Home » , , ,

Facebook’s Internet.org platform is a privacy nightmare: tracks users on partner sites, allows telcos to track


Share on Facebook0Tweet about this on TwitterShare on Google+17Share on LinkedIn2Share on Reddit24Email this to someone
Internet.org cmn

Facebook announced today that it was opening up its Internet.org service to all sites, probably in response to criticism (including that from us), that it was selecting services, and playing kingmaker. It has announced its Internet.org platform. Along with the announcement comes more information on Internet.org, which brings to light fresh issues.

So, now with full disclosures on what Internet.org is about, here’s what we noticed about it:
– It is an open platform that allows any company to sign up to be zero rated, wherein customers won’t have to pay for accessing these sites, and websites will have to be approved to be allowed in.
– Facebook will allow all types of low bandwidth services to sign up for the platform.
– Websites do not pay Facebook to be included, operators do not charge developers
– Services should not use VoIP, video, file transfer, high resolution photos, or high volume of photos.
– No JavaScript or SSL/TLS/HTTPS
– There will be bookmarked services, and a search option. Read this interview with Hindustan Times.

For more of our exhaustive coverage of Net Neutrality issues in India, click here.

Issues with the Internet.org Platform

First up, no matter what Facebook says about Internet.org being a means of promoting Internet usage, it isn’t. It’s a fundamental, permanent change in the way the Internet works by splitting it into free vs paid access. It isn’t the same as giving someone Rs 10 of data access or even 100 mb. It is a permanent shift.

While the kingmaker issue has been somewhat addressed by opening up the platform, there is only one true king in all of this, which is Facebook. There are significant concerns with their terms and conditions, especially those around Facebook’s favorite topic – Privacy, apart from other issues:

1.  If you’re a user, Facebook, your telecom operator and the government will know what you are doing: “We collect information when you install, run or use any of our services, including the free websites and services provided through Internet.org,” says Facebook. Facebook’s Data Policy and Cookies Policy are applicable. (Hat Tip: Kiran Jonnalagadda)

Advertisement

Also “we may share information such as your phone number or data usage with your mobile operator so we can provide and improve our services, and to enable us and your operator to understand how you are using and interacting with Internet.org and the carrier’s products and services. For information regarding how your mobile operator uses the information they receive, we recommend you also review their privacy policy” (source)

“In addition, secure content is not supported and may not load”…”your content or service should not rely on passing or collecting encrypted information — resources that do so will not be accessible within Internet.org or will be dropped altogether. While we would prefer to support fully encrypted connections between user and website in all cases, proxying for third-party sites does not allow for this in its current implementation without introducing man-in-the-middle capabilities.” (source)

Without https (secure content), this means that telecom operators will also be able to snoop on your users, and through them, so will the government. Is Privacy a small price to pay for free access to a directory of services? Should the fact that India doesn’t have a privacy law be a factor in allowing Facebook to launch Internet.org? The Internet.org proxy (details) is without https.

To understand what kind of data Facebook is tracking, check out their privacy policy.

Also, if you’re a site on Internet.org, it appears that Facebook will know what users are doing on your site.

2. Telecom operators can still choose to reject you, hence play kingmaker:

“Operators may decline services that cause undue strain to networks, or breach legal or regulatory requirements.”

3. Facebook will get non-exclusive rights to content: Facebook’s Internet.org ‘participation guidelines‘ page points developers towards its “Statement of Rights and Responsibilities“, which clearly states that for content that is covered by Intellectual Property Rights, “you grant us a non-exclusive, transferable, sub-licensable, royalty-free, worldwide license to use any IP content that you post on or in connection with Facebook (IP License). This IP License ends when you delete your IP content or your account unless your content has been shared with others, and they have not deleted it.”

3. If your competitors are on board, you will have little choice: The reason why Times Internet publications remained on Internet.org was that their competitors are also there. If one competitor chooses to come on board, you will have little choice but to also follow, else lose out on a potentially large user base. This gives Facebook access to data from across websites.

4. If users try to go to the open web from the Internet.org ecosystem, they’ll get a warning message: The idea of a warning message when users are moving from a free to a paid service is a good idea. It prevents “bill shock” for users, but this hurdle (to jump over) doesn’t exist on the web.

As an online business, if a user is accessing your service on the open web via a Facebook link, and they get this warning message, it is likely that they will drop off. That will force you to go on board, in order to gain access to this user base.

5. Facebook becomes an even stronger source of access for your content: Lest we forget: Facebook throttles content on its own platform, and this strengthens Facebook and Internet.org’s role in discovery. It appears that you’ll need a Facebook account for Internet.org:

“We may collect and use your phone number to determine your eligibility to receive free services, to provide you with relevant offers and services from your operator and others, and to provide you with access to your Facebook account.”

6. If you’re a Video service or use high resolution images, you’re not allowed: Telecom operators have been, for long, complaining about how consumers who use video services take up significant bandwidth. It probably appears to be fair to telcos like Reliance Communications, and a prerequisite for Facebook, to offer low bandwidth services without video, because RCOM will be paying for it, but this something that should perhaps have been a function of availability of bandwidth (video services taking more time to buffer because of slow speeds), and not a function of which type of service is being offered by any service provider.

What should Facebook do?

If it really wants people to get online, subsidize data packs of Rs 10-100 for potential Internet users. Let them access whatever they want, whether video, VoIP, images, and whichever site they want.

Disclosures:

– Times Internet is currently an advertiser with MediaNama
– I am a volunteer with Savetheinternet.in and MediaNama has taken a strong stance in favor of Net Neutrality for a few years now.

Share on Facebook0Tweet about this on TwitterShare on Google+17Share on LinkedIn2Share on Reddit24Email this to someone

  • Two pieces of the puzzle I wanted to add.

    1. Google now gives higher ranking to sites with https in search results. Even news websites.

    2. Facebook wants news sites to host their data on Facebook itself.

    What will media sites do to please both these companies? Play right into their lap of course.

  • sketharaman

    The moment you posted your first update online – on Facebook or anywhere else – privacy went out of the window. That was when you paid for Internet connection. It’s too late to be lamenting about loss of privacy. And high time to grow up to the harsh realities of the real world and begin to enjoy the free Internet now.

  • Ilya Geller

    The Era of Absolute Privacy is coming! No need in cookies or browsing history anymore.
    I discovered and patented how to structure any data: Language has its own Internal parsing, indexing and statistics. For instance, there are two sentences:
    a) ‘Fire!’
    b) ‘Dismay and anguish were depicted on every countenance; the males turned pale, and the females fainted; Mr. Snodgrass and Mr. Winkle grasped each other by the hand, and gazed at the spot where their leader had gone down, with frenzied eagerness; while Mr. Tupman, by way of rendering the promptest assistance, and at the same time conveying to any persons who might be within hearing, the clearest possible notion of the catastrophe, ran off across the country at his utmost speed, screaming ‘Fire!’ with all his might.’
    Evidently, that the phrase ‘Fire!’ has different importance into both sentences, in regard to extra information in both. This distinction is reflected as the phrase weights: the first has 1, the second – 0.02; the greater weight signifies stronger emotional ‘acuteness’.
    First you need to parse obtaining phrases from clauses, for sentences and paragraphs.
    Next, you calculate Internal statistics, weights; where the weight refers to the frequency that a phrase occurs in relation to other phrases.
    After that data is indexed by common dictionary, like Webster, and annotated by subtexts.
    This is a small sample of the structured data:
    this – signify – : 333333
    both – are – once : 333333
    confusion – signify – : 333321
    speaking – done – once : 333112
    speaking – was – both : 333109
    place – is – in : 250000
    To see the validity of technology – pick up any sentence.

    Do you have a pencil?

    All other technologies depend on spying, on quires, on SQL, all of them, finding statistics. See IBM, Oracle, Microsoft, Google and Yahoo? Apache Hadoop and NoSQL? Mu technology is the only one that obtains statistics from texts themselves.
    Being structured information will search for users based on their profiles of structured data. Each and every user can get only specifically tailored for him information: there is no any privacy issue, nobody ever will know what the user got and read.
    My technology exploits the Laws of Nature, which determine the inner construction of all Languages: I came from Analytic Philosophy, from Internal Relations Theory.

    There is no sense to waste money spying on Internet anymore! For what? No commercial purpose.