Are Your iPhone Apps Taking Your Address Book Without Permission?

DON EMMERT / AFP / Getty Images
DON EMMERT / AFP / Getty Images

What started out as an inside-baseball squabble over the data that third-party applications pull from iPhones has turned into a federal case. Literally. Two lawmakers have sent Apple a letter demanding answers after news emerged that several popular applications for the company’s iOS platform pull a user’s entire address book without their permission. As if on cue, Apple released a statement saying that users will soon have to explicitly give their consent for such data collection.

The brouhaha started last week when blogger Arun Thampi wrote a post describing how he discovered that unbeknownst to him, Path, a popular social networking application, was uploading his entire address book to its servers, including names, phone numbers, and email addresses. Path CEO Dave Morin apologized and said the data it collected would be destroyed, but the controversy continued to escalate after New York Times blogger Nick Bilton wrote a column declaring that “privacy and security is not a big deal in Silicon Valley.” (Bilton, in turn, was upbraided by some of Path’s investors for being too harsh on the company. The whole issue quickly degenerated into an ugly name-calling match between various tech bloggers.)

(MORE: One Billion Smart Phones by 2016: Here Comes the Mobile Arms Race)

But the acrid back-and-forth served to obscure the larger issue: As smartphones become increasingly sophisticated and powerful, consumers are using them for a rapidly growing variety of tasks. As a result, the privacy issues surrounding mobile computing are becoming ever-more complex. For example, Google had to fix a bug in its Wallet mobile-phone payment system that exposed a security flaw that could have given thieves access to a user’s funds.

In Path’s case, the episode revealed what was apparently common knowledge among Silicon Valley developers: Many iOS applications, including Twitter, pull a user’s complete address book — without their permission. Among the other apps that also collect this data? Facebook, Instagram, Foursquare, Foodspotting, Yelp, and Gowalla, according to an in-depth post at VentureBeat.

In response, Rep. Henry A. Waxman, a California Democrat, and G.K. Butterfield, a North Carolina Democrat, penned a letter to Apple’s CEO asking for an explanation. “This incident raises questions about whether Apple’s iOS app developer policies and practices may fall short when it comes to protecting the information of iPhone users and their contacts,” the lawmakers wrote. (Read the letter here.)

Just a few hours later, Apple offered a statement to AllThingsD addressing the matter: “Apps that collect or transmit a user’s contact data without their prior permission are in violation of our guidelines. We’re working to make this even better for our customers, and as we have done with location services, any app wishing to access contact data will require explicit user approval in a future software release.”

(MORE: Solar Eclipsed: Could U.S. Solar Industry be growing faster?)

The two lawmakers asked Apple to address the following issues:

- Please describe all iOS App Guidelines that concern criteria related to the privacy and security of data that will be accessed or transmitted by an app.

- Please describe how you determine whether an app meets those criteria.

- What data do you consider to be “data about a user” that is subject to the requirement that the app obtain the user’s consent before it is transmitted?

- To the extent not addressed in the response to question 2, please describe how you determine whether an app will transmit “data about a user” and whether the consent requirement has been met.

- How many iOS apps in the U.S. iTunes Store transmit “data about a user”?

- Do you consider the contents of the address book to be “data about a user”?

- Do you consider the contents of the address book to be data of the contact? If not, please explain why not. Please explain how you protect the privacy and security interests of that contact in his or her information.

- How many iOS apps in the U.S. iTunes Store transmit information from the address book? How many of those ask for the user’s consent before transmitting their contacts’ information?

- You have built into your devices the ability to turn off in one place the transmission of location information entirely or on an app-by-app basis. Please explain why you have not done the same for address book information.

Related Topics: Apple, iOS, Path, privacy, Technology & Media
  • Latest on Business

    Book Review: What America's Banana King Teaches Us About Capitalism

    Book Review: What America’s Banana King Teaches Us About Capitalism

    Americans puzzling over the role of today’s powerful corporations — Bain Capital, Goldman Sachs, Google — may profit from considering the example of the United Fruit Company.

    It seems almost quaint to think that a company specializing in bananas might have once been considered a capitalist giant on the level of today’s firms, but so it was — at its height in the first half of the last century, United Fruit owned one of the largest private navies in the world. It owned 50 percent of the private land in Honduras and 70 percent of all private land and every mile of railroad in Guatemala.

    The Bomb Hidden in Mitt Romney's Education PlanSlate

    Ed Freeman / Getty Images

    Why Companies Can No Longer Afford to Ignore Their Social Responsibilities

    In 1970, the economist and Nobel laureate Milton Friedman published an article in The New York Times Magazine titled, “The Social Responsibility of Business Is to Increase Its Profits.” In the article, he referred to corporate social responsibility (CSR) programs as “hypocritical window-dressing,” and said that businesspeople inclined toward such programs “reveal a suicidal impulse.” Even four decades ago, at a time of growing public concern for the environment, his views represented the general skepticism and contempt with which many in Corporate America viewed CSR.

  • http://australia.iwooho.com/?p=37620 Apple privacy changes could impact 1000s of apps – SlashGear | Australia – iWooho.com

    [...] Apps that Harvest Personal DataPCWorld (blog)Apple tweaks apps policy under lawmaker pressureReutersAre Your iPhone Apps Taking Your Address Book Without Permission?TIMEBBC News -ZDNet (blog) -Times of Indiaall 501 news [...]

  • http://justtopnews.com/2012/02/apple-tweaks-apps-policy-under-lawmaker-pressure-reuters/ Apple tweaks apps policy under lawmaker pressure – Reuters | Just Top News – Daily News Magazine

    [...] approval" in separate user …Apple privacy changes could impact 1000s of appsSlashGearAre Your iPhone Apps Taking Your Address Book Without Permission?TIMEApple: Access to Contacts Will Require Explicit PermissionYahoo! Contributors NetworkBend [...]

  • http://www.app-decisions.co.uk/2012/02/apple-tweaks-apps-policy-under-lawmaker-pressure-reuters-2/ Apple tweaks apps policy under lawmaker pressure – Reuters

    [...] smartphone contacts'BBC NewsiPhone apps exposed for downloading users' dataWhich?Are Your iPhone Apps Taking Your Address Book Without Permission?TIMEThe Guardian (blog) -New York Times (blog) -ZDNet (blog)all 508 news [...]

  • http://business.time.com/2012/02/20/goliath-vs-goliath-patent-beast-intellectual-ventures-sues-att/ A controversial investment fund run by a former Microsoft executive just added more fuel to the tech industry’s runaway patent wars by filing a new suit against AT&T, Sprint and T-Mobile. | Business | TIME.com

    [...] (MORE: Are Your iPhone Apps Taking Your Address Book Without Permission?) [...]

  • http://business.time.com/2012/02/20/youtube-enlists-big-name-help-to-redefine-channels/ YouTube Enlists Big-Name Help to Redefine Channels | Business | TIME.com

    [...] (MORE: Are Your iPhone Apps Taking Your Address Book Without Permission?) [...]

  • http://www.nilenewsnt.com/?p=86601 AT&T Is Pulled — Unwillingly — Into the Great Patent Wars – شبكة النيل الإخبارية

    [...] (MORE: Are Your iPhone Apps Taking Your Address Book Without Permission?) [...]

  • http://techland.time.com/2012/02/23/coming-soon-privacy-warnings-on-mobile-apps/ Coming Soon: Privacy Warnings on Mobile Apps | Techland | TIME.com

    [...] (MORE: Are Your iPhone Apps Taking Your Address Book Without Permission?) [...]

  • http://techland.time.com/2012/02/23/does-obamas-online-consumer-privacy-bill-of-rights-get-the-job-done/ Does Obama’s Online ‘Consumer Privacy Bill of Rights’ Get the Job Done? | Techland | TIME.com

    [...] MORE: Are Your iPhone Apps Taking Your Address Book Without Permission? Related Topics: Consumer Privacy Bill of Rights, obama, white house, News, Politics & LawemailprintshareFacebookTwitterTumblrLinkedInStumbleUponRedditDiggMixxDel.i.cious Google+@Techland [...]

  • http://business.time.com/2012/03/01/why-the-job-search-is-like-throwing-paper-airplanes-into-the-galaxy/ The ease of applying for jobs makes it difficult for employers to find qualified applicants, and makes the process discouraging for applicants | Business | TIME.com

    [...] (MORE: Are Your iPhone Apps Taking Your Address Book Without Permission?) [...]

  • http://techland.time.com/2012/03/02/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know | Techland | TIME.com

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://www.urbandigital.me/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know | URBAN DIGITAL

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://dailypostnew.info/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://a1332.com/?p=2607 Android and iPhone Photo Snooping: What You Need to Know | www.A1332.com

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://desip2p.com/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know | DesiP2P.com

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://buyaiphone.info/2012/03/03/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know : BuyaiPhone.info – Tips and info on buying an iPhone! | mobiles phones | smartphones | cell phones|

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://mobile89.info/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know

    [...] on your photos yet permission.The reports followed a find final month that some iPhone apps were secretly collecting users’ residence books. But while that was a box of developers intentionally personification fast-and-loose with [...]

  • http://www.videogamesandapps.com/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know | Video Games | Xbox | PS3 | Wii | Apps

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://theandroidphonelist.info/android-and-iphone-photo-snooping-what-you-need-to-know.html Android and iPhone Photo Snooping: What You Need to Know | The Android Phone List

    [...] reports followed a find final month that some iPhone apps were secretly collecting users’ residence books. But while that was a box of developers intentionally personification fast-and-loose with [...]

  • http://androidless.net/?p=2800 Android and iPhone Photo Snooping: What You Need to Know | androidless.net

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://gambiapage.comze.com/?p=2291 Android and iPhone Photo Snooping: What You Need to Know | GambiaPage

    [...] reports followed a discovery last month that some iPhone apps were secretly collecting users’ address books. But while that was a case of developers intentionally playing fast-and-loose with privacy to make [...]

  • http://business.time.com/2012/03/05/u-s-senator-calls-for-apple-google-mobile-privacy-probe/ U.S. Senator Charles Schumer Calls For Apple, Google Mobile Privacy Probe | Business | TIME.com

    [...] latest flareup began last month with news that Path, a popular social networking application, was uploading entire iPhone address books to [...]

  • http://hirendhara.in/alethea/android-and-iphone-photo-snooping-what-you-need-to-know/ Android and iPhone Photo Snooping: What You Need to Know – My Blog

    [...] reports followed a find final month that some iPhone apps were secretly collecting users’ residence books. But while that was a box of developers intentionally personification fast-and-loose with [...]

  • http://www.zimtelegraph.com/?p=33878 Why the Job Search Is Like ‘Throwing Paper Airplanes into the Galaxy’ | Zimbabwe Telegraph

    [...] (MORE: Ar&#1077 Y&#959&#965r iPhone Apps Taking Y&#959&#965r Address Book Lacking Permission?) [...]

blog comments powered by Disqus