Tbh if you are concerned about the privacy and ethics concerns here the biggest red flag is in the subtitle: Meta's Twitter rival launched in over 100 countries today—but not in the EU Anything more is simply detail - if a major launch of this sort of service omits the EU we immediately know exactly why.
> if a major launch of this sort of service omits the EU we immediately know exactly why. Yeah, because implementing compliance features takes time and they likely opted to launch early instead.
Red flags in the Threads privacy policy
211–220 of 263 posts
Re: Red flags in the Threads privacy policy
#212Earlier quoted context omitted.
People keep saying this and yet it’s never happened despite the GDPR being in place for 5 years now. As a tech manager for an EU company, I can honestly say that it isn’t that hard to be GDPR compliant. Even when I worked for a company that did need to collect customer information, we pretty well understood what we could and couldn’t do under GDPR. This whole “GDPR is dangerous” meme needs to die because businesses a…
> As a tech manager for an EU company, I can honestly say that it isn’t that hard to be GDPR compliant It's pretty easy for a business to be GDPR compliant unless their business model or processes in some way involve collecting and processing or selling personal data of their users. Before GDPR a lot of businesses used this as a nice little second income stream, or just grew used to being able to freely analyze every…
It’s also worth noting that you can still using customer data for analytics under GDPR. GDPR doesn’t prevent legitimate analytics from happening. It just gives consumers power to be excluded from analytics and to force companies to be transparent about their usage of personal data.
Re: Red flags in the Threads privacy policy
#213Earlier quoted context omitted.
People keep saying this and yet it’s never happened despite the GDPR being in place for 5 years now. As a tech manager for an EU company, I can honestly say that it isn’t that hard to be GDPR compliant. Even when I worked for a company that did need to collect customer information, we pretty well understood what we could and couldn’t do under GDPR. This whole “GDPR is dangerous” meme needs to die because businesses a…
> As a tech manager for an EU company, I can honestly say that it isn’t that hard to be GDPR compliant. > This whole “GDPR is dangerous” meme needs to die because businesses aren’t being dragged in court over trivial things because of it. Ah, yes, the one weird trick of GDPR "compliance" by being a smaller, less appealing target to the enforcers. The "GDPR is dangerous" meme needs to stay alive because it's massively…
But to be clear, the GDPR is not about protectionism. If it feels that way then perhaps you need to have a hard look at whether the bigger problem is the companies that you feel are being persecuted by GDPR and whether the countries they originate should have done more to regulate them to begin with.
Re: Red flags in the Threads privacy policy
#214Earlier quoted context omitted.
> France is rioting Your point is well taken, and if anything that's a significant understatement. This is one of the most significant protests (or nearly civil war) to occur in France since the Revolution. > and it barely registered on Twitter. Indeed. I saw videos of what was happening in Wuhan in late 2019, but tbh it was mostly linked by comments on (where else) HN, so I may not have discovered it via Twitter's o…
> Your point is well taken, and if anything that's a significant understatement. This is one of the most significant protests (or nearly civil war) to occur in France since the Revolution. As someone from Europe who isn't French. It's just another France rioting story. It might be big in France but for the rest of us, it's just looks like another France rioting story which they were doing for the past few months. It'…
Re: Red flags in the Threads privacy policy
#215Earlier quoted context omitted.
This kind of wilfully ignorant argument This is HN. Please don't post comments with that sort of hostile tone here. Assuming ignorance and/or bad faith does not further constructive or interesting discussion.
I absolutely agree though, this argument is extremely weak, like a developer being asked to step outside their comfort zone locking up and declaring something unknowable levels of complexity so they don't even have to try. The GDPR is extremely easy to understand. It's not always trivial to comply with, because we all know that enterprises are held together with instant glue, a networking VM in a basement nobody has…
I respectfully disagree. And I write that not only as a very experienced developer but also as a director who has been legally responsible for GDPR compliance in more than one relatively small organisation.
The GDPR in its official format in English is 88 printed pages. It contains 173 introductory paragraphs followed by 99 specific Articles some of which span multiple pages by themselves. As is customary for legislation made at EU level a lot of the provisions are written more as statements of intent with considerable ambiguity about concrete implementation that is left to regulators or courts to clarify.
The specific legal basis of "legitimate interests" and the overarching obligations to collect and process data only where it is reasonably necessary are good examples of this openness to interpretation. And yet much of the data processing that most of us would probably agree is reasonable relies on the legitimate interests basis for its lawfulness. Several enforcement actions by regulators have already been brought against data controllers who apparently believed they were acting in compliance but were still found to be infringing the general principles around necessity and proportionality.
I contend that any legal document running to nearly 100 printed pages of densely printed text cannot credibly be described as "easy to understand". Indeed I must have read hundreds more pages of analysis and discussion by legal scholars, professional data protection officers and other experts and there have been plenty of disagreements over interpretation or sometimes outright contradictions between those papers.
Of course the only things that actually matter are the actions of the regulators or other official bodies that interpret the regulations and potentially sanction those who infringe them in specific cases. That means we also have to consider the stated opinions and actions to date of all the different national regulatory authorities and the outcomes of the cases that have been formally considered and resolved so far. And once again it is clear that even among the national regulators who are responsible for the interpretation and implementation of the rules there can be considerable disagreements about how the rules should be interpreted and sometimes which cases should be brought at all.
Now I don't necessarily disagree with some of those outcomes but I do think that if a data controller honestly believed their prohibited actions were in compliance and was subsequently penalised and required to make changes then evidently there is a problem with how accessible/understandable the rules are and those rules demonstrably failed to prevent the unwanted behaviours in those cases until the regulators did take action.
Re: Red flags in the Threads privacy policy
#216Earlier quoted context omitted.
> So what are we really talking about here? The very first thing in the listing for the app in the AppStore. Why are you so obtuse to this? https://apps.apple.com/us/app/threads-an-instagram-app/id644... DATA LINKED TO YOU The following data may be collected and linked to your identity: Health & Fitness Purchases Financial Info Location Contact Info Contacts User Content Search History Browsing History Identifiers Us…
When you read "data linked to you" don't think about the store of health data that's *on your phone.£ Think instead of all the data that all huge number of advertising networks, like the one paying qz.com's bills, that have massive hoards of data about you, without your consent, that gets bought and sold every single day. This is not a trivial distinction! The health data on an iPhone is secure, and Threads is not ge…
Because you became weak and caved does not mean the rest of have to give in as well. I have never created an IG account, nor will I be using Threads. I abhor Meta, and will never allow their apps to be installed on my devices. Your cavalier attitude about your data is your business, and my attitude is polar opposite. You coming in and trying to white knight the Threads listing as "nothing to see here, move along" is just this side of being a Meta shill. Some of us still have principles.
Re: Red flags in the Threads privacy policy
#217This level of scrutiny is really excellent. Now we need to apply it to other companies working in the same space. There is a serious lesson for startups though, if you actively start collecting data, you will, if you survive long enough, begin to have to declare what data you have when you "grow up". For example, if you do anything with photos, you will have to ask for permissions to process location data. even if yo…
Worst. Rant. Ever. > Scary people hoovering up data - they will and do monetise it > Is threads (Facebook) actually setting out to hoover that data? I doubt it So Facebook is the noble player; Twitter, Google, Apple, TikTok the bad guys ... Mark Zuckerberg isnt going to buy you a horse for your efforts. "they trust me, dumb fucks"
> This level of scrutiny is really excellent. Now we need to apply it to other companies working in the same space.
Facebook is and should be held in the same esteem as those lot. I was talking about threads specifically.
Sure, facebook the app is all up in your junk. But the apple label about "it stealing your health data" is nonsense[1]. Why isn't there a permissions dialogue asking me to share my health data, like fitness apps? Does apple specifically allow Facebook apps to get at my health data unannounced? what about apple pay, is that leaking to facebook as well?
None of the FAANG companies are reliable narrators. Regardless of how good their PR is.
Sure facebook will rat you out to the police, They don't spend anywhere near enough time or money doing actual proper moderation. They also totally suck at making new products (threads is the first new product with any success since messenger, and that sucks donkeycocks.) are they "nobel heros" fuck no. They are just trendy whipping sticks.
[1] https://www.mirror.co.uk/tech/threads-twitter-rival-warning-...
Re: Red flags in the Threads privacy policy
#218Earlier quoted context omitted.
> interesting to see a big international company actually back up their "we just won't do europe then" that's the most interesting things to me. Whether: 1- Threads is dead in the water 2- They figure it out and makes the EU happy 3- EU is irrelevant enough to be ignored 2- still looks like the most likely 1- would be very embarrassing and 3- would be, indeed, an "interesting" development.
What is the EU missing out on if Threads never enters it though? I don't believe Facebook, Instagram, Tik Tok or Twitter were net gains for people. I don't see how Threads might be. I do honestly believe that if all these services disappeared overnight we would live in a better world. I legit just don't want Threads to enter the EU, ever.
Re: Red flags in the Threads privacy policy
#219Tbh if you are concerned about the privacy and ethics concerns here the biggest red flag is in the subtitle: Meta's Twitter rival launched in over 100 countries today—but not in the EU Anything more is simply detail - if a major launch of this sort of service omits the EU we immediately know exactly why.
Not that they’re perfect - plenty of insane rulings coming out of there too like Frances microphone one
Re: Red flags in the Threads privacy policy
#220Earlier quoted context omitted.
What is the EU missing out on if Threads never enters it though? I don't believe Facebook, Instagram, Tik Tok or Twitter were net gains for people. I don't see how Threads might be. I do honestly believe that if all these services disappeared overnight we would live in a better world. I legit just don't want Threads to enter the EU, ever.
EU is not an arbiter of which particular business it likes or doesn't like. It's not Russia.