Where does Google actually say that they won’t read Gmail or Google Docs?
blogs.law.harvard.edu
blogs.law.harvard.edu
Which is a shame because I think it's pretty clear the OP is actually asking about Google employees reading your email, which is a valid question but sadly lost in the fight over semantics. :/
Unless you run your own smtp and pop/imap mail servers, there is no way to be sure no one will read your emails. Even then, your servers could get hacked or maybe your contacts use a hosted solution (and most people do) that could get hacked, there is again no guaranty. The only work around is to fully encrypt your emails, even then someone could steal your private keys, or you could be using an unpatched encryption software etc.
It's a matter of trust and time saving. Do you trust google, yahoo employees etc to not spy on you more than you trust your ability and your contacts ability not to get your mail servers hacked? How much of your time and money are you ready to waste maintaining such a server?
A company that makes all it's money from targetted ads - might
I think you really want to encrypt your email for that kind of peace of mind. Of course you need buy in from your contacts.
The more interesting question to explore is how much we actually trust these companies with our personal information and how do we decide when we reach a limit to our trust.
Do I believe that google can read my gmail? Yes. Do I think this capability will cause harm to come to me as a result? Hell no. There's nothing "in it" for them to do so for me or millions of others. I "trust" them for this reason.
It's a pretty classic security question, sometimes usability means that you accept zero security and completely share your private correspondence with the world.
I think trust is the wrong word, you are really just accepting the risk of sharing all your data for the benefits because the risk is low.
In any case, back to the OP's question, the stated "policy" about privacy means virtually nothing unless there exists a third party who can effectively verify that policy.
You just have to assume that all the data you share is no longer yours and will be used however the company sees fit.
I am amazed by the number of people who assume that "that would be bad PR if they got caught" is good enough security to protect data they consider sensitive. Especially when the PR damage historically has been very low, especially if you are a sexy and loved company like facebook or google.
The choice between being evil and not being evil can be an easier one to make, practically speaking, than the choice between being evil and becoming the target of federal criminal prosecution.
The cto at the time convinced them that there is really no point of keeping things inhouse since the majority of the management, for convenience, forwarded all their company email to their personal gmail account anyways. Funny how security is not about what you think but what you do.
If you want your mail to be reasonably safe from third-party reading, the only solution is to encrypt it before sending, and ask people that mail you to do the same. Anything that relies on trust is a half-assed solution.
In practice, unless both you and your recipient are operating your own email servers and key-exchange/encryption services, you HAVE TO "trust" a third party with your private information.
Also this isn't that big of an obstacle you make it to be. We're not living in 1995 anymore. A lot of mail clients have plugins or even have built-in support for encryption.
So, he's looking for a more elaborate answer? This is PhilG, so I should cut him some slack, but it seems pretty clear to me.
What that document actually says is this:
No, but automatic scanning and filtering technology is at the heart of Gmail. Gmail scans and processes all messages using fully automated systems in order to do useful and innovative stuff like filter spam, detect viruses and malware, show relevant ads, and develop and deliver new features across your Google experience. Priority Inbox, spell checking, forwarding, auto-responding, automatic saving and sorting, and converting URLs to clickable links are just a few of the many features that use this kind of automatic processing.
In other words, Google IS most certainly "reading" your email, at the very least with computers, for various purposes.
There is no way for a computer to anything with an email (save it, give it to you etc) without 'reading' it's contents. So the only meaningful thing for people to worry about is decoding the content which IMO means a spam filter does not qualify as decoding. Nor does displaying adds for tires if the word cars shows up in your email.
... or are they? ;-)
I've never used AdSense so I don't know how it works. Is it possible for the site owner to read the ads that are displayed to you on a website? Does Google "leak" collected ad data to other websites which use AdSense? Or are these ads typically displayed in something like an iframe, where possibly the "host" website can't read them?
"We carefully control the number of employees who have access to our systems, and we regularly upgrade our security controls–for example, we are significantly increasing the amount of time we spend auditing our logs to ensure those controls are effective. That said, a limited number of people will always need to access these systems if we are to operate them properly ..."
http://techcrunch.com/2010/09/14/google-engineer-spying-fire...
Turns out some people in the IT department where also helping themselves to the list as a source of entertainment, one of them took extreme offense to the joke and reported it.
After the thing went through its investigation process it was uncovered that the majority of disliked staff in the department where infact reading everyones email. Most of them had set up notification filters to flag emails with there names to see what people where saying about them.
Now the question is how common is this considering how easy it is to do... and how the whole system more or else runs off trust?
I'd say if you have sensitive stuff going through your email that you don't want external parties to see, set up your own server and find someone who isn't petty to look after it.
And if you work for the gov't your email can often be requested by citizens via FOIA.
[1] say, 1 in a thousand, of which google has 260,000 such gmail users
I don't know how enforcement works, though a single offense would be firing-worthy.
> here’s a strange little story that happened to me a while ago – I set up a gmail account to deal with nigerian letters and such (I wanted to collect some data to report the spammers/thieves, without compromising my actual e-mail address in the process). I set this up with a fake username (something like george.thompson or so) and a password which included the word “nigeria” in it. Lo and behold, after my first login (before sending/receiving any mail) the targeted advertising in gmail included some nigerian ads (nigerian holidays, nigerian business bureau, etc). coincidence?….
If true, it seems they matched ads to the guy's password. Which means they needed to be able to read it plain text. The plain text should only ever live long enough to create or match with a hash.
He'd have to have a sterile browsing environment to ensure his ads weren't related to something else on Google's ad network.
A few weeks ago I had a situation where Facebook contacted me about a job, and it appeared that Facebook may have been reading (or at the least mining) private messages related to my startup (http://news.ycombinator.com/item?id=3035376). A Facebook employee replied to the thread but wouldn't provide details.
I really think that was just coincidence. Considering how many people talk about startups over Facebook messages and how many people have been contacted by Facebook recruiters, there's bound to be at least one person who was contacted by a Facebook recruiter a day or two after talking about startups. It'll seem mighty suspicious to that person, and they'll blog about it. Congratulations, you're the lucky one.
Companies that big just generally don't do things like read private e-mail, because they know it'll get out somehow - disgruntled employee, whistleblower - and the damage to their reputation is totally not worth whatever they can gain from it.
Receiving an email from Google or Facebook is nothing special.
And are emails manually approved before they go out? If so, does that mean a Facebook employee looks at the data source that triggered email, which in some cases may be the user's private messages?
"Folks: The problem with Google promising to hold “personal information” confidential is that a document may not meet the definition of “personal information” given in http://www.google.com/intl/en/privacy/faq.html#toc-terms-per... . For example, if you write down some ideas for a new product and keep it as a Google Doc there may be nothing in the document that identifies you as the author and therefore it might be okay for Google to read or distribute the document.
Generally speaking the Google privacy docs address a separate issue from the question of keeping email or documents confidential. They are about the question of whether your identify is kept confidential when you’re browsing around the Web and Google is figuring out what your interests and demographics are. Worthy stuff to be writing about, no doubt, but it doesn’t shed much light on the subject of whether a Google employee can copy and paste paragraphs from your email messages or Google docs."
http://blogs.law.harvard.edu/philg/2011/11/03/where-does-goo...
That's exactly what I do on my system anyway. I host my own email as well though: https://grepular.com/Automatically_Encrypting_all_Incoming_E...
http://www.quora.com/How-many-employees-does-Google-have and http://en.wikipedia.org/wiki/Gmail respectively.
(Although off the top of my head, they do say they will automatically scan all email for the purposes of advertising, spam filtering, etc. and the debate used to be "does this count as reading if no human is involved?").
A most relevant question would be: Does Google match the profiles of its mail users to high profile people, such as company managers or other rich people who can be easily found on, for example, Linkedin? If so, does Google automatically filter their email in order to predict, for example, the stock market?
There will always be the possibility of a rogue employee who goes out of his or her way to read data that doesn't belong to them.
In the case of Dropbox - to prevent this possibility - we can encrypt our data if we choose to (I've successfully used 'encfs' in the past). In the case of Google's email and document services I don't think this is possible?
http://gawker.com/5637234/gcreep-google-engineer-stalked-tee...
Even if they say they won't it looks like they are lacking some internal controls.
We may collect the following types of information:
<snip>
User communications – When you send email or other communications to Google, we may retain those communications in order to process your inquiries, respond to your requests and improve our services. When you send and receive SMS messages to or from one of our services that provides SMS functionality, we may collect and maintain information associated with those messages, such as the phone number, the wireless carrier associated with the phone number, the content of the message, and the date and time of the transaction. We may use your email address to communicate with you about our services. <snip>
In addition to the above, we may use the information we collect to:Provide, maintain, protect, and improve our services (including advertising services) and develop new services; and Protect the rights or property of Google or our users.
If we use this information in a manner different than the purpose for which it was collected, then we will ask for your consent prior to such use.
It tells you what they WILL do. And it says if they decide to "use" (vague) "this information" (vague) in other ways, they'll ask for consent. Does simply reading it count as "using" it? Google doesn't say.
I wouldn't trust these assurances at all.
Which is, more or less, for any reason whatsoever except those already blatantly illegal (harassment, blackmail, etc.).
It seems for company using third party email hosting, it shouldn't be too inconvenient to set up a company-wide encryption on its emails.
It's the warrantless backdoors installed for most government entities.
What you think is harmless to discuss is probably being auto-indexed by them to use against you if you ever become a "problem" (ie. protest war, etc.)
And what makes me think that is that I suspect 99.999% of email is in plaintext. I have no foundation for this. Just a gut feeling.
Edit: Oh sorry forgot that people in the land of the free don't have a human rights act preventing Google reading their email (not sure about harvesting organs)
I know this for a fact as the last time I mailed them they replied.
Is it evil to read a bad person's email, or is it evil not to read it?
That's why a clearly stated policy that says exactly when Google will or will not let a human look at your documents and email is important. "Don't be evil" is cute, but it's not a policy statement.
I tend to scoff at the notion that FBI would start "dismantling data centers" in the manner described.
http://bits.blogs.nytimes.com/2011/06/21/f-b-i-seizes-web-se... The F.B.I. seized Web servers in a raid on a data center early Tuesday, causing several Web sites, including those run by the New York publisher Curbed Network, to go offline. ... “Our servers happened to be in with some naughty servers,” he said, adding that his sites were not the target of the raid. Curbed is working to get its sites back online, probably by Wednesday.
PS: When the FBI shows up you have zero rights to prevent them from taking anything on site, the only thing a lawyers can do is prevent evidence from being used in a court case after the fact. Granted, at Google scale they are more concerned with backlash and it takes a lot of effort to confiscate that much hardware, but that's not going to stop them in the case of a major incident. Also, by failing to help you are breaking the law let alone trying to stop them.
From the Policy:
[When] We have a good faith belief that access, use, preservation or disclosure of such information is reasonably necessary to (a) satisfy any applicable law, regulation, legal process or enforceable governmental request
About how and when they access your information:
We restrict access to personal information to Google employees, contractors and agents who need to know that information in order to process it on our behalf. These individuals are bound by confidentiality obligations and may be subject to discipline, including termination and criminal prosecution, if they fail to meet these obligations.
That "need to know that information" seems to restrict casual access, with the threat of termination to back it up. All of these are more specific declarations in line with a general "don't be evil" policy.
http://www.google.com/transparencyreport/governmentrequests/...
The question should be - does Google keep a profile on you based on the content of your emails?
I'm pretty sure they are able to serve ads without keeping a profile, making the decision solely on the content of the email being read. However, that may not be the case.
Not sure what kind of profile this ends up being, but it can be quite entertaining when I get ads about sumo wrestling (because of previous emails from appsumo)...
He's clearly talking about humans reading your mail. No email provider has humans reading your mail for purposes of spam detection, at least not in the usual case.
The question is perfectly valid: seeing that other companies have clear policies on the extent to which employees can access your data, how come Google doesn't have any such policies?