Congress Weighs in on iOS Apps Collecting Address Book and Other Personal Data
Last week, controversy erupted when it was discovered that the popular iOS app Path was uploading users' entire address books to the company's servers without alerting users or asking for authorization. While Path quickly deleted all address book data on its servers and updated its app to make the data collection an opt-in service, the issue has cast a fresh light on user privacy issues on iOS.
As noted by The Next Web, U.S. Congressmen Henry Waxman and G.K. Butterfield have now weighed on in the issue, sending a letter to Apple requesting information on the company's data collection policies it imposes on App Store developers.
In a letter to Apple CEO Tim Cook, the legislators state:
"This incident raises questions about whether Apple’s iOS app developer policies and practices may fall short when it comes to protecting the information of iPhone users and their contacts."
Butterfield and Waxman then quote parts of Apple’s iOS developer website which states that Apple provides a comprehensive collection of tools and frameworks for storing, accessing and sharing data. It is then questioned whether Apple requires apps to request user permission before transmitting data about a user.
Butterfield and Waxman have requested that Apple provide answers to a series of questions by February 29, with the topics including Apple's definition of user data, how the App Store review process assesses compliance with guidelines on privacy, and data on how many apps transmit "data about a user" in general and address book data in particular. The Congressmen have also asked Apple to explain why it has not instituted a simple toggle setting for address book sharing as it has for location information.
It is not terribly unusual for Congress to request information from companies when issues related to consumer protection and privacy arise, and Apple was subject to a similar process when questions about location information arose last year. In that case, Senator Al Franken contacted Apple with questions about the company's policies, with executives from Apple and Google later testifying in a Senate hearing on the matter.
Popular Stories
Apple today announced that its 34th annual Worldwide Developers Conference will take place from Monday, June 5 to Friday, June 9. Like WWDC 2020, 2021, and 2022, WWDC 2023 will be an online event for the most part, and it will be open to all developers at no cost. Subscribe to the MacRumors YouTube channel for more videos. Apple will provide online sessions and labs, which will allow...
The iPhone 15 Pro and Pro Max will use a new ultra-low energy microprocessor allowing certain features like the new capacitive solid-state buttons to remain functional even when the handset is powered off or the battery has run out, according to a source that shared details on the MacRumors forums.
CAD-based render of new solid-state buttons on iPhone 15 Pro models The source of this rumor is ...
General Motors (GM) will phase out Apple CarPlay and Android Auto in its vehicles starting this year, shifting to a built-in infotainment system co-developed with Google (via Reuters).
GM owns Buick, Cadillac, Chevrolet, and GMC in the United States. It will stop offering Apple CarPlay and Android Auto starting with the 2024 Chevrolet Blazer, which goes on sale this summer. The company plans ...
iPhone 15 Pro and iPhone 15 Pro Max models are rumored to feature a customizable Action button like the Apple Watch Ultra, according to a MacRumors forum member who leaked accurate details about the Dynamic Island on iPhone 14 Pro models last year.
The source claimed the Action button will replace the Ring/Silent switch that has been included on every iPhone model since 2007. They did not...
Following six weeks of beta testing, iOS 16.4 was released to the public this week. The software update includes a handful of new features and changes for the iPhone 8 and newer. To install an iOS update, open the Settings app on the iPhone, tap General → Software Update, and follow the on-screen instructions.
Below, we have recapped eight new features and changes added with iOS 16.4,...
With the Apple Music Classical app and an Apple Pay Later early access program now available, the list of previously-announced iOS features that have yet to launch is beginning to shrink. However, there are still a few features we are waiting for. Below, we have recapped three more iOS features that are expected to launch in 2023, including an Apple Card savings account for Daily Cash,...
Apple has again pushed back mass production of its mixed-reality headset and the device may not appear at this year's Worldwide Developers Conference (WWDC), Apple analyst Ming-Chi Kuo today said.
Apple headset concept by David Lewis and Marcus Kane In a tweet, Kuo explained that Apple "isn't very optimistic" about whether the headset will be able to create an "iPhone moment." As a result,...
Top Rated Comments
Flashlight app wants full internet access, location and contacts? No install for you!
Example:
No. Sandboxing isn't about asking permission, it is about being able to do something or not. An app can request the ability to access your address book or not. If it requests it, it can. If it doesn't, it can't. They idea is that when deciding to accept the app or not, Apple will check whether the app has requested the ability, and if the app has any good reason to do so.
Another thing is that Apple can eventually provide sandboxed code to do things. For example, some code that lets the user choose a name from the address book and send an email to that person. That code would live in its little sandbox with access to address book and email. However, the rest of the application wouldn't be able to access the address book. So a game could allow you to send a picture to a friend that way, without itself being able to read your address book.
Isn't that what the new App Sandboxing is about in Lion?
So Congress can't do their job 9 times out of 10, and the 1 time they pressure a company to answer legitimate questions regarding consumer privacy you're equally as mad?
Slight difference I believe. If I'm using someone's services for my email and contact information - I can pretty much assume - since they are HOSTING that info - they have access to it.
However - this is completely differerent. A private device with personal data which is then being unknowingly uploaded to 3rd parties without consent.
If you don't see the difference, well....