So stupid, I hate letters, so I'm really curious why you'd want this!
Anyone else remember internet explorer toolbars? So many installers would include these, and avoiding installing them became progressively more difficult over time. They started with a simple checkbox that was enabled by default (bad enough if you ask me), then progressed to hiding the checkbox behind a button labeled 'Advanced Settings' or similar, then progressed to popping up another dialog that looked like another step in the install process, but required you to press 'cancel' to not install the toolbar and go back to the regular installer. There are probably many more worse examples, but this is all that springs to mind at the moment.
To an advanced user, these didn't seem like much - until you tried to use your grandma's computer and realized there were 10 toolbars installed...
That being said, remember the Cobra effect and that trying to combat one problem can cause an immediately perverse, unintended consequence when you try to solve a problem in this manner. Maybe I'm misusing concepts a bit but in my thinking - perhaps exposing all the immediately obvious "Dark Patterns" as they are perceived now will lead to immediate ingestion of this newly found consumer-originating response set (like this post) which will potentially enable the alleged actors in question who engage in these actions to be even better equipped at creating new, dare I say, darker patterns
I did not discover it until I got my credit card bill. They use their internal support interface web tool to manage the support commitments to customers, so they memoryholed their reps commitment to refund my money, which they did not.
Any other so-called subscription services need at LEAST as much consent from you to bill you as they do to add and remove you from mailing lists.
There’s no way to select specific notifications you want (e.g. person you follow starts a room). Instead you get inundated with useless notifications about random rooms.
They make it extremely inconvenient to find out which apps are supported on your device. They don't hide the apps that aren't, so you are forced to download the app and wait to check to see if it's compatible or not.
The App Store doesn’t let me download apps that are not compatible with my device.
Let's not split hairs over this.
I just got rid of my iPad that does. You tap "get" on the app and after doing something for 5-10 seconds it pops up a modal that says it's not compatible.
Why was the app store showing apps to me that are not compatible or, rather, why was there no way to filter out the ones that are not compatible?
To show you what you're missing out by not buying the latest iPad
You can’t just use the App Store and end up doing all sorts of horrible things.
I’ve commented on this before and had people send me links that show you can do it in the US App Store, but I can’t from NZ.
That's a dark pattern.
[0]: https://youtu.be/lMMrU732w6Q?t=82 (and if you look at the comments, you can see that I'm not the only consumer frustrated by this issue)
Think about it this way: you want to haul Apple into federal court because they poorly cache app store search results on a CDN. The DoJ will have to hire new expert attorneys to prosecute this, and it could take years. That means they either stop prosecuting other federal crimes while working on that one, or your taxes increase to pay the new attorneys necessary for this case. The ultimate outcome for Apple will be paying some tiny fine that probably is less than a year's salary for a software engineer and being forced to fix their CDN setup, while the taxpayers pay millions of dollars. Best case. The worst case could be years of legal costs for the government, and absolutely nothing in return for the taxpayers.
I think you have to choose your battles, and this isn't the pick. Consumers aren't getting severely fucked, it's just kind of annoying to some people. We can use our limited tax dollars more effectively.
Does Apple show you apps that won't run on the newest devices/OS versions in the app store?
>It's an annoying usability issue, but ultimately which devices are supported is up to individual developers and not Apple.
But Apple runs the store, so the onus on them is to present the store in a way that gives me what is compatible with my device. When I go to the physical store, I don't expect to find kid's sizes in the adult clothing section (and vice versa). Even if the "clothing developer" in question only makes child sized clothes.
>prosecute
Whoa, hold on. We're in a thread asking for public comment on dark patterns.
Look at point 6 in the event announcement PDF:
> What harms do dark patterns pose to consumers or competition? For example, do certain dark patterns lead consumers to purchase products or services that they might not otherwise have purchased, pay for products or services without knowing or intending to, provide personal information, waste time, spend more on a particular product or service, remain enrolled in a service they might otherwise cancel, or develop harmful usage habits?
(emphasis mine)
>Consumers aren't getting severely fucked, it's just kind of annoying to some people.
Sorry, I'm not understanding your point. Most dark patterns don't severely fuck anyone and are just kind of annoying to some people. I think that's the point of this FTC public comment - to get a consensus on what dark patterns are.
It is possible to make anonymous comments on regulations.gov, which I think leaves no good reasons not to post your comments there if you want them to be heard.
1. The FIRST option in any screen or sequence that could result in a purchase must be affirmatively worded to clearly indicate a purchase is being made or a transition to a screen to purchase will be initiated by choosing that option. The word YES shall be included in any option to buy. 2. If second or subsequent options also initiate a purchase, they must similarly be affirmatively worded. 3. All sequences must TERMINATE with a negatively worded decline option, in the SAME font, size and style. 1-3 seek to enforce a standard wherein consumers can EXPECT the first and intermediate options to be BUYING options, and the last option to be a DECLINING option. 4. Double negative wording is not allowed. 5. Check boxes shall NEVER be pre-filled in. Use check boxes, they must all be blank. In general, an action by the consumer shall never be required to cancel a preinserted assent. 6. Purchasing screen. At some point, a screen is arrived at where the purchaser’s credit or bank information is obtained, and the purchase completed. Wording near the TOP of this screen, and in the LARGEST font visible on this screen must reinforce to the consumer that she is about to make a purchase. (Banks and airlines, which incur significant costs to correct purchases or payments consumers consider incorrect, are an excellent source of ideas for this screen.)
How to prove fraud in court? Easy, make them liable for presenting accessibility conformance against the issue in question. The defendant only has to demonstrate a good faith effort to account for and correct the issue, but if they cannot do that, because fraud is intentional, take them to the cleaners.
I’ve used AirBnB heavily over the past few years and am a huge fan of the business model in general. But, I view this practice as borderline unethical. I’m sure it A/B tests well, but it’s super annoying having to make several extra clicks just to see what you’re actually going to pay for the place at checkout.
also all of medium and linkedin
It seems to be constantly sending GET requests to a tracking pixel with data passed through a query in the URL; it seems to be either tracking or profiling (maybe even mining?). After some googling, this may be part of Ezoic [1], a forward proxy tracker.
Since it is a locally-hosted script, it would be hard to block by domain name alone.
Would this classify as a Dark Pattern?
[0]: https://plantuml.com/login/ [1]: https://datacadamia.com/marketing/analytics/ezoic
Really scummy way to manipulate people via psychology of being left out (FOMO).
Circumventing Legal Regulation by proxy: It is now illegal for an ISP to charge a modem rental fee if you are not using their modem. My Internet provider (Comcast) circumvents this by tying a bundled subscription (security monitoring) to the rented modem. If I use their rented modem I get the "Internet+security monitoring" bundled plan at a "discount rate" of aprox $80/mth (plus $15/mth for modem rental). If I do not use their rented modem, I do not qualify for the discounted bundled plan. A plain "Internet only" plan is $180/mth.
Also, instead of arbitrary cookies why not standardize authentication/authorization security mechanisms to avoid having those stupid cookie pop ups.
At this point there are common web pattern which separates the essentials from the BS—so why not get rid of the BS and keep the good stuff?
And I can’t say I blame them. I know the fenty website isn’t software but what about facebook and amazon? I don’t really consider them software but I suppose most of their users access the site(s) through iOS and android apps which I would consider software.
Wow, talk about a dark pattern: [1], all checks but the necessary ones are checked by default, which looks good, but then the big green button will check and accept them anyway! So the primary option negates the standard settings! I almost fell for it but I'm getting better and better at catching myself.
It's the new online advertisement. I remember my grandma being completely flustered by all the "you're the 10.000th visitor" flashy stuff and my brain ignored it completely. In this vain my brain now hunts for that button that does not really look like a button but just enough to identify it as a button. That is the one to hit.
[0] https://news.ycombinator.com/item?id=27018522
[1] https://danskebank.com/news-and-insights/news-archive/press-...
Leave it to the federal government to utilize three dark patterns on a website soliciting feedback on the very subject.
sigh
YouTube's "for you" section easily misinterpreted as search results
Fake multiplayer games, e.g. paper.io
Delayed communication of requirements: e.g. SSN at the end of an unbearable multi-page mobile sign-up form
Netflix gating the pause button on "Watch Credits" after an episode
I had this with Hello Fresh, where I had to log in on web to cancel (which I had never done before) - seemed quite annoying and I decided to never use the service again for that reason alone.
Deceived by design (2018) - https://fil.forbrukerradet.no/wp-content/uploads/2018/06/201...
Every step you take (2018) - https://fil.forbrukerradet.no/wp-content/uploads/2018/11/27-...
Most of the focus is on Facebook, Microsoft and Google.
It is designers of the tech (browsers, Operating systems) that have failed to come up with systems that are difficult for devs to abuse.
Firefox also has really great features like containers that keep your web activity isolated from other web applications. [1].
I wish there was more innovation in this space though.
[0]: https://www.google.com/amp/s/blog.leavemealone.app/how-does-...
[1]: https://support.mozilla.org/en-US/questions/1201060#answer-1...
As for payments, your card provider should be able to show you what services are deducting money from your account.
And it should also give you a way to "pause" or revoke payment subscriptions.
It is not "powerless" as NYT doesn't control your bank account.
Designers of the tech are doing it because it's legal.
It's legal because regulators aren't enforcing laws in ways conducive to modern tech.
I'd consider a dark pattern links to terms of use, privacy policies etc. which are not on the same page, which are easy enough to not read before agreeing and which are written in a way which could be misunderstood.
If something is important, it should be presented in a way which would leave little to the chance of not getting the information - it should be unimportant to be able to avoid it.
On the other hand, the paper version of that is widely used as well, so I don't hold my breath.
Outlawing means it can still happen, but you have to enforce, investigate, catch the perpetrator, go to trial, and punish in a way. Or just apply a fine that you can appeal.
The FTC has been dealing with this kind of crap for over a century. The key is that this is in the context of advertising and trade practices, not viewpoint or artistic style. You'll still be able to include fictional dark patterns in your post-cyberpunk visual novel if you want to.
Presumably what it's doing is trying to get you to select their recommended content instead of searching for whatever you are looking for.
Do we count neuromarketing activities like "5 people watching this product right now" (aka Scarcity Effect) or "this discount ends in 2 hours" and etc. (aka Loss Aversion) as a dark pattern? Or it still praised as a "growth hacking"
It doesn't include a cert; they charge $6/yr and refuse to integrate with letsencrypt. The "free ssl" is for yourdomain.theirdomain.com.
It's about damn time. Time to sit down, do some research, and write up some papers!
I'm so tired of malicious compliance, hidden or disguised unsubscribe links, and complete disregard for the burden imposed on consumers.
Gacha games, loot boxes, that type of thing. Basically everything listed here.
https://queue.acm.org/detail.cfm?id=3400901
but also
https://www.darkpatterns.org/types-of-dark-pattern
or monitored here:
https://www.darkpattern.games/
I've come to realize these types of "Dark Patterns" exist in way more than just UI's. Businesses often find ways of leveraging the fruits of them for alternate revenue streams.
I'm sure there are academics out there who'll nail down the white paper aspect, butI tend to try to supply a boots on the ground eye-view since I spend a lot of time trying to teach people what to look out for, and why it's a problem.
If not, I hope people realize that they should probably comment on regulations.gov site as well.
We can all promise not to implement Dark Patterns in the software we write. But the good old "personal boycott" isn't really working, and hasn't really been working since forever. If for example Youtube won't allow you to turn off your screen on a mobile device, unless you buy premium (turning off the screen is a hardware feature, not a website feature), then the solution isn't really to stop using Youtube. There isn't an alternative.
Man, when I think about this stuff I can get kinda jaded. Antidotes like youtube-dl, or ublock origin work, but they only work for "us", and not everyone else who has to live in the Dark Pattern hellhole that the internet is turning into. I meet people who have never heard of an adblocker, still in 2021.
And even if "we" all stop implementing Dark Patterns, there will be plenty of other cheap hires who will gladly implement the same features when we refuse to do that kind of stuff. And if you're in a bad enough spot it would leave you out of work even. What if there was some kind of union? Like say something called "union of ethical software", which may more technically be a international non-profit rather than a union, which does a few different things:
1) Establishes open standards for how things should work, in regards to "ethical software", rather than say technical standards.
2) Has a donation fund which funds
A) A small team of lawyers/tech-people, who will on a strategic basis defend cases where an employee might end up in trouble refusing to implement features which are in conflict with 1). Not to primarily save employees, but to primarily scare tech-giants from going for the "do it or ill fire you stick immediately".
B) A small team of educators and speakers, who would spend time creating educational content and essentially political content as to garner public opinion in favor of all this, the types of people to appear on say TV during a big case against for example Google.
I'm just throwing ideas at the wall here though. Saw another comment here about living in a off-grid cabin. That sounds very nice, and better each day.
...The ESITF, Ethical Standards for Information Technology Foundation. Did it have a ring?
Great - that makes sense. But there’s a catch. If I shop in a store, I simply go to the counter, get the discount upon checkout, pay, and I’m on my way.
On their website, I have to use a promo code. So I have to remember what the promo code was and enter it at checkout. Okay — that seems kind of like a dark pattern.
Here’s where they lost my trust. By the time I got to the checkout page, they asked for all my shipping and billing details and then gave me the final purchase button. I just happened to then realize that wait — I was supposed to enter in a promo code! So then I had to back out to find the promo code again, and on checkout, I have to scroll down a full screens worth of real estate BELOW the purchase button to enter the promo code.
So they advertise the discount up front but then use shady tactics hoping I either forget to use the promo code or even if I want to, I give up trying to find it and just pay full price.
Needless to say I decided not to purchase from them. It’s dishonest and not worthy of my business.
I'm thinking that that guy on youtube who builds cabins from scratch in Canada with the charming Golden Retriever ('My Self Reliance') probably has the right idea. Maybe the right answer is a terminal that does email, banking, and Amazon.
With the sites I named, I think my life would trundle on pretty much unchanged. Maybe Usenet could be added to the list for the odd bit of online socializing.
While I'm designing my personal minimal internet, I'd add that all the interfaces were text based. Potentially a person could bolt on a low/no vision voice-based front-end.
The Rise and Fall of American Growth [0] is a fascinating book that talks about how much the Sears catalog revolutionized commerce in rural America.
[0] https://www.amazon.com/Rise-Fall-American-Growth-Princeton/d...
Amazon is a lifeline for people who live in remote places, which is what I think he means by cabins in Canada.
Amazon is the new Sears Catalog, enabling people who live pretty much anywhere in North America to buy things quickly and safely that are not available to them any other way.
Pre-pandemic I spent a lot of time with people who live in places where a "supermarket run" happens every other month, when the person with the largest truck drives three hours to the nearest Costco to fill ten grocery lists for all the neighbors. Amazon handles the days in between.
If anything, Amazon's incompetence at search screws them out of sales they would otherwise make. Their "dark patterns" are all aimed at their own foot.
I can buy just about anything from one shop and have it arrive at my door. The weirdest combos ever. An HDMI cable and cat food? Yes sir that will be on your doorstep next monday. A #2 screw driver and a new bag for my vacum cleaner? A bag pack, a pair of pants and a flash light? Right you go.
I no longer have to go out to small shops and find the item I want, saving me a ton of time. Plus so, so many books.
Maybe it is different in the US where you have wallmart, but here I have to source things from different online shops, which takes time, is annoying an results in higher fees, plus I don't know which shops are any good.
Amazon solves that problem.
In niches with low margins and high competition, dark patterns are one of the few chances to survive and make money (ticket aggregators, hotel aggregations)
The user can pay $10 or $15 depends on how you communicate the value almost with the same set of features. However, for the product, the difference affects the business model and the unit economy dramatically.
Of course, subscription cancelling penalties sucks and should be ban.
You're right, it's an unpopular opinion. If you're in a niche where you have to use dark patterns to survive, grow a conscience and find a different niche.