Congressmen Send Inquiries to 34 App Developers Over Privacy Practices - MacRumors
Skip to Content

Congressmen Send Inquiries to 34 App Developers Over Privacy Practices

Representatives Henry A. Waxman (D-CA) and G.K. Butterfield (D-NC) have sent letters to thirty-four app developers with a number of questions about their information collection and use practices. This follows on a letter from the Congressmen sent to Apple requesting information on the company's data collection policies it imposes on App Store developers.

The letters were sent to a wide variety of developers, and were selected by the Representatives on the basis of "their inclusion in the “Social Networking” subcategory within the “iPhone Essentials” area of Apple’s App Store." They include Turntable.FM, Twitter, Tweetbot, Path, Instagram, Facebook, and Apple itself.

congressletter

Last month, a developer of applications ("apps") for Apple's mobile devices discovered that the social networking app Path was accessing and collecting the contents of his iPhone address book without having asked for his consent. Following the reports about Path, developers and members of the press ran their own small-scale tests of the code for other popular apps for Apple's mobile devices to determine which were accessing address book information. Around this time, three other apps released new versions to include a prompt asking for users' consent before accessing the address book. In addition, concerns were subsequently raised about the manner in which apps can access photographs on Apple's mobile devices.

We are writing to you because we want to better understand the information collection and use policies and practices of apps for Apple's mobile devices with a social element. We request that you respond to the following questions:

(1) Through the end of February 2012, how many times was your iOS app downloaded from Apple's App Store?

(2) Did you have a privacy policy in place for your iOS app at the end of February 2012? If so, please tell us when your iOS app was first made available in Apple's App Store and when you first had a privacy policy in place. In addition, please describe how that policy is made available to your app users and please provide a copy of the most recent policy.

(3) Has your iOS app at any time transmitted information from or about a user's address book? If so, which fields? Also, please describe all measures taken to protect or secure that information during transmission and the periods of time during which those measures were in effect.

(4) Have you at any time stored information from or about a user's address book? If so, which field? Also, please describe all measures taken to protect or secure that information during storage and the periods of time during which those measures were in effect.

(5) At any time, has your iOS app transmitted or have you stored any other information from or about a user's device - including, but not limited to, the user's phone number, email account information, calendar, photo gallery, WiFi connection log, the Unique Device Identifier (UDID), a Media Access Control (MAC) address, or any other identifier unique to a specific device?

(6) To the extent you store any address book information or any of the information in question 5, please describe all purposes for which you store or use that information, the length of time for which you keep it, and your policies regarding sharing of that information.

(7) To the extent you transmit or store any address book information or any of the information in question 5, please describe all notices delivered to uscrs on the mobile device screen about your collection and use practices both prior to and after February 8, 2012.

(8) The iOS Developer Program License Agreement detailing the obligations and responsibilities of app developers reportedly states that a developer and its applications "may not collect user or device data without prior user consent, and then only to provide a service or function that is directly relevant to the use of the Application, or to serve advertising.";

(a) Please describe all data available from Apple mobile devices that you understand to be user data requiring prior consent from the user to be collected.

(b) Please describe all data available from Apple mobile devices that you understand to be device data requiring prior consent from the user to be collected.

(c) Please describe all services or functions for which user or device data is directly relevant to the use of your application.

(9) Please list all industry self-regulatory organizations to which you belong.

The developers are given until April 12, 2012 to respond.

Popular Stories

Dynamic Island iPhone 18 Pro Feature

11 Reasons to Wait for the iPhone 18 Pro

Monday May 11, 2026 9:01 am PDT by
We're only four months out from the launch of Apple's premium next-generation smartphone lineup, and while we're not expecting a sea change in terms of functionality, there are still several enhancements rumored to be coming to the iPhone 18 Pro and iPhone 18 Pro Max. One thing worth noting is that Apple is reportedly planning a major change to its iPhone release cycle this year, adopting a...
iOS 26

iOS 26.5 Features: Everything New in iOS 26.5

Monday May 11, 2026 5:09 pm PDT by
Apple released iOS 26.5 after a few months of beta testing, and while it doesn't have the Siri features we were hoping for since those are being held until iOS 27, there are a handful of useful changes worth knowing about. Subscribe to the MacRumors YouTube channel for more videos. End-to-End Encryption for RCS Support for end-to-end encryption (E2EE) for RCS messages between iPhone and...
General Apps Reddit Feature

Reddit Starts Blocking Mobile Website, Pushing Users to App Instead

Monday May 11, 2026 6:10 am PDT by
Social network Reddit recently began blocking mobile visitors to its website while pushing them to download the official Reddit app, and it's fair to say that the move is not going down well with users. If you visit reddit.com on your iPhone today, you may see a new popup that can't be dismissed, asking you to "get the app to keep using Reddit." A Reddit spokesperson told Ars Technica...

Top Rated Comments

basesloaded190 Avatar
185 months ago
Tax dollars well spent...
Score: 11 Votes (Like | Disagree)
jlgolson Avatar
185 months ago
So what happens if they do not respond?
It's merely a request for information. They are not obligated to respond.

However, if they are sent a subpoena to appear in front of the committee, they are required to show up and can be held in contempt if they don't. Most folks don't want to piss off Congress so they cooperate if they haven't done anything wrong.

But call your lawyers!
To reply to an earlier commenter, this is already a witch hunt based on these letters.
Fishing expedition more than a witch hunt.
Score: 8 Votes (Like | Disagree)
alphaod Avatar
185 months ago
So what happens if they do not respond?

I imagine people get sent to labor camps.
Score: 8 Votes (Like | Disagree)
croooow Avatar
185 months ago
So what happens if they do not respond?
Score: 8 Votes (Like | Disagree)
Porco Avatar
185 months ago
Dear politicians,

We'd really love to give you all the information you request, but unfortunately our privacy policy requires a court order before we reveal any information pertaining to our users in any way.

Yours,

App developers.
Score: 6 Votes (Like | Disagree)
185 months ago
They should be sending these questions to the FBI and CIA to determine how much personal and private information about us is being collected by their kinfolk. I would guess that Apple Apps pale in comparison.
Score: 5 Votes (Like | Disagree)