Live data from Hacker News

Popular iPhone apps caught sending user location data to monetization firms

techcrunch.com

51–60 of 261 posts

Re: Popular iPhone apps caught sending user location data to monetization firms

#51
I really wish there was a reliable way to just shitlist all of these affiliate/analytics/tracking/ad SDKs device-wide. Third party SDKs sending who-knows-what to who-knows-where is such a plague in the app ecosystem, and even the developers including them seem to have no idea what the implications are.

I don’t want any of them, ever.

Re: Popular iPhone apps caught sending user location data to monetization firms

#52
post #26

No surprise to see a number of weather apps on here. Seems to be such an incredibly scummy category. The built in Apple app is fine for basic information. There are plenty of high-quality third-party apps. Weather Line (my fav) is $2. DarkSky is $4. Instead people go for these weird free apps covered in ads with terrible UIs. The NOAA one isn’t made by the government, seems like using that name should be some kind of…

>There are so many good apps on the store made by good developers. It’s amazing how much better your experience is if you just avoid free apps when possible. Yes. It cannot be emphasized enough. Go pay for apps that are good.

FDroid on Android has tons of FOSS apps that are quite good. Its a false dichotomy.

Re: Popular iPhone apps caught sending user location data to monetization firms

#53
post #7

I’m confused. On iPhone you control which apps get location data. You also get warnings on the top of the screen when an app is using your location. How are these apps getting around that?

Because users are authorizing the app, for a seemingly legit purpose, but they are not intentionally authorizing the bundled third party SDK that came along for the ride to exfiltrate all of the data that it can.

Re: Popular iPhone apps caught sending user location data to monetization firms

#55
post #47
post #40

Earlier quoted context omitted.

shameless plug for my app true weather: https://play.google.com/store/apps/details?id=net.conceptual... Privacy policies don't need to be complicated: "TrueWeather does not collect any personal information."

The problem is when not being complicated means they are aren't truthful. Do you track crashes? Do you have any logging that tracks an IP address? I view my dedicated home IP as personal, if not all that private, information. Does minimal logging actually require storing personal information? Is there a common, or legal definition of what personal information is? I'm all for simple policies, but I would also rather t…

the app collects no data whatsoever. i have no idea what your IP address is (the app connects directly to environment canada to retrieve the raw radar data). no crash data/telemetry is collected automatically, but bug reports are welcome on the github repo. so please don't insinuate that this policy is not true.

and yes, there is a legal definition of personal information. since im based in canada, that would be as defined by PIPEDA (the Personal Information Protection and Electronic Documents Act)

Re: Popular iPhone apps caught sending user location data to monetization firms

#56
post #42

Earlier quoted context omitted.

generally a good rule of thumb, though ive also seen a few cases of a good open source app having a bunch of scummy forks that end up being more popular on the app store (eg shuttle vs phonograph). i wonder if google promotes apps with advertising more than their ad-free counterparts? the conflict of interest is so obvious but i digress..

Generally I trust the Fdroid repository much more than I trust Google's repository. Though if Fdroid became very popular with the masses I don't think that could continue to be the case, unfortunately. It's a difficult problem to weed out the bad apps...

thanks for the link to fdroid, have never used it but it looks promising!

Re: Popular iPhone apps caught sending user location data to monetization firms

#57

Why does it seem like browser extensions are ignored in all of these discussions? For example, right now the Honey Chrome extension has permission to "Read and change all your data on the websites you visit". They could be doing anything with that, I'm just crossing my fingers that they find me good deals and don't abuse my data. Chrome actually acknowledges this: "Warning: Google Chrome cannot prevent extensions fro…

I have developed Chrome extensions. You can specify the domains that your extension runs on (via regex like syntax). However, I am not sure if Chrome surfaces this information to its users.

Re: Popular iPhone apps caught sending user location data to monetization firms

#58
post #55
post #47

Earlier quoted context omitted.

The problem is when not being complicated means they are aren't truthful. Do you track crashes? Do you have any logging that tracks an IP address? I view my dedicated home IP as personal, if not all that private, information. Does minimal logging actually require storing personal information? Is there a common, or legal definition of what personal information is? I'm all for simple policies, but I would also rather t…

the app collects no data whatsoever. i have no idea what your IP address is (the app connects directly to environment canada to retrieve the raw radar data). no crash data/telemetry is collected automatically, but bug reports are welcome on the github repo. so please don't insinuate that this policy is not true. and yes, there is a legal definition of personal information. since im based in canada, that would be as d…

It is totally awesome that you are not doing anything creepy, but I hope you can understand that some folks are going to be more wary nowadays and that is not a bad thing IMO.

Re: Popular iPhone apps caught sending user location data to monetization firms

#59

Why does it seem like browser extensions are ignored in all of these discussions? For example, right now the Honey Chrome extension has permission to "Read and change all your data on the websites you visit". They could be doing anything with that, I'm just crossing my fingers that they find me good deals and don't abuse my data. Chrome actually acknowledges this: "Warning: Google Chrome cannot prevent extensions fro…

That’s not an issue in iOS/Safari because extensions can’t do that kind of thing.

I’ve seen other people complain about this for chrome. I saw people justifying it by saying that that permission is necessary if you want to interact with the page directly (hide/show content, etc.).

Doesn’t mean the extensions are to be using it, but it may be necessary. Much like GPS data for a weather app.

Re: Popular iPhone apps caught sending user location data to monetization firms

#60
post #50

The lack of any real business model besides gambling on mobile apps sends the market from professional firms like Autodesk and Adobe to solo developers overseas. They have much lower accountability which makes this entirely predictable.

> to solo developers overseas

Why is that kind of racism necessary at all?

It has nothing to do with where people are. Developers want money. Duh.

But the App Store has gone to “ basically everything is free“. The only two ways to accomplish that for most developers are in app purchases, which don’t work every app, and ad/data sales.

As new people find new ways to monetize data that they can get their hands on, they’ll approach developers and that data will get sold.

Isn’t having no privacy laws great?

Of course people could just pay for high-quality apps. Sadly that train sailed. I feel like IAP made it worse.

Post reply on HN