Ask HN: I don't get this privacy awareness outburst, can anyone please explain?
I read all of this, understand most of it but I could never comprehend the idea of "privacy" online. I always assumed that whatever I put on the internet would be public now or in the future. Come to think of it, I put most of the stuff on internet just so a large mass of the world population can see me. My blog, my twitter, my facebook account all are there just so people who want to find me (or someone like me) can find me easily.
Google knows where do I live from my IP, so what? Facebook knows who I am friends with, so what? All this stuff was put up there just to make it public. If I don't want anything to be found I won't put it on the internet. It's not like they would steal my identity by knowing whom do I friend on the internet or what TV shows I like to watch. Nor would it harm me if webmasters know what word I searched to get to there website. All they want to know is what makes people want to come to there website. Where is the harm in it?
Maybe most of the people here would develop a deep seeded hatred for this post (maybe for me), but I just need to ask this question. Everyone I like from Cory Doctrow to the HN community wants to talk about something which I don't get. I know its a matter of principle to most of you. But I even can't understand that principle. So can you please explain all the privacy awareness outburst to me (without,preferably, flaming me)?
63 comments
[ 3.7 ms ] story [ 130 ms ] threadAs any other popular topic, it's going to have a long wind because any blogger or news outlet wanting a little extra attention is going to rewrite posts, come up with new accusations, and highly publicize every development.
I'm for privacy, not because I expect it, but because I prefer to control what other people can learn about me. The real issues with privacy are situations like an abusive ex-husband being able to relocate his wife due to a privacy breach or a private matter publicized.
I hate those posts too, I'm tired of them but it's not going to go away and the best you can do is ignore. When this issue is over, there will be another equally unreasonable issue making headlines.
And maybe they didn't think about it, or they trusted it, and they just woke up and realized how much dirt there is to put together on them. They weren't consciously deciding that online = open.
They're realizing that these free "tools" aren't tools at all; they are big, nasty companies. And their user data is the product.
Nobody likes waking up and realizing they're a product.
Also, trends come in waves. The 'privacy' thing comes in waves. The 'openness' thing comes in waves. Everything in life is a pendulum, from boom & bust economies to the level of religious fundamentalism.
Nobody seems to put that all together, but these waves of trends are largely BS, almost totally ineffective, nothing will happen, and it will disappear, only to reappear again in a year or two when the next big co. sells its user data without warning.
They're relying on social instincts that tell them that only the people they percieve as being present can hear what they say, and that it might get passed on, but thereby becomes hearsay and gossip that can be denied.
They may know intellectually that online statements are much less ephemeral and private than spoken words, but the act based on their instincts, not their knowledge.
Anecdotal evidence for sure, but my main point wasn't even about what users think, but about them acting based on social instincts without giving it much thought.
geeks take the basics for granted. For example: here are normal people answering the question "What is a web browser": http://www.youtube.com/watch?v=o4MwTvtyrUQ.
talk to normal ppl about IP addresses, privacy settings, open graph, API, etc etc and their eyes glaze over. in my experience, most of them have no clue. (not because they're dumb, mind you - it's because they don't live and work online like most of us.)
So, your banking is online, your email is online. Clearly you expect some things to not be public. The question is about where that line is and whether someone moves it without your say so.
People would indeed freak at Google and banks if they revealed what they promised they wouldn't. And that is the issue with facebook, they told people they wouldn't share this stuff and so people used facebook to tell their close friends stuff and facebook moved the line, repeatedly.
Email is public. It is hugely vulnerable to MITM attacks at every step of the process, not in the least by the postmasters of Alice and Bob's companies or ISPs, both or which are subject to police search as well as social engineering under the guise of police search. Unless you create a secure channel over email, you should always treat everything you say in an email as if, well, it was posted on your facebook wall. No sending email to your human trafficking buddies, in other words.
They hear the word "email", and they think, "the Internet version of the letter I used to stick in a mailbox", and they make assumptions about the level of privacy their communications enjoy. They log on to Facebook, see a list of updates from people they know, and immediately have a feeling of close-knit community; it simply doesn't occur to many Facebook users that something like YourOpenBook could possibly exist.
You and I understand and appreciate the subtleties of online communication. They don't.
There are different levels of privacy, and privacy can be expected online. How else do you buy anything online? You're giving out your credit card / bank data and billing and delivering address, but when was the last time you saw those broadcast online to everyone who can google your name?
If Amazon started listing names of people who purchased things (and what they purchased), you can bet people would get pissed. What Facebook is doing is about the same thing, and it's getting worse all the time, hence the uproar. But remember the uproar is happening in a tiny amount of the internet - the goal of all this is to get the average user to realize what's happening, because they should be upset about it.
edit: As an example, take a look at the Facebook phone number site. People are clearly expecting FB to be holding things at least somewhat private, when they're not. And they keep opening things up further and further, and the UI keeps implying it's just you and your friends. Nobody but us geeks even consider reading privacy statements, so the UI is all they go on.
http://news.ycombinator.com/item?id=1370786
1) Lots of people using these services assume only friends can see/access their data. They don't realise that much of their stuff is actually visible to a much wider audience, or if it wasn't before, it is now, due to privacy policy changes. This problem is exacerbated by extremely complex and lengthy privacy options.
2) It's not just about what you are putting out there, it's what others are putting out there about you. Whilst you might be happy for a friend to post a picture of you puking at the prom, or smoking a fat reefer, and to have that image accessible by only your friends, you probably wouldn't be so happy for your prospective employer to see it, and would, I imagine, be pretty hacked off if an image like this became accessible through some privacy change.
People aren't upset that their data is publicly shared.
They are upset because they understood that it would remain private.
Tell everyone my favorite color and I don't care.
Tell everyone I have an STD after you promised me that you wouldn't, and we've got a problem.
It's that simple.
I'd also argue the it's not really about geeks being upset that their own privacy is being violated. It's about other people's privacy. A huge percentage of normals don't understand the difference between a desktop app and what's inside a web browser. That ignorance can put them in very awkward if not dangerous positions. Here's why I've been part of the privacy propaganda mob on HN (without the flaming)
1. My niece and my geek friend. She's a very sweet, naive 15 year old girl who is the daughter of a conservative pastor. She loves to post pictures of her and her friends going to the beach, and camp, looking cute and goofing off. For the brief month that I tried Facebook out seriously, I had my niece posting pictures of herself in a bathing suit as well as geek friends posting comments like "MySql sucks dog cock" on my wall. Those online "friendships" needed to remain separate and in different circles of friends. And, I certainly don't want the "suck dog cock" friend ogling my niece in a bathing suit. I needed to have those relationships compartmentalized and kept private. Even had I figured out how to maintain that separation, Facebook could change that at will. I opted out, but my family still doesn't understand why.
2. My mother. She's now 74 and she bought her first laptop last year. She's on "the Facebook" because her grandkids are on Facebook. There is no way to easily explain how to maintain private/public information on Facebook. While she wants a tool to share status updates about medical conditions with friends/family, she doesn't want those broadcast to the world.
3. Rafael. I work with Rafael at my hospital. He worked in a 3rd world country as an agricultural minister before he got a visa to work in the US. After he got his green card, he packed up, moved to the US and changed careers to work in the health care field. He's been homesick so he's been catching up with old friends via Facebook. He went to a university 20 years ago with very communist leanings, and he's been talking to his friends/intellectuals about the political situation in that country. He personally knows several journalists who have been killed because of what they've written in the press about government corruption and drug cartels. He was shocked when I told him that his wall posts/conversations with his friends on Facebook were publicly searchable.
4. Alan. A former coworker of mine is a nurse, and he has issues. For a while, our hospital administration was in a tail spin about missing narcotics. Alan didn't show up for work one day, and I haven't seen him since. Another friend said that he was friends with Alan on Facebook, and several weeks prior, Alan had posted a status update on Facebook: "Vicodin, Valium and Vodka... the Holy Trinity".
I think you're right, Ed. It's about trust. But, for me it's not just that Facebook is changing their privacy policy. I, as a geek, know that anything I do online is inherently public. I use online tools with open eyes. Many Normals intuit wrongly that they are having private conversations when they interact with friends in a dark room via a laptop. That wrong belief can cause no end of problems for people.
That's why I'm on the privacy propaganda bandwagon.
They have deliberately chosen not to do so, and I don't really understand why. There's no advantage to them in making it hard, and significant risk. All that's needed to bring them total disaster is one good nationally publicized horror story. The groundwork for that story is being laid now.
I just don't the the upside of their choices. They could get away with selling anonymized data to advertisers. They could get away with letting marketers target you as long as they didn't sell your identity along with it. That's all stuff people will tolerate.
But why make your information public by default? What's the real gain there? I see a reason they might think it's of use if they think really shallowly, but sure they've put more than 10 seconds of thought into their core business.
FB can't go public while they maintain this approach. The investors would raise havoc over the risk it poses to the company. And rightfully so.
One good sensationalized story. That's all it takes at this point.
The more public data there is, the stronger the network effects can be? There are a bunch of decently supportable practical and principled reasons for this.
Since there are going to be leaks anyway, reducing the expectation of privacy is in their interest.
Getting more data searchable and public means people are more likely to consume more facebook time/data (alluded to above).
In the medium term, privacy for things people put on the internet is dead, and spending a lot of effort fighting a rearguard action seems pointless if you've already accepted where this is going. I think this is actually where most of this is coming from: Zuckerberg, Schmidt, and others have spent a lot of time thinking about privacy and the implications of a basically open internet (largely unused SSL, DNSSec, public key crypto), and they understand that the battle for keeping things private was lost more than ten years ago. We could have all been using encrypted-by-default everything by now, but the fact that we're not, and the fact that there's no movement on the horizon to do encrypted-everything, means that we're just not going to be able to put the privacy genie back in the bottle.
Entire organizations use it as such.
The idea that everything on the internet must be public simply ignores reality and is shallow thinking.
It's not how much oil hasn't leaked that concerns people.
Now don't forget that the internet is not limited to the web of cloud computerized big servers. E-mail, file sharing and social networking are not that, for instance. They are decentralized by nature. They do not require Gmail or Mega Upload or Facebook. Such services can't last. They are a fad that will fade…
…If we do things right. We just need ubiquitous, easy to use personal internet servers. They are technically and economically possible right now. We have cheap hardware, and cheap software. We just need to wrap that up together, and massively sell them.
With a suitable propaganda about privacy and independence on the internet, the dream of a mostly decentralized internet may come true in less than 3 decades. And at that point, privacy on the internet won't be a problem any more.
If you're a technologist who has followed the development of the web closely, and I suspect that most people on this site fall into that category, then you have a much better understanding of what the risks are when putting information about yourself online, but most ordinary Facebook users aren't technologists or hackers and don't have the same understanding.
It used to be that, even if they knew almost nothing about the internet, one of the first things hammered into a new AOLer was: you should be careful about putting personally identifiable information on the internet, at least until you understand exactly what you're doing. The norms for things like mailing lists and web forums were to use psuedonyms, etc. I think I was even taught that in a computer-literacy class in school at some point. So it ended up being sort of conceptually opt-in: don't put anything out there until you know what you're doing. That reduces the risk that a n00b will end up putting personally identifiable information into a system that they don't understand, that will use it in ways they didn't expect.
Facebook obviously sends the opposite message: put stuff out there by default, because that's how things work these days.
But the truth is that better and more secure privacy exists today than it did six months ago. And a pretty large number of people are aware of that.
You sound like you're talking about something specific. Could you elaborate, please?
The problems, currently, are mostly to do with a) when privacy options are not being respected properly (by accident or design) and b) Facebook not making privacy options clear to "noob" users.
Irrespective; from the view of a security researcher with an interest in social media (like myself) it is a lot harder today to see someones private details than it was last year.
http://www.insidefacebook.com/2009/02/02/fastest-growing-dem...
The majority of facebook users are women 26-44: no word on their maternal status though.
For example, I fully get that Google has my IP address and search queries. But I fully expect that you do NOT have that information. Likewise for my email on gmail. If Google were to take my old emails and post them on a public site I'd be upset.
Likewise, I'd be upset if Google went around my neighborhood gathering wifi data. Unencrypted or encrypted (which given their computing power, they could likely break, given the state of current implementations) I'd not be happy -- it breaks the unwritten assumption I have about what data is private.
And the relationship with advertisers is another issue. This is more an issue that I have finite time to deal with things and the last thing I need is for Facebook giving my name and email address to thousands of advertisers. And companies like Apple probably even have your credit card info. You probably don't want them giving that info away to advertisers either.
And lastly, there is also a component, at least in the US, of fear of intrusion by the government. If for some reason, the government wants to start auditing supporters of gay marriage, they could use the Patriot Act to narrow down the real name of Jack_2099@yahoo.com. The less info Yahoo and other sites have on you, the more difficult this becomes.
The fundamental question is why give up your privacy? What are you getting out of it? What do you potentially have to lose? Not today, tomorrow, but what about in ten years? There's very little upside to losing privacy, but _potentially_ huge downside.
I hate to generalize and single out a group, but of the people I know I feel like the only people who didn't understand that facebook had very little privacy were the older parents and family and such who all joined after they saw all their kids doing it.
I created my Facebook account in late 2005, in my first semester of university. (This was a couple of months after Facebook was first opened up to non-American schools, including ours. My user ID was #1714 in our network.) You might know the history. Only secondary and post-secondary students were allowed to register, and by default your profile was only visible to people in your school. I seem to recall allowing friendships between people in post-secondary and secondary networks was a big deal. There was no newsfeed and there was no API.
It was a very walled garden, but for better or for worse, it was walled reasonably tightly. Bugs were definitely there, but they were usually bugs, not deliberate action. At the time, Myspace was king, and Facebook was definitely presented as a less cluttered, more closed, more elitist, safer, cleaner version of that. You felt like what happened on Facebook would stay on Facebook, and people behaved accordingly. It's sort of like email -- you might realize that it's pretty trivial to eavesdrop, but few people who do realize that will write emails as if everyone could read them. It's more like a real conversation if you don't. There was no sense that whatever we put on Facebook would be public, now or in the future. This was a campus conversation: people might eavesdrop occasionally, but the walls don't have ears or eyes.
Then Facebook realized they want to make money and started to slowly turn up the heat on the frog cauldron. You've likely followed the story -- opening up to registration for everyone, loosening defaults, Beacon, applications, 'likes', instant personalization. All along, it started feeling a bit less like a dorm common area where you might chat with friends and more like the internet, where you have to watch what you say. Less like a BBS and more like a job application.
Should we have realized Facebook would eventually become what it is now? Probably, but we were eighteen and enthusiastic and idealistic and more than a little bit stupid. To be honest, I don't think even Zuckerberg knew in 2005 what he would do with Facebook in 2010, and we implicitly hoped it wouldn't change that much.
Now, I understand why Facebook is doing this. I mostly stay on top of the developments. I started gradually removing the personal of information from my profile a while back. (When signing up, I gave a fake birthday, left gender blank, etc. Still, there is room for feeling betrayed when you realize that no, you simply can't stop people from seeing your profile picture at 200 px wide. That doesn't leave a lot of room for optimism as to what will happen to walls and status updates in a year or two.) At this point, my profile is nothing I wouldn't want or care about the internet at large seeing -- and that's a lot less than it once was. The most recent thing to go were 'likes'; I don't like being described by foreign keys in a database, not to that degree. Call me picky.
I'm not even outraged. By now, I've come to expect Facebook to fuck up when implementing new things, to change defaults on me without notice, to open me up to the internet. I conduct myself accordingly. That's probably not the reaction they are hoping for.
Still, there is a sense of sadness. I care, because Facebook of yore was better for us. It didn't make money, but that doesn't change the end user experience. I miss having complete control of everything I trust Facebook with. I miss being able to put "post-beat-power-puff-dance-punk-youthloud-romantic-garage-pop extravaganza" as my favourite music without some dumb script trying to make sense of it. I miss the four whimsically named groups I belong to that were unceremoniously removed from my profile in a not-so-subtle attempt to get me to 'like' things instead. I miss being able t...
Another, perhaps bigger problem that you seem to have completely missed is that Facebook, Google & Co. don't just collect information about what you put online, but also about what you do online, and can correlate it to a frightening and potentially harmful degree:
"Dear Rick,
By analyzing your search and websurfing profile we are able to offer you products that are tailored to your personal interests. Included is your personalized catalog: "Kingsize anal dildoes".
Christmas is near, and you still haven't found the right presents for some of your family friends and colleagues? No problem! Just send us the name and address of the person you want to surprise with a special present and for only $5 you get a personalized gift catalog tailored to that person's interests!
42 of your acquaintances have already asked us about special presents for you."
You can stop hoping. The great majority of email is sent in plain text (SMTP) and as the datagrams are routed from machine to another, they're open to interception, and in fact, are routinely logged.
SSL/TLS are cryptographic extension that attempt to secure messages in a socket communication, and by extension, application layer protocols such as SMTP.
Back in the early 2000s a friend of mine worked for a large consultancy in Canada and often had to work on equipment in the Bell/Sympatico (largest ISP in Canada at the time) data centers.
While he was there, he said the network techs would routinely snoop the traffic of the customers at the router level to see what web pages they were looking at, and grep'ed mailboxes on the servers looking for funny/dirty pictures or private information (credentials for porn sites were a big one)...
I'm sure this isn't a common thing, but you can bet it happens..
That's because we know that our facebook data went from private to public a long time ago, and we have modified our behaviour accordingly.
However, you should also therefore know that not everyone in our social network understands the implications of these default changes.
So, the geeks are upset on behalf of the non-geeks they know and love.
And they should be. If you don't think so, I challenge you to question 5 of your less techie friends and family on this issue. You will be amazed at how few of them (a) understand what the hell you're on about, and (b) care.
I take great care in how I present myself on the web. I have blogs and share photos online, but only on personal sites that I have full control of.
It's important to realize that "privacy" actually means "control over how your personal information is presented and revealed". Because having a magazine photographer with a telephoto lens take a naked picture of you and post it on the web sends a different message than posting that picture yourself, which in turn sends a different message than mailing that picture directly to a younger member of the opposite sex. Even if the pixels are exactly the same.
This is about the important social meanings encoded in the way you present something: Steven Pinker on "indirect speech as a window onto social relationships":
http://fora.tv/2007/10/15/Steven_Pinker_Games_People_Play
It's a bit abstract and academic, but this is HN, right?
The reason these issues have been at the forefront lately is that mainstream media has picked up the story. Facebook has, to use a cliche, reached critical mass. Everyone and their dog has a Facebook profile, so when something involves Facebook, even if it's a slightly more technical topic than usual, people are interested and want to understand.
Combined with other coincidental events, like Google being compromised by Chinese hackers, and people start thinking about it.
I don't like that. I probably would give that information only to some of my best friends, and maybe not even all of it. I don't intimately know google enough to trust it with all that data, google is not my friend. The only thing I know about google is that they make cool online webapps, and that they have a great search engine, but that does not make them my friend, so they don't have my trust. That's why I try not to give it too much info about me. The same holds true for facebook, and every other online service I give info about me.
But this is just me, and what I think is probably not what the majority thinks.
Consider for example the difference in privateness between two people sitting on a quiet park bench and two people sitting on a bus seat. They are both obviously public places, but there is a subtle but significant difference in our expectations of privacy. In one context, eavesdropping is perfectly normal (within certain bounds), in another it is quite sinister.
On the internet, these intuitions are frequently confounded. Someone who assumed that their facebook feed was fairly private discovers youropenbook. User 927 assumed that his search terms were just noise in the crowd until AOL published them all. Countless iPhone users didn't know that their photos contained their exact geographic location until 4chan had a go at ruining their life.
The problem isn't the level of privateness or publicness of a particular service, it's not even particularly about leaks or breaches; it's about people being completely unable to judge the level of privateness of anything digital. I expect most people simply would not use a 100% public medium for their private communications, so the "if it's on the internet, it's public" mantra isn't a great deal of use. I think this is one of the reasons why Twitter has been so successful - it provides a platform that implicitly communicates its privacy or lack thereof. Twitter's simplicity makes it easy to understand and integrate into your existing model of social appropriateness.
I think we come back to a very old and very simple principle of interface design - don't surprise the user. We should be trying wherever possible to design systems that are as private in practice as they would seem to be intuitively. Users don't read much of anything, so we need to think about other ways of communicating "publicness" and "privateness" in our software. We need to recognise that designing social spaces is not a primarily technical problem. Small differences in architecture, interface and even general ambience can create enormous differences in how a platform is used. This stuff is really hard and really easy to completely cock up and I think we need to think much harder about it. Nod to PG here - HN is IMO a great example of a subtly, intelligently designed social platform.
However, one component of all this I find distasteful is the more or less explicit coercion into revealing private information to use a service which, in some cases, is perceivedly or de facto necessary for one's livelyhood, social life or whatever. In particular because the offline equivalents or predecessors never needed such. You can argue that a teen does not need to use a virtual (no pun intended) monopoly like Facebook, or that no-one really needs to use unencrypted e-mail but that is just not realistic.
The (soon-to-be) ubiquity of the WWW or internet in general means that it cannot for long be allowed to go so radically against people's privacy expectations (some countries already offer better protection than others). The solutions may well be created by the private sector - say, making HTTPS and encryption for e-mail or equivalent the defaults.
Disclaimer: For this and other reasons I have avoided Facebook, MySpace et al., do not exclusively use Google's services, handle my own e-mail and so on. I am under no illusion that I am particularly secured against a concentrated effort, but I am satisfied I have limited my exposure somewhat.
Just 10-15 years ago privacy was a huge issue between parents and their children. People assumed -any- personal information made their kids targets for predators (which isn't necessarily untrue, but that's another discussion).
That view morphed into people blindly shouting personal details of their lives at the Internet.
The natural trend is to become more privacy aware. As more people use the Internet those people are more concerned with who see their content (my addition to the examples is Daughter: O_O I'm pregnant. Mom: WHAT). Sure, people argue to only post what you want everyone to know; however, Facebook is artificially stretching the concept of privacy from blind shouting into radical openness.
This artificial manipulation in one direction causes the opposite side to recoil (perhaps violently) in an attempt to maintain a sort of homeostasis.
That and people don't like having some faceless corporation take control from them.
You do that with the website as it is at that moment.
If at a later date the website owners decide to use the data that you gave them under your previous image of that website in new, creative and unexpected ways they are effectively breaking the unwritten contract between their users and themselves.
This will usually cause a backlash, but only in a small portion of the userbase because most sites are too small to get significant mainstream press coverage.
When sites like facebook get involved in this sort of thing the media will latch on to it immediately because of the potential audience for the information. This will then piss off more people that otherwise would not even have realized something has changed and so on.
It's a side-effect of the network effects that facebook profited from when they established themselves, I don't think it is possible to have the one without the other.