Live data from Hacker News

Backblaze Privacy Update: Third-Party Tracking

backblaze.com

1–10 of 72 posts

Re: Backblaze Privacy Update: Third-Party Tracking

#3
Firstly, this post does not even mention or describe what kind of information was exposed and makes it seem like some inadvertent tracking that's not serious in any way. You can continue with your root cause analysis, but you already know very well about what kind of information was exposed and shared with Facebook. The least you could do is own it and alert people about it.

> We take the privacy of our customers’ data and personal information very seriously...

It's astonishing that there is no apology of any kind on this post. Is that too much to ask for such a grievous violation?

> On March 8, 2021 at 8:39pm Pacific time, a new Facebook campaign was created that started firing a Facebook advertising pixel, intended to only run on marketing web pages. However, it was inadvertently configured to run on signed-in pages.

It went unnoticed for two weeks, with Facebook gathering information about the customers' files! And yet, no apology!

Re: Backblaze Privacy Update: Third-Party Tracking

#6
They literally sent file names and file sizes over to Facebook. That might very well include very personal or confidential data. The fact that they don't even mention this and make it sound like some random unimportant tracking happened without them noticing is completely ridiculous.

Re: Backblaze Privacy Update: Third-Party Tracking

#7
post #2

> We take the privacy of our customers’ data and personal information very seriously I wish companies would actually mean this and apply it proactively instead of just copy and pasting this in their apology after something like this happens.

Many companies do apply this proactively. It's just that you pay no notice to the 'lack' of incidents.

Re: Backblaze Privacy Update: Third-Party Tracking

#9
post #2

> We take the privacy of our customers’ data and personal information very seriously I wish companies would actually mean this and apply it proactively instead of just copy and pasting this in their apology after something like this happens.

Many companies do apply this proactively. It's just that you pay no notice to the 'lack' of incidents.

I didn’t mean to imply that no companies actually care about privacy and security, I meant companies affected by a public incident like this.
Post reply on HN