Live data from Hacker News

Grindr Shares Personal Information With Third-Parties

github.com

261–270 of 317 posts

Re: Grindr Shares Personal Information With Third-Parties

#261
post #8

For what it's worth, the most private data here is shared to analytics companies for Grindr's only analytical use. My guess is that Grindr's agreement with Apptimize and Localytics asks for the strictest possible protection of that data. If anyone at Apptimize or Localytics has access to that data, I'd be incredibly surprised. This sort of deal isn't the same as sharing the HIV status to Google or Facebook so that ad…

Why do you need to share HIV/status as part of performance analysis of a web portal or app?

Drugs marketing, supplements? I'm sure there's stuff you can sell more easilly to HIV positive people.

Re: Grindr Shares Personal Information With Third-Parties

#262
post #171

Earlier quoted context omitted.

I use dns66, how does this compare to netguard? https://f-droid.org/en/packages/org.jak_linux.dns66/

I've found Blokada to be much more configurable. Just switched from DNS66 to blokada today. https://blokada.org/index.html https://f-droid.org/packages/org.blokada.alarm/

I'll try it thanks for the links

Re: Grindr Shares Personal Information With Third-Parties

#263
post #143
post #115

Earlier quoted context omitted.

Rooted phone, no google services, and netflix downloads are just fine.

SafetyNet is a cat and mouse game. A lot of people don't have the patience for it.

I've been running Magisk since maybe August or September last year and I have not had a single issue with safetynet.

I have netflix installed (after rooting) without issue, and I use Android/Google pay practically every day along with another app that requires safetyNet without any issue at all.

Re: Grindr Shares Personal Information With Third-Parties

#264

I'd be interested to see how Scruff/Jack'd/etc stacks up. My guess is Scruff does better (it has always been a better designed/developed app) but I understand why they focused only on Grindr as it does have the largest market share (admittedly a guess). Grindr has never been exactly a bastion of good programming... Their app has always been subpar at best with infrequent updates, months/year long bugs, terrible UI/Na…

the CEO of Scruff replied elsewhere in this thread:

https://news.ycombinator.com/item?id=16738283

Re: Grindr Shares Personal Information With Third-Parties

#265
post #145

Earlier quoted context omitted.

Yikes. Combine this with the Chinese OPM hack, where extremely personal data for most government employees with security clearance has been stolen, and they have a blackmail goldmine on their hands. https://en.wikipedia.org/wiki/Office_of_Personnel_Management... They can verify what has been reported on sf-86 vs what might be found from this service. Any affairs or issues not reported are ripe for blackmail. Possibil…

You know, maybe we'll actually see some legislation on personal information and privacy and how it must be handled over time and in acquisitions sooner than later. I Facebook's problems were promising in this respect, but with the additional disclosures happening so often, and especially in situations like this, we might see some real change for the better soon. If so, I consider all those that had their Grindr info…

> You know, maybe we'll actually see some legislation on personal information and privacy and how it must be handled over time and in acquisitions sooner than later.

Depending on how many influential people they can black mail already, it could be too late. A would be blackmailer isn't going to give up their method of control.

Re: Grindr Shares Personal Information With Third-Parties

#266
post #230

Earlier quoted context omitted.

Why is this a blackmail goldmine? I am ignorant of Grindr, but what I have heard it is basically Tinder but for gay men. Would Tinder be blackmail data? It's hook ups and relationships, dating, etc, no?

Being gay is still a sensitive subject in the U.S., moreso in many other parts of the world. And I'd suspect that there are more than a few married (nominally heterosexual) men seeking out extramarital affairs on Grindr.

It is more than a sensitive subject in certain other countries, and I can only imagine the horror of someone who is in the US as a visitor of some sort being revealed to be a Grindr user.

Re: Grindr Shares Personal Information With Third-Parties

#267

Earlier quoted context omitted.

I thought it was for this reason, though the sibling comment's link seems to indicate that we don't really know (and I trust him more than my memory). It used to be common to tax different religions in a different way in some countries of Europe. Even today in Germany you are legally required to pay taxes to your church, and I have read multiple accounts of French expatriates who have discovered this only after a yea…

The way in which the German government has been co-opted by the church to act as their debt collectors is fairly disgusting and no longer of this day and age.

I don't agree that such a tax is a good idea, but consider the following:

1. If it bothers the Germans, why don't they change it? Is there some concordat that makes it difficult?

2. Do I really have a right to comment given that I'm not German? Does it really makes sense for you to apply what are presumably post-revolution, secular French standards to Germany?

3. "co-opted by the church to act as their debt collectors " -- sounds conspiratorial. You think the Church is all-powerful and able to do that? Tithing isn't new.

4. "disgusting and no longer of this day and age" -- appeals to time period are rather silly. We're not talking about fashion, and it's important not to fall prey to the Idol of Progress.

5. Interesting that more religious countries, like Germany's neighbor Poland, have no such tax.

Re: Grindr Shares Personal Information With Third-Parties

#268
post #151

So vending HIV status is a straight up HIPAA violation, I'm fairly sure that's been found to be the case over and over again -- it doesn't matter what your business is, health information is covered by HIPAA. That's 250k per violation fine, and leaking status positive or negative is a violation. And every person, and every time they pass that information to every "partner" is a distinct violation.

If an acquaintance tells me he has AIDS and I tell someone else, am I in violation of HIPAA?

Not in your personal capacity, no. As mentioned in the other comments to this parent, HIPAA only applies to "covered entities" like doctors that take insurance and insurance companies, and their "business associates" that process PHI on their behalf.

Re: Grindr Shares Personal Information With Third-Parties

#269
post #233

Earlier quoted context omitted.

I honestly don't get the distinction you're making here. I understand how people _can_ use AWS without ever letting sensitive data touch their disks, but most apps hand everything over wholesale (and frequently in a nicely structured format on RDS). The legal distinction you're making doesn't sound right to me. Contractors for companies that access your data aren't usually about whether or not an attacker can get at…

Amazon is selling an abstraction, and goes to great expense to not have access to customer data. If you are a HIPPA covered entity, they sign a BAA that puts them on the hook. It's like the difference between putting your papers in a storage locker versus your friends garage. The storage company ultimately has access to the locker, but is less likely to snoop (either consciously or accidentally) than any of the folks…

But you've just described a contractual agreement. You're still sending data to a third party. I'm not sure we're disagreeing here.

Re: Grindr Shares Personal Information With Third-Parties

#270
post #265

Earlier quoted context omitted.

You know, maybe we'll actually see some legislation on personal information and privacy and how it must be handled over time and in acquisitions sooner than later. I Facebook's problems were promising in this respect, but with the additional disclosures happening so often, and especially in situations like this, we might see some real change for the better soon. If so, I consider all those that had their Grindr info…

> You know, maybe we'll actually see some legislation on personal information and privacy and how it must be handled over time and in acquisitions sooner than later. Depending on how many influential people they can black mail already, it could be too late. A would be blackmailer isn't going to give up their method of control.

A would-be blackmailer isn't going to want competition. They've already got their material, and a law changing future exposure would have little to no effect on them, so get it while the getting's good, then close the door in the face of the next guy.
Post reply on HN