Settings

Theme

Ask HN: Is there any way to validate a companies privacy policy?

4 points by eoinmurray92 4 years ago · 1 comment · 1 min read


If an app says it only sends anonymized data for analytics, or something of the like, is there any way to verify if this is actually true in app? Is there any kind of "privacy policy certificate"?

mimixco 4 years ago

With open source software, the recognized way is to have a 3rd party audit that looks for telemetry. Another way is with something like Pi-hole where you, yourself, analyze the traffic going over the wire. Other than that, no. You're left with trusting them.

Which brings up an important point about these "privacy agreements." They're all one way agreements, subject to amendment by the other party at any time. If you've used any SaaS service, you'll notice these policies get updated all the time, making them more like whims than policies. There is definitely no guarantee that the privacy you were promised today won't go away in a "we changed our policies!" update a few months from now.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection