Privacy Experts Raise Concerns Over iOS Developer Access to Certain Pieces of Facial Data

The iPhone X's facial recognition abilities continue to be found at the center of privacy concerns, with the American Civil Liberties Union and the Center for Democracy and Technology today raising questions over how "effectively" Apple can enforce certain privacy rules surrounding face scanning (via Reuters). Specifically, the privacy defending groups are worried about how certain pieces of facial data can be taken off the iPhone X by developers who seek to create entertainment features with the new smartphone's facial software.

Facial data that is used to unlock the iPhone X -- or data related to "Face ID" -- is securely stored on the device itself and not in iCloud. However, Apple will let developers take certain pieces of this facial data off the user's iPhone "as long as they seek customer permission and not sell the data to third parties," according to terms seen in a contract by Reuters. This means that developers who want to use the iPhone X's front-facing camera can get a "rough map" of the user's face, as well as a "stream of more than 50 kinds of facial expressions."

faceidscaniphonex
The data that developers can gather -- which can then be stored on the developer's own servers -- is said to help monitor how often users blink, smile, or even raise an eyebrow. Although this data can't unlock the iPhone X, according to documents about Face ID sent to security researchers, the "relative ease" with which developers can gain access to parts of a user's facial data and add it to their own servers has led to the new concerns raised by the ACLU and CDT today.

That remote storage raises questions about how effectively Apple can enforce its privacy rules, according to privacy groups such as the American Civil Liberties Union and the Center for Democracy and Technology. Apple maintains that its enforcement tools - which include pre-publication reviews, audits of apps and the threat of kicking developers off its lucrative App Store - are effective.

[...]But the relative ease with which developers can whisk away face data to remote servers leaves Apple sending conflicting messages: Face data is highly private when used for authentication, but it is sharable - with the user’s permission - when used to build app features.

According to Jay Stanley, a senior policy analyst at the ACLU, the privacy issues surrounding facial recognition in the context of unlocking a smartphone "have been overblown." Stanley explained, "The real privacy issues have to do with access by third-party developers." The experts concerned about Face ID in this context are also not worried about "government snooping," but more about marketers and advertisers tracking how a user's expression reacts to their ads.

Apple has strict policies against developers using face data for advertising and marketing, but those concerned groups cited worry about the company's "inability to control what app developers do with face data once it leaves the iPhone X." Stanley said that "the hard part" for Apple will come from having to find and catch the apps that might be violating these policies, meaning that the big household names probably won't be of concern to Apple, "but there's still a lot of room for bottom feeders."

Now that the iPhone X is in the hands of reviewers, many have said that Face ID works quite well in many different conditions. Some outlets have taken to try and fool Face ID with large pieces of clothing, sunglasses, and "twin tests," the last of which have come back with mixed results. In its ongoing efforts to reassure customers of Face ID's security and privacy, Apple released an in-depth security white paper in September to highlight and explain some of these features of Face ID.

Related Forum: iPhone

Top Rated Comments

MacQork Avatar
84 months ago
Wowzers. Apple needs to put a privacy setting in place ASAP, to keep advertisers from being able to do things like "Smile at this ad to continue". Which advertisers can and will end up doing.
Or force you to look at the AD otherwise it stops playing, I think those are very reasonable concerns
Score: 23 Votes (Like | Disagree)
OllyW Avatar
84 months ago
This negates all the security Apple built in to FaceID. Allowing this data out is plane ridiculous. The next thing that will happen is the government demanding a real time feed. 1984 only 27 years late.
Have you been using the iOS 11 calculator? :D
Score: 20 Votes (Like | Disagree)
Rogifan Avatar
84 months ago
Too many people worry too much. Enjoy life and stop worrying.
Score: 13 Votes (Like | Disagree)
simonmet Avatar
84 months ago
which can then be stored on the developer's own servers
This is the part that bothers me.
Score: 11 Votes (Like | Disagree)
Iconoclysm Avatar
84 months ago
This negates all the security Apple built in to FaceID. Allowing this data out is plane ridiculous. The next thing that will happen is the government demanding a real time feed. 1984 only 27 years late.
Are you aware it's not 2011?
Score: 11 Votes (Like | Disagree)
thejadedmonkey Avatar
84 months ago
Wowzers. Apple needs to put a privacy setting in place ASAP, to keep advertisers from being able to do things like "Smile at this ad to continue". Which advertisers can and will end up doing.
Score: 11 Votes (Like | Disagree)

Popular Stories

Delta Feature

Delta Game Emulator Now Available From App Store on iPhone

Wednesday April 17, 2024 9:58 am PDT by
Game emulator apps have come and gone since Apple announced App Store support for them on April 5, but now popular game emulator Delta from developer Riley Testut is available for download. Testut is known as the developer behind GBA4iOS, an open-source emulator that was available for a brief time more than a decade ago. GBA4iOS led to Delta, an emulator that has been available outside of...
iOS NES Emulator Bimmy Feature

NES Emulator for iPhone and iPad Now Available on App Store [Removed]

Tuesday April 16, 2024 11:33 am PDT by
The first approved Nintendo Entertainment System (NES) emulator for the iPhone and iPad was made available on the App Store today following Apple's rule change. The emulator is called Bimmy, and it was developed by Tom Salvo. On the App Store, Bimmy is described as a tool for testing and playing public domain/"homebrew" games created for the NES, but the app allows you to load ROMs for any...
iPhone 15 Pro Action Button Translate

All iPhone 16 Models to Feature Action Button, But Usefulness Debated

Tuesday April 16, 2024 6:54 am PDT by
Last September, Apple's iPhone 15 Pro models debuted with a new customizable Action button, offering faster access to a handful of functions, as well as the ability to assign Shortcuts. Apple is poised to include the feature on all upcoming iPhone 16 models, so we asked iPhone 15 Pro users what their experience has been with the additional button so far. The Action button replaces the switch ...
maxresdefault

Hands-On With the New App Store Delta Game Emulator

Wednesday April 17, 2024 12:19 pm PDT by
A decade ago, developer Riley Testut released the GBA4iOS emulator for iOS, and since it was against the rules at the time, Apple put a stop to downloads. Emulators have been a violation of the App Store rules for years, but that changed on April 5 when Apple suddenly reversed course and said that it was allowing retro game emulators on the App Store. Subscribe to the MacRumors YouTube channel ...
iOS 18 Siri Integrated Feature

iOS 18 Will Add These New Features to Your iPhone

Friday April 12, 2024 11:11 am PDT by
iOS 18 is expected to be the "biggest" update in the iPhone's history. Below, we recap rumored features and changes for the iPhone. iOS 18 is rumored to include new generative AI features for Siri and many apps, and Apple plans to add RCS support to the Messages app for an improved texting experience between iPhones and Android devices. The update is also expected to introduce a more...