So instead of saying "you should run your a/b tests opt-in only", what you really mean is "in order to fight for privacy, you should never run a/b tests", which, again, totally wrong hill to die on. Why is it so important they not be allowed to try different features to figure out which ones work and which ones don't?
Mozilla has made so many missteps they circled a small planet with them. This isn't one of them.
If I told you right now that HN is A/B testing the size of the vote arrows, and you see larger ones than I do, how exactly are your privacy rights violated?
On a website, that isn't too much of a problem, because you expect your activity to be tracked since you are interacting with a web server.
In a browser, the same tracking is more intrusive. My behavior on a site is now being sent to the browser author, an unrelated party.
But you're just assuming it is. It could also be "On uninstall and crash, report back which studies were enabled" to track how many people are uninstalling their browser when the flag stupid_feature="on" is set.
Be mad about the data collected [specifically, what type of data is collected], not about the concept of a/b testing. Set clear boundaries of what is and isn't acceptable. Otherwise you're fighting an ever-uphiller battle. Because if they want to know which sites you visit and the privacy boundary is "a/b testing isn't acceptable", they'll do it via history syncing instead.
Of course we are. We didn't consent to being experimented upon or to have our behavior analyzed, so we have no basis for trust.
> Set clear boundaries of what is and isn't acceptable
Acceptable depends on trust. Ask for permission, not forgiveness, and I am more inclined to trust. Without that, I assume the worst.
Mozilla has arbitrary code execution rights on your computer the moment you allow them auto-updates. They're also entirely free to ignore your opt-out or opt-in requests.
What does this sentence mean? A/B testing fundamentally requires data collection, so I don't understand how to be mad about the data collected but not A/B testing.
Don’t be mad _that_ data is collected, be mad about _what specific_ data is collected.
I don’t know that I agree, but it does help me understand the meaning of the previous post. Thanks!
What is the consequence of this? In the abstract I understand that it doesn’t feel great, but I’m asking in the specific, how does it make a difference to any individual user?
If you knew that the user in the A group made fewer misclicks after the back button was shrunk … how does that harm anyone?
That's not the point. The point is unless you are doing data collection on anything but an opt-in basis, you are not pro-privacy. What you do with the data or why you collect it or if that collection is harmful is irrelevant to this principle.
A _privacy marketed_ browser sending such analytics data back home is different from a regular browser doing so.
* a short list of all the data they could collect, and
* a promise that they won't collect anything else without asking for the user's consent again,
then I doubt anyone would complain.
I may agree with the goals, but that doesn't mean I should blindly trust them to execute them, right?
https://researchbasics.education.uconn.edu/ethics-and-inform... https://www.interaction-design.org/literature/article/conduc...
If it's "see which color blue people like best in your UI" then this is nonsense. Nobody is going to be harmed regardless of which color blue you pick, so they don't need to be informed. Some privacy zealots may want to be informed, but they don't have a reasonable argument for why they need to know.
I don't care how you rationalize it, as long as there is any sort of intervention, you need informed consent.
This is redefining something ordinary to sound bad, but that doesn't make it bad.
And I do not think you're even sort of having this argument in good faith. You can't possibly be a rational person and believe that changing UI colors is "deeply problematic experimentation on people".
Forgive me if I'm a little pissed off but this privacy extremism shit is exactly what leads to people looking down at anyone who is a privacy advocate as a nutjob. So, thanks a lot for that, more work for those of us out there who want, to, I dunno, protect citizens from being genuinely fucking spied on and their data passed around like candy so better ads can be served.
But hey, it's all good, you're keeping those pesky UI designers from knowing which of their redesign is better, so at least we got that going for us.
I also would not agree with any argument like "opt-in is necessary to reign in anti-privacy activities of bad companies like Facebook, but we're good UI designers at Mozilla so we don't need to use opt-in and can use opt-out with impunity."
A browser that collects and reports any information on its users without their explicit permission is simply not putting privacy first.
Any privacy-focused browser should make UI testing - or any other telemetry or analytics - opt-in and should generally clearly disclose any information being collected (and preferably make it available for inspection) and also describe all parties that will have access to the information as well as what it will be used for.
If you view them as instruments, you're a villain. It doesn't matter if your intentions are good. Everyone has good intentions. Every atrocity in human history has been made with good intentions.
It doesn't matter if you don't think it will do them any harm. That's not for you to decide.
https://www.theregister.com/2017/12/18/mozilla_mr_robot_fire...