Live data from Hacker News

23andMe changed its terms of service to prevent hacked customers from suing

engadget.com

121–130 of 402 posts

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#121
post #33

Earlier quoted context omitted.

Or the reality is, if someone wants your dna they will follow you around and grab a coffee cup.

Yes, yours specifically, but what if I want like 200.000 people so I can find one that has a DNA profile similar to mine, who could serve as a escape-goat or victim? Maybe I want to steal a kidney, or a child that could reasonably pass as my own?

> escape-goat

Unless this is an online joke I don't get, I think you mean "scapegoat".

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#122

Earlier quoted context omitted.

> If you do not notify us within 30 days, you will be deemed to have agreed to the new terms. WTF. This is outrageous. And I had find that email in my spam after I read this comment. Hope this POS company goes down in flames after this.

But they hold your DNA hostage. Don't you want this company to exist on so nobody gets hurt. Oh, they peaked and leaked that's why the users get TOSsed. Carry on, Sir, baldly into a classy action lawsuit against a bankrupt company were some zeroday employee will get the biggest payout by insurance ever.

Too bad to fail ?

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#123
post #116

Earlier quoted context omitted.

They usually put that exact thing into the ToS. The right to change it at any time.

Ahh ok this sounds like a thing that’s OK in the USA but not EU :-/

Indeed.

> "Besides the general requirements of 'good faith' and 'balance', the EU rules contain a list of specific contract terms that may be judged unfair.

> Here are some situations where contract terms may be judged unfair under EU rules:

> [...]

> - Terms which allow you to alter a contract unilaterally unless the contract states a valid reason for doing so."

https://europa.eu/youreurope/business/dealing-with-customers...

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#125

Earlier quoted context omitted.

Exactly. Same reason construction vehicles have "Stay back 200 feet: not responsible for broken windshields" written on the back.

Yep. A small tangent for anyone who has seen these: they’re very clearly not specifically enforceable. I got a window banged up by things falling off a truck with this signage, and the first thing they said when I called their “How Am I Driving” number the first thing they said was that they were not responsible citing this sign. Fortunately that sign was non binding. :)

Georgia (state) takes it a step further. They wrote an exemption to the license plate law that allows dump truck owners to display the plate only on the front of the vehicle. Makes it that much harder to hold them accountable.

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#126
post #7

To duck out of the new ToS, just write this email to legal@23andme.com-- To Whom It May Concern: My name is [name], and my 23andMe account is under the email [email]. I am writing to declare that I do not agree to the new terms of service at https://www.23andme.com/legal/terms-of-service/ .

I wonder what would happen if someone used one of the public email dumps and automated a mass opt-out of every email ever spotted in the wild.

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#128
post #21

I would have presumed that security-minded people, which includes those who work in tech, would not so easily give away their genome, and that most of 23andMe's customers are a slice of the general population. But then I read about things like WorldCoin and that people who go to startup parties jump at the chance to give away scans of their retinas and I'm befuddled. Why would anyone willingly do that?

You didn't need to supply accurate information, this isn't a bank here with any validation of your identity.

You can at least change your name. You can't change your DNA, so when companies start selling that data it will be easy to detect when you give out fake information.

The only missing piece is a way to scan your DNA as part of a login form.

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#129

Earlier quoted context omitted.

I wonder if they can use things like opt out data to find a way screen for genetic markers of "troublemakers" or similar. DNA driven targeted advertising that finds only the most docile consumers.

They can't tell you your eye color from their DNA data with any degree of confidence, and you seriously expect them to be able to find a marker of something as vague as "troublemakers" ?!

>> I wonder if

Re: 23andMe changed its terms of service to prevent hacked customers from suing

#130
post #6

I'm not a lawyer but I doubt that this will matter in the court because the time of actions matter; or in another words at the time when user registered they agreed to TOS A and later when 23andMe changed their TOS A to TOS B they achieved nothing because you can't unregister users and register them again and force them to agree to the new TOS B. I mean they can ask you to agree to new TOS but you don't have to becau…

You got it wrong. They can throw a big TOS in front of you next time you login. Most users will just accept.

Additionally they sent an email out saying that you have 30 days yo tell them you want to "opt out" otherwise by default they assume you accept the new TOS agreement.

Post reply on HN