Live data from Hacker News

Path texts my entire phonebook at 6 AM

branded3.com

71–80 of 430 posts

Re: Path texts my entire phonebook at 6 AM

#71

On iOS, Apple made it so the app has to get permission to access the phone book. (Interestingly, Google Image search turned up this for a query of "ios address book permission": http://i.stack.imgur.com/MHF0p.jpg ) Did OP give this permission? I'm not defending Path (at all!), just trying to get full details. I've in fact accidentally given address book permission to apps by tapping too fast. Update: OP is using Andr…

Apple added this feature after the previous privacy gaffe from Path. Still though, there's a legitimate use case for asking for your contacts, and it is to help connect you with people you may know who are also on path. You also give them access to your photos to share things on Path, but there would be an uproar if they started uploading all of your photos to their servers. I'm not really seeing any good way to solve this at the OS level, it seems the only solution is for apps to be less shady.

Re: Path texts my entire phonebook at 6 AM

#72
post #11

Remember when a while back they downloaded far too much information from each phone (for the convenience of connecting you to people)? Everyone was surprised (some outraged) and then they pushed an update to stop that "feature" and when the CEO/Boss man posted a blog entry apologizing, everyone forgave the company, people were holding hands singing Kumbaya. Edit: Here's when they flubbed a year ago. http://news.cnet.…

I just noticed, in that apology letter, the line: "... Your trust matters to us and we want you to feel completely in control of your information on Path. ..." So they want you to feel in control.

"We are deeply sorry if you were uncomfortable with how our application used your phone contacts."

That non-apology is corporate communications at its most typical.

Re: Path texts my entire phonebook at 6 AM

#73
post #18

Why is it even possible for this to happen? Did someone really think it was a bright idea to provide an API to access people's personal data, and if so, why doesn't the phone tell them that before letting them install the app? On top of all of that, why wouldn't the phone provide a setting to restrict all personal/identifying information from being accessed by the app?

That sort of API is necessary for, say, an alternate text messaging app.

Re: Path texts my entire phonebook at 6 AM

#74
post #67

Path must really like thos FTC fines. Here's to hoping the next fine will exceed their cash reserves and we can put an end to this madness. The post is proof positive that path still uploads phonebooks from the app to their servers right after installing it.

This comment is a great example of how people are so quick to rush to judgement with emotional reactions. Let's look at the facts: 1. Path was fined, not for anything involving address books, but for allowing 12 year olds to sign up for the service. 2. Yes... it is proof that Path uploads your phone book. Of course, they ask you. The OS won't even give you access to the phone book without prompting the user. So somew…

Android doesn't ask for user's permission before accessing the address book, is it?

Re: Path texts my entire phonebook at 6 AM

#75

How about another detail -- the fact that the message said the user had photos to share, when he didn't? There's annoying spam, and then there's straight-out-lying spam -- the "x has sent you a message, you need to create an account to view it" type. Just curious, is there a way to sue/fine a company like this for false advertising, essentially?

Another hook might be a violation of the Telephone Consumer Protection Act (TCPA) which has been interpreted to prohibit automatically sending text messages without the recipient's consent. The statutory damages are $500 per incident.

Re: Path texts my entire phonebook at 6 AM

#76
post #66

On iOS, Apple made it so the app has to get permission to access the phone book. (Interestingly, Google Image search turned up this for a query of "ios address book permission": http://i.stack.imgur.com/MHF0p.jpg ) Did OP give this permission? I'm not defending Path (at all!), just trying to get full details. I've in fact accidentally given address book permission to apps by tapping too fast. Update: OP is using Andr…

OP is using Android where you either have to accept all the permissions the app requests as part of installing it, or not install it at all.

Interestingly, Android was much better about application permissions for some time. These days though, it seems iOS allows users to have more control.

On iOS, for reference, one could install Path but then deny it notification permission (or limit what types of notifications at a very granular level), allow/deny access to photos, and allow/deny access to the address book. You could deny all of those and still use the app just fine, though obviously without the ability to upload things from your photo roll.

Re: Path texts my entire phonebook at 6 AM

#78
I think the moral of this story is to do a little Googling about a company or product before trusting them with all the contact information (at least) in your phone. You know, to find out first if they're criminal scumbuckets. For all you know their app keylogs your transactions with your bank.

Re: Path texts my entire phonebook at 6 AM

#79
post #67

Earlier quoted context omitted.

This comment is a great example of how people are so quick to rush to judgement with emotional reactions. Let's look at the facts: 1. Path was fined, not for anything involving address books, but for allowing 12 year olds to sign up for the service. 2. Yes... it is proof that Path uploads your phone book. Of course, they ask you. The OS won't even give you access to the phone book without prompting the user. So somew…

Android doesn't ask for user's permission before accessing the address book, is it?

yes, android requires user permission to access any data on your phone.

Re: Path texts my entire phonebook at 6 AM

#80

Probably best not to just jump to conclusions until there is a response from Path or more evidence from users. I've been using Path since it launched with nothing like this ever happening. This sounds to me like some sort of unrelated scam. I didn't notice him say int he article but do the texts include a URL? If so where does that go? This seems like something that would be noticed by more than one or two guys if it…

There's a screenshot in The Verge's article (http://www.theverge.com/2013/4/30/4286090/path-is-spamming-a...), looks to go straight to an invite with the guy's name (https://path.com/i/BfOPb).
Post reply on HN