Live data from Hacker News

Meta accessed women's health data from Flo app without consent, says court

malwarebytes.com

91–100 of 236 posts

Re: Meta accessed women's health data from Flo app without consent, says court

#91
post #5
post #3

Earlier quoted context omitted.

Users gave their data to Flo, and Flo then gave it to Meta. What repercussions do you want for Meta?

Meta should never have used them. Deeply unethical behaviour

Your mistake was expecting ethical behavior from Mark Zuckerberg.

Re: Meta accessed women's health data from Flo app without consent, says court

#93
post #79
post #74

Earlier quoted context omitted.

Where in Europe? Belarus is in Europe, and so is much of Russia (the largest European country). Plenty of variation in the rest of Europe. What do you mean by cut all ties? The owners and management have no assets in Belarus or ties to the country?

you can open "contact us" page on their website.

Not sure how that helps answer my question.

A list of contact addresses is not a list of all locations, or all employees or all a contractors or all shareholders or all financial interests.

The one thing the site tells me is that it is operated by two separate companies - Flo Inc and Flo health UK. The directors of Flo Health Limited live in the UK and Cypress, two are Belarusian nationals and one Russian.

Re: Meta accessed women's health data from Flo app without consent, says court

#94
post #72

As much as I don't like facebook as a company, I think the jury reached the wrong decision here. If you read the complaint[1], "eavesdropped on and/or recorded their conversations by using an electronic device" basically amounted to "flo using facebook's sdk and sending custom events to it" (page 12, point 49). I agree that flo should be raked over the coals for sending this information to facebook in the first place…

[flagged]

Re: Meta accessed women's health data from Flo app without consent, says court

#95
post #72

As much as I don't like facebook as a company, I think the jury reached the wrong decision here. If you read the complaint[1], "eavesdropped on and/or recorded their conversations by using an electronic device" basically amounted to "flo using facebook's sdk and sending custom events to it" (page 12, point 49). I agree that flo should be raked over the coals for sending this information to facebook in the first place…

Flo shouldn't have sent those data to FB. That's true. Which is why they settled.

But FB, having received this info proceeded to use it and mix it with other signals it gets. Which is what the complaint against FB alleged.

Re: Meta accessed women's health data from Flo app without consent, says court

#97
post #72

As much as I don't like facebook as a company, I think the jury reached the wrong decision here. If you read the complaint[1], "eavesdropped on and/or recorded their conversations by using an electronic device" basically amounted to "flo using facebook's sdk and sending custom events to it" (page 12, point 49). I agree that flo should be raked over the coals for sending this information to facebook in the first place…

I would say you have a responsibility to ensure you are getting legal data. you don't buy stolen things. That is meta has a reponsibility to ensure that they are not partnering with crooks. Flo gets the largest blame but meta needs to show they did their part to ensure this didn't happen. (I would not call terms of use enough unless they can show they make you understand it)

Re: Meta accessed women's health data from Flo app without consent, says court

#98
5 years ago I was researching the iOS app ecosystem. As part of that exercise I was looking at the potential revenue figures for some free apps.

One developer had a free app to track some child health data. It was long time ago so I don't remember the exact data being collected. But when asked about the economics of his free app, the developer felt confident about a big pay day.

As per him the app's worth was in the data being collected. I don't know what happened to the app but it seemed that app developers know what they are doing when they invade privacy of their users - under the guise of "free" app. After that I became very conscious about disabling as many permissions as possible and especially not using apps to store any personal data, especially health data.

Re: Meta accessed women's health data from Flo app without consent, says court

#99
post #72

As much as I don't like facebook as a company, I think the jury reached the wrong decision here. If you read the complaint[1], "eavesdropped on and/or recorded their conversations by using an electronic device" basically amounted to "flo using facebook's sdk and sending custom events to it" (page 12, point 49). I agree that flo should be raked over the coals for sending this information to facebook in the first place…

That's why in these cases you'd prefer a judgment without a jury. Technical cases like this will always confuse jurors, who can't be expected to understand details about sdk, data sharing, APIs etc. On the other hand, in a number of highprofile tech cases, you can see judges learning and discussing engineering in a deeper level.

My understanding is defendants always get to choose, no? So that was an available option they chose not to avail themselves to.

Re: Meta accessed women's health data from Flo app without consent, says court

#100
post #55

Everybody misses the key information here - it’s a Belarusian app. CEO and CTO are Belarusian (probably there are more C-level people who are Belarusian or Russian). Not only are users giving up their private information but they are doing so to the malevolent (by definition) regimes. When the Western app says they don’t sell or give out private information, you can be suspicious but still somewhat trustful. When a d…

I would encourage you to read about the Edward Snowden guy and the PRISM program on wikipedia and most recent attempts of EU to ban the encryption.

Also, here is what Pavel Durov mentioned recently in interview to Tucker Carlson

> In the US you have a process that allows the government to actually force any engineer in any tech company to implement a backdoor and not tell anyone about it with using this process called the gag order.

It doesn't matter what anyone claims on the landing page. Assume if it's stored somewhere, it'll get leaked eventually and the transitioning/hosting government already has an access and decryption keys.

Post reply on HN