Search This Blog

Showing posts with label cookies. Show all posts
Showing posts with label cookies. Show all posts

Tuesday, May 1, 2012

Piracy, Privacy and Money, Money, Money - Part II


This is the second in a series.

PRIVACY

I have written here before about privacy and likely will again.  It has been an important area of  American constitutional law since the drafting of the Bill of Rights.  Since that day when Alexander Graham Bell summoned Watson with words spoken over his telephonic invention, we have becoming increasing concerned with protecting various forms of telephonic and electronic communication.

In January, the U.S. Supreme Court unanimously ruled United States v. Jones that the government needs to obtain a search warrant to track the public movements of a person by attaching a GPS device to the person's vehicle.  Antoine Jones was a suspected drug dealer who lived in DC.  Authorities had a warrant for Jones in the District of Columbia and attached a GPS device to his car to follow his movements.  Information on Jones' movements in Maryland was collected, however, and authorities had failed to get a warrant in Maryland. The Court split 5-4 on how the 4th Amendment applied in this situation.  Here is a link to a further discussion of the case at Marketplace Tech Report

The  Jones decision may become landmark of constitutional law.  It certainly will be important in understanding the current interface between technology and privacy.  We have seen societal situations that raise significant questions in this area. In recent political movements from the "Arab Spring" to the "Occupy" movement, electronic means of communication such as Twitter and Facebook have been used to organize protest. In response, Arab governments first tried to shut down these communications.  More recently, and more ominously, governments have been monitoring these communications in order to find dissidents and suppress protest.

The Jones case may begin to tell us where constitution protections attach in a world where we are revealing more and more about ourselves through electronic communications.  Consider, however, that we now reveal a great deal of information about ourselves willingly on Facebook and Twitter and other social networking services.  If Antonie Jones had been checking in on Facebook or FourSquare, would government monitoring of his postings and travels been protected?

One important question continues to be what expectation of privacy we have when we use such social networking services.  When people sign-up for these services, they must agree to contractual agreements that provide the terms under which the service is provided.  These terms of service agreement set out important legal rights to material posted and privacy policies.

Of note recently is that both Google and (yet again) Facebook have changed their privacy policies.  These changes have received wide publicity. As we provide more and more personal information on such services, including using such services to reach  or interact with others online destinations, these policies are very important to our online privacy.  These policies, however, are not really intended to protect our privacy as much as they are to govern what information Google or Facebook or other service providers can access and use for their own business purposes.
Remember that Google, Facebook and other online services are businesses looking to make a profit. 
These social networks want you to post personal information on their services.  Such sharing is fundamental to the business model on which such services are built.  The information that you share encourages your friends to join to see your posts and to share their own information.  This cycle brings more and more people onto the network.  Participants keep the treadmill of information spinning round and round by providing the product for the social network.  In one way or another, good Internet businesses use our information and usage history to make money.

Not only are the users the product, but they are also a potential customer. Let's take a look at a simple scenario.  You go to Google and search for information on the book, "The Devil and the White City".  You find links to various bookseller's sites and go to them.  Google now knows that you may be interested in books, even the type of book, and can place paid advertising for a booksellers on your search pages.  Or you go to Amazon and buy the book.  Amazon knows that you purchased this book and will recommend similar books to you in the future when you visit Amazon.

In one sense this is good for you.  You may get "better" search results or better service, because the search engine or the vendor knows something more about our preferences.  This is certainly a critical element that makes such services "smarter" and, thus, faster in getting us to the things we are trying to find.  What you may not realize, however, is that your activities are leaving behind a kind of electronic footprints or fingerprints, showing where you have been on the Internet and what you have been viewing.

Technologically, much of this deals with little pieces of code called "cookies" that you leave behind in your travels in cyberspace.  These markers allow sites to recognize you next time you visit and improve your use of sites, but they are digital signposts as to where you have been and what you have seen or done.

Do we want this kind of information available?  If we do, to whom -- Google? Facebook? Amazon? The government?  What limits are there?  Privacy policies and terms of service are designed to protect this information from general dissemination.

There is a conflict of interest, however, because most commercial sites want to use such information to target you for advertising or products when you use the sites.  Such sites do not want to give up the use of such information entirely, because it would mean cut off a significant source of their revenue and profit -- advertising or sales.  Once the site has the information, however, when should it be made available beyond the reach of the terms of service to which you agreed?

These are important societal questions deeply embedded in the technology that we use today.  It will not be easy to draw lines here, especially because of the money involved.  More on the money in the final post in this series.


Saturday, July 31, 2010

Stay Out of the Cookie Jar

The Wall Street Journal has an interactive report on line about tracking cookies.  Visits to the 50 top websites will result in an average of 64 trackers being installed on your computer.  These trackers, commonly called "cookies", are little spies that send personal information about your computer activity back to the websites that embedded them in your computer.  This personal information is then used by the owners of the website for a number of things.  It can be used for things that you might like, such as providing you with more useful or related information associated with your visit to the website.

Spinning that "good" example at bit, such personal information can also be used to target advertising based on your interests.  For example, when you buy things on Amazon.com, Amazon obviously has a sales record of those purchases and uses it to provide recommendations to users with accounts at Amazon.com.  What if you do not establish an account with Amazon?  Well, Amazon still has a sales record of what is purchased with a particular credit card or delivered to a specific address, but that is not helpful in selling you something on when you are browsing around its website.  In the Wall Street Journal's report, Amazon is listed as possibly embedding up to 38 cookies on your computer when you visit.  One thing that Amazon can do through these cookies is identify the computer that you are using and associate that with your prior purchase and viewing records.  When that computer logs into Amazon.com again, Amazon can target items to recommend or advertise, based on past activity.

So "cookies" have a commercial purpose.  That can be good or bad, depending on your perspective.  More disturbing is the possible "misuse" of this information.  When we browse on the web, we may go to many different sites and look at a wide range of information.  By receiving back information on where we go and what we view, that information can be processed and patterns revealed.  Gradually, over time, this can evolve into a "profile" of the user of the computer.

In some ways, this may be anonymous, if the cookies are only reporting the activity on a particular computer, without a way to tie that information to a particular person.  Many of us use the same computer (or computers)  repeatedly and perhaps exclusively, and a little bit of personal information provided along the way may establish a personal identity to the data being mined.

Think about your computer usage, particularly the way that it reveals your interests, thoughts and possible personal, social and political views.  It may be one thing to share all of this on a social network, like Facebook, where the overt purpose is to enable such sharing.  (Then again, there has a been a firestorm of criticism and warning over what Facebook does with the information you post, so you may want to think twice about what you are doing on Facebook.)  When your personal likes and interests are being mined by a large number of websites, however, you have to be concerned about the ultimate use of such information.

It would be wise to read the WSJ report and take steps to curtail such mining of personal information.

One thing that you can do is make changes in your Internet settings for your browser and have it refuse cookies.  This may cause some difficulties with accessing many websites or features of those websites.  Cookies are often used to identify a repeat users of, and preferences for, a website, so that certain features launch automatically rather than making the user open them each time they visit.  Blocking cookies could frustrate such features.

Another or additional way to deal with this problem is to install one or more programs that search your computer and identify tracking cookies and other spyware and malware and remove them.  One such program is Lavasoft's free program Ad-Aware.  I use three computers now (one at home, one at work and a laptop) and all of them run Ad-Adware.  (Lavasoft has an upgraded version Ad-Aware pro for $30.  Be careful that you get a product from Lavasoft, which may be downloaded from a third-party site, because there are similarly named products out there by other companies.)  There are other programs, such as Spybot.  It is often recommended that you use at least two different spyware programs for more complete coverage.