惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Martin Fowler
Martin Fowler
Engineering at Meta
Engineering at Meta
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
阮一峰的网络日志
阮一峰的网络日志
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
量子位
Jina AI
Jina AI
Microsoft Azure Blog
Microsoft Azure Blog
博客园_首页
L
LangChain Blog
A
About on SuperTechFans
人人都是产品经理
人人都是产品经理
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
美团技术团队
博客园 - 三生石上(FineUI控件)
N
Netflix TechBlog - Medium
D
DataBreaches.Net
P
Proofpoint News Feed
小众软件
小众软件
Vercel News
Vercel News
T
The Blog of Author Tim Ferriss
WordPress大学
WordPress大学
雷峰网
雷峰网
G
Google Developers Blog

Compliance Solutions for Websites, Apps and Organizations | iubenda

AI can build your website. It can't manage your consent. | iubenda Browser signals and machine-readable consent: what they are and what the EU’s Digital Omnibus could change California Consumer Privacy Act (CCPA): Complete Guide How to increase your cookie banner opt-in rates: 5 mistakes to fix today | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #153) Why your consent management setup is a marketing performance question Everything you need to know about GDPR The redesigned cookie banner and configurator What nobody tells you about handing over the company you built European marketers are betting on retention. Privacy could be the edge they’re not using yet. The 5 best alternatives to Didomi in 2026: Pros, cons, pricing, and comparison Looking back on 15 years: what iubenda's founder would tell his 2011 self | iubenda The best cookie policy generator in 2026 DPO Newsletter: Global Data Protection & Privacy News (issue #152) | iubenda What publishers should expect from the EU’s Digital Omnibus proposal Uncertainty is the biggest blocker to AI adoption in marketing | iubenda Everything AI app builders need to know about vibecoding and privacy compliance | iubenda Introducing 1-Click Embedding for Google Tag Manager The Essential Small Business Terms and Conditions Template: What You Need to Know Terms of Use Template | iubenda IAB Europe Raises Concerns Over GDPR Procedural Regulation Draft Report | iubenda Learn from HelloFresh's Costly Mistake: Ensure Compliance with iubenda | iubenda Understanding the Spanish DPA Guide on Audience Measurement Cookies | iubenda The Austrian Data Protection Authority's FAQs on Cookies and Privacy | iubenda DPO Newsletter: Global Data Protection & Privacy News (issue #127) | iubenda Microsoft Ensuring European Data Stays Within the EU Cloud Boundary | iubenda Businesses Beware: ICO’s Record £14.3m in Fines for Data Misuse in 2023 Understanding the Risks and Responsibilities of Model-as-a-Service Companies in AI Development Facebook's New “Link History” Feature: A Blend of Convenience and Surveillance? | iubenda OpenAI’s Strategic Move in the EU: Aligning with Data Privacy Regulations
How Mobile Apps Illegally Share Your Personal Data: A Dee...
Jessica Ryder · 2023-09-22 · via Compliance Solutions for Websites, Apps and Organizations | iubenda

In a digital era where smartphones and apps govern our daily lives, one question that often goes unanswered is: “What happens to the data these apps collect?”

Today, we are diving into some eye-opening revelations made by noyb, a European non-profit organization focusing on digital rights. Noyb recently filed three complaints in France against Fnac (the largest electronics store in France), the real estate app SeLoger, and the fitness app MyFitnessPal, alleging that these companies’ apps illegally access and share user personal data.

The Methodology and Findings

Noyb’s complaints stem from a technical investigation where apps were installed on an Android smartphone to analyze their network traffic. The findings were unsettling. As soon as users open these apps, the applications begin collecting and sharing sensitive data like Google’s unique Advertising ID (AdID), the model and brand of the device, and the local IP address with third-party organizations.

Why is this a Big Deal?

Such data collection allows for extensive user profiling, which in turn enables targeted ads and marketing campaigns, thereby increasing revenue for these companies. The more concerning aspect is that users aren’t given the option to consent to this data sharing, making the process unlawful under the ePrivacy Directive of the European Union.

The Illusion of Consent

European law states that data access or storage on a user’s terminal device is only allowed if users provide “free, informed, specific, and unambiguous consent.” Two out of the three mobile apps that were part of this investigation did not even display a consent banner upon launching. The third displayed a consent banner but began data transmission before the user could interact with it or provide their consent.

Detailed Tracking

Information like AdID is unique to a device, making it possible for third parties to single out users for targeted advertising in the future. Some apps go a step further by tracking user behavior outside their apps, providing even more granular data for their profit-making schemes.

The Larger Context

According to research by Konrad Kollnig and others, only 3.5% of all apps give users a real choice to decline consent. Ala Krinickytė, a Data Protection Lawyer at noyb, has emphasized that illegal data sharing is a widespread issue in the mobile app environment. Noyb aims to push regulatory authorities to put an end to this troubling practice.

Call to Action

Noyb has urged the CNIL (The National Commission on Informatics and Liberty) to order MyFitnessPal, Fnac, and SeLoger to delete all unlawfully processed data. They also suggest imposing fines due to the seriousness of these violations. This is merely the tip of the iceberg, as noyb plans to file more complaints against mobile app companies in the future to halt the illegal sharing of user data.

As consumers, it’s crucial that we remain vigilant and informed about the apps we use and the permissions we grant. Regulatory bodies must also step up to enforce existing laws designed to protect user data. Until that happens, organizations like noyb will continue to uncover the underbelly of data violations in the mobile app industry, pushing for change one complaint at a time.

As Ala Krinickytė of noyb puts it, “The illegal collection and sharing of users’ personal data is a widespread problem in the mobile apps environment. It is key that the supervisory authorities now take appropriate action to put an end to this practice.” Let’s hope that the coming months and years bring about more accountability in this sector.