Samsung's stock health app now showing ads on a friend's Samsung S9 phone, which he bought for hundreds of €.
'Receive marketing information' in the device/privacy settings turned off.
I wonder what kinds of personal data Samsung health app processes/transmits for purposes other than providing health/fitness functionalities.

According to Exodus, the app version installed on the device has Google stuff embedded, as well as AutoNavi/Amap.
reports.exodus-privacy.eu.org/en/reports/166…
Samsung's health app has its own settings (thx @greylines101), and both 'Marketing notifications' and 'Personalize Samsung Health', which is about 'recommendations and content based on your use of Samsung Health', are also turned off on the device.
Showing ads on stock apps for a device worth hundreds of € is generally a no-go.

Tricking users into opting in with dark patterns or opt-in-per-default would be really bad.

Showing ads even though the corresponding settings are turned off looks like a major fail @SamsungMobile
There have been reports on Samsung's health app showing ads (for some users?) since at least last year, I missed that:
reddit.com/r/galaxys10/co…
reddit.com/r/galaxys10/co…
androidpolice.com/2020/06/11/sam…
And look at that. At least since May 2020 (reddit.com/r/galaxys10/co…), and until as recently as on 25 February 2021 (play.google.com/store/apps/det…), Samsung has been telling users:

"Please note that the Samsung Health app does not contain any ads"

...wat? 🤔

[screenshot by me]
According to Reddit users, Samsung Health didn't only show ads for Samsung products but also third-party ads.

One user got an ad for betterhelp.com:
reddit.com/r/galaxys10/co…

A health/fitness app showing ads for mental health counceling? This is getting worse and worse.
In addition, I wonder if anyone keeps track of which third-party data companies major vendors such as Samsung are integrating into os and stock apps.

For example, Samsung phones had Cheetah Mobile's Clean Master embedded 2015-2018:
prnewswire.com/news-releases/…
seekingalpha.com/article/416513…
Now Samsung's stock health app is integrated with AutoNavi/Amap, a mapping/nav and location services provider owned by Alibaba.

Can we be sure that Amap processes exact location data strictly on behalf of Samsung and doesn't use it for other purposes?
reports.exodus-privacy.eu.org/en/reports/166…
Amap sees itself as the "largest location-based data
intelligence platform in China". According to this 2018 presentation, it's embedded in 300,000 apps, provides all kinds of services including targeted marketing & partners with local+federal authorities:
alibabagroup.com/en/ir/presenta…
I think advertising on - and personal data sharing by - major smartphone vendors at both os and stock app levels, especially by stock apps for sensitive purposes such as health, are a much larger deal than advertising on - and personal sharing by - other apps and websites.

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Wolfie Christl

Wolfie Christl Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @WolfieChristl

27 Feb
Do I get this right that the current state of Google et al's TURTLEDOVE/FLEDGE proposal would lead to browsers putting users into myriads of 'interest groups', still allowing advertisers, publishers and third-party adtech companies to almost act 1:1 on specific user behavior?
...as long as 100 users behave similarly, which is not a really tough restriction. Almost no remarketing/etc campaign addresses less than 100 potential targets.

Fledge:
github.com/WICG/turtledov…

Turtledove:
github.com/WICG/turtledov…
I didn't have the time to follow the developments :/

Generally, I feel like Google and a few other players are working on this fundamental effort to preserve/perpetuate a web economy based on behavioral advertising without any relevant participation of non-industry stakeholders.
Read 12 tweets
26 Feb
Cashier Watch Status: High Risk
Prior Exceptions: 3

Oracle's panoptic "Retail XBRi Loss Prevention" system constantly monitors cashiers and provides a ranked list of "high-risk" workers to "identify suspicious trends, transactions, and other data anomalies" #corporatepolice
And the best thing is you can use the *same* data from POS systems and other sources to also monitor performance! #crosspurpose

...by integrating Oracle's "Retail XBRi Loss Prevention" system with Oracle's "XBRi Sales and Productivity" system.
oracle.com/industries/ret…
This is also great.

Appriss "Secure Store" promises to "uncover employee outlier behavior" for fraud and theft prevention but also to "improve efficiencies at the point-of-sale" by decreasing "sales reducing activities (SRAs)", as they call it.
apprissretail.com/solutions/secu…
Read 4 tweets
25 Feb
"it was only in late April 2018 — weeks before the regulation came into force — that Amazon created a dedicated team in the information-security department to address the [GDPR]"

Bombshell report, and the above is only a side note (yet didn't expect that) politico.eu/article/data-a…
Such a low-hanging fruit for EU regulators! 🤖

However. politico.eu/article/luxemb…
“If you wanted to do a 'right to be forgotten,' it would be next to impossible for Amazon to identify all of the places where your data resides within their system”

“Amazon has grown so fast, it doesn't know what it owns … They don't know where their data is at ..."

😮
Read 5 tweets
23 Feb
A year ago, we first learned that data on the movements of millions secretly harvested from apps is not just exploited by myriads of shady data firms but even bought by FBI/DEA/DHS and the US military.

Best summary of what we know and what has to be done: vox.com/recode/2227840…
By @SaraMorrison /w @seanodiggity & Senator @RonWyden

I told her:

"The mobile app economy became a cesspool of data exploitation. The only way to fix this is to finally enforce data protection law in the EU, and to introduce strong legislation in the US and in other regions"
And:

“Location data brokers use many ways to source data from apps. They can make apps embed their data collection code, harvest it from the bidstream in digital advertising, source it directly from app vendors, or just buy it from other data brokers”

Google won't stop this.
Read 6 tweets
22 Feb
Prebid rather than TTD becoming a (joint) data controller for email and profile data on hundreds of millions?
I mean even the adtech trade press writes they have 'control' of it.

That being said, I still don't get how adtech shops, marketers and publishers can believe they'll get away with replacing cookie IDs with identifiers based on EMAIL ADDRESSES. This is so cynical and broken.
"With SharedID, cookie syncing becomes unnecessary as every party in the ecosystem will utilize the same shared identifier"

Also, SharedID. And 'Publisher Common ID', a 'widely used first-party identifier' that can end up in the bidstream.
prebid.org/product-suite/…
Read 5 tweets
17 Feb
Whatever you think about large publishers or the Australian legislative, Facebook blocking news content is an unprecedented abuse of power.

As a utility-scale platform, this is like a declaration of war on democracy and public debate.
about.fb.com/news/2021/02/c…
Read 10 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal Become our Patreon

Thank you for your support!

Follow Us on Twitter!