涉及AccuWeather的废话反应

AccuWeather发表声明关于他们的应用程序的争议将位置识别信息发送给货币化公司这是一个名副其实的马匹山

Despite stories to the contrary from sources not connected to the actual information, if a user opts out of location tracking on AccuWeather, no GPS coordinates are collected or passed without further opt-in permission from the user.

指控与“GPS坐标”无关指控是他们的iOS应用程序正在收集Wi-Fi路由器名称和MAC地址,并将它们发送到属于Reveal Mobile的服务器,这反过来可以很容易地用于定位用户声称这是关于GPS坐标就像是他们被偷走了借记卡,他们发出否认他们从不偷走任何人的现金。

这一指控来自Will Strafach,一位受人尊敬的安全研究员,他通过观察网络流量发现了“实际信息”他看到AccuWeather iOS应用程序将他的路由器名称和MAC地址发送给Reveal Mobile这不是猜测他们被当场抓获 -继续阅读Strafach的原始报告

GPS information is more precise, and if you grant the AccuWeather app permission to access your location (under the guise of showing you local weather wherever you are, as well as localized weather alerts), that more precise data is passed along to Reveal Mobile as well但是,Wi-Fi路由器信息可用于使用公共数据库在几米内找到您说真的,继续尝试一下:将您的Wi-Fi路由器的BSSID MAC地址插入本网站,并且很有可能它会在地图上找到您的位置。

Other data, such as Wi-Fi network information that is not user information, was for a short period available on the Reveal SDK, but was unused by AccuWeather.

In what way is the name and MAC address of your router not “user information”? And saying the information was “unused by AccuWeather” is again sleight of hand指控不是AccuWeather本身使用的是Wi-Fi路由器的位置,而是Reveal Mobile的用途。以下是Reveal Mobile自己关于如何使用位置数据的话

By expanding the use case of location data to pre- and post-shopping experiences, entirely new possibilities open up for online and offline retailersThe value lies in understanding the path of a consumer and where they go throughout the dayTraveling from home to work to retail to soccer practice to dinner is vital to knowing the customer, and represents the new opportunity of mobile location data[...]

Location data also informs the home and work location of customersPairing this information with existing demographic targeting criteria allows retailers to target consumers with a high propensity to visit based upon two of their most relevant locations.

换句话说,Reveal Mobile通过向零售商披露您的位置来赚钱(匿名,所以他们声称),而AccuWeather通过将他们的SDK嵌入到他们的应用程序中从Reveal赚钱。

回到AccuWeather的声明:

In fact, AccuWeather was unaware the data was available to it. Accordingly, at no point was the data used by AccuWeather for any purpose.

如果是真的,AccuWeather似乎声称他们在他们的应用程序中嵌入了Reveal Mobile的SDK不知道它做了什么我相信他们但这是一个令人震惊的疏忽承认。

AccuWeather and Reveal Mobile are committed to following the standards and best practices of the industry.

不,他们不是如果是这样的话,他们绝不会在未经用户同意的情况下发送MAC地址和路由器名称,并且在他们选择不与AccuWeather应用程序共享位置数据的情况下隐含地反对用户的同意。

And even in the case where the user does grant the AccuWeather app permission to access Location Services (a perfectly reasonable thing to do for a weather app), I don’t think it’s a “best practice” to share this data with a retail marketing firm我敢打赌,AccuWeather应用程序的大多数用户天真地认为该应用程序仅使用其位置向他们展示本地化的天气状况和警报。

We also recognize this is a quickly evolving field and what is best practice one day may change the nextAccordingly, we work to update our practices regularly.

尊重用户隐私的最佳做法不会每天都在变化他们的意思是,有一天你的应用程序可以做一些世界不为人知的事情,第二天就可以发现并广泛宣传,将你的公司描绘成不值得信任的但这不是关于“最佳实践” - 那是关于什么你可以逃脱从一天变为另一天。

To avoid any further misinterpretation, while Reveal is updating its SDK, AccuWeather will be removing the Reveal SDK from its iOS app until it is fully compliant with appropriate requirements. Once reinstated, the end result should be that zero data is transmitted back to Reveal Mobile when someone opts out of location sharingIn the meanwhile, AccuWeather had already disabled the SDK, pending removal of the SDK and then later reinstatement.

重点补充:“最终结果应该当有人选择退出位置共享时,零数据会被传回Reveal Mobile吗?应该be? That’s confidence inspiring.

Reveal has stated that the SDK could be misconstrued, and they assure that no reverse engineering of locations was ever conducted by any information they gathered, nor was that the intent.

我觉得这很难相信显示他们自己的业务描述是他们将用户位置卖给零售商如果不使用反向查找来定位用户,为什么他们会收集路由器MAC地址呢?

We are grateful to have a supportive community that highlights areas where we can optimize and be more transparent.

翻译:操你,Will Strafach。