Live data from Hacker News

Getting my personal data out of Facebook

ruben.verborgh.org

51–60 of 77 posts

Re: Getting my personal data out of Facebook

#51
post #9

Earlier quoted context omitted.

They are only getting what you are giving to them. If you decide to browse the web without uBlock Origin or if you decide to use Android, you know what you're being exposed to.

I'd agree that everyone on HN knows what they are getting into, but we're not an accurate cross section of humanity to be fair.

I think that even within a relatively tech-savvy audience, most people don't realize both the extent of the data facebook may be gathering and the implications of facebook hoarding this information and turning it over (intentionally or accidentally) to untold third parties at some point in the future. Lots of information is harmless... until it isn't.

Consider, for example, giving your genetic material to a company that researches genealogy. Mostly harmless fun. That company is later quietly purchased- along with its databases- by a medical supplier. Meanwhile, cancer research has found that people with a particular gene sequence are at elevated risk for lung cancer. A partnership between the medical supplier and a medical insurance company means you can be screened for that risk without your knowledge, and suddenly you're screwed.

Even for those who don't see facebook as a malicious entity, there's considerable evidence that they do not exercise due diligence in storing and securing this information- see, for example, the recent case of leaking an enormous quantity of plaintext passwords via log files.

Enormous risks to individuals exist because the current regulatory environment poses no penalty to private entities for gathering personal information, sitting on it indefinitely, and transferring it to other entities until some purpose is identified. These risks may seem very small, but I believe that is mostly a fault of our collective imagination.

Re: Getting my personal data out of Facebook

#52
One bit of misinformation in the article, I believe:

> Not valid, since gdpr applies to eu citizens everywhere, regardless of where they live.

This isn’t correct. GDPR applies to people IN the European Union, not their citizenship [0]

[0] https://ec.europa.eu/info/law/law-topic/data-protection/refo...

Re: Getting my personal data out of Facebook

#53

Earlier quoted context omitted.

What stood out to me is that the author does have an inflated sense of self importance > And let’s not pretend that it’s a big cost to you: getting the listed data about a single person is about the simplest query you can write. (Did I mention I’m a data scientist?) And that particular trait emerges quite a bit throughout the correspondence. Where the author labels things as reasonable, I open the link only to find a…

Trust me, I don't take myself too seriously ;-) Facebook responds with an overload of legal nonsense to discourage people from replying. I overload them with a lot of non-legal nonsense. In the end I just want my data—it's my legal right.

Thank you for taking the fight and making a scene! I tell myself that I will send Facebook my GDPR letter one day, but just thinking about the time and brainpower I’d have to spend to understand exactly what my rights are and how to exercise them, makes me dread it.

Re: Getting my personal data out of Facebook

#54
post #50

If I worked at FB I'd seriously be considering my morals these days, and how important they are versus a cush job.

Most of this thread is filled with toxic, logically fallible attacks, which is why I avoided commenting earlier. I decided, however, to create a throwaway to respond to this. Anyone in this thread who is willing to step back and actually look at the facts, this message is for you.

Facebook takes the GDPR very seriously. I know this, because I know some of the people who worked on compliance. Facebook has lawyers who have studied the law. Facebook has worked with the EU to ensure compliance. Facebook publishes online the steps necessary to access your data, the list of uses of that data, and even a form for special requests. You may ask, then, how I reconcile that statement with the website posted here?

Well, take a moment to actually read the linked website. The writer made a request for their data, and was disappointed when Facebook complied, and gave them access to all of the data that they had on him.

The writer then asks for this specifically: access to their own data, how it's processed, and some minutiae around the processing. The user already has access to their own data, and the additional information requested is already publicly available.

The writer uses email and a special request form in order to make this request, and becomes irate when the special request takes longer than he would like.

Facebook then politely sends the writer an explanation of all of this, at which point the writer starts harassing the customer service agents who are helping him. He then researches ways that he can personally harass members of Facebook's team. He sends an email not just demanding his data, but requesting the raw data from Facebook's servers.

Facebook's response is still quite polite and factual. They have already delivered all of his data to hime, as well as all of the descriptions requested. They point out the timeline of events. They then explain that despite his request, the GDPR does not cover raw server dumps, a fact which has been proven in court.

Finally, the writer creates a defamatory website and posts it to Hacker News.

So no, sir, this event does not make me question my morals.

Re: Getting my personal data out of Facebook

#55
post #35
post #34

Earlier quoted context omitted.

The comment by xenihn makes a lot of sense when read as sarcasm/irony. Personally, I believe that was the author's intention. That said, it's unfortunately infamously hard to distinguish sarcasm/irony from actually "meaning it" in online conversations. That said, the post may as well be trolling and seeding doubt on purpose.

It's from Metal Gear Solid 2

Oh, that changes things. I suggest to attribute quotes to avoid people thinking they’re your words.

Re: Getting my personal data out of Facebook

#57
post #50

If I worked at FB I'd seriously be considering my morals these days, and how important they are versus a cush job.

Most of this thread is filled with toxic, logically fallible attacks, which is why I avoided commenting earlier. I decided, however, to create a throwaway to respond to this. Anyone in this thread who is willing to step back and actually look at the facts, this message is for you. Facebook takes the GDPR very seriously. I know this, because I know some of the people who worked on compliance. Facebook has lawyers who…

This comes off like you're mainly trying to justify your moral views to yourself.

How do you figure "the user already has access to their own data" when the author never received their explicitly requested location/device/wireless history (which FB definitely has)?

Does the GDPR only apply to publicly available data? I was under the impression the company was obligated to give the user everything, public and private.

Re: Getting my personal data out of Facebook

#58

Earlier quoted context omitted.

How does tone policing the author offer any insight into the argument at issue here?

One person's 'tone policing' is another person's 'advice on how to most effectivly get your point across'.

It's not helpful advice. The post above attacks the author's writing credibility due solely to its emotional tenor. That's essentially an ad hominem.

Re: Getting my personal data out of Facebook

#59

What you are asking for does not seem unreasonable, quite the opposite. What exactly are they afraid of?

They are afraid of people cooking up ways to take the data to fuel competition.

Remember how you could cross post between twitter and FB ages ago? That went away for a reason!

Re: Getting my personal data out of Facebook

#60
post #49
post #30

Earlier quoted context omitted.

Ah no. The EU countries have agreed, that the home country of the organization (not the country of the data subject) will take the lead in any GDPR enforcement. Facebook in EU is registered in Ireland. Ireland is making a mockery of GDPR, slow walking investigations while paying lip service to GDPR. Ireland is a leech. They've figured out that they can attract global companies through very lenient tax auditing and (n…

> Ireland is a leech. Eh, a leech that took the brunt of the real estate crunch for the EU? A leech would have let the German banks fold instead of paying bond holders. > Ireland is making a mockery of GDPR, slow walking investigations while paying lip service to GDPR. Slow walking is pushing it - the agreement to allow home countries be the enforcement authority put a massive burden on a really small country and its…

Isn't Ireland is home to these business because they have lower corporate taxes than the rest of the EU? Lower taxes likely make it harder to fund the regulatory agencies that should oversee these companies, which were intentionally courted to Ireland with lower taxes.

I don't disagree with you, but it seems to be largely a problem of Ireland's own making.

Post reply on HN