<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[Secrets of Privacy]]></title><description><![CDATA[Practical privacy for busy people. Reduce your digital footprint, avoid scams, and become a harder target online. Join 5,200+ readers getting simple privacy wins each week.]]></description><link>https://www.secretsofprivacy.com</link><image><url>https://substackcdn.com/image/fetch/$s_!yQg9!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png</url><title>Secrets of Privacy</title><link>https://www.secretsofprivacy.com</link></image><generator>Substack</generator><lastBuildDate>Thu, 23 Jul 2026 20:38:34 GMT</lastBuildDate><atom:link href="https://www.secretsofprivacy.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Secrets of Privacy]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[secretsofprivacy@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[secretsofprivacy@substack.com]]></itunes:email><itunes:name><![CDATA[Secrets of Privacy]]></itunes:name></itunes:owner><itunes:author><![CDATA[Secrets of Privacy]]></itunes:author><googleplay:owner><![CDATA[secretsofprivacy@substack.com]]></googleplay:owner><googleplay:email><![CDATA[secretsofprivacy@substack.com]]></googleplay:email><googleplay:author><![CDATA[Secrets of Privacy]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[The Secret Record Your House Keeps]]></title><description><![CDATA[Your home generates sensitive data you never see and mostly cannot reach. One file is the exception, and you are allowed to read it and correct it.]]></description><link>https://www.secretsofprivacy.com/p/secret-file-on-your-house</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/secret-file-on-your-house</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 22 Jul 2026 01:18:09 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/b76639cf-dbac-4184-9818-76a8a4ec3bb6_2400x1260.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p><span>Your house generates a steady trail of records about you, and almost none of it stays in your control. The one document you actually hold is a copy of is the inspection report you paid for. But even that gets reused in ways you never expect. Most of the rest of the data you never see at all.</span></p><p><span>There is one exception. It&#8217;s a single file the law gives you the right to pull, read, and correct. But almost nobody does. That&#8217;s because few people know it even exists. This post is about how the trail gets built and how to use the one real piece of leverage you have.</span></p><blockquote><p><em><span>One caveat before we start. Everything here runs on US law, so it is written mainly for readers in the United States.</span></em></p></blockquote><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><span>The Inspection You Paid For Doesn&#8217;t Stay Yours</span></h2><p><span>When you hire a home inspector, you are paying for a confidential, room-by-room analysis of the most expensive thing you will ever own. Roof age. Foundation cracks. The outdated electrical panel that might be a fire risk. You paid for it to know what you were buying. You probably assumed it stayed between you, the inspector, and your agent.</span></p><p><span>The software that inspectors use is being consolidated fast. Spectora, the largest home inspection platform in North America, is owned by a private equity firm called Radian Capital. In April 2025 it bought HomeGauge, its main legacy competitor, and put it under the same roof. Between them, that company now sits behind roughly one of every three home inspections in the United States.</span></p><p><span>If you read Spectora&#8217;s actual privacy policy, the reuse of your inspection data is spelled out. The company reserves the right to use de-identified information in aggregate form to train, in its own words, &#8220;systems that use artificial intelligence or machine learning,&#8221; and it says that can include information about the home inspection itself. Other clauses let your data change hands in a sale or bankruptcy. HomeGauge&#8217;s policy adds that even if you ask them to delete your data, they may keep and keep using the de-identified version. </span></p><div class="callout-block" data-callout="true"><p><span>None of this is a leak or a breach. It is the disclosed, pre-approved future-use of a document you paid for, repurposed beyond your expectations.</span></p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/secret-file-on-your-house?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/secret-file-on-your-house?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><span>The Trail You Can&#8217;t See</span></h2><p><span>When you start to dig into it, you discover that a lot of the data about your home is outside your control.</span></p><p><span>File a claim and it goes into national databases that insurers share. Pull a permit and it becomes a public record that data vendors resell. Bit by bit your home ends up with a risk profile held by companies you have never heard of, one they assemble, trade, and use to price you, all authorized by a privacy policy you clicked years ago.</span></p><p><span>This is where United States law leaves you with very little recourse. Most of the world&#8217;s stronger privacy regimes are built on a principle called </span><strong><span>purpose limitation,</span></strong><span> the idea that data collected for one reason cannot be freely reused for an unrelated one. American law mostly does not work that way. </span></p><p><span>As long as a use is disclosed somewhere in a policy, it is generally allowed, whether or not you ever read it or imagined the future use case. So the data gets reused in whatever ways the policy allows, and you are never told what it is used to decide.</span></p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;cdae9629-4659-4485-a18a-d73933280369&quot;,&quot;caption&quot;:&quot;In December 2024, a home in Cascade Township, Michigan was burglarized while the owners were at work. Hundreds of thousands of dollars in cash, jewelry, and personal documents were taken.&quot;,&quot;cta&quot;:null,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;They Researched Their Victims on Zillow Before Kicking Down the Door&quot;,&quot;publishedBylines&quot;:[{&quot;id&quot;:169760400,&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;bio&quot;:&quot;Practical privacy for busy people. Cut your digital exposure, avoid common threats, and stack simple privacy wins.&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/53778fb9-dd8e-4594-82d5-b49708bb0864_3214x2880.png&quot;,&quot;is_guest&quot;:false,&quot;bestseller_tier&quot;:100}],&quot;post_date&quot;:&quot;2026-04-08T01:18:42.296Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0c2fcf69-0189-4726-a3b7-bae896de1cb8_1200x630.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/digital-casing-burglary-ring-privacy&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:191930211,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:17,&quot;comment_count&quot;:0,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><h2><span>What the Viral Version Gets Wrong</span></h2><p>You may have seen a version of this story going around on social media, claiming your home inspection report is already being sold straight to your insurer to raise your premium. I went looking and found no evidence of that. The more likely dynamic is less direct and harder to spot.</p><p>Nobody has to actually sell your individual report for it to impact your premium. Pooled with millions of others and stripped of your name, your property and claims data trains the risk models and feeds the databases insurers price from. Your house helps set the rate for houses like yours, in places like yours. The cost still lands on your bill, but it arrives filtered through the rate for your whole risk class rather than through a file with your name on it. </p><p>In other words, insurance companies can now get to the same outcome whehter they use your specific, identifiable data or aggregated data using ultra sophisticated risk models. </p><h2><span>The One File You&#8217;re Allowed to Open</span></h2><p><span>There is some good news in all of this. Some of the records about your home are regulated as consumer reports under the Fair Credit Reporting Act, the same legal category as your credit report. That comparison is the easiest way to understand what this is. </span></p><p><span>Your home effectively has its own credit report.</span></p><p><span>But instead of tracking how you borrow and repay, it tracks your claims history, insurers pull it to decide whether to cover you and at what price, and because the law treats it as a consumer report, you have the right to see it, dispute it, and be told when it is used against you. You can pull it today.</span></p><p><span>You cannot see most of your home&#8217;s data trail, and you cannot reach it. This file is the exception. And it is worth knowing exactly how to use it.</span></p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/secret-file-on-your-house">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Your TV Might Be Renting Out Your Internet Connection]]></title><description><![CDATA[Your cheap streaming box may be routing criminal traffic. But the real story is what's happening on perfectly normal brand-name TVs.]]></description><link>https://www.secretsofprivacy.com/p/smart-tv-side-hustle-proxy</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/smart-tv-side-hustle-proxy</guid><pubDate>Wed, 15 Jul 2026 01:13:09 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/e7002397-f435-4cd2-bb2c-f42944b41cf4_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p><span>Would you let a stranger use your internet connection and IP address to &#8220;search&#8221; the web?</span></p><p><span>If you or someone in your family owns one of those cheap Android streaming boxes, there&#8217;s a decent chance it has been routing other people&#8217;s internet traffic through your home connection without your knowledge. These are the $25 or $30 devices on Amazon that promise free access to every sports league and every streaming platform for a one-time fee. But before you shrug this off because you don&#8217;t own one of these devices, mainstream TVs are at risk too, so be sure to read to the end. </span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p><span>Last week, Krebs on Security </span><a href="https://krebsonsecurity.com/2026/06/popa-botnet-linked-to-publicly-traded-israeli-firm/"><span>published an investigation</span></a><span> tracing the problem to a company that trades on the NASDAQ, meaning this isn&#8217;t some shadowy criminal operation running out of a basement. It&#8217;s a publicly listed business with shareholders and quarterly earnings. Researchers linked millions of compromised TV boxes to the NASDAQ traded company&#8217;s proxy network. </span>The company disputes the characterization. The researchers stand by their findings.</p><div class="callout-block" data-callout="true"><p><span>Note for readers less familiar with the term: A proxy network routes internet traffic through someone else's connection, making requests appear to originate from that device rather than the actual source. A </span><strong><span>residential proxy</span></strong><span> is simply someone&#8217;s home internet connection being used to route third-party traffic. Businesses use proxies legitimately for things like price monitoring and market research, but the same infrastructure also powers ad fraud, credential theft, and worse.</span></p></div><p><span>What this kind of operation does, in plain terms, is turn your home internet connection into a commercial product. Someone pays for access to a residential IP address in your city. Their traffic gets routed through your box. To whoever is on the receiving end, the request looks like it came from your house.</span></p><p><span>Requests via a residential proxy look like they&#8217;re coming from a real household, not a data center, which is what makes them valuable. The customers using these aren&#8217;t always doing benign things, and your address ends up in those logs. The FBI&#8217;s March advisory on residential proxy networks lists the known use cases:</span></p><ul><li><p><span>Ad fraud</span></p></li><li><p><span>Account takeovers</span></p></li><li><p><span>Bypassing fraud detection systems</span></p></li><li><p><span>Accessing illicit marketplaces</span></p></li></ul><p><span>This isn&#8217;t only pre-loaded on hardware. Researchers found the software embedded inside free streaming apps as a hidden add-on called an SDK running quietly in the background. Apps with names like CRICFy, DooFlix, RTS TV, and CyberFlix are the kind of thing someone installs on an Android box to watch rugby or a soccer match.</span></p><p><span>After you install the app, the SDK runs in the background. Once your box joins the network, the proxy keeps running after you close the app. And so long as the app is installed, the connection never ends. </span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/smart-tv-side-hustle-proxy?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/smart-tv-side-hustle-proxy?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><span>What the Legal Risk Actually Looks Like</span></h2><p><span>The FBI&#8217;s advisory states that once a device is compromised, your IP address: </span></p><blockquote><p><span>&#8220;can be used by threat actors to mask their online illegal activity, making the consumer appear responsible.&#8221; </span></p></blockquote><p><span>Does that mean you&#8217;re at risk of legal liability if your streaming box is used by a third party for illegal activity?</span></p><p><span>Federal criminal charges require proving intent, and courts have been skeptical of IP-address-only evidence for a long time. A 2012 ruling out of the Eastern District of New York held that an IP address is no more conclusive than a telephone number. It tells you where a connection came from, not who made it. Actual prosecution is therefore unlikely.</span></p><p><span>The realistic risk is more mundane, but still disruptive to you. Here&#8217;s a reasonably likely scenario:</span></p><blockquote><p><span>Criminal activity traces back to your address. Law enforcement contacts your ISP. Your ISP flags or terminates your account. Investigators show up or issue a subpoena before they&#8217;ve established you were not the actual user. You spend time and energy demonstrating that someone else was using your connection. You&#8217;re right, and eventually that gets sorted out. Meanwhile the criminal moved on to someone else&#8217;s box weeks earlier.</span></p></blockquote><p><span>Riley Kilmer, co-founder of Spur Intelligence (a company that tracks these proxy networks professionally) </span><a href="https://www.edgen.tech/news/post/your-home-network-may-be-1-of-thousands-in-a-criminal-botnet"><span>put it plainly</span></a><span>: &#8220;If they use your network for illegal activity, there&#8217;s a chance that law enforcement could come knocking at your door.&#8221; The burden of proving you didn&#8217;t do it still lands on you, even when the law technically presumes otherwise.</span></p><h2><span>What to Do If You Own One of These Boxes</span></h2><p><span>Stop using it on your main network. Put it on a guest network at minimum, or unplug it. A factory reset often isn&#8217;t enough. If the SDK is in the firmware rather than installed through an app, resetting the device doesn&#8217;t touch it. Replace it with a Roku, Apple TV, or Fire TV from a verified retailer if you want a clean start.</span></p><p><span>And regardless of what&#8217;s plugged into your TV, this post walks through privacy settings on every major platform, including what to disable and where to find it:</span></p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;58025787-1193-4296-9cdb-060cf4bfeb90&quot;,&quot;caption&quot;:&quot;&quot;,&quot;cta&quot;:null,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;Smart TV Privacy Settings 2026: How to Disable Tracking on Every Brand&quot;,&quot;publishedBylines&quot;:[],&quot;post_date&quot;:&quot;2025-09-17T01:13:36.498Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ba945728-b80c-4596-bdc3-ad5149cebd2f_1200x630.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/smart-tv-privacy-settings&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:173689640,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:121,&quot;comment_count&quot;:16,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><h2><span>The Bigger Problem To Worry About For Most</span></h2><p><span>Spur Intelligence </span><a href="https://spur.us/blog/smart-tv-apps-residential-proxy-sdks"><span>scanned 6,038 apps across LG and Samsung&#8217;s smart TV platforms</span></a><span> and found 2,058 containing residential proxy SDKs. On LG&#8217;s webOS, 42.5% of apps carried the code. On Samsung&#8217;s Tizen, 26.9%. These aren&#8217;t sketchy off-brand devices. They&#8217;re the TVs sitting in most living rooms.</span></p><p><span>Amazon explicitly prohibits apps that facilitate proxy services for third parties in its Device and System Abuse Policy. Roku has reportedly drawn the same line, with affected apps disappearing from the Roku store after the company flagged them. LG and Samsung have done neither. The same business model that Amazon bans and Roku reportedly blocks is running on webOS and Tizen right now, and neither company has published a policy addressing it.</span></p><p><span>In many cases the proxy company isn&#8217;t just supplying the SDK to app developers, it&#8217;s publishing the apps itself, shipping dozens of throwaway games, screensavers, and clock apps specifically to have somewhere to put the software. The app is just the vehicle (or a Trojan Horse, if you prefer). Your internet connection is what they&#8217;re actually selling.</span></p><p><span>One Pac-Man game on Samsung TVs makes the arrangement explicit at install: watch ads, or let the app use your TV&#8217;s connection for &#8220;web indexing.&#8221; That&#8217;s industry language for routing other people&#8217;s internet traffic through your home connection. And that&#8217;s the consent model LG and Samsung are apparently comfortable with.</span></p><p><span>If you have an LG or Samsung TV, the most practical step right now is to audit what&#8217;s installed and remove anything you didn&#8217;t deliberately add. That includes screensavers, clock apps, casual games, and anything that promises to be ad-free.</span></p><p><span>The no-name Android box problem has a fix. The brand-name TV problem is still waiting for the platforms to take action and crack down on this type of hidden practice.</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><p><em>Looking for help with a privacy issue or privacy concern? Chances are we&#8217;ve covered it already or will soon. Follow us on <a href="https://twitter.com/secretsofprivac">X</a> and <a href="https://www.linkedin.com/company/secrets-of-privacy/">LinkedIn</a> for updates on this topic and other internet privacy related topics.</em></p><div><hr></div><h5><strong>Disclaimer: None of the above is to be deemed legal advice of any kind. These are *opinions* written by a privacy and tech attorney with years of working for, with and against Big Tech and Big Data. And this post is for informational purposes only and is not intended for use in furtherance of any unlawful activity. This post may also contain affiliate links, which means that at no additional cost to you, we earn a commission if you click through and make a purchase.</strong></h5><ul><li><p><strong>Know your doxxing risk.</strong> DoxxScore gives you a personalized exposure assessment and action plan in under 5 minutes. <a href="https://doxxscore.com/">Get Your Risk Score &#8594;</a></p></li><li><p>Check out our new, free <a href="https://tools.secretsofprivacy.com/username-generator">username generator</a> to help you create unique usernames for different accounts. Reusing usernames is convenient, but terrible for your privacy. This tool makes it easy to create unique usernames on the fly.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share Secrets of Privacy&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share Secrets of Privacy</span></a></p></li></ul>]]></content:encoded></item><item><title><![CDATA[Waze Knows Where You Are. Here's What to Actually Change.]]></title><description><![CDATA[The settings that reduce your exposure on Waze, what Invisible Mode actually does, and the one most people get wrong.]]></description><link>https://www.secretsofprivacy.com/p/waze-privacy-settings</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/waze-privacy-settings</guid><pubDate>Wed, 08 Jul 2026 01:06:56 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/dca4d2ab-4023-4cfb-9c38-d09a9377e407_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p><span>My </span><a href="https://www.secretsofprivacy.com/p/google-maps-privacy-settings"><span>Google Maps piece from the other week</span></a><span> got a lot of responses. The most common one: </span><strong><span>what about Waze?</span></strong></p><p><span>Waze is built around something Google Maps doesn&#8217;t do at all. Other Waze users can watch your car move across the map in real time, see your username, and read the traffic reports you send as you drive. The entire feature set depends on that kind of sharing, not just sharing with Google.</span></p><p><span>Google Maps mostly collects information about you and keeps it, or shares it with Google&#8217;s ad business. Waze does that too, since it&#8217;s owned by Google and runs on much of the same infrastructure. But Waze adds a second layer on top of that, a live social map where other people can see where you are while you&#8217;re driving.</span></p><p><span>So the privacy question for Waze is a little different. There&#8217;s what Google collects, which mirrors most of what I covered in the Google Maps piece. And there&#8217;s what other Waze users can see about you, which is a separate setting most people never touch because they don&#8217;t realize it&#8217;s separate.</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>What Waze Actually Collects</strong></h2><p><span>Three categories are in scope here, and they roughly mirror what I found in Google Maps.</span></p><p><span>The first is location and route history. Waze logs your GPS position, your speed, and your route, and saves it to a running record of every drive you&#8217;ve made on the app. This is the same kind of data Maps stores in Timeline, just under a different name and a different settings menu.</span></p><p><span>The second is search and destination data. Every address you&#8217;ve searched, your saved home and work locations, and your recent destinations are stored separately from your route history and have their own deletion controls.</span></p><p><span>The third is passive background location. Depending on your settings, Waze can check your location even when the app isn&#8217;t open, in order to send you reminders for planned drives, traffic alerts, and parking assistance. This is functionally identical to what Google Maps does in the background, and it&#8217;s controlled the same way, through your phone&#8217;s location permissions rather than anything inside the app.</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/waze-privacy-settings?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/waze-privacy-settings?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><strong>Still a Google Product</strong></h2><p><span>Waze feels like a scrappy, community-run app, and in some ways it still is. But Waze has been owned by Google since 2013, and the privacy policy is direct about working with Google&#8217;s other companies for advertising, including sharing your device&#8217;s advertising identifier with those partners.</span></p><div class="callout-block" data-callout="true"><p><span>One detail worth knowing if you&#8217;ve avoided creating a Waze account because you assumed that kept you anonymous: it doesn&#8217;t. Waze&#8217;s own policy states that even without registering, your activity still gets linked to a unique identifier it generates for you, and that identifier follows you across the app the same way an account would. Skipping the account avoids the social features, not the data collection.</span></p></div><h2><strong>The Settings That Actually Matter</strong></h2><p><span>Listed roughly in order of impact. The first two are your highest privacy ROI.</span></p><h3><strong>1. Location Permission, Same Fix as Maps</strong></h3><p><span>Waze needs precise location to navigate, so don&#8217;t switch to approximate location. The setting that matters is when the app can access your location, not how precisely.</span></p><p><span>On Android, go to Settings &gt; Location &gt; App location permissions &gt; Waze, and set it to &#8220;Allowed only while in use.&#8221;</span></p><p><span>On iOS, go to Settings &gt; Privacy &amp; Security &gt; Location Services &gt; Waze, and set it to &#8220;While Using the App.&#8221;</span></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!CcSV!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!CcSV!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 424w, https://substackcdn.com/image/fetch/$s_!CcSV!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 848w, https://substackcdn.com/image/fetch/$s_!CcSV!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!CcSV!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!CcSV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg" width="543" height="508.03409090909093" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1235,&quot;width&quot;:1320,&quot;resizeWidth&quot;:543,&quot;bytes&quot;:147400,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/203596731?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!CcSV!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 424w, https://substackcdn.com/image/fetch/$s_!CcSV!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 848w, https://substackcdn.com/image/fetch/$s_!CcSV!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!CcSV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2d7aa46-68d2-4a88-92cc-aabbd78da75e_1320x1235.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">screenshot from iOS</figcaption></figure></div><h3><strong>2. Invisible Mode, What It Actually Hides</strong></h3><p><span>This is the one most people get wrong. Invisible Mode hides your username, your moving icon, and your activity from other Waze users on the map. It does not stop Waze itself from collecting your location and route data. The company&#8217;s own privacy policy is direct about this. </span></p><blockquote><p><span>Even while you&#8217;re invisible to other users, Waze keeps collecting your location and route data for everything else outlined in the policy.</span></p></blockquote><p><span>There&#8217;s a second cost to this setting that surprises people. Going invisible also turns off your ability to send traffic reports, message other users, or edit the map. So it&#8217;s a real tradeoff, not a free privacy upgrade. You&#8217;re trading the social features for social invisibility, not for less data collection.</span></p><p><span>To turn it on, open Waze, tap the menu icon, go to Settings, then Privacy, and switch on &#8220;Go invisible.&#8221;</span></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!eb7F!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!eb7F!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 424w, https://substackcdn.com/image/fetch/$s_!eb7F!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 848w, https://substackcdn.com/image/fetch/$s_!eb7F!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!eb7F!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!eb7F!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg" width="569" height="569.8621212121212" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1322,&quot;width&quot;:1320,&quot;resizeWidth&quot;:569,&quot;bytes&quot;:139465,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/203596731?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!eb7F!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 424w, https://substackcdn.com/image/fetch/$s_!eb7F!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 848w, https://substackcdn.com/image/fetch/$s_!eb7F!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!eb7F!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F912afe8a-107f-45fb-a515-3d6469f3e7ee_1320x1322.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">screenshot from iOS</figcaption></figure></div><h3><strong>3. Ad Personalization</strong></h3><p><span>In the same Privacy menu, you can turn off &#8220;Personalize your ads.&#8221; Like most ad personalization toggles, this doesn&#8217;t stop ads from showing. It stops Waze from using your account activity and saved information to choose which ones you see.</span></p><h3><strong>4. Navigation History and Recent Locations</strong></h3><p><span>Still in the Privacy menu, you&#8217;ll find separate controls for navigation history (every place you&#8217;ve navigated to or checked an ETA for) and recent locations (a shorter list tied to recent searches). You can delete individual entries or clear both lists entirely. They&#8217;re tracked separately from your account&#8217;s broader route history, so clearing one doesn&#8217;t clear the other.</span></p><h3><strong>5. Contacts Access For Find Friends</strong></h3><p><span>Waze has a feature that scans your phone&#8217;s contacts to suggest Waze users you might know. I couldn&#8217;t find a dedicated toggle for this in the current privacy settings menu, which is surprising. The more reliable control sits at your phone&#8217;s permission level rather than inside the app.</span></p><p><span>On Android, go to Settings &gt; Apps &gt; Waze &gt; Permissions &gt; Contacts, and turn it off unless you actually want to use the feature.</span></p><p><span>On iOS, go to Settings &gt; Privacy &amp; Security &gt; Contacts &gt; Waze, and turn it off.</span></p><p><span>This matters beyond your own data. If you grant Waze contacts access, the people in your phone book who don&#8217;t use Waze and never agreed to anything are part of what gets uploaded.</span></p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://secretsofprivacy.gumroad.com/l/howexposedareyouonline" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 424w, https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 848w, https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 1272w, https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png" width="1400" height="200" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:200,&quot;width&quot;:1400,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:44562,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:&quot;https://secretsofprivacy.gumroad.com/l/howexposedareyouonline&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/203596731?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 424w, https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 848w, https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 1272w, https://substackcdn.com/image/fetch/$s_!lQ8Y!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc7246299-1510-445c-b0d2-e1efd49d3cdb_1400x200.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h2><strong>Takeaway</strong></h2><p><span>After all of this, Waze still knows where you are while you&#8217;re navigating, because that&#8217;s what the app does. You&#8217;ve cut the background collection, removed yourself from the social map if you want to be removed, and made sure your contacts aren&#8217;t getting swept up by a feature you forgot existed. That&#8217;s legit progress.</span></p><p><span>What you haven&#8217;t done, and can&#8217;t really do with a settings change, is use Waze without Google knowing your location in real time. That&#8217;s true of Google Maps too, but Waze&#8217;s whole feature set depends on a level of location sharing that Maps doesn&#8217;t require. The traffic data, the live reports, and the community map all need you to be visible to the system, even when you&#8217;ve made yourself invisible to other users.</span></p><p><span>If you want an app that does what Waze does without running through Google, you&#8217;re mostly out of luck right now. The crowdsourced traffic and incident reporting that makes Waze unique doesn&#8217;t really exist anywhere else with the same reliability and features. That&#8217;s a different situation than Google Maps, where Organic Maps and OsmAnd are alternatives for plain navigation, if imperfect. Waze&#8217;s actual product, the live community layer, doesn&#8217;t have a privacy-respecting equivalent yet.</span></p><p><span>If you've now worked through both the Maps and Waze settings and you're starting to notice how many of these adjustments lead back to the same Google account, that's the right observation. The bestselling De-Google Your Life guide will help you break free of Google. It&#8217;s free for annual paid subscribers. Everyone else can get a deal </span><a href="https://secretsofprivacy.gumroad.com/l/degoogle/8cdhfws"><span>here</span></a><span>. </span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><p><em>Looking for help with a privacy issue or privacy concern? Chances are we&#8217;ve covered it already or will soon. Follow us on <a href="https://twitter.com/secretsofprivac">X</a> and <a href="https://www.linkedin.com/company/secrets-of-privacy/">LinkedIn</a> for updates on this topic and other internet privacy related topics.</em></p><div><hr></div><h5><strong>Disclaimer: None of the above is to be deemed legal advice of any kind. These are *opinions* written by a privacy and tech attorney with years of working for, with and against Big Tech and Big Data. And this post is for informational purposes only and is not intended for use in furtherance of any unlawful activity. This post may also contain affiliate links, which means that at no additional cost to you, we earn a commission if you click through and make a purchase.</strong></h5><ul><li><p><strong>Know your doxxing risk.</strong> DoxxScore gives you a personalized exposure assessment and action plan in under 5 minutes. <a href="https://doxxscore.com/">Get Your Risk Score &#8594;</a></p></li><li><p>Check out our new, free <a href="https://tools.secretsofprivacy.com/username-generator">username generator</a> to help you create unique usernames for different accounts. Reusing usernames is convenient, but terrible for your privacy. This tool makes it easy to create unique usernames on the fly.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share Secrets of Privacy&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share Secrets of Privacy</span></a></p></li></ul>]]></content:encoded></item><item><title><![CDATA[The Free World Cup Stream That Isn't Free]]></title><description><![CDATA[Dozens of fake streaming sites went live as the tournament started. Here's what they're actually selling.]]></description><link>https://www.secretsofprivacy.com/p/world-cup-fake-streaming-sites-2026</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/world-cup-fake-streaming-sites-2026</guid><pubDate>Thu, 02 Jul 2026 10:57:29 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/e5a431bf-10f4-423e-95c2-705b20c17864_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p><span>If you went looking for a free stream of any World Cup match in the past two weeks, you encountered one of these sites. They have names like &#8220;wc2026stream.live&#8221; or &#8220;fifafreehdtv.com.&#8221; They load a video player in the middle of the page, and they look functional enough that you might give them a few minutes before you realize the stream never actually starts.</span></p><p><span>More than 40 of these sites have been identified running the same page template, the same code, and the same advertising, just behind different World Cup-themed names. Malwarebytes, which tracked the operation, describes them as effectively identical despite their different URLs. A script generates a separate page for every match, which makes the whole operation cheap to run and easy to scale. (</span><a href="https://www.malwarebytes.com/blog/threat-intel/2026/06/free-world-cup-stream-sites-are-serving-scams-not-football"><span>source</span></a><span>)</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p><span>The stream itself, when it appears at all, is usually pulled from a third-party piracy service. The site operators don&#8217;t control it or vet it. What they do control is everything surrounding the video player, and that&#8217;s the purpose of this scheme.</span></p><p><span>The advertising network these sites run is a delivery route for fake virus warnings, bogus software update prompts that install malware, fake prize and verification pages, and forced redirects into subscription traps. The video window is incidental. The pop-ups, redirects, and hidden clickable overlays are the actual purpose. (</span><a href="https://www.malwarebytes.com/blog/threat-intel/2026/06/free-world-cup-stream-sites-are-serving-scams-not-football"><span>source</span></a><span>)</span></p><p><span>This model isn&#8217;t new, and it isn&#8217;t specific to soccer/football. Scammers have used major sporting events as bait for years because the demand is predictable and the audience is in a hurry. Someone trying to catch a match that starts in three minutes isn&#8217;t going to carefully read the URL or notice that a browser update prompt appeared. The urgency is what the sites are designed to exploit.</span></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bsvF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bsvF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 424w, https://substackcdn.com/image/fetch/$s_!bsvF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 848w, https://substackcdn.com/image/fetch/$s_!bsvF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 1272w, https://substackcdn.com/image/fetch/$s_!bsvF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bsvF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png" width="648" height="536" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:536,&quot;width&quot;:648,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:146538,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/203601349?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bsvF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 424w, https://substackcdn.com/image/fetch/$s_!bsvF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 848w, https://substackcdn.com/image/fetch/$s_!bsvF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 1272w, https://substackcdn.com/image/fetch/$s_!bsvF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4131585-a0a9-45c9-a8c8-bbe97e648d23_648x536.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>Alongside the fake streaming sites, researchers tracked roughly 19,000 domains containing references to &#8220;FIFA&#8221; registered since January 2026, with some linked to phishing campaigns targeting fans searching for tickets and merchandise. The FBI issued a formal public service announcement warning that scammers are creating fraudulent versions of FIFA-affiliated websites to steal personal information, conduct financial fraud, and sell fake products and services. (</span><a href="https://www.helpnetsecurity.com/2026/06/23/fake-world-cup-streaming-sites-scams/"><span>source</span></a><span>)</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/world-cup-fake-streaming-sites-2026?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/world-cup-fake-streaming-sites-2026?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><p><span>The streaming angle has a different risk profile than traditional event ticket fraud. You don&#8217;t have to hand over payment details to get hurt by a fake streaming site. Just landing on one and clicking something, like a pop-up or a fake update prompt, can be enough. Some fake streaming apps conceal Android banking trojans that capture banking credentials and keystrokes while replicating the interface of legitimate platforms. That&#8217;s the mobile version of the same scam, and it&#8217;s more dangerous because app permissions tend to be granted at a surprisingly high rate. (</span><a href="https://proton.me/blog/world-cup-2026-scams-phishing"><span>source</span></a><span>)</span></p><p><span>The streaming scam problem is structurally hard to solve, because there&#8217;s genuine unmet demand driving it. Broadcast rights for the World Cup are expensive and fragmented by region. Plenty of people who want to watch a specific match legally can&#8217;t, either because their country&#8217;s broadcaster doesn&#8217;t carry it or because they&#8217;re traveling and their home service is geo-blocked. Scammers exploit that gap, and they do it by building sites that look just good enough to get a few minutes of attention before anyone gets suspicious.</span></p><p><span>The practical answer for most people is to figure out in advance where to watch legally in their region. In the US, the 2026 World Cup is on Fox, FS1, Telemundo, and Peacock. If you&#8217;re outside the US, your national broadcaster is almost certainly carrying it. If you&#8217;re traveling and your home service is geo-blocked, you&#8217;ll want to spend a few minutes understanding your options.</span></p><p><span>If you did land on one of these sites and clicked something you now regret, the immediate steps are: don&#8217;t install anything it prompted you to download, close the browser tabs, and clear your browser cache. If something did get installed, your device&#8217;s built-in security scanner is a reasonable starting point.</span></p><p><span>The tournament runs through July 19. There will be more of these sites as the knockout rounds draw bigger audiences. The one consistent tell is that none of the legitimate broadcasters require you to hunt for them. If you&#8217;re three clicks deep following a link someone posted in a forum, it&#8217;s probably a scam site.</span></p><p>The World Cup produced one other privacy story worth noting.  </p><p>A German fan named Freddy spent the past month going viral on X by documenting a road trip across small-town America while following his national team. He kept his face out of every photo and never used his real name, because from the start he wanted to keep some separation between his online persona and his actual identity. </p><p>It mostly worked, until it didn&#8217;t. </p><p>When his account hit close to a million followers, people started digging through his 22,000 posts looking for anything damaging, fabricated tweets started circulating, and fake accounts impersonating him appeared within days of him going viral. He left X rather than wait to see how much worse it got.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!IasD!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!IasD!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 424w, https://substackcdn.com/image/fetch/$s_!IasD!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 848w, https://substackcdn.com/image/fetch/$s_!IasD!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 1272w, https://substackcdn.com/image/fetch/$s_!IasD!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!IasD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png" width="482" height="318" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f42951b1-434b-4182-9372-5b86bb0d73af_482x318.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:318,&quot;width&quot;:482,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:35235,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/203601349?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!IasD!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 424w, https://substackcdn.com/image/fetch/$s_!IasD!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 848w, https://substackcdn.com/image/fetch/$s_!IasD!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 1272w, https://substackcdn.com/image/fetch/$s_!IasD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff42951b1-434b-4182-9372-5b86bb0d73af_482x318.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Freddy was more privacy-conscious than most people who end up with that kind of audience, and it still became untenable. The lesson isn&#8217;t that anonymity fails (which it usually will at a certain level), rather, it&#8217;s that most people have no idea what&#8217;s already findable about them before the attention arrives. </p><p>If you&#8217;re posting publicly about your location in real time, or you&#8217;ve ever been briefly visible online, it&#8217;s worth knowing what a motivated stranger could find. That&#8217;s the problem DoxxScore was built to solve. A one-time assessment of your doxxing exposure before someone else runs the same search. You can find it at <a href="https://www.doxxscore.com/">DoxxScore.com</a>.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><p><em>Looking for help with a privacy issue or privacy concern? Chances are we&#8217;ve covered it already or will soon. Follow us on <a href="https://twitter.com/secretsofprivac">X</a> and <a href="https://www.linkedin.com/company/secrets-of-privacy/">LinkedIn</a> for updates on this topic and other internet privacy related topics.</em></p><div><hr></div><h5><strong>Disclaimer: None of the above is to be deemed legal advice of any kind. These are *opinions* written by a privacy and tech attorney with years of working for, with and against Big Tech and Big Data. And this post is for informational purposes only and is not intended for use in furtherance of any unlawful activity. This post may also contain affiliate links, which means that at no additional cost to you, we earn a commission if you click through and make a purchase.</strong></h5><ul><li><p>Check out our new, free <a href="https://tools.secretsofprivacy.com/username-generator">username generator</a> to help you create unique usernames for different accounts. Reusing usernames is convenient, but terrible for your privacy. This tool makes it easy to create unique usernames on the fly.</p></li><li><p>Curious what strangers can find out about you from your phone number? We break it down in one of our most popular posts ever: <strong><a href="https://www.secretsofprivacy.com/p/phone-number-osint-reverse-lookup-privacy">We Searched a Phone Number on a Free Website. The Results Were More Detailed Than Expected.</a></strong></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share Secrets of Privacy&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share Secrets of Privacy</span></a></p></li></ul>]]></content:encoded></item><item><title><![CDATA[Strong Passwords Won't Save You From This ]]></title><description><![CDATA[A type of malware called an infostealer can silently copy every password and login session saved in your browser. Here's what it is, how to check if you've been hit, and what to do about it.]]></description><link>https://www.secretsofprivacy.com/p/strong-passwords-wont-save-you-from</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/strong-passwords-wont-save-you-from</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 01 Jul 2026 01:14:10 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/36ff6591-f969-4a8c-8cac-fbb4ffeb1e71_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p><span>You&#8217;re watching a YouTube tutorial on how to do something on your computer. The video description has a link to download the tool being demonstrated. You click it, the file installs, everything looks normal.</span></p><p><span>Except a small program is now running quietly in the background, copying every password your browser has saved, every autofill entry with your name, address, and phone number, every active login session for your email, your bank, your social media accounts. Within minutes it packages all of that up and sends it somewhere else.</span></p><p><span>This is called an infostealer, and it&#8217;s become one of the more common tools in the cybercrime economy.</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>What&#8217;s Actually Happening</strong></h2><p><span>To be honest, this isn&#8217;t a new category of malware. Keyloggers and spyware have existed for decades. What&#8217;s changed is what the current generation is built to grab and how easy it&#8217;s become to deploy.</span></p><p><span>Think about everything sitting in your browser right now.</span></p><ul><li><p><span>Saved passwords for dozens of sites.</span></p></li><li><p><span>Credit card numbers you told Chrome to remember.</span></p></li><li><p><span>The &#8220;stay logged in&#8221; cookies for your Gmail, your bank, your Amazon account.</span></p></li><li><p><span>Autofill data with your home address and phone number.</span></p></li></ul><p><span>An infostealer copies all of that and sends it to whoever deployed the malware. The targets include session cookies, which let an attacker into your accounts without needing your password or your two-factor code, because the session is already authenticated. That&#8217;s the part old-school keyloggers mostly couldn&#8217;t touch.</span></p><p><span>The browser is the main target, but not the only one. Infostealers also go after standalone applications like VPN clients and email clients, and cryptocurrency wallets get particular attention, with the malware scanning for wallet files and browser extensions to extract private keys. Some variants pull session data from Telegram, Signal, and Discord, and take screenshots while they&#8217;re at it.</span></p><p><span>Distribution has changed too. The most common infostealers are now rented out as subscription services, so whoever runs the campaign doesn&#8217;t need to write any code. They rent access, point it at a phishing email or a fake download page, and start collecting. What comes back gets sold as a &#8220;log,&#8221; often for just a few dollars, on dark web marketplaces and Telegram channels.</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/strong-passwords-wont-save-you-from?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/strong-passwords-wont-save-you-from?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><p><span>What sets this apart from most malware you&#8217;ve heard about is that it doesn&#8217;t announce itself. Ransomware locks your files and demands payment, so you know immediately something is wrong. An infostealer just sits there collecting data in the background. Devices can stay infected for a long time before anyone notices, because nothing about how the computer behaves actually changes.</span></p><div class="callout-block" data-callout="true"><p><span>One more thing worth knowing if you use Chrome. Google is in the process of fully disabling older ad blocker extensions like uBlock Origin, with less capable replacements taking their place. Ad blockers are one of the recommended defenses against malicious ads that deliver malware through drive-by downloads, so if yours stopped working recently and you haven&#8217;t replaced it, that&#8217;s one more opening that wasn&#8217;t there before.</span></p></div><h2><strong>This Isn&#8217;t Fringe</strong></h2><p><span>Verizon&#8217;s 2025 Data Breach Investigations Report examined infostealer logs being actively traded by criminals. They found that 30% of the compromised devices in those logs were enterprise machines, but 46% of the devices with corporate logins on them were personal, unmanaged devices.</span></p><p><span>So nearly half the devices containing work credentials were people&#8217;s personal laptops. Not because anyone hacked a company network. Because someone&#8217;s home computer got infected, and that computer happened to have both a Netflix password and a work email saved in the same browser.</span></p><p><span>The connection to bigger attacks is clear when you look at the data.</span></p><blockquote><p><span>54% of ransomware victims in 2024 had their credentials show up in infostealer logs before the ransomware attack happened. The infostealer isn&#8217;t really a separate problem from ransomware. It&#8217;s often the step that happens first, quietly, weeks or months before anything visible goes wrong.</span></p></blockquote><div class="callout-block" data-callout="true"><p><span>Earlier this year, a security researcher found an unsecured database containing 149 million stolen passwords, along with tens of millions of Gmail and Instagram account credentials sitting openly accessible online. Researchers pointed to infostealers as one likely source for data like this getting compiled and exposed at that scale.</span></p></div><h2><strong>My Take</strong></h2><p><span>The standard recommendation is &#8220;use a password manager and enable two-factor authentication&#8221;. That&#8217;s good advice, but it assumes the threat is someone guessing or cracking your password. Infostealers don&#8217;t guess anything. They read what&#8217;s already sitting on your machine, including the session cookies that let attackers into your accounts without needing a password or a 2FA code at all.</span></p><p><span>While a password manager helps, it doesn&#8217;t fully solve this. And if you&#8217;re using the password-saving feature built into Chrome or Safari rather than a dedicated manager, you may be more exposed than you realize, since browser-stored passwords are one of the specific things this malware looks for. More on that below.</span></p><div class="pullquote"><p><span>&#8220;Is my password strong&#8221; is the wrong question when it comes to this type of threat. The better one is &#8220;what is my browser storing right now, and would I notice if a stranger had a live copy of it.&#8221;</span></p></div><p><span>I think this threat gets more attention over the next year or two, mostly because it keeps showing up as the silent first step behind bigger breaches that eventually do make headlines. A lot of people will hear about infostealers for the first time when their bank flags a login from a country they&#8217;ve never visited.</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>The Good News</strong></h2><p><span>There&#8217;s a free tool that tells you whether your email has shown up in a stealer log. Go to haveibeenpwned.com, the same breach-checking site you may already know, and enter your email. The basic search has always been free and stays that way.</span></p><p><span>Stealer logs show up in your results as a named breach, something like &#8220;Stealer Logs, Jan 2025&#8221; or &#8220;Data Troll Stealer Logs.&#8221; If you see one of those in your list, that&#8217;s your answer. Click into it and HIBP&#8217;s description explains what a stealer log is and roughly when it was collected.</span></p><p><span>What the free check won&#8217;t tell you is which specific sites your credentials were captured against. Seeing the exact domains, your bank, your email provider, whatever it was, requires a paid HIBP subscription and its API. The free version confirms you were caught up in one. It doesn&#8217;t hand you the full breakdown.</span></p><p><span>That&#8217;s still useful on its own, and it takes about thirty seconds to check.</span></p><p><span>The harder part is what to do next, because changing your passwords alone doesn&#8217;t fix this. If the malware is still active on your device, it will simply capture your new passwords too. And if you&#8217;re using a browser-based password manager, the exposure runs deeper than most people expect.</span></p><div class="image-gallery-embed" data-attrs="{&quot;gallery&quot;:{&quot;images&quot;:[{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bdc35bbf-1647-4faa-8b78-69d5a424038e_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e9e1ec3e-93b7-4fc8-b34f-61cada9a0fd4_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c9bf38a7-0aac-44a1-9ebc-1965a50e6933_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1458bdc2-d820-4c30-9e9b-22165d965ad2_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a16ad63b-b3c1-415e-9be7-36e1aa19f1e8_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/01bb60b6-b2f4-41f6-a935-af2486edb907_1080x1080.png&quot;}],&quot;caption&quot;:&quot;&quot;,&quot;alt&quot;:&quot;&quot;,&quot;staticGalleryImage&quot;:{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/801c1c95-860c-4be4-96f2-dcb3219c6771_1456x964.png&quot;}},&quot;isEditorNode&quot;:true}"></div><h2><strong>The Check, Step by Step</strong></h2>
      <p>
          <a href="https://www.secretsofprivacy.com/p/strong-passwords-wont-save-you-from">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Your Spending Patterns Are Now A Product]]></title><description><![CDATA[Visa, Mastercard, and Amex all run data businesses built on your spending. Here's what's actually for sale, and how to decide which purchases to keep off the network entirely.]]></description><link>https://www.secretsofprivacy.com/p/your-spending-patterns-are-now-a</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/your-spending-patterns-are-now-a</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 24 Jun 2026 01:09:26 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/81b49180-ec0e-4b2d-a5b6-0152a6914bba_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p><span>If you've used a credit card this week, Mastercard, Amex, or Visa has a record of it, and at least two of them are doing something with that record you probably don't know about.</span></p><p><span>Mastercard has a division built specifically to package up cardholder transaction data and sell it to advertisers, data brokers, and anyone else willing to pay for access. A 2023 investigation by U.S. PIRG (a consumer advocacy group) found that Mastercard runs at least 25 different data products through this division, and most cardholders have no idea it exists. Mastercard&#8217;s public position is that it doesn&#8217;t sell &#8220;personal cardholder data for marketing.&#8221; PIRG&#8217;s response was that the distinction doesn&#8217;t hold up. While Mastercard isn&#8217;t handing over your name, it doesn&#8217;t need to. The categories themselves are personal enough.</span></p><p><span>Amex just got back into this business too. In October 2025 the company launched Amex Ads, which lets brands target its 34 million U.S. cardholders based on what they&#8217;ve bought and where they&#8217;ve traveled.</span></p><p><span>Visa is the interesting case. It ran a similar product called Visa Ad Solutions until 2021, then shut it down. Whether that means Visa stopped monetizing transaction data, or just stopped doing it through that particular product, is something Visa has never clearly answered.</span></p><p><span>What this all means is that three companies process essentially all of the card payments in the country. Two of them are actively selling insights derived from those payments to outside parties right now, and the third has a complicated history that nobody&#8217;s fully accounted for.</span></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Wcop!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Wcop!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Wcop!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Wcop!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Wcop!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Wcop!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png" width="541" height="541" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1080,&quot;width&quot;:1080,&quot;resizeWidth&quot;:541,&quot;bytes&quot;:125134,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/202522393?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Wcop!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Wcop!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Wcop!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Wcop!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F820f6c4d-7917-4c31-9130-2eae340db992_1080x1080.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2><span>How This Actually Works</span></h2><p><span>The way people imagine this works is that the credit card company sells a list of your purchases with your name attached. That&#8217;s not quite how it works.</span></p><p><span>When you buy something, the network sees the merchant name, the amount, the date, and roughly where the transaction happened. Mastercard&#8217;s own privacy policy says it generally doesn&#8217;t need your name to process the transaction, and usually doesn&#8217;t have it in that data stream. </span></p><p><span>What the network does have is volume. Billions of transactions, attached to anonymized account identifiers, repeating over months and years.</span></p><p><span>From that, Mastercard builds what PIRG described as </span><strong><span>behavioral categories</span></strong><span>. Frequent late-night fast food orders. Big spikes in spending around certain dates. A pattern that looks like someone furnishing a new apartment, or someone who just had a baby, or someone the company would internally tag as a &#8220;high-value&#8221; customer worth targeting with offers. The Electronic Frontier Foundation pointed out that Mastercard uses transaction frequency, amount, location, date, and time specifically to predict what kind of spender you are.</span></p><blockquote><p><span>None of that requires your name. Instead, it requires only your pattern. And patterns are often more identifying than names, because almost nobody else shares your exact combination of where, when, and how much.</span></p></blockquote><p><span>It&#8217;s worth being clear about how we know credit card companies use your spending data versus what&#8217;s a reasonable worry. </span></p><p><span>The advertising use case is documented and not in doubt. But health and life insurers buying this kind of data for underwriting is not something I found evidence of happening today, at least not directly. But privacy advocates have flagged it as the obvious next step, and it&#8217;s not hard to see why. A pattern of frequent fast food orders and no gym membership charges is exactly the kind of signal an insurer would want and a data broker would be happy to package. </span></p><p><span>Nothing about the current setup prevents that from happening, of course. It&#8217;s just, as far as anyone&#8217;s reported, not happening yet.</span></p><div class="image-gallery-embed" data-attrs="{&quot;gallery&quot;:{&quot;images&quot;:[{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9cdfe594-92e0-4bda-9c01-719aa420382d_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/97f97997-018d-4b7a-aafb-f77db8fc099e_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0ae6c642-1b2e-4506-9569-2c2f033ebd2f_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/945d1876-135e-4f62-84aa-fa240993cbf7_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/dda9cd5f-f619-4926-b7d3-9bf5f30b7e9e_1080x1080.png&quot;},{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/eed22142-6b03-49d4-981a-9b415ff68b5b_1080x1080.png&quot;}],&quot;caption&quot;:&quot;&quot;,&quot;alt&quot;:&quot;&quot;,&quot;staticGalleryImage&quot;:{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/00be993d-76a5-4b9e-9216-059209b0c143_1456x964.png&quot;}},&quot;isEditorNode&quot;:true}"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/your-spending-patterns-are-now-a?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/your-spending-patterns-are-now-a?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><span>This Is a Deliberate Business Now</span></h2><p><span>Mastercard didn&#8217;t end up with 25 different data products by accident. Someone built a roadmap for that, with robust sales teams and growth targets. </span></p><p><span>Amex didn&#8217;t launch Amex Ads in October 2025 because they happened to have some data sitting around. That&#8217;s a media business they stood up on purpose, with named partners like Marriott and Macy&#8217;s, and they&#8217;re describing it to cardholders as a perk (&#8220;relevant content at exactly the right time&#8221;) rather than something being done to them.</span></p><p><span>My honest read is that this is going to keep expanding because the economics are good and because most of what these companies are doing is, in fact, legal under current federal privacy law. The Gramm-Leach-Bliley Act lets financial companies share data with very limited opt-out rights, and what opt-out rights exist are often buried in annual privacy notices nobody reads. A handful of state privacy laws (California&#8217;s among them) give residents stronger opt-out and deletion rights, but enforcement against card networks specifically has been close to nonexistent.</span></p><p><span>So if you&#8217;re waiting for this to get fixed at the policy level, I wouldn&#8217;t hold your breath. The more useful question is:</span></p><blockquote><p><span>what you can actually do about your own exposure, given that this is the environment.</span></p></blockquote><h2><span>Where the Opt-Outs Actually Lead</span></h2><p><span>Before getting into what to do, it&#8217;s worth being straight about what doesn&#8217;t work, because most privacy advice oversells the opt-out step.</span></p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/your-spending-patterns-are-now-a">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[The Job Interview That Steals Your Face]]></title><description><![CDATA[Fake recruiters are running video interviews to harvest your facial geometry and voice. Here's what they do with it, and how to tell a real interview from a collection operation.]]></description><link>https://www.secretsofprivacy.com/p/fake-interview-biometric-harvesting</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/fake-interview-biometric-harvesting</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 17 Jun 2026 01:18:30 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/8360917a-5d4d-410f-a677-15f68dc8978f_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>You got a LinkedIn message from a recruiter at a company you&#8217;ve heard of. The role is a good fit. They want to schedule a 30-minute video call. The interview goes smoothly. </p><p>Only there&#8217;s one problem - you never hear back.</p><p>What you may not realize (at least until it&#8217;s too late) is that the &#8220;interview&#8221; was the purpose, and the job posting was just a ruse.</p><p>A growing category of fraud targets job seekers not for their social security number or credit card info, but for something that can&#8217;t be rotated like a password or frozen like a credit card: their face and their voice.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2>How the Scam Works</h2><p>Fake recruiters are inviting victims to professional-looking video interviews. The conversation feels normal, but the system is recording facial angles, blinking behavior, and voice samples. That data can later be used to bypass liveness checks and even access financial accounts.</p><p>The part that makes this different from a garden-variety phishing attempt is what the data enables. </p><p>Banks and fintech platforms have been rolling out biometric authentication (Face ID and voice verification) as a security upgrade. The assumption built into those systems is that your face and voice are yours alone. Fraudsters have found a way to challenge, if not disprove that assumption.</p><p>A ready-to-use synthetic identity sells for as little as $15 on criminal marketplaces, and tools to bypass financial institution liveness checks are available for between $10 and $50. The raw material those tools need is high-quality biometric data. A 30-minute video interview, recorded without your knowledge, is an efficient way to collect it.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/fake-interview-biometric-harvesting?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/fake-interview-biometric-harvesting?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2>The Scale Is Already Large</h2><p>Reports to the FTC about job scams tripled from 2020 to 2024, with reported losses jumping from $90 million to $501 million over the same period. That figure almost certainly undercounts the real total; the FTC has noted that the vast majority of fraud goes unreported. And those numbers predate the current wave of AI-powered interview fraud, which began accelerating in late 2024.</p><p>Sumsub&#8217;s Q1 2025 research found that deepfake fraud surged by 1,100% year over year in North America. What changed? The tooling got cheap enough and capable enough that fraud operations which required significant technical skill a few years ago are now accessible to anyone who knows where to look.</p><p>The downstream effects are already showing up in financial crime data. In April 2025, Hong Kong police dismantled a deepfake scam ring that used AI-generated video and cloned voice attacks to open accounts at HSBC, causing losses exceeding HK $1.5 billion, roughly $193 million.</p><h2>What Your Face and Voice Are Actually Worth</h2><p>Telegram channels selling stolen biometric data also offer virtual camera tools that can be inserted during liveness checks to substitute a deepfake image for the user&#8217;s real face. Sellers even specifically advertise compatibility with major financial institutions including Binance, BBVA, and Revolut.</p><p>So the chain looks like this:</p><blockquote><p>fake interview collects your facial geometry and voice samples, that data gets packaged or sold, and it ends up being used to open accounts, approve loans, or transfer funds, all in your name.</p></blockquote><p>Unlike a stolen password, you cannot change your face. Once that data is out, it is out.</p><p>Sumsub&#8217;s research shows synthetic identity document fraud in North America rose 311% year over year in Q1 2025. Biometric harvesting operations are one of the supply chains feeding that number.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!duRS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!duRS!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 424w, https://substackcdn.com/image/fetch/$s_!duRS!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 848w, https://substackcdn.com/image/fetch/$s_!duRS!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 1272w, https://substackcdn.com/image/fetch/$s_!duRS!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!duRS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png" width="496" height="505" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:505,&quot;width&quot;:496,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:67975,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/201233927?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!duRS!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 424w, https://substackcdn.com/image/fetch/$s_!duRS!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 848w, https://substackcdn.com/image/fetch/$s_!duRS!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 1272w, https://substackcdn.com/image/fetch/$s_!duRS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07eb6f87-c832-4c1b-a0c0-92178b49fa2c_496x505.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Link to the full story is at the end along with other relevant links</figcaption></figure></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2>What the Fraudulent Interview Actually Looks Like</h2><p>Most of these operations put real effort into appearing legitimate. The recruiter&#8217;s profile looks credible, often impersonating a real person at a real company. AI-generated headshots and recycled job descriptions make the impersonation hard to catch at a glance.</p><p>The interview itself tends to follow normal patterns, focusing on job history, strengths, why you&#8217;re interested in the role. That&#8217;s partly to keep you engaged long enough to collect usable data, and partly because a functional-sounding conversation produces better audio and more natural facial expressions than an awkward one. The platform will typically be something you haven&#8217;t seen before, attributed to a video interviewing tool you can&#8217;t find much about online.</p><h2>My Take</h2><p>The mainstream privacy conversation is still treating this primarily as an employer problem. In that scenario, companies need to worry about deepfake candidates infiltrating their hiring pipelines. This is a real issue and we&#8217;ve touched on it before. But job seekers have been left almost entirely out of the discussion.</p><p>The job market for much of the last two years has been brutal enough that people are conditioned to take any interview they can get. Someone in month four of a job search is less likely to run careful due diligence on an interview request, and fraudsters know this (desperation works in a fraudster&#8217;s favor).</p><p>There&#8217;s also a timing problem. By the time you realize a recruiter was fake, the interview recording has already been processed. Most victims never find out at all. They just wonder why they didn&#8217;t hear back.</p><p>The practical guide job seekers actually need, such as how to vet a recruiter before you accept the interview request, what platform red flags to look for, and what to do if you&#8217;ve already participated in something that felt off, doesn&#8217;t exist in consumer privacy coverage. That&#8217;s what the rest of this post covers.</p><h2>Vetting a Recruiter Before You Accept</h2>
      <p>
          <a href="https://www.secretsofprivacy.com/p/fake-interview-biometric-harvesting">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[If you're Not Going to Delete Google Maps, Do This Instead.]]></title><description><![CDATA[The settings that reduce your exposure, what they actually do, and the one most people leave on by accident.]]></description><link>https://www.secretsofprivacy.com/p/google-maps-privacy-settings</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/google-maps-privacy-settings</guid><pubDate>Thu, 11 Jun 2026 10:56:02 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/d8643f80-8c3c-4e37-8554-ec0e3617ef46_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Google Maps is the hardest Google product to get rid of.</p><p>Search has alternatives. Gmail has alternatives. Chrome has alternatives that are genuinely better, both overall and from a privacy POV.</p><p>But Maps?</p><p>The gap between Google Maps and every privacy and semiprivacy-friendly alternative (Organic Maps, OsmAnd, even Apple Maps) is real enough that I understand why people stay. The coverage, the business data, the real-time traffic, and the accuracy in dense urban areas is unmatched. For most people in most places, the alternatives aren&#8217;t there yet.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p>So this post isn&#8217;t about quitting Google Maps. It&#8217;s about what you should change if you&#8217;re going to keep using it, and what the settings actually do versus what Google implies they do. Those are often different things.</p><p>One note before we get into it: </p><blockquote><p>these settings reduce your exposure, they don&#8217;t eliminate it. </p></blockquote><p>Google Maps is, structurally, a data collection product that also gives you directions. If you want to understand the full picture of what that means across Google&#8217;s ecosystem, and what it takes to actually step off it, that&#8217;s what my <a href="https://secretsofprivacy.gumroad.com/l/degoogle">De-Google Your Life guide</a> covers. </p><p>But that&#8217;s a much larger project. This post is narrower, covering just Maps and the key changes you can make.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/google-maps-privacy-settings?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/google-maps-privacy-settings?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><strong>What Google Maps Actually Collects</strong></h2><p>There are three data categories worth understanding before touching any settings.</p><p>The <strong>first</strong> is Timeline, the record of where you&#8217;ve physically been. When enabled, Maps logs your routes, the places you stopped, how long you stayed, and infers what you were doing (driving, walking, visiting a restaurant).</p><p>After a major policy change Google rolled out through 2024, this data now lives on your device by default rather than Google&#8217;s servers. That&#8217;s an important shift because it largely closed off the geofence warrant problem (where law enforcement could demand location data on everyone near a crime scene by serving Google directly). </p><p>The new exposure risk is your device itself. A 2025 Pennsylvania case, for example, used Google Maps Timeline data extracted from a phone to place a defendant at a location, without requiring expert testimony to explain the technology.</p><p>The <strong>second</strong> is search and navigation history, which logs every address you&#8217;ve searched and every route you&#8217;ve run. This is stored separately from Timeline and controlled by a separate setting. Most people who turn off Timeline assume this type of data is covered. It isn&#8217;t.</p><p>The <strong>third</strong> is passive background data. When Google Maps has &#8220;Always&#8221; location permission, it collects location signals even when you&#8217;re not actively using it. This feeds both Timeline and, through Web &amp; App Activity, Google&#8217;s broader profile of your movements.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://secretsofprivacy.gumroad.com/l/degoogle/xkfea7d" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!EXdE!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 424w, https://substackcdn.com/image/fetch/$s_!EXdE!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 848w, https://substackcdn.com/image/fetch/$s_!EXdE!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 1272w, https://substackcdn.com/image/fetch/$s_!EXdE!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!EXdE!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png" width="1400" height="200" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:200,&quot;width&quot;:1400,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:139357,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:&quot;https://secretsofprivacy.gumroad.com/l/degoogle/xkfea7d&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/197398299?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!EXdE!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 424w, https://substackcdn.com/image/fetch/$s_!EXdE!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 848w, https://substackcdn.com/image/fetch/$s_!EXdE!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 1272w, https://substackcdn.com/image/fetch/$s_!EXdE!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F07cfdcc3-0df8-4df2-9a19-d87a3b2215d7_1400x200.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h2><strong>What the 2024 Changes Actually Mean</strong></h2><p>In late 2023, Google announced that Timeline data would move from its servers to users&#8217; devices, and cut the default auto-delete period from 18 months to 3 months. The company framed this as a privacy improvement, and in one specific sense it was.</p><blockquote><p>Google can no longer hand your location history to law enforcement via a server-side warrant because Google no longer has it.</p></blockquote><p>Google still requires a warrant, not merely a subpoena, to produce location data it does hold. Your device is now the single point of failure. If your phone is seized, imaged, or accessed, Timeline data sits on it. Cloud backup of Timeline is available but opt-in, and Google says it encrypts it in a way that blocks their own access. Treat that as probable but not verified.</p><p>None of this affects what Google collects in real time while you&#8217;re actively navigating. That still happens, and it still feeds the ad and personalization infrastructure.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>The Settings That Actually Matter</strong></h2><p>Work through these in order. The first two have the most impact.</p><h3><strong>1. Location Permission - Limit When, Not How Precisely</strong></h3><p>Most guides get it wrong with this setting. The advice you&#8217;ll see on privacy forums is to switch Google Maps from precise location to approximate location. Don&#8217;t do that. Google Maps has required precise location for navigation since mid-2023, and approximate location breaks routing. The change that actually matters is when Maps can access your location, not how precisely.</p><p>On iOS, go to Settings &gt; Privacy &amp; Security &gt; Location Services &gt; Google Maps and set it to &#8220;While Using the App.&#8221; Leave Precise Location on.</p><p>On Android, go to Settings &gt; Location &gt; App permissions &gt; Google Maps and set it to &#8220;Allow only while using the app,&#8221; not &#8220;Allow all the time.&#8221;</p><p>Setting it this way stops Maps from collecting location signals in the background when you&#8217;re not actively using it. That&#8217;s where a meaningful share of passive data collection happens.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Uykc!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Uykc!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Uykc!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Uykc!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Uykc!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Uykc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg" width="297" height="386.55" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1718,&quot;width&quot;:1320,&quot;resizeWidth&quot;:297,&quot;bytes&quot;:179278,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/197398299?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Uykc!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Uykc!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Uykc!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Uykc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4fb721e-7506-47da-9392-3ceb558968b7_1320x1718.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3><strong>2. Timeline - Check Whether It&#8217;s On, Then Decide</strong></h3><p>Google&#8217;s documentation now says Timeline is off by default. If you&#8217;ve had a Google account for more than a few years and enabled it at any point, it&#8217;s likely still on. Check rather than assume.</p><p>On both platforms, open the app and tap your profile picture, then go to Your Timeline &gt; the three-dot menu (top right) &gt; Location &amp; privacy settings. From here you can turn it off entirely, or set auto-delete to 3 months if you want to keep the feature.</p><p>You can also manage it at the account level at myaccount.google.com &gt; Data &amp; Privacy &gt; Timeline.</p><p>If you turn it off and want to delete what&#8217;s already stored, the same settings screen has a &#8220;Delete all Timeline data&#8221; option. Do that separately. Turning off the setting doesn&#8217;t delete existing data.</p><div class="image-gallery-embed" data-attrs="{&quot;gallery&quot;:{&quot;images&quot;:[{&quot;type&quot;:&quot;image/jpeg&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/251e2b2c-0fed-4c7c-8ba1-3c0bcf5cc226_1025x1058.jpeg&quot;},{&quot;type&quot;:&quot;image/jpeg&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ba5a252a-456f-45f0-929a-2aee0ef3e161_1320x1664.jpeg&quot;},{&quot;type&quot;:&quot;image/jpeg&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/28c0ea24-14a6-49cb-8a76-1039272b2a66_1320x1795.jpeg&quot;}],&quot;caption&quot;:&quot;&quot;,&quot;alt&quot;:&quot;&quot;,&quot;staticGalleryImage&quot;:{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2b845379-114d-4447-96aa-7242b2e3730e_1456x474.png&quot;}},&quot;isEditorNode&quot;:true}"></div><h3><strong>3. Web &amp; App Activity - the One Most People Miss</strong></h3><p>This is the setting that undermines everything else if you leave it on. When Web &amp; App Activity is enabled, your Maps searches, navigation history, and location context from Maps use get saved to your Google account regardless of your Timeline setting. They&#8217;re independent. Turning off Timeline while leaving Web &amp; App Activity on is like locking your front door and leaving the back open.</p><p>On both platforms, go to myaccount.google.com &gt; Data &amp; Privacy &gt; Web &amp; App Activity. Turn it off, or at minimum set auto-delete to 3 months.</p><p>Google will warn you that some Maps features will be &#8220;less personalized.&#8221; That&#8217;s accurate. It also describes what personalization means in practice, Google using your activity history to inform what it shows you, and by extension, what it shows advertisers about you.</p><div class="image-gallery-embed" data-attrs="{&quot;gallery&quot;:{&quot;images&quot;:[{&quot;type&quot;:&quot;image/jpeg&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c1cb5e73-48dc-42b7-a65a-615cbaca3807_660x510.jpeg&quot;},{&quot;type&quot;:&quot;image/jpeg&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0d19ed5f-be29-4ed2-917f-5ab421faba3c_530x494.jpeg&quot;}],&quot;caption&quot;:&quot;&quot;,&quot;alt&quot;:&quot;&quot;,&quot;staticGalleryImage&quot;:{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3485c516-04d4-4a38-bf4c-a338aa259184_1456x720.png&quot;}},&quot;isEditorNode&quot;:true}"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/google-maps-privacy-settings?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/google-maps-privacy-settings?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h3><strong>4. Maps Search History</strong></h3><p>Separate from Web &amp; App Activity, Maps maintains its own search history log. On both platforms, tap your profile picture, then go to Your data in Maps &gt; Maps search history. You can delete history there and set auto-delete.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!-7QI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!-7QI!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 424w, https://substackcdn.com/image/fetch/$s_!-7QI!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 848w, https://substackcdn.com/image/fetch/$s_!-7QI!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 1272w, https://substackcdn.com/image/fetch/$s_!-7QI!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!-7QI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png" width="556" height="444" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:444,&quot;width&quot;:556,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:86709,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/197398299?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!-7QI!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 424w, https://substackcdn.com/image/fetch/$s_!-7QI!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 848w, https://substackcdn.com/image/fetch/$s_!-7QI!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 1272w, https://substackcdn.com/image/fetch/$s_!-7QI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F41a778f2-b989-4f6f-9b8e-d182e69c1257_556x444.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3><strong>5. Incognito Mode - For Specific Trips</strong></h3><p>Google Maps has an incognito mode that stops search history from saving and pauses Timeline updates while active. It&#8217;s underused.</p><p>On both platforms, tap your profile picture and select &#8220;Turn on Incognito Mode.&#8221;</p><p>Use it for medical appointments, addresses you&#8217;d rather not have in your history, anything you&#8217;d prefer not to see surface later in Google&#8217;s &#8220;places you&#8217;ve visited&#8221; features. Incognito mode doesn&#8217;t stop real-time location sharing if you have that enabled with specific contacts, and it doesn&#8217;t make you invisible to your carrier or network.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rf5K!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rf5K!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 424w, https://substackcdn.com/image/fetch/$s_!rf5K!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 848w, https://substackcdn.com/image/fetch/$s_!rf5K!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!rf5K!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rf5K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg" width="486" height="408.31363636363636" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1109,&quot;width&quot;:1320,&quot;resizeWidth&quot;:486,&quot;bytes&quot;:284358,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/197398299?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!rf5K!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 424w, https://substackcdn.com/image/fetch/$s_!rf5K!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 848w, https://substackcdn.com/image/fetch/$s_!rf5K!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!rf5K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa8c41fef-98a7-4ba6-b026-5c87e7ad7ea1_1320x1109.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3><strong>6. Use Maps Without a Google Account</strong></h3><p>This one doesn&#8217;t get mentioned enough. </p><p>Google Maps works on both iOS and Android without signing in. Navigation, search, and real-time traffic all still function. What you lose is Timeline, saved places, and anything that depends on account history.</p><p>Now Google still collects data from unauthenticated sessions, it just can&#8217;t attach it to your account identity. It gets tied to your device identifier and IP address instead. That&#8217;s a genuine reduction in exposure, but not a complete one.</p><p>If you use Maps occasionally and don&#8217;t rely on saved places or commute features, signing out permanently is the highest-impact change on this list. Everything in steps 1 through 5 is about limiting what Google collects and retains under your identity. Removing the identity from the equation is a different approach entirely.</p><p>To sign out on either platform, tap your profile picture and select &#8220;Sign out.&#8221; Maps will continue working.</p><div class="callout-block" data-callout="true"><p><strong>A Note on Desktop</strong></p><p>Maps on a browser uses your browser&#8217;s location permission rather than app-level controls, and it doesn&#8217;t collect background location data or update your Timeline the way the mobile app does. The settings above are mobile-focused because that&#8217;s where the exposure is.</p></div><h2><strong>The Honest Bottom Line</strong></h2><p>After working through all of this, Google Maps is still Google Maps. </p><p>If you implement the above setting changes, you&#8217;ve reduced the data surface because background collection is off, Timeline isn&#8217;t building a permanent record of your movements, your search history isn&#8217;t feeding the personalization engine. That&#8217;s positive, and it&#8217;s worth doing.</p><p>What you haven&#8217;t done is stopped Google from knowing where you are while you&#8217;re actively navigating. That&#8217;s the core function of the app, and there&#8217;s no privacy setting that separates the navigation from the data collection. They&#8217;re the same operation.</p><p>If that&#8217;s the line you want to be on the right side of, the answer is a different app. For what it&#8217;s worth, Organic Maps has improved significantly and covers most use cases for people who live in major metro areas. OsmAnd is more powerful but has a steeper learning curve.</p><p>Apple Maps is adding ads, so the &#8220;at least it&#8217;s ad-free&#8221; argument is expiring. Apple says the ads will be contextually targeted based on your current search, not your location history, and that your data stays on-device. That&#8217;s a different model from Google&#8217;s if true. But it&#8217;s Apple&#8217;s claim, which will need to be verified</p><p><a href="https://secretsofprivacy.gumroad.com/l/degoogle">The De-Google Your Life guide covers</a> this in full: Maps, Search, Chrome, Android, and the account-level changes that matter most. If you&#8217;re already making settings changes, it&#8217;s the logical next step (FYI, the guide is free for paid annual subscribers).</p><p>How long did all these setting changes take you? If you found something you&#8217;d left on that surprised you, share this with someone who probably has the same settings.</p><p></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><p><em>Looking for help with a privacy issue or privacy concern? Chances are we&#8217;ve covered it already or will soon. Follow us on <a href="https://twitter.com/secretsofprivac">X</a> and <a href="https://www.linkedin.com/company/secrets-of-privacy/">LinkedIn</a> for updates on this topic and other internet privacy related topics.</em></p><div><hr></div><h5><strong>Disclaimer: None of the above is to be deemed legal advice of any kind. These are *opinions* written by a privacy and tech attorney with years of working for, with and against Big Tech and Big Data. And this post is for informational purposes only and is not intended for use in furtherance of any unlawful activity. This post may also contain affiliate links, which means that at no additional cost to you, we earn a commission if you click through and make a purchase.</strong></h5><ul><li><p><strong>Know your doxxing risk.</strong> DoxxScore gives you a personalized exposure assessment and action plan in under 5 minutes. <a href="https://doxxscore.com/">Get Your Risk Score &#8594;</a></p></li><li><p>Check out our new, free <a href="https://tools.secretsofprivacy.com/username-generator">username generator</a> to help you create unique usernames for different accounts. Reusing usernames is convenient, but terrible for your privacy. This tool makes it easy to create unique usernames on the fly.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share Secrets of Privacy&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share Secrets of Privacy</span></a></p></li></ul><p>Helpful Links:</p><ul><li><p><a href="https://osmand.net/">https://osmand.net/</a></p></li><li><p><a href="https://organicmaps.app/">https://organicmaps.app/</a></p></li><li><p><a href="https://maps.here.com/">https://maps.here.com/</a></p></li></ul>]]></content:encoded></item><item><title><![CDATA[The AI That Never Sleeps Is Reading Your Email and Texts]]></title><description><![CDATA[Family AI assistants are selling exhausted parents on 24/7 automation. Here's what "never shuts off" actually means for your data.]]></description><link>https://www.secretsofprivacy.com/p/family-ai-assistant-privacy-risks</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/family-ai-assistant-privacy-risks</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 10 Jun 2026 01:07:56 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/e572f88e-7f6c-4132-bf13-6d8758355b45_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>An X post last week has been viewed 1.9 million times. It opens with this line: </p><blockquote><p>&#8220;AI can now make you a great parent.&#8221;</p></blockquote><p>The product being pitched is Ollie, a family AI assistant (link to the thread is at the end of this post). The thread describes Ollie deploying &#8220;an army of AI agents to scan the chaos, extract what matters and plan your day.&#8221; It reads your email, monitors your WhatsApp, finds unpaid bills while you sleep, and sends you a morning brief at 7am. </p><p>&#8220;Ollie never shuts off,&#8221; the author says. That&#8217;s presented as the product&#8217;s best feature. </p><p>I believe the app is genuinely useful. Parenting coordination is exhausting with all the school emails, the activity group chats, the calendar conflicts, and the missing ingredients you notice at 6pm when about to prepare dinner. </p><p>And I get why 1.9 million people were intrigued by the X thread. But &#8220;never shuts off&#8221; describes something most people have never deliberately agreed to give a third-party company. And the implications are worth understanding before you hand over your inbox.</p><p>Especially because, in one form or another, you may have already handed it over.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>A Different Kind of Access</strong></h2><p>Most apps ask for permission to do one thing. Your weather app wants your location. Your camera app wants your microphone. You grant it, you understand roughly what it gets, and the relationship is bounded.</p><p>Agentic AI tools work differently. They don&#8217;t ask for one thing. They ask for persistent, broad access to read and act across multiple systems at once: </p><ul><li><p>your email</p></li><li><p>your calendar</p></li><li><p>your messages</p></li><li><p>your finances</p></li></ul><p>Then they operate continuously, without your involvement, making decisions about what matters and what to do with it. Unlike current apps that typically touch one data type, agentic AI connects dots across your entire digital life and makes autonomous decisions about how to use that information, often with minimal human oversight.</p><p>That&#8217;s a fundamentally different relationship than anything most people have agreed to before.</p><p>Ollie isn&#8217;t alone in this category. Skylight, a physical touchscreen calendar sitting in over a million family kitchens, aggregates your Google Calendar, iCal, Microsoft account, school apps, and sports scheduling apps into a single always-on display. The newer model uses AI to parse photos of paper flyers from your kids&#8217; backpacks and automatically adds events to your calendar.</p><p>The device never goes dark and the sync never stops. Your family&#8217;s full schedule, routines, locations, and recurring appointments live in cloud infrastructure you probably haven&#8217;t thought about since setup.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/family-ai-assistant-privacy-risks?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/family-ai-assistant-privacy-risks?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><p>And then there&#8217;s Gmail. Google has been scanning your email for years to power its &#8220;smart features,&#8221; and in late 2024 expanded that access to Gemini AI across Gmail, Calendar, Drive, and Meet. Users were automatically opted in. Turning it off is possible, but Google buried the setting in two separate places and bundled it with features like spell-check so that opting out is genuinely annoying. (opt out instructions are further down below).</p><div class="pullquote"><p>When security researchers at Malwarebytes tried to document exactly what was truly happening inside Gmail, even they misread Google&#8217;s settings UI initially. As one analysis put it: if privacy experts can&#8217;t parse the settings, normal users have no chance.</p></div><p>If you&#8217;ve been following the privacy conversation around AI wearables, you&#8217;re already familiar with a related version of this problem. <span class="mention-wrap" data-attrs="{&quot;name&quot;:&quot;Tate Jarrow&quot;,&quot;id&quot;:126129569,&quot;type&quot;:&quot;user&quot;,&quot;url&quot;:null,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/637c8b96-5dcc-42f8-8862-a340a37c3e45_1413x1413.png&quot;,&quot;uuid&quot;:&quot;4f5562d3-2621-4ff0-9170-2b9520d9382e&quot;}" data-component-name="MentionToDOM"></span> at Online Safety Substack wrote last week about Amazon&#8217;s acquisition of Bee, a wearable that records conversations all day and uploads transcripts to the cloud. His point: </p><blockquote><p>the real risk isn&#8217;t to the person wearing it, who consented. It&#8217;s to everyone around them who didn&#8217;t. </p></blockquote><p>Family AI tools work on similar logic, just applied to your household. The data flowing through Ollie isn&#8217;t only yours. It includes your partner, your kids, your nanny, and your family&#8217;s schedule as a whole.</p><p>These tools are part of a growing category that markets itself as the &#8220;family OS.&#8221; The convenience is legit. The privacy tradeoffs are of course more complicated than the compelling pitch suggests.</p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;600bc2a9-a9c4-4065-8071-52aa4259e21b&quot;,&quot;caption&quot;:&quot;In a recent X/Twitter thread, Georgetown Law Professor Kevin Bankston shared a concerning experience with Google's new AI tool, Gemini. The incident was shocking to even long-time Google critics like us, but did lead to a necessary discussion about privacy, data security, and transparency issues with Big Tech AI tools.&quot;,&quot;cta&quot;:null,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;How Google's Gemini AI Accessed Private Tax Data&quot;,&quot;publishedBylines&quot;:[],&quot;post_date&quot;:&quot;2024-07-19T01:16:56.964Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/57c62264-f4ab-4662-9cce-012dbb1733ef_420x320.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/how-googles-gemini-ai-accessed-private-tax-data&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:146677115,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:3,&quot;comment_count&quot;:0,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><h2><strong>The Attack Vector Built into the Design</strong></h2><p>There's one risk with these tools that most people are overlooking: </p><blockquote><p>When you give an AI agent access to your email, every email you receive becomes a potential instruction to that agent. Not from you. From whoever sent it.</p></blockquote><p>Security researchers have documented a class of attack called <strong>prompt injection</strong>, where malicious content hidden inside an email tricks an AI agent monitoring your inbox into taking actions you never authorized. Unlike phishing attacks that require a human to click something, a successful prompt injection against an agent requires no human error at all. The email arrives, the agent reads it, the hidden instruction executes.</p><p>This is already happening in real deployments. Security teams are detecting prompt injection payloads arriving through email, with instructions hidden in white text on a white background, invisible to human readers, designed specifically to manipulate AI agents monitoring inboxes. The agent does exactly what it&#8217;s told.</p><p>This isn&#8217;t a flaw in Ollie specifically. It&#8217;s a structural property of any system that gives an AI persistent access to read and act on your communications. Meredith Whittaker, the president of Signal, made this point publicly at SXSW last year (link to video at the end): </p><blockquote><p>agentic AI poses serious security risks precisely because completing tasks for users requires giving the agent access to reams of data, and that access doesn&#8217;t just serve you. It creates a target.</p></blockquote><p>The more access an agent has, and the more autonomously it acts, the larger the surface area for this kind of attack. An agent that reads your email to surface a school reminder and an agent that reads your email to exfiltrate your financial details have exactly the same level of access. The difference is who&#8217;s giving it instructions.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>What the Data Actually Includes</strong></h2><p>Ollie&#8217;s privacy policy says message content &#8220;may be reviewed or used in aggregate to improve Ollie&#8217;s systems.&#8221; That&#8217;s easy to skim past, and I&#8217;ve written before about why privacy policies generally aren&#8217;t worth reading as a primary strategy because they&#8217;re written to protect the company, not you (and they&#8217;re intentionally broad enough to permit almost anything). But even setting aside what the policy permits, the practical implications of opting into those are worth understanding.</p><p>Your family&#8217;s communications aren&#8217;t abstract data. They include medical appointments, financial stress, the dietary restriction your kid was just diagnosed with, the pickup logistics when schedules don&#8217;t align, the nanny you just hired. &#8220;Used in aggregate to improve our systems&#8221; is where all of that goes.</p><p>Ollie&#8217;s infrastructure runs on third-party services including OpenAI&#8217;s API. Ollie&#8217;s own FAQ cites OpenAI&#8217;s commercial API terms as the basis for its claim that your data isn&#8217;t used for model training. That&#8217;s a claim about OpenAI&#8217;s behavior, not a contractual guarantee Ollie itself is making to you. If that relationship changes, you have no direct recourse. </p><p>Early agentic AI deployments have already produced security incidents where researchers found thousands of exposed instances leaking API keys, chat histories, and account credentials. In some cases, the failures originated not at the consumer-facing product but in the infrastructure beneath it.</p><p>Ollie is also currently free, with a stated goal that future features will support the business. The data is being collected now, before the monetization model is finalized. Whatever Confabulation Corporation eventually decides to do with this product, they will have a detailed behavioral dataset of family households already built. Privacy policies can be updated. Data that exists at the time of a policy change doesn&#8217;t disappear.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!qoK3!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!qoK3!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!qoK3!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!qoK3!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!qoK3!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!qoK3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png" width="601" height="601" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1080,&quot;width&quot;:1080,&quot;resizeWidth&quot;:601,&quot;bytes&quot;:150280,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/201078854?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!qoK3!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!qoK3!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!qoK3!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!qoK3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20dc6f04-9941-446b-8cf6-44f7bafa569e_1080x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2><strong>How to Evaluate Any Agentic Tool Before You Grant Access</strong></h2><p>Since privacy policies are generally written to protect companies rather than users, I don&#8217;t rely on them as a reliable guide to actual behavior. But four practical questions help you size up your real exposure before you hand a tool access to your household. They don&#8217;t require reading anything legal.</p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/family-ai-assistant-privacy-risks">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Your Apps Are Building a Legal Case Against You]]></title><description><![CDATA[Your fitness tracker, therapy app, and period tracker data can all be subpoenaed. Here's what survives a legal request and what doesn't.]]></description><link>https://www.secretsofprivacy.com/p/health-app-data-subpoena-legal-risk</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/health-app-data-subpoena-legal-risk</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 03 Jun 2026 01:11:55 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/9bbd7186-edf9-4277-a1b3-5710e41fae4b_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>A woman spent months opening up to her therapist through a telehealth app, processing a job loss, money worries, and the stress of being nine months pregnant. Two years later, her former employer&#8217;s lawyers subpoenaed a full transcript of those conversations and used them in a civil lawsuit against her.</p><p>That case involved Talkspace, an online and mobile therapy services app. But the underlying problem is far bigger than one platform. </p><p>Millions of Americans are generating detailed records of their mental and physical health every day through apps that most people have never thought could be used against them legally.</p><p>Your sleep logs, your step counts, your mood tracking, and your calorie intake data are all stored on someone else&#8217;s servers. And when a lawsuit happens, the owner of those servers get a letter demanding the information.</p><p>This has already happened to people in divorce cases, custody disputes, employment lawsuits, and personal injury claims. The incriminating data existed and the other side&#8217;s lawyer found it. But by then it was too late to do anything about it.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>What &#8220;Subpoena&#8221; Actually Means Here</strong></h2><p>Most people think of subpoenas in the context of criminal investigations, like cops at the door. Scenes you would see in a Law &amp; Order episode. </p><p>Civil litigation is quieter and far more common. Divorce proceedings, child custody disputes, personal injury claims, and employment lawsuits are scenarios where where health app data is increasingly being pulled into court. Those scenarios are also where you are far less likely to have thought about the long term implications of the data in advance.</p><p>In divorce proceedings, sleep patterns, stress levels, and activity data from health apps have been used to argue about a spouse&#8217;s mental state or ability to care for children. In personal injury cases, defense lawyers can use fitness tracker data to argue that a plaintiff is more active than their claimed injuries would suggest.</p><p>In one California case, a victim&#8217;s Fitbit showed a spike in heart rate followed by a rapid slowdown at the exact time a suspect claimed he was only there briefly to drop off food. In Connecticut, a man was charged with murdering his wife after data from her Fitbit showed she was moving around an hour after he claimed an intruder had killed her, and that she had covered far more distance than his account described.</p><p>These are criminal examples, but they illustrate the basic mechanics at play:</p><blockquote><p>apps that record time-stamped physiological data create a parallel account of events.</p></blockquote><p>In civil litigation, that parallel account is available to any attorney who files the right paperwork.</p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;8c2218d7-452f-41c3-ba7f-fbf472fb096e&quot;,&quot;caption&quot;:&quot;Ten mental health apps.&quot;,&quot;cta&quot;:null,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;14.7 Million People Trust These Health Apps. They Shouldn't.&quot;,&quot;publishedBylines&quot;:[{&quot;id&quot;:169760400,&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;bio&quot;:&quot;Practical privacy for busy people. Cut your digital exposure, avoid common threats, and stack simple privacy wins.&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/53778fb9-dd8e-4594-82d5-b49708bb0864_3214x2880.png&quot;,&quot;is_guest&quot;:false,&quot;bestseller_tier&quot;:null}],&quot;post_date&quot;:&quot;2026-03-02T02:19:12.106Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a709bea9-2e63-4b51-8948-c31092d49e0b_1200x630.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/mental-health-apps-privacy-security-risk&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:189187957,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:12,&quot;comment_count&quot;:1,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><h2><strong>Your Health Apps Are Not Protected by HIPAA</strong></h2><p>Most people assume health data is private because there are laws about health data being private. There are, but those laws don&#8217;t apply to most of the apps on your phone.</p><p>The information stored in health apps isn&#8217;t covered by HIPAA, so companies can legally share the data. HIPAA applies to healthcare providers, insurers, and their direct business partners. The most common examples are your doctor&#8217;s office, your hospital, and your insurance company. </p><p>A consumer wellness app you downloaded from the App Store is a technology company. It sits entirely outside that regulatory framework.</p><p>This means Calm, Headspace, MyFitnessPal, most period trackers, most fitness apps, and most mood-logging tools have no federal obligation to treat your data as medical information. They have privacy notices, but privacy notices are not laws. If you read the fine print, you&#8217;ll find that these companies are required to disclose information to law enforcement officials with a subpoena or search warrant, or to other parties if a court so orders.</p><p>The one partial exception in the consumer app world is therapy platforms explicitly contracted with licensed providers and billed through insurance. Those may carry HIPAA obligations depending on how they&#8217;re structured. But even HIPAA isn&#8217;t the full shield people assume it is. </p><p>The protected status of &#8220;psychotherapy notes&#8221; under HIPAA does not generally extend to civil litigation brought by the patient where health records may contain relevant evidence and where the privilege has been waived. A typical example is when someone sues for emotional distress. By doing that, they&#8217;ve then made all records about their mental state fair game.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!I-l1!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!I-l1!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 424w, https://substackcdn.com/image/fetch/$s_!I-l1!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 848w, https://substackcdn.com/image/fetch/$s_!I-l1!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 1272w, https://substackcdn.com/image/fetch/$s_!I-l1!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!I-l1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png" width="1080" height="750" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:750,&quot;width&quot;:1080,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:127365,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/200308013?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!I-l1!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 424w, https://substackcdn.com/image/fetch/$s_!I-l1!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 848w, https://substackcdn.com/image/fetch/$s_!I-l1!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 1272w, https://substackcdn.com/image/fetch/$s_!I-l1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F34e511e4-6d2f-4940-925e-133dd0f70cb1_1080x750.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/health-app-data-subpoena-legal-risk?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/health-app-data-subpoena-legal-risk?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><strong>What&#8217;s Actually Being Retained</strong></h2><p>Deleting an app doesn&#8217;t delete the data of course. The data lives on the company&#8217;s servers, often indefinitely.</p><p>Calm&#8217;s data retention policies do not define a clear length of time after which data or cookies are deleted. Headspace says it will keep personal information for as long as needed to perform its obligations, or for as long as legally permitted, and explicitly lists responding to subpoenas and court orders as a stated use of that data. MyFitnessPal retains personal information for as long as you maintain an account or as needed to provide services, and as necessary to comply with legal obligations, resolve disputes, and enforce agreements.</p><p>In plain terms: </p><blockquote><p>years of data, sitting on servers, is available to any attorney who wants it badly enough and has a plausible legal argument for relevance.</p></blockquote><p>The Talkspace situation illustrates this most clearly. The platform has, by its CEO&#8217;s own account to investors, amassed 140 million message exchanges. That database exists because the company records and stores conversations. The individual user never sees that infrastructure. They just see a chat window that feels private.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>My Take</strong></h2><p>What&#8217;s making health data more of a personal legal risk isn&#8217;t really the law. Subpoenas have always allowed adverse parties in litigation to get at your data. What&#8217;s changing is the richness of the data being generated and how long it persists. </p><p>Someone going through a divorce ten years ago had a phone and maybe some emails. Someone going through a divorce today potentially has years of detailed sleep data, mood logs, location history, calorie records, menstrual cycle data, and therapy transcripts, all of it stored in cloud accounts they stopped thinking about.</p><p>The risk isn&#8217;t hypothetical future legislation either. The risk is that the data you generated last year, when nothing was wrong, gets subpoenaed in a proceeding you haven&#8217;t imagined yet.</p><div class="pullquote"><p>Most people worry about hackers stealing their health data. The more immediate threat, statistically, is a lawyer subpoenaing it.</p></div><h2><strong>Auditing Your Exposure: a Threat-Model Approach</strong></h2><p>The right way to think about this isn&#8217;t &#8220;which apps are safe&#8221;. That&#8217;s too vague. </p><p>Instead, think about &#8220;<em><strong>which apps create risk in the specific scenarios most likely to affect me.</strong></em>&#8221; The three scenarios that drive the vast majority of civil health-data subpoenas are:</p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/health-app-data-subpoena-legal-risk">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[What Can You Do If Your Fingerprints Are Stolen? ]]></title><description><![CDATA[The NYCHHC breach is the clearest example yet of a problem that's going to keep happening.]]></description><link>https://www.secretsofprivacy.com/p/biometric-breach-framework</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/biometric-breach-framework</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Thu, 28 May 2026 16:04:53 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/3154f300-6bb5-4b62-86b4-2cb5e40d07df_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>If you read <a href="https://www.secretsofprivacy.com/p/nyc-health-hospitals-fingerprint-breach">my piece earlier in the week on the NYC Health + Hospitals breach</a>, you know what makes this breach different and harder to fix. </p><p>Hackers spent nearly ten weeks inside the network of the largest public health system in the United States, took the fingerprints of at least 1.8 million people, and the response was 24 months of credit monitoring.</p><p>Now the monitoring isn&#8217;t worthless. It covers real financial fraud risk. But it&#8217;s aimed at the wrong threat for the wrong timeframe. And NYCHHC isn&#8217;t a one-off. It&#8217;s the most visible example so far of something that&#8217;s going to keep happening. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p>Biometric data collection has expanded rapidly across healthcare, government, workplaces, and financial services over the past decade. Each new collection point is another institution whose vendor could be compromised, and another population of people who had no meaningful say in the collection and will have no real remedy after the exposure.</p><p>The advice below is written for anyone in the NYCHHC dataset. But it applies equally to anyone whose fingerprints have ever been collected by an employer, a hospital, a government agency, or a background check vendor. That population is much larger than 1.8 million people, and it&#8217;s growing. Odds are you fall in that bucket. </p><p>Before getting into what to do, there are two risk timelines worth understanding, because they require different responses and almost no breach coverage distinguishes between them.</p><p>The first is immediate and concrete. The second is slower and speculative in the short term, but increasingly probable as tools get cheaper and the data ages. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/biometric-breach-framework?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/biometric-breach-framework?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2>The Near-Term Threat Isn&#8217;t the Fingerprints</h2><p>First things first. The near-term risk in this breach isn&#8217;t the biometric data. It&#8217;s what the biometric data comes packaged with because this breach didn&#8217;t take fingerprints alone. It took: </p><blockquote><p>medical records, health insurance details, specific diagnoses and medications, Social Security numbers, passports, driver&#8217;s licenses, geolocation data, and financial account information. </p></blockquote><p>That combination is the raw material for medical identity fraud, a specific and growing crime where someone uses your insurance to obtain prescriptions, medical equipment, or procedures in your name. You often don&#8217;t find out until a debt collector calls about a bill for a procedure you never received, or you go to use your benefits and find they&#8217;re exhausted.</p><p>While the theft of fingerprints are what gets the most attention, they aren&#8217;t the primary weapon by scammers in this scenario. What they do is make impersonation more convincing. An attacker who can call your insurer knowing your diagnosis, your medications, your policy number, and your SSN is already dangerous. Having the biometric data on hand is just one more piece to support the scam.</p><h2>The Long-Term Threat Is Real, Just Slower</h2><p>Stolen fingerprint templates can be used to reconstruct fingerprint images. With accessible equipment, including 3D printers and materials like silicone or gelatin, researchers have demonstrated the ability to create physical spoofs capable of fooling most consumer fingerprint sensors, including the ones used for mobile banking. This has been shown in controlled research and in real-world demonstrations. </p><p>The barrier today is effort because it takes more work than cracking a stolen password. But biometric data has an indefinite shelf life, and the tools to exploit it are getting cheaper every year. The people in this dataset will still be in it when the economics become more feasible.</p><p>The OPM case is the clearest precedent. When the Office of Personnel Management disclosed in 2015 that 5.6 million fingerprint records had been stolen, the agency acknowledged that:</p><blockquote><p>&#8220;the ability to misuse fingerprint data is limited -- however, this probability could change over time as technology evolves.&#8221; </p></blockquote><p>That was eleven years ago. The technology has evolved. The people whose fingerprints were taken have no more options now than they did then. The people in the NYCHHC dataset will still be in it when the economics shift. So will anyone else whose fingerprints are sitting in an institutional database somewhere.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/biometric-breach-framework?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/biometric-breach-framework?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2>What the Credit Monitoring Is Actually For</h2><p>The monitoring NYCHHC is offering is oriented toward financial fraud such as new credit accounts opened in your name, hard inquiries, score changes, etc. That&#8217;s the risk model that all breach responses are built for, because it&#8217;s the one with established, clear remedies. Biometric exposure doesn&#8217;t fit into it, and medical identity fraud fits into it imperfectly at best. Neither is the core use case the monitoring was designed for.</p><p>Part of why the remediation is so narrow is that there&#8217;s no legal framework requiring anything broader. There&#8217;s no federal biometric privacy law. HIPAA governs how healthcare institutions must secure data, not whether they should be collecting certain kinds of data in the first place. </p><p>Illinois&#8217; Biometric Information Privacy Act is the closest thing to a meaningful framework in the country, and it only applies in one state. NYCHHC collected millions of fingerprints under a legal framework designed for an earlier era, and the remediation framework that kicked in when it was breached was designed for a different kind of data entirely.</p><p>The steps below address the actual threat. Some are specific to people in the NYCHHC dataset. Most apply to anyone whose biometric data has ever been held by an institution, which, if you&#8217;ve been employed, treated at a major healthcare system, or processed through a government agency in the last decade, is probably you.</p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/biometric-breach-framework">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[They Stole Your Fingerprints and You Can't Get New Ones]]></title><description><![CDATA[The NYC Health + Hospitals breach is different from every data breach story you've read]]></description><link>https://www.secretsofprivacy.com/p/nyc-health-hospitals-fingerprint-breach</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/nyc-health-hospitals-fingerprint-breach</guid><pubDate>Wed, 27 May 2026 01:12:55 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/a5b648d1-f834-41ad-8816-be8ec809bb79_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Every data breach breach story provides some variation of the following advice for victims:</p><blockquote><p>Change your password, keep an eye on your credit report, and you&#8217;ll probably be okay.</p></blockquote><p>The NYC Health + Hospitals breach doesn&#8217;t have that. There is no version of &#8220;okay&#8221; available for the 1.8 million people whose data was taken, because among the things hackers walked out with were fingerprints and palm prints.</p><p>Those cannot be changed. They cannot be cancelled and reissued. The people in this database are more exposed today than they were in January, and that will still be true 15 years from now.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!3HIu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!3HIu!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 424w, https://substackcdn.com/image/fetch/$s_!3HIu!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 848w, https://substackcdn.com/image/fetch/$s_!3HIu!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 1272w, https://substackcdn.com/image/fetch/$s_!3HIu!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!3HIu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png" width="639" height="355" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:355,&quot;width&quot;:639,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:34966,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/199248867?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!3HIu!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 424w, https://substackcdn.com/image/fetch/$s_!3HIu!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 848w, https://substackcdn.com/image/fetch/$s_!3HIu!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 1272w, https://substackcdn.com/image/fetch/$s_!3HIu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd9fd5179-fac2-4529-bd4d-e629969507ef_639x355.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p>NYC Health + Hospitals, the largest public health system in the United States, disclosed the breach on May 18. Hackers were inside its network from late November 2025 through early February 2026, nearly ten weeks, entering through a compromised third-party vendor. </p><p>What was taken varies by individual but covers a lot of ground: </p><ul><li><p>medical records</p></li><li><p>Social Security numbers</p></li><li><p>passports</p></li><li><p>driver&#8217;s licenses</p></li><li><p>health insurance details</p></li><li><p>billing and financial data</p></li><li><p>geolocation data</p></li><li><p>biometric data including fingerprints and palm prints. </p></li></ul><p>NYCHHC is offering 24 months of credit monitoring to those affected. The fingerprints were almost certainly collected during employee onboarding, as prospective staff are generally required to enroll their fingerprints for criminal background checks. Whether patients&#8217; biometrics were also compromised has not been confirmed.</p><p>The standard breach response assumes compromised data can be fixed in some form: </p><ul><li><p>Passwords reset.</p></li><li><p>Credit cards get cancelled.</p></li><li><p>Even a Social Security number can be changed (even if not easily)</p></li><li><p>You can freeze your credit, set up an IRS identity protection PIN, and file fraud alerts.</p></li></ul><p>The entire response to a data breach is built on that assumption.</p><p>Biometric data doesn&#8217;t fit into that arrangement though. A stolen fingerprint template is useful to a criminal today, in five years, and in twenty. It has no expiration date.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/nyc-health-hospitals-fingerprint-breach?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/nyc-health-hospitals-fingerprint-breach?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><p>This isn&#8217;t the first time this has happened. In 2015, hackers breached the US Office of Personnel Management and took 5.6 million fingerprint records from federal employees and contractors. Those people were offered credit monitoring. More than a decade later, no additional remedy was ever provided. The NYCHHC breach just added 1.8 million more people to that list.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!JlXh!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!JlXh!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 424w, https://substackcdn.com/image/fetch/$s_!JlXh!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 848w, https://substackcdn.com/image/fetch/$s_!JlXh!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 1272w, https://substackcdn.com/image/fetch/$s_!JlXh!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!JlXh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png" width="649" height="329" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:329,&quot;width&quot;:649,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:34727,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/199248867?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!JlXh!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 424w, https://substackcdn.com/image/fetch/$s_!JlXh!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 848w, https://substackcdn.com/image/fetch/$s_!JlXh!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 1272w, https://substackcdn.com/image/fetch/$s_!JlXh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb1c5d09e-f8bd-4845-a9f1-250258e34059_649x329.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>For the most part, this story is being treated as a healthcare cybersecurity story. Just another hospital breach that is unfortunate but familiar.</p><p>That&#8217;s not entirely wrong, but it misses something. </p><blockquote><p>When an institution collects your fingerprints, it permanently takes on a liability that it can eventually shed but that you never can. NYCHHC can get breached, patch its systems, update its vendor contracts, issue its press release, and move on. The people in its database carry the exposure for the rest of their lives. The 24 months of credit monitoring is the institution&#8217;s closure. For the individual, there&#8217;s nothing similar because the exposure of biometric data never ends. </p></blockquote><div class="pullquote"><p>A 2024 survey by GetApp found that only 5% of consumers highly trusted technology companies to secure their biometric data, down from 28% in 2022.</p></div><p>If there&#8217;s one practical thing worth doing today, regardless of whether you&#8217;re directly affected by this breach, it&#8217;s reconsidering your use of biometric data.</p><p>Regular readers know we&#8217;re not a fan of the technology and have advised against it for some time. For your most sensitive accounts, including your personal devices, a strong PIN or passphrase has distinct advantages, including:</p><ul><li><p>it lives only in your head and can be changed if something goes wrong.</p></li><li><p>Law enforcement (at least in the US) can&#8217;t compel you to provide a password to unlock your devices, but in some jurisdictions, they can compel you to use your biometrics</p></li></ul><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;e3ed44f0-c31f-41e1-9bf9-a137d54e8936&quot;,&quot;caption&quot;:&quot;Biometric authentication has for years been the gold standard for securing personal devices and even key online accounts, particularly in the financial sector. Using fingerprints and facial ID to access devices and accounts also solved a common problem with security &#8211; convenience. This arrangement has worked well for many years.&quot;,&quot;cta&quot;:null,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;Face ID Fail: Biometric Authentication Isn't as Secure as You Think&quot;,&quot;publishedBylines&quot;:[],&quot;post_date&quot;:&quot;2024-09-06T01:20:01.295Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/305cf354-2b90-4158-b85d-a6dc944c1d1f_420x320.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/face-id-fail-biometric-authentication&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:148454932,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:5,&quot;comment_count&quot;:0,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><p>The harder question is what people are what to do about compulsory biometric use like at work or for some government service. And what are people owed when the government or an employer takes their biometrics then is compromised? </p><p>In most cases, it&#8217;s not an option to decline or opt out of providing your biometric data to an employer or the government. But two years of credit monitoring isn&#8217;t a true remedy. It&#8217;s laughably insufficient and disproportionate to the harm. </p><p>The fingerprints stolen from OPM in 2015 are still stolen, still potentially useful, and the people who lost them still have no meaningful remedy. Modern society has built an entire infrastructure for collecting biometric data without building any corresponding accountability for when it&#8217;s lost. </p><p>That needs to change.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><p><em>Looking for help with a privacy issue or privacy concern? Chances are we&#8217;ve covered it already or will soon. Follow us on <a href="https://twitter.com/secretsofprivac">X</a> and <a href="https://www.linkedin.com/company/secrets-of-privacy/">LinkedIn</a> for updates on this topic and other internet privacy related topics.</em></p><div><hr></div><h5><strong>Disclaimer: None of the above is to be deemed legal advice of any kind. These are *opinions* written by a privacy and tech attorney with years of working for, with and against Big Tech and Big Data. And this post is for informational purposes only and is not intended for use in furtherance of any unlawful activity. This post may also contain affiliate links, which means that at no additional cost to you, we earn a commission if you click through and make a purchase.</strong></h5><ul><li><p><strong>Know your doxxing risk.</strong> DoxxScore gives you a personalized exposure assessment and action plan in under 5 minutes. <a href="https://doxxscore.com/">Get Your Risk Score &#8594;</a></p></li><li><p>Check out our new, free <a href="https://tools.secretsofprivacy.com/username-generator">username generator</a> to help you create unique usernames for different accounts. Reusing usernames is convenient, but terrible for your privacy. This tool makes it easy to create unique usernames on the fly.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share Secrets of Privacy&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share Secrets of Privacy</span></a></p></li></ul><p>Article sources:</p><p>Sources:</p><ul><li><p><a href="https://www.securitymagazine.com/articles/100424-trust-in-biometric-data-is-declining-among-consumers">https://www.securitymagazine.com/articles/100424-trust-in-biometric-data-is-declining-among-consumers</a></p></li><li><p><a href="https://www.nextgov.com/cybersecurity/2015/09/opm-says-more-fingerprint-data-was-stolen-opm-hack-first-believed/121781/">https://www.nextgov.com/cybersecurity/2015/09/opm-says-more-fingerprint-data-was-stolen-opm-hack-first-believed/121781/</a></p></li><li><p><a href="https://thenextweb.com/news/nyc-health-hospitals-data-breach-biometrics-fingerprints">https://thenextweb.com/news/nyc-health-hospitals-data-breach-biometrics-fingerprints</a></p></li></ul>]]></content:encoded></item><item><title><![CDATA[Before You Hit Confirm]]></title><description><![CDATA[AI travel scams are targeted, not random. Here's the pre-booking privacy protocol that actually protects you before something goes wrong.]]></description><link>https://www.secretsofprivacy.com/p/before-you-hit-confirm-travel-scam-privacy</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/before-you-hit-confirm-travel-scam-privacy</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 20 May 2026 01:12:51 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/12f1cdc5-26ef-4d51-96b6-09c600924b94_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>A few weeks ago <a href="https://www.secretsofprivacy.com/p/booking-com-breach-warning-email-scam">I wrote about the Booking.com breach</a> and the part the official notification didn&#8217;t explain: </p><blockquote><p>when a breach includes booking details specifically, the follow-on scam isn&#8217;t generic phishing. It&#8217;s targeted. </p></blockquote><p>A scammer with your name, your hotel, and your travel dates can reach out in a way that feels completely legitimate, because the details are real.</p><p>Since then I&#8217;ve had people ask some version of the same question. </p><blockquote><p>How do I know if a message from my hotel is real? How do I verify without getting it wrong?</p></blockquote><p>That&#8217;s the right question. Unfortunately it&#8217;s also the wrong moment to be asking it.</p><p>In this post I'm going to walk through a pre-booking privacy protocol that actually reduces your exposure before anything goes wrong. Most of it is straightforward. One tip comes from a travel insider friend that turns out to have a privacy benefit nobody talks about. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2>By the Time You Get the Message, It&#8217;s Too Late</h2><p>By the time someone sends you a message referencing your reservation at your hotel, the hard part of the scam is already done. The attacker has what they need. Your vigilance at the point of contact still matters, such as catching the payment method requests, the urgency pressure, the slightly-off domain name. But it&#8217;s a last line of defense operating after the window for real prevention has closed.</p><p>Researchers at Sekoia documented a campaign in 2025 in which attackers compromised hotel staff credentials and used that access to contact guests directly over WhatsApp and email, with accurate reservation details in hand. The cover story was a routine verification procedure. </p><p>It was convincing because the details were real. That campaign predates the Booking.com breach, which means the data exposure problem isn&#8217;t specific to one platform or one incident.</p><h2>The Scale of the Problem is Noteworthy.</h2><p>According to the FTC, there were more than 58,000 reports of travel, vacation, and timeshare fraud in 2024 totaling $274 million in losses. That almost certainly undercounts the actual number, since most fraud goes unreported.</p><p>AI has made the identification problem meaningfully worse. The old tells like awkward phrasing, generic salutations, obvious typosquatting have been largely neutralized. What researchers from iSeatz and Carnegie Mellon have both flagged is that urgency remains one of the more reliable signals, but it&#8217;s a thin thread to hang your security on when everything else about the message looks right.</p><p>Voice cloning technology now allows attackers to impersonate airline representatives using voice samples pulled from publicly available customer service recordings. Click-to-call ads on mobile search results can route you directly to a scammer posing as your airline without any visible indication something is wrong. The technical sophistication of these attacks is increasing faster than most people&#8217;s awareness of them.</p><h2><strong>The Window Most People Don&#8217;t Use</strong></h2><p>Here&#8217;s what I think gets missed in most coverage of this topic. Every article I&#8217;ve read (and I&#8217;ve read a lot of them recently) focuses on how to recognize a scam when it arrives. </p><ul><li><p>Check the domain. </p></li><li><p>Look for urgency. </p></li><li><p>Call the hotel back using a number from the official site. </p></li></ul><p>All of that is correct. But it treats the moment of contact as the starting point. </p><p>It isn&#8217;t.</p><p>There&#8217;s a window between when you decide to travel and when you finalize your reservation, and the decisions you make in that window determine how much information is circulating about you when something eventually goes wrong. Travel platforms know a surprising amount: </p><blockquote><p>your name, email, phone number, travel dates, specific property, number of guests, special requests, payment method, and in many cases device and IP data.</p></blockquote><p>That information sits in their systems long after your trip ends, feeding loyalty programs and in some cases data-sharing arrangements you didn&#8217;t explicitly agree to.</p><p>What you hand over, and to how many different systems, is something you can actually influence, but only before you confirm.</p><p>Most people never think about it until a suspicious message lands.</p><h2><strong>The Pre-Booking Protocol</strong></h2><p>None of this requires technical expertise. It&#8217;s a set of small decisions made earlier in the process than most people consider. Including this first tip from a long time friend in the hospitality industry. </p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/before-you-hit-confirm-travel-scam-privacy">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Your Internet Provider Is Building an Ad Profile on You, and Your Device Settings Can't Stop It ]]></title><description><![CDATA[What ISPs can legally do with your data, which ones are doing it, and the settings that actually matter]]></description><link>https://www.secretsofprivacy.com/p/isp-data-tracking-opt-out</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/isp-data-tracking-opt-out</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 13 May 2026 01:12:22 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/1f0e0296-946e-496a-ad81-e6012ec5eb7e_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Your mobile carrier knows which websites you visited this morning. </p><p>Not in some vague, aggregated sense. They have a record of the domains your phone connected to, the apps that sent requests, and depending on which programs you haven&#8217;t opted out of, your physical location derived from cell towers rather than your GPS. Turning off location on your phone doesn&#8217;t touch that.</p><p>The good news is you can do something about it. The bad news is that most of the settings you&#8217;d instinctively reach for don&#8217;t address the problem. I&#8217;ll show you below what settings you need to tweak and the one tool that ISPs wish you wouldn&#8217;t use. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>Why Carrier Tracking Is Different</strong></h2><p>When you use incognito mode or clear your cookies, you&#8217;re affecting what gets stored on your device and limiting some cookie-based tracking. Your ISP operates independently of all of that. </p><p>AT&amp;T, for example, states in its privacy notice that when it collects web browsing information as an internet service provider, it &#8220;works independently of your web browser&#8217;s cookie and private browsing settings.&#8221; What your browser knows and what your carrier knows are separate data streams.</p><p>The same applies to device location settings.</p><p>Your phone&#8217;s location toggle controls what apps can access. Your carrier can collect location data from the network itself, derived from which cell towers your phone is connecting to, without involving your device&#8217;s GPS at all.</p><p>This isn&#8217;t a loophole or a gray area. It&#8217;s how these programs are designed to work. And it&#8217;s all legal.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/isp-data-tracking-opt-out?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/isp-data-tracking-opt-out?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><strong>How We Got Here</strong></h2><p>In 2016, the FCC passed broadband privacy rules that would have required ISPs to get affirmative opt-in consent before using or sharing your browsing history and other sensitive data. Congress repealed those rules in 2017, largely along party lines, and President Trump signed the repeal into law. Because the repeal used the Congressional Review Act, the FCC is also blocked from issuing any substantially similar rule without future legislation specifically authorizing it.</p><p>That leaves a genuine regulatory gap. The FTC nominally handles privacy for most industries, but its jurisdiction over ISPs, which are classified as common carriers, is legally complicated. The practical result is that the major mobile carriers operate opt-out advertising programs, and customers are enrolled by default.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!beot!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!beot!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!beot!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!beot!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!beot!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!beot!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png" width="506" height="506" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1080,&quot;width&quot;:1080,&quot;resizeWidth&quot;:506,&quot;bytes&quot;:886910,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/196946869?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!beot!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!beot!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!beot!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!beot!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0c5e6ce8-9345-4967-9046-d54945e6780a_1080x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2><strong>What Each Carrier Actually Does</strong></h2><p><strong>Verizon </strong>runs two tiers. The Custom Experience program, which all consumer smartphone customers are enrolled in by default, uses information about websites you visit and apps you use to build interest profiles. Custom Experience Plus, which requires an opt-in, adds device location obtained from the Verizon network and Customer Proprietary Network Information, including call details. Your device location settings have no effect on it. The carrier doesn&#8217;t need your GPS because it uses the towers your phone is already connecting to.</p><p><strong>AT&amp;T</strong> runs a similar structure. The base &#8220;Personalized&#8221; program is on by default and uses demographic data, general location, and account usage to tailor ads. &#8220;Personalized Plus&#8221; requires an opt-in and is where AT&amp;T collects web browsing data as your ISP, adds precise location, and shares it with third parties. Per AT&amp;T&#8217;s own policy, both programs operate independently of your browser&#8217;s private mode and cookie settings.</p><p><strong>T-Mobile</strong> runs the Magenta Advertising Platform. Its Do Not Sell or Share page states directly: &#8220;We may sell or share your personal information on this website or app.&#8221; T-Mobile&#8217;s Privacy Dashboard contains multiple toggles that are on by default, and the Do Not Sell toggle doesn&#8217;t automatically cover advertising programs you may have previously opted into. Those require separate action.</p><p>Then there&#8217;s <strong>Starlink</strong>, which until recently was the exception. As a satellite provider with a simpler business model, it had stayed out of the ad profiling game. On January 15, 2026, Starlink updated its global privacy policy to allow the use of customer data to train AI models, including sharing with third-party collaborators for their own independent purposes, unless customers opt out. Starlink clarified afterward that individual browsing history and destination IP addresses are not included. Account data, contact information, and usage metrics are.</p><h2><strong>What &#8220;We Don&#8217;t Sell Your Data&#8221; Actually Means</strong></h2><p>All three major carriers use some version of this language. Verizon states it doesn&#8217;t sell information from its Custom Experience programs to others for their own advertising.</p><p>What they do is build interest profiles and then use those profiles to power their own advertising platforms, which brands pay to target against. The data doesn&#8217;t move to a third party. The targeting capability does. That distinction matters considerably to the lawyers who drafted those privacy policies. It matters less to you as a subscriber.</p><p>While the 2017 repeal didn&#8217;t create this business model, it did clear the path for it.</p><h2><strong>Here&#8217;s What the Opt-Out Menus Don&#8217;t Tell You</strong></h2><p>Opting out of these programs stops the ad-tier profiling. It doesn&#8217;t affect the data your carrier collects to actually provide service. Call records, billing data, network diagnostics, the cell towers your phone touched today, all of that continues regardless of your privacy settings. What these opt-outs address is the separate commercial layer built on top of operational data.</p><p>There&#8217;s also a timing problem.</p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/isp-data-tracking-opt-out">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[They're Testing Censorware on 3D Printers. Your Router Could Be Next.]]></title><description><![CDATA[The worst part is the legal template it creates for every other device on your shelf.]]></description><link>https://www.secretsofprivacy.com/p/new-york-3d-printer-censorware-surveillance-template</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/new-york-3d-printer-censorware-surveillance-template</guid><pubDate>Thu, 07 May 2026 11:03:21 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/d25ea3ff-a72a-4611-b41d-d57c07caba82_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>You probably don&#8217;t own a 3D printer. Most people don&#8217;t.</p><p>So it&#8217;s understandable if you overlook a new effort by New York State to regulate what you can use a 3D printer for. The problem is this new law would have repercussions far beyond 3d printers.</p><p>In fact, it&#8217;s another example of legislatures (backed by special interests) using a sympathetic cause to push for a privacy invasion.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2>What This Law Is Actually Building</h2><p>New York&#8217;s still-unfinished 2026-2027 budget contains a provision requiring every 3D printer sold in the state to ship with mandatory surveillance software. The stated goal is stopping people from printing untraceable &#8220;ghost guns&#8221; at home. In practice, this means that the 3D printer software will scan every print job against a government-specified algorithm and will refuse to execute anything it flags as a potential firearm component.</p><p>Whether that goal is legitimate is a separate conversation. What matters here is the mechanism being built to pursue it: </p><blockquote><p>a government-specified prohibited-content list, embedded inside a consumer device at the manufacturer level, and enforced by criminal law.</p></blockquote><p>It&#8217;s worth noting that New York isn&#8217;t alone. California and Washington are pursuing identical legislation in the same session. Which implies there&#8217;s a centralized push to enact these laws in friendly jurisdictions before wider deployment. </p><p>So far, most of the coverage of these bills has stayed inside the 3D printing community, focused on whether the algorithm actually works. That&#8217;s the wrong frame and not thinking big picture enough.</p><p>The larger concern is what gets established as legally acceptable, and which devices legislators decide to target next. Because the legal precedent set here can easily apply to other commonly owned devices. </p><h2><strong>What the Algorithm Actually Has to Do</strong></h2><p>A brief overview of 3D printer technology is helpful here to understand why 3D printers are the initial target.</p><p>3D printers work by following a script that includes thousands or even millions of tiny instructions that say things like &#8220;move left 2mm, extrude a little plastic, move right 3mm.&#8221; The printer executes these one by one, in order, with no idea what it&#8217;s making. It doesn&#8217;t know if it&#8217;s building a chess piece or a phone case. It just follows the list.</p><p>To comply with a law like the one proposed in New York, manufacturers would have to build software capable of analyzing that code in real time. The software would need to infer the geometry of the object being constructed, and compare it against a prohibited-shapes database. It would stop working if it matched a prohibited design.</p><p>Pilot tests found these algorithms triggered on 17% of non-weapon prints due to superficial geometric resemblance to firearm components. Things like L-shaped brackets and cylindrical housings. Basically anything that looks vaguely like a barrel or receiver to software with no ability to understand context.</p><p>The algorithm doesn&#8217;t work well enough and has a high false positive rate, which is a problem in and of itself. Similar things are happening with the AI technology automobile manufactures will soon be required to deploy in vehicles in the U.S. and EU. The tech doesn&#8217;t work well enough to meet the stated goal.</p><p>But whether the tech works or not is likely beside the point.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/new-york-3d-printer-censorware-surveillance-template?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/new-york-3d-printer-censorware-surveillance-template?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><strong>What This Law is Actually Building</strong></h2><p>The surveillance apparatus required to block the 3D printing of firearm components is comprised of the following:</p><ul><li><p>A database of prohibited designs maintained by the state and updated at the state&#8217;s discretion, with no public process for contesting entries</p></li><li><p>Mandatory firmware on a general-purpose manufacturing device that checks against that database</p></li><li><p>Class E felony charges for possessing certain design files, even if you never print anything</p></li><li><p>Criminal penalties for anyone who share those files with anyone the state hasn&#8217;t licensed.</p></li></ul><p>The censorware doesn&#8217;t even have to work to cause harm. Creating a government-controlled blacklist baked into consumer devices, backed by criminal penalties <em>is the harm</em>. The technology is almost beside the point. The real goal is creating infrastructure to monitor and restrict consumer behavior, and the ghost gun argument is just how they&#8217;re selling it.</p><h2><strong>On the Ghost Gun Rationale</strong></h2><p>If you&#8217;ve read my coverage of age verification laws, the ghost gun rationale will feel familiar. (see <a href="https://x.com/secretsofprivac/status/2035319660963397962">here</a>)</p><p>&#8220;Protect the children&#8221; is a political argument that is almost impossible to oppose publicly, which makes it an effective vehicle for pushing through surveillance infrastructure that would face real scrutiny if proposed on its own terms. Nobody wants to be the legislator who voted against protecting kids. The policy that gets attached to that rationale is almost beside the point.</p><p>Ghost guns serve the same function here. </p><p>&#8220;Stop people from printing untraceable weapons at home&#8221; is the kind of argument that can move quickly through a legislature, especially when it&#8217;s buried in a budget bill rather than debated as standalone policy. </p><p>The 3D printing community is fighting it on technical grounds, arguing the algorithm doesn&#8217;t work and the false positive rate makes it unworkable. Both things are true. </p><p>But a law doesn&#8217;t have to achieve its stated purpose to establish a precedent. What matters is what legal architecture gets built in the attempt, and whether that architecture is available for the next application once this one normalizes it.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>The &#8220;Dual-Use&#8221; Problem</strong></h2><p>&#8220;Dual-use&#8221; is a term used in military and export-control law, where it describes technologies with both legitimate civilian applications and potential weapons uses.</p><p>That term used loosely applies well in the 3D printer regulations context because the underlying logic is the same.  Every legislature that passes a version of this 3D printer law is establishing that a consumer device with obvious legitimate uses can be required by statute to run government-specified content-filtering software, enforced at the firmware level. Criminal penalties are available for circumvention.</p><p>3D printers are the test case. They&#8217;re politically convenient because the user base is small and most voters don&#8217;t own one. The same statutory structure can be applied to any device a future legislature decides fits the same description.</p><p>The 3D printing angle is ultimately a distraction. Here&#8217;s what this actually looks like applied to devices you do own.</p><h3>Routers</h3><p>Your home router transmits web traffic that could, theoretically, be used to plan violence or coordinate criminal activity. A dual-use designation doesn&#8217;t require the device to be primarily used for harm. It requires only a plausible argument that it could be. </p><p>Under a router-targeting version of this template, your ISP or router manufacturer could be compelled to run state-specified deep packet inspection firmware, refusing to route traffic flagged by a government algorithm, with criminal liability for anyone who tries to disable it.</p><h3>Laptop Cameras</h3><p>Your laptop camera can be used to record things the state might someday want to restrict. So can your phone. </p><p>We already have a live version of this debate in the CSAM (child sexual abuse material) scanning context, where governments have pushed Apple and others to implement client-side scanning that checks your photos against a government database before you can upload them. The 3D printer law is that argument applied to manufactured objects rather than digital images.</p><h3>General Equipment</h3><p>A document scanner in a law office, a CNC router in a small machine shop, and a laser cutter in a school makerspace are all general-purpose tools that can produce outputs someone in a legislature might someday want to prohibit.</p><p>The legal template being built in New York doesn&#8217;t care which device it&#8217;s applied to. It needs a public-safety rationale, a device class the public doesn&#8217;t feel strongly about, and a state legislature willing to bury the provision in a budget bill.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!NzcB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!NzcB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 424w, https://substackcdn.com/image/fetch/$s_!NzcB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 848w, https://substackcdn.com/image/fetch/$s_!NzcB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 1272w, https://substackcdn.com/image/fetch/$s_!NzcB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!NzcB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png" width="726" height="487" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:487,&quot;width&quot;:726,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:406031,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/196690279?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!NzcB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 424w, https://substackcdn.com/image/fetch/$s_!NzcB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 848w, https://substackcdn.com/image/fetch/$s_!NzcB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 1272w, https://substackcdn.com/image/fetch/$s_!NzcB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc24c5a6-cc3a-46c7-a8da-df15ca639b7b_726x487.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2><strong>The Manufacturer-Compliance Wrinkle</strong></h2><p>One thing that gets lost in the &#8220;government surveillance&#8221; framing is the state doesn&#8217;t run this software. Manufacturers do. And they do so under compulsion from the state, which is effectively getting the manufacturer to do their surveillance dirty work.</p><p>This is a feature, not a bug.</p><p>It gives the state the surveillance outcome without the accountability that would attach to a government-run program. The manufacturer takes the legal and reputational exposure. The state gets the compliance. Users get a device that reports their activity to a third party under terms they can&#8217;t negotiate, enforced by criminal law.</p><h2><strong>Where This Stands</strong></h2><p>New York&#8217;s budget is still being negotiated, and this provision could be stripped in conference. California&#8217;s AB 2047 and Washington&#8217;s HB 2321 are still moving. If any of these pass, the others get easier. </p><p>A passed law is a model. Legislators who want to look tough on ghost guns will cite the precedent, and manufacturers who&#8217;ve already built compliance infrastructure for one state will lobby for uniformity rather than a patchwork.</p><p>The 3D printing community is fighting this on technical grounds. Those arguments are correct. They&#8217;re also arguments about a narrow constituency. The precedent being set here goes far beyond 3D printing.</p><p></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><p><em>Looking for help with a privacy issue or privacy concern? Chances are we&#8217;ve covered it already or will soon. Follow us on <a href="https://twitter.com/secretsofprivac">X</a> and <a href="https://www.linkedin.com/company/secrets-of-privacy/">LinkedIn</a> for updates on this topic and other internet privacy related topics.</em></p><div><hr></div><h5><strong>Disclaimer: None of the above is to be deemed legal advice of any kind. These are *opinions* written by a privacy and tech attorney with years of working for, with and against Big Tech and Big Data. And this post is for informational purposes only and is not intended for use in furtherance of any unlawful activity. This post may also contain affiliate links, which means that at no additional cost to you, we earn a commission if you click through and make a purchase.</strong></h5><ul><li><p></p><p><strong>Know your doxxing risk.</strong> DoxxScore gives you a personalized exposure assessment and action plan in under 5 minutes. <a href="https://doxxscore.com/">Get Your Risk Score &#8594;</a></p></li><li><p>Check out our new, free <a href="https://tools.secretsofprivacy.com/username-generator">username generator</a> to help you create unique usernames for different accounts. Reusing usernames is convenient, but terrible for your privacy. This tool makes it easy to create unique usernames on the fly.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share Secrets of Privacy&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share Secrets of Privacy</span></a></p></li></ul>]]></content:encoded></item><item><title><![CDATA[Your Lost Pet Post Is a Targeting Package]]></title><description><![CDATA[AI has made it cheap and fast to turn a public distress signal into a personalized scam. Here's what you're actually publishing when you ask the internet for help.]]></description><link>https://www.secretsofprivacy.com/p/lost-pet-ai-scam-targeting</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/lost-pet-ai-scam-targeting</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 06 May 2026 01:12:19 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/bc3ccb29-77c8-4666-8d6c-ba141b0cb602_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Earlier this year, a German shepherd named Hazel squeezed through a hole in a backyard fence in St. Petersburg, Florida, and ran off. </p><p>Her owner, Dennis Morida, did what anyone would do: </p><blockquote><p>posted photos on social media and neighborhood apps asking for help. </p></blockquote><p>Within hours, he received a call from someone claiming to be a police sergeant. Hazel had been hit by a car, the voice said. She was at a local vet, awaiting surgery. </p><p>A photo arrived showing what appeared to be Hazel injured on an operating table. The couple paid nearly $2,000. Then a strange thing happened - Hazel showed up next morning on her own at the house. </p><p>Turns out the photo was fabricated using AI tools and the real images Morida had posted publicly. The caller was never a police sergeant and Hazel was never hurt. </p><p>The whole operation, from monitoring the post to pulling the photos to generating the fake photo to making the call probably took minutes. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2><strong>What You&#8217;re Actually Publishing</strong></h2><p>What made this scam possible wasn&#8217;t the AI, which is just a tool. <em>It was the information Morida provided for free.</em></p><p>A lost pet post is, structurally, a targeting package. Consider what it contains: </p><ul><li><p>a clear photo of the subject with enough detail to generate convincing fakes </p></li><li><p>your phone number or a direct way to reach you</p></li><li><p>your approximate neighborhood</p></li><li><p>the breed and distinctive markings of the animal</p></li><li><p>an unmistakable signal that you are emotionally compromised and willing to pay quickly to resolve the situation. </p></li></ul><p>Scammers don&#8217;t need to guess anything. It&#8217;s sitting in a public post, searchable, broadcasting to anyone who happens to be watching.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;c1941d83-0d53-42c8-baa3-ecc78876202f&quot;,&quot;duration&quot;:null}"></div><p>It would be nice if this was just a handful of bad actors stumbling across posts. But it&#8217;s looking more like organized monitoring. </p><p>The Animal Compassion Team, a Fresno, California-based nonprofit, told local media they receive around 20 calls per day from pet owners reporting similar incidents. This is a volume that suggests systematic social media surveillance, not random opportunism. </p><p>The cases follow a consistent script. In December 2025, an elderly Fresno man received a message claiming his missing service dog, Chewie, had undergone surgery at a specific local veterinary clinic. The scammer sent AI-generated photos of Chewie appearing to recover from a procedure inside that facility, built from images the owner had shared online months earlier when Chewie first went missing. </p><p>Fortunately the man called the clinic directly before sending any money. The clinic confirmed they had never seen the dog.</p><p>Not everyone makes that call though. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p>In March 2026, an Alabama man named James Laiacona posted about his missing Chihuahua, Tank, on a Monday. Tuesday morning, a caller told him Tank had been hit by a car and was in surgery, implying the procedure would stop without immediate payment. Laiacona paid $900 before the call ended. Tank was found safe later.</p><p>The AI image component doesn't need to be sophisticated. A photo of a specific dog's face placed in a generic surgery setting is enough to override rational thinking in someone who is already panicked, and that's really all it needs to do.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/lost-pet-ai-scam-targeting?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/lost-pet-ai-scam-targeting?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2><strong>The AI Isn&#8217;t the Story</strong></h2><p>Most coverage of these cases focuses on the image generation technology, as though that&#8217;s the novel part. TBH, these same scams could be done pre-AI with photoshop, though perhaps not as quickly. </p><p>The more useful observation is deeper: </p><blockquote><p>this scam only works because public distress posts create reliable, detailed targeting opportunities at no cost to the scammer.</p></blockquote><p>Lost pet posts are one instance of a broader pattern. The scam works the same way for any post that:</p><ul><li><p>simultaneously signals emotional vulnerability</p></li><li><p>announces a problem the person would pay to solve</p></li><li><p>identifies the subject clearly enough to generate convincing fakes, and </p></li><li><p>provides a direct contact method. </p></li></ul><p>AI tools just lowered the production cost of acting on that information to nearly zero.</p><p>Most protective advice focuses on recognizing the scam after contact has been made. However, the lost pet post itself is where the exposure happens, and there&#8217;s a way to ask for help publicly without broadcasting the details that make you targetable.</p><h2><strong>What to Share Publicly, and What to Withhold</strong></h2><p>The goal of a public lost pet post is to get recognized and reported by someone in your area. It doesn&#8217;t require providing everything a scammer needs to impersonate that scenario convincingly.</p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/lost-pet-ai-scam-targeting">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[You Don't Know How Exposed You Are. Now You Can Find Out.]]></title><description><![CDATA[Introducing DoxxScore, a self-assessment that scores your doxxing risk and tells you what to fix.]]></description><link>https://www.secretsofprivacy.com/p/doxxscore-launch</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/doxxscore-launch</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Thu, 30 Apr 2026 12:08:49 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!6Tqh!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F50a682a2-3336-425e-97da-3edfc4be8308_480x502.jpeg" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Most people picture doxxing as something that requires a hacker. Like someone breaking into accounts, leaking data, or doing something technically sophisticated. </p><p>That&#8217;s not how it usually works. In fact, the most common version requires no special skills at all.</p><p>The doxxer just needs a name, some publicly available websites, and about 20 minutes. Top sources they look at are people search sites, property records, and old social media accounts. Data broker sites that aggregate all of it in one place are even better. </p><p>The important takeaway is that the information needed to doxx you is already out there. Someone just has to look and put the pieces together. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p>Most people who care about privacy have done <em>something</em> about it. Switched to a different search engine, maybe. Stopped posting publicly as much. They&#8217;ve thought about it, which puts them ahead of most people, but thinking about it tends to produce a general sense of being careful rather than any real picture of what&#8217;s actually out there.</p><p>The gap between &#8220;I&#8217;m pretty private&#8221; and what someone could find about you in twenty minutes varies enormously depending on who you are and what you&#8217;ve done online over the past decade. Someone with a common name and no social media footprint has a different risk profile than someone with a decade of LinkedIn history, a public Instagram, and a home address on their business website.</p><p>The exposure also isn&#8217;t uniform across life circumstances. </p><p>People going through a divorce, changing jobs, or relocating often have vulnerabilities they haven&#8217;t stopped to consider. Attorneys, therapists, real estate agents, teachers, basically anyone in a public-facing role tends to be more findable than they realize, because their work requires a certain amount of visibility. Parents who posted about their kids through the 2010s have left a trail they&#8217;ve probably never looked at as a whole.</p><p>You can&#8217;t do much about any of this without first knowing where you stand.</p><h2><strong>What DoxxScore Does</strong></h2><p><a href="http://www.doxxscore.com">DoxxScore</a> is a self-assessment tool we built. It walks you through a five-section questionnaire covering seven risk categories, including search visibility, social media exposure, contact information accessibility and identity linkage. It then runs your email against known breach databases and calculates a personalized risk score from 0 to 100.</p><p>The output isn&#8217;t a generic checklist. It&#8217;s a prioritized action plan built around your answers, with difficulty ratings and time estimates for each step, so you know what to tackle first and what can wait. Delivered as a web report and a PDF sent to your email.</p><p>One-time cost of $19. No subscription, no recurring charges.</p><div class="image-gallery-embed" data-attrs="{&quot;gallery&quot;:{&quot;images&quot;:[{&quot;type&quot;:&quot;image/jpeg&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/50a682a2-3336-425e-97da-3edfc4be8308_480x502.jpeg&quot;},{&quot;type&quot;:&quot;image/jpeg&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/88f874f7-1833-4c34-a13a-d094b301e4f5_483x557.jpeg&quot;}],&quot;caption&quot;:&quot;Select screenshots from the DoxxScore site&quot;,&quot;alt&quot;:&quot;&quot;,&quot;staticGalleryImage&quot;:{&quot;type&quot;:&quot;image/png&quot;,&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e14aa4da-d4f3-48be-a744-0642fa67013d_1456x720.png&quot;}},&quot;isEditorNode&quot;:true}"></div><h2><strong>Why This Exists</strong></h2><p>The hardest part of improving your privacy isn&#8217;t finding advice. There&#8217;s no shortage of that. </p><p>Instead, the hardest part is knowing where to start when you don&#8217;t know how exposed you actually are.</p><p>DoxxScore answers that question first. Once you know your risk profile, the path forward gets a lot clearer.</p><p>If you&#8217;ve been meaning to get a handle on your digital exposure but haven&#8217;t known where to begin, this is a good place to start.</p><p>Take the assessment at <a href="http://www.doxxscore.com">doxxscore.com</a>. Use discount code LAUNCH50 for 50% off (only 20 discounted spots, so don&#8217;t wait). </p><div><hr></div><p><em>Questions about how it works, what the report looks like, or what goes into the scoring? Reply and ask.</em></p><div><hr></div><h3>Further reading on doxxing risk:</h3><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;1a8bee0b-c1eb-4145-8c18-fc8ab9f4aba2&quot;,&quot;caption&quot;:&quot;For months, an anonymous X account called LAScanner posted real-time alerts about ICE activity in Los Angeles. The updates were specific: unmarked vehicles, alleged agent names, even the hotels where agents were staying.&quot;,&quot;cta&quot;:&quot;Read full story&quot;,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;He thought he was anonymous. He was wrong.&quot;,&quot;publishedBylines&quot;:[],&quot;post_date&quot;:&quot;2025-06-13T01:12:16.355Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5f7bf8a7-393b-4f31-a960-d8cc4971879a_420x300.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/he-thought-he-was-anonymous-he-was-wrong&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:165635802,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:9,&quot;comment_count&quot;:4,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;5fe51b3b-8e1a-41a1-9a81-8b40a7d97768&quot;,&quot;caption&quot;:&quot;Quick post here on a time sensitive privacy issue impacting Tesla owners.&quot;,&quot;cta&quot;:&quot;Read full story&quot;,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;Urgent Privacy Message for Tesla Owners&quot;,&quot;publishedBylines&quot;:[],&quot;post_date&quot;:&quot;2025-03-19T01:54:12.337Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7359e178-2563-477e-a42e-a2f51d21143a_1024x1737.jpeg&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/urgent-privacy-message-for-tesla-owners&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:159380453,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:6,&quot;comment_count&quot;:2,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;939d726c-c128-4d0f-b75d-f2f4ce5137b0&quot;,&quot;caption&quot;:&quot;If you&#8217;ve ever worried about being doxxed, you&#8217;re not being dramatic. Having your personal details pushed into public view can wreck your sense of safety for a long time.&quot;,&quot;cta&quot;:&quot;Read full story&quot;,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;A Quick Note About Doxxing...&quot;,&quot;publishedBylines&quot;:[],&quot;post_date&quot;:&quot;2025-11-25T02:12:27.581Z&quot;,&quot;cover_image&quot;:&quot;https://substackcdn.com/image/fetch/$s_!89jt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7bb95ee8-eb41-4558-b0b4-2e06294e401b_459x472.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/a-quick-note-about-doxxing&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:179774272,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:19,&quot;comment_count&quot;:0,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div>]]></content:encoded></item><item><title><![CDATA[Your Workday Is Now AI Training Data]]></title><description><![CDATA[Meta, OpenAI, and SimpleClosure have all turned workplace activity into AI training data this year. What it means for workers, and what you can do about it.]]></description><link>https://www.secretsofprivacy.com/p/your-workday-is-now-ai-training-data</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/your-workday-is-now-ai-training-data</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 29 Apr 2026 01:09:06 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/db15711e-1515-45d6-9d30-0fd8bdf3fb2b_2400x1260.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Last week Reuters reported that Meta is rolling out new software on its US employees&#8217; work computers to capture mouse movements, clicks, and keystrokes. The stated purpose has nothing to do with productivity monitoring or security. </p><p>Meta wants training data for the AI agents it&#8217;s racing to ship. </p><p>A company spokesperson confirmed as much directly, saying:</p><blockquote><p>the models need real examples of how people actually use computers, and that the best way to get those examples is to watch employees at work.</p></blockquote><p>This is the third announcement like this in four months. Workplace activity is becoming AI training data, and most workers are still thinking about workplace surveillance the way they thought about it five years ago. That model is out of date, and here&#8217;s why.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2>Three Pipelines, One Supply Chain</h2><p>Three distinct streams are feeding into the same data supply chain.</p><p>The first is active collection from current employees. Meta is the highest-profile example. Any employer large enough to train its own AI models has an obvious incentive to start here, because in-house employee data is free and already flowing through company systems.</p><p>The second pipeline runs through contractors. In January, Wired reported that OpenAI's data vendor Handshake AI started asking its freelance contractors to upload real work products from their past and current jobs. Actual contracts, financial models, decks, and code repositories produced for other employers. The point of collecting these documents is to feed them into OpenAI's training data, where they become part of the model weights. Handshake provides a tool called "Superstar Scrubbing" to help contractors remove confidential information before uploading. The original employers and clients are not in the loop.</p><p>The third is the dead-company market. On April 16, a startup called SimpleClosure launched a platform called Asset Hub that helps shutting-down companies monetize what its CEO, Dori Yona, calls &#8220;operational exhaust.&#8221; </p><p>The full archive of a defunct company (years of Slack messages, Jira tickets, email chains, Google Drive folders) gets bundled and sold to AI labs as training material. Per Forbes, SimpleClosure has processed nearly 100 of these deals in the past year, with payouts ranging from $10,000 to $100,000 per company. A competitor called Sunset is doing the same thing.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!EszL!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!EszL!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 424w, https://substackcdn.com/image/fetch/$s_!EszL!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 848w, https://substackcdn.com/image/fetch/$s_!EszL!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 1272w, https://substackcdn.com/image/fetch/$s_!EszL!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!EszL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png" width="1456" height="1456" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1456,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:281495,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/195405424?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!EszL!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 424w, https://substackcdn.com/image/fetch/$s_!EszL!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 848w, https://substackcdn.com/image/fetch/$s_!EszL!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 1272w, https://substackcdn.com/image/fetch/$s_!EszL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F568a4a11-394c-425b-b59b-9382f7b65b25_2160x2160.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The first company to go through this at scale was cielo24, a transcription business that shut down after thirteen years. Its former CEO, Shanna Johnson, sold every Slack message, internal email, and Jira ticket for what she described as hundreds of thousands of dollars. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/your-workday-is-now-ai-training-data?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/your-workday-is-now-ai-training-data?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><h2>It Isn&#8217;t Just Meta, and It Isn&#8217;t Just Engineers</h2><p>A reasonable response at this point is that these are three tech-industry stories about tech-industry companies, which doesn&#8217;t necessarily say much about the average worker. I don&#8217;t think that holds up, and a viral video from 2024 is a decent way to show why.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;0babfdbd-fc16-4d2f-aac2-677ab14dfe94&quot;,&quot;duration&quot;:null}"></div><p>The post hit four million views because people found it viscerally strange.</p><p>But the software running in that coffee shop wasn&#8217;t custom-built. It was sold to the cafe by a vendor, which means the same vendor is selling it to other cafes, other retail operations, other small businesses. </p><p>Each of those installations generates data about how humans interact with physical workspaces, which happens to be exactly the kind of embodied-workflow training data AI labs are short on. And the worker making the coffee has even less leverage than the Meta engineer to negotiate what happens to any of it.</p><h2><strong>The Breach Problem Nobody Is Pricing In</strong></h2><p>Every company involved in this supply chain says it strips personally identifiable information before the data changes hands. SimpleClosure says it, OpenAI says it, Meta says it. The claim is that your name, email, and phone number come out before the archive goes to the buyer.</p><p>That&#8217;s the wrong thing to focus on.</p><p>A Slack archive with names removed still contains your writing style, your project details, your references to specific coworkers and clients, your internal jokes, and the content of what you actually said. &#8216;Anonymized&#8217; doesn&#8217;t mean what it did 50 years ago. For nearly 20 years, it&#8217;s meant something closer to &#8216;lightly disguised&#8217; when in the right (wrong?) hands. More to the point, the content itself is the sensitive material.</p><ul><li><p>A complaint about a manager.</p></li><li><p>A disclosure of a medical condition. </p></li><li><p>A complaint about a client.</p></li><li><p>A half-formed opinion about a competitor.</p></li></ul><p>These don&#8217;t need your name attached to be damaging, and PII scrubbing doesn&#8217;t touch them.</p><p>There&#8217;s also a concentration problem.</p><p>An AI lab holding archives from a hundred defunct companies is a bigger breach target than any one of those companies ever was. If that lab gets breached, the fallout hits every former employee of every source company at once, years after they&#8217;ve moved on. The risk isn&#8217;t contained by the original employer closing its doors. It&#8217;s been handed off to a third party who now has every reason to keep the data and every reason to keep buying more.</p><h2>Workplace Monitoring Used to Have An End Point</h2><p>What feels different about this moment is that the purpose of workplace monitoring has shifted.</p><p>Traditional workplace monitoring existed to inform management decisions. </p><blockquote><p>Was Kelly productive enough? Should she be promoted? Should the team be restructured? </p></blockquote><p>The data was analyzed inside the company, for the company&#8217;s own use. It was invasive, but it was somewhat bounded.</p><p>What&#8217;s happening now operates on a different level.</p><p>Workplace activity is being harvested as a commodity that sells on an open market. The data doesn&#8217;t stay within the company that collected it. It feeds models that get deployed into thousands of other workplaces. The worker who clicks through a dropdown menu on a Meta laptop today is effectively helping train the AI that will, in two or three years, replace some other worker at some other company. And that worker hasn&#8217;t been offered anything in exchange.</p><p>There&#8217;s no opt-out in most of this. Most employment agreements don&#8217;t address it at all (yet). The IP assignment language employees signed when they took their jobs was written on the assumption that the employer might use work product internally. Nobody was anticipating the secondary market in employee work product.</p><h2><strong>Your Defensive Playbook</strong></h2><p>The rest of this piece focuses on what you can actually do, because there are meaningful moves available. </p><p>Most employers haven&#8217;t worked out their own policies on this yet, which means there&#8217;s a window of time where individual pushback can shape outcomes. And even solo workers without any collective bargaining power can meaningfully limit their exposure, if they know what to look for.</p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/your-workday-is-now-ai-training-data">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Trying to Detect Fraud and Scams Won't Save You Anymore]]></title><description><![CDATA[A new wave of fraud doesn't start with a generic lure. It starts with your face, your numbers, and your most recent post.]]></description><link>https://www.secretsofprivacy.com/p/stop-trying-to-detect-fraud-and-scams</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/stop-trying-to-detect-fraud-and-scams</guid><dc:creator><![CDATA[Secrets of Privacy]]></dc:creator><pubDate>Wed, 22 Apr 2026 01:19:44 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/4d9adc91-f45e-4c59-b0a3-0d2b838ecfa9_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>To avoid email scams, you were told to watch for generic greetings, suspicious senders, and bad grammar. New attacks and scams have evolved, and now skip all of that. </p><p>Instead, they open with your actual profile photo, your real follower count, and a thumbnail of your most recent post. Everything in the email looks legitimate because the attacker pulled your public data before sending you anything.</p><p>This comes from a phishing campaign documented this week by Malwarebytes that pulls real YouTube channel data to build a personalized copyright scare page. The moment you land on it, the page already knows your avatar, your subscriber count, and your most recent video. If you enter your credentials on the fake Google sign-in it serves up, you lose your entire Google account.</p><p>And while this particular scam focuses on YouTube, it can equally apply to any number of other platforms, from Facebook to Instagram to Substack. Creators are especially at risk. </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p>This scheme runs like a global hacker franchise. Multiple attackers share the same phishing kit, each running their own campaigns with their own affiliate ID embedded in the links. One operator can swap out the destination domain at any time to evade takedowns. That means the infrastructure stays live even when individual phishing pages get flagged.</p><p>There&#8217;s also a detail that says a lot about how professionally these operations are being run. <em>The scam automatically screens out any channel with more than three million subscribers</em>, instead showing those creators a clean bill of health rather than a scare page. The reason is simple if you think about it: </p><blockquote><p>Large creators are more likely to have security staff, YouTube contacts, or the visibility to get the operation shut down quickly. Smaller creators, who have less protection and just as much to lose, are the higher value target.</p></blockquote><p>The reason this scam works is that YouTube has a public API. In case you think this is just a YouTube problem, public APIs are not unique to YouTube. Any platform that displays your profile photo, follower count, and recent activity to the world gives an attacker the raw material to build a personalized scare page. </p><p>Facebook business pages, LinkedIn profiles, Etsy storefronts, Substack publications all expose enough public data to run the same scheme. A fake &#8220;your Facebook page has been flagged for removal&#8221; notice showing your page name, your follower count, and your most recent post would be just as convincing to a small business owner as the YouTube copyright notice is to a creator.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pIBo!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pIBo!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!pIBo!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!pIBo!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!pIBo!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pIBo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png" width="1080" height="1080" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1080,&quot;width&quot;:1080,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:137507,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/194689179?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!pIBo!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!pIBo!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!pIBo!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!pIBo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa834b7ab-8a5b-4328-a897-a9b1faadcb9d_1080x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div class="callout-block" data-callout="true"><p>The YouTube scam is not occurring in isolation but sits inside a larger scam pattern.</p></div><p>Voice cloning has crossed what researchers at the University at Buffalo describe as the &#8220;indistinguishable threshold.&#8221; Some major retailers are already reporting over 1,000 AI-generated scam calls per day. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pmca!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pmca!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 424w, https://substackcdn.com/image/fetch/$s_!pmca!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 848w, https://substackcdn.com/image/fetch/$s_!pmca!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 1272w, https://substackcdn.com/image/fetch/$s_!pmca!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pmca!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png" width="519" height="330" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:330,&quot;width&quot;:519,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:39559,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/194689179?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!pmca!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 424w, https://substackcdn.com/image/fetch/$s_!pmca!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 848w, https://substackcdn.com/image/fetch/$s_!pmca!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 1272w, https://substackcdn.com/image/fetch/$s_!pmca!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd67baffe-2eb5-4be2-b0e3-ff7b5e84cbb7_519x330.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The family emergency call, the one where you hear your daughter&#8217;s voice saying she&#8217;s been in an accident, is no longer a theoretical risk. It&#8217;s running at scale, and it runs on a few seconds of audio pulled from a public video or voicemail. Experian&#8217;s 2026 fraud forecast describes intelligent bots carrying out automated family-member-in-need scams with a sophistication that wasn&#8217;t possible even two years ago. </p><blockquote><p>Both of those attacks share the same logic as the YouTube scam. They start with real data about you, pulled from public sources, and use it to make the approach feel legitimate before you&#8217;ve had a chance to think.</p></blockquote><p>There&#8217;s a separate but related story worth knowing about too. A credential-stealing malware called Omnistealer revealed the other day hides its attack code inside blockchain transactions on networks like TRON and Binance Smart Chain. Because blockchains are append-only, those malicious snippets are effectively permanent once they&#8217;re mined into a block. You can take down a malicious GitHub repo or revoke a domain, but you can&#8217;t roll back TRON to remove a few hundred bytes of malware staging code. </p><p>The campaign has been linked by on-chain forensics to (no surprise!) North Korean state-sponsored actors. It spread through fake developer job offers on LinkedIn and GitHub where technically skilled targets handed what looked like a routine freelance project.</p><p>While the personalization angle is less pronounced here, what Omnistealer illustrates is the other half of the same shift: </p><blockquote><p>sophisticated fraud operations are not only getting better at targeting people, they&#8217;re getting better at making their infrastructure difficult, if not impossible, to shut down. The attacks are more convincing and more resilient at the same time.</p></blockquote><p>That combination is what makes this moment different from previous waves of online fraud.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/stop-trying-to-detect-fraud-and-scams?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/stop-trying-to-detect-fraud-and-scams?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><p>For most of the history of online fraud, the attacker&#8217;s main constraint was personalization. A phishing email that addressed you by name was already considered sophisticated. And a scam call that knew where you worked was alarming. </p><p>Building a scam that looked genuinely specific to you (your face on the page, your voice in the audio or your channel data in the copyright notice) required real effort and real resources. That constraint kept the scam volume down. It limited who could run these operations and how many people they could reach.</p><p>That constraint is gone, and it&#8217;s not coming back. </p><p>The YouTube copyright kit fetches your real data automatically from a public API. Voice cloning tools require a few seconds of audio, freely available for most people who have ever posted a video or left a voicemail. The personalization layer is now a commodity. Anyone with modest resources can build an attack that feels like it was made specifically for you, because technically, it was.</p><p>What legislators and most security advice haven&#8217;t caught up to yet is that the old detection signals no longer work. You were told to look for misspellings, generic greetings, implausible urgency. An email that called you &#8220;Dear Customer&#8221; was a tell. None of that applies anymore. The new signals are different, and defending against them requires a different posture.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!HH4K!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!HH4K!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!HH4K!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!HH4K!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!HH4K!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!HH4K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png" width="1080" height="1080" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/dd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1080,&quot;width&quot;:1080,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:124772,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://www.secretsofprivacy.com/i/194689179?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!HH4K!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 424w, https://substackcdn.com/image/fetch/$s_!HH4K!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 848w, https://substackcdn.com/image/fetch/$s_!HH4K!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!HH4K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdd61ae03-7622-480d-8f2f-5edd0aa059c5_1080x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><h2>How to Defend Yourself</h2><p>The defense move here isn&#8217;t about being more skeptical of suspicious-looking messages. That&#8217;s because messages <em>won&#8217;t look suspicious</em>. The defense is structural, which means developing habits and configurations that hold up even when the attacker has already done their homework on you. Here&#8217;s how to do that. </p>
      <p>
          <a href="https://www.secretsofprivacy.com/p/stop-trying-to-detect-fraud-and-scams">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[OkCupid Gave Your Face to an AI Company]]></title><description><![CDATA[What happened to OkCupid users' faces is happening elsewhere, quietly and legally.]]></description><link>https://www.secretsofprivacy.com/p/okcupid-gave-your-face-to-an-ai-company</link><guid isPermaLink="false">https://www.secretsofprivacy.com/p/okcupid-gave-your-face-to-an-ai-company</guid><pubDate>Thu, 16 Apr 2026 10:36:39 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/b968c5ca-5f56-461f-b98f-573e9401c12f_1200x630.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Nearly three million people uploaded photos to the dating site OkCupid. They did so looking for dates (obviously). </p><p>Yet their faces ended up training a facial recognition system that now sells to police departments, government agencies, and the military.</p><p>How did that happen? </p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><p>The U.S. Federal Trade Commission (FTC) alleged that OkCupid shared users&#8217; photos, location data, and demographic profiles with Clarifai, a &#8220;computer vision company&#8221;. They did so without user consent and in direct violation of its own privacy policy. OkCupid&#8217;s founders were personally invested in Clarifai, and one of them sent the photos from his personal email account, bypassing any corporate oversight. </p><p>No contract governed the data handoff. And no restrictions were placed on what Clarifai could do with the misappropriated data.</p><p>Clarifai ended up using the images to build technology capable of identifying the age, sex, and race of faces. The company has since secured contracts with the U.S. Air Force Research Laboratory and partnered with defense firms supplying AI to the Army&#8217;s intelligence community. </p><p>So dating profile pictures became raw material for defense contractors. The people in those photos had no idea, and were never asked.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/p/okcupid-gave-your-face-to-an-ai-company?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/p/okcupid-gave-your-face-to-an-ai-company?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><p>The FTC settled the case in March 2026. </p><p><strong>The good</strong>: The settlement permanently bars Match Group and OkCupid from misrepresenting their data practices and requires compliance reporting for a decade. </p><p><strong>The bad</strong>: Match Group did not admit wrongdoing. </p><p><strong>The ugly</strong>: The settlement carries no financial penalty. And the FTC did not require Clarifai to delete any of the data it received. </p><p>Twelve years of willfully misusing people&#8217;s images, and the regulatory consequence is a promise to tell the truth going forward.</p><h2><strong>The OkCupid Story Isn&#8217;t Really About OkCupid</strong></h2><p>Most people process news like this as a company-specific scandal. OkCupid was reckless with customer data, OkCupid got caught, but you don&#8217;t use OkCupid, so you&#8217;re fine. </p><p>That&#8217;s the superficial take. As is usually the case with these stories, there&#8217;s a deeper level. </p><p>Every site where you&#8217;ve uploaded photos, whether LinkedIn, Facebook, Instagram, a fitness app, a medical portal, or a real estate platform, operates under a privacy policy that its legal team wrote. And they wrote it to maximize the company&#8217;s flexibility, not yours. I&#8217;ve written before about why reading those policies is a waste of time. &#128071;</p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;ec7c4f9f-7629-49e8-a682-0187647d07be&quot;,&quot;caption&quot;:&quot;Gallop released their annual findings late last year regarding Americans&#8217; views on personal privacy matters. One of the noteworthy findings was most young adults don&#8217;t read privacy notices while a majority of older adults do read privacy notices. There was some common ground on one topic - 61% of all adults said privacy notices are not effective at communicating how a company uses personal data.&quot;,&quot;cta&quot;:&quot;Read full story&quot;,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;Reading Website Privacy Notices is a Waste of Time&quot;,&quot;publishedBylines&quot;:[{&quot;id&quot;:169760400,&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;bio&quot;:&quot;Practical privacy for busy people. Cut your digital exposure, avoid common threats, and stack simple privacy wins.&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/53778fb9-dd8e-4594-82d5-b49708bb0864_3214x2880.png&quot;,&quot;is_guest&quot;:false,&quot;bestseller_tier&quot;:null}],&quot;post_date&quot;:&quot;2024-05-17T01:28:00.418Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3d681e18-74e4-493e-8038-55b134143329_1792x1024.webp&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/reading-website-privacy-notices-is-a-waste-time&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:144484982,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:2,&quot;comment_count&quot;:0,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><p>What the OkCupid case illustrates is the specific mechanisms that makes privacy policies useless: </p><blockquote><p>Privacy policies are often inaccurate, either out of negligence or intentional bad behavior (as appears to be the case with OKCupid). Or a company can change the policy at any time, usually without notice, to make their privacy infringing practices legit. And in almost all cases privacy policies are drafted to provide broad rights and discretion to use your data, which means most people don&#8217;t know what they&#8217;re supposedly consenting to. </p></blockquote><p>Unfortunately the OKCupid incident isn&#8217;t a one-time failure by a company with bad intentions. It&#8217;s a repeatable playbook. </p><p>Many people now understand that tech companies design features specifically to get you to hand over your face voluntarily. It&#8217;s been going on since the dawn of the internet but AI companies have taken it to a whole new level. The best example is when OpenAI/ChatGPT pushed an anime filter, the Ghibli-style portrait, which allowed users to see themselves as a cartoon. </p><p>Users got a quick dopamine hit from doing that. And OpenAI received valuable data to bolster their facial recognition capabilities without paying anything. That&#8217;s about as lopsided of a trade as you can find. </p><div class="comment" data-attrs="{&quot;url&quot;:&quot;https://open.substack.com/&quot;,&quot;commentId&quot;:104133711,&quot;comment&quot;:{&quot;id&quot;:104133711,&quot;date&quot;:&quot;2025-03-28T18:33:18.205Z&quot;,&quot;edited_at&quot;:null,&quot;body&quot;:&quot;How AI Companies Trick You Into Training Their Models \n\n&#129489;&#8205;&#128188; Exec 1: Our AI models are falling behind in facial recognition and image generation. We need more data.\n\n&#128105;&#8205;&#128188; Exec 2: But getting enough high-quality images will take too long.\n\n&#129333; Exec 3: What if we launch a fun feature that encourages people to upload their own photos?\n\n&#129489;&#8205;&#128188; Exec 1: &#128514; LOL. People won't fall for that anymore. They already post less personal content on social media.\n\n&#129333; Exec 3: &#129300; Hear me out. We offer a tool that transforms a personal photo into an anime version. People will love it. They&#8217;ll share the results, and we&#8217;ll get a fresh batch of faces to train our AI.\n\n&#129489;&#8205;&#128188; Exec 1: &#128527; That might work&#8230; but will they really go for it?\n\n&#129333; Exec 3: &#9989; They&#8217;ll think it&#8217;s just for fun. Meanwhile, we improve our dataset&#8212;for free.\n\n&#128680; Be mindful of what you upload. Your personal data is more valuable than ever as AI technology evolves. Gen AI tools like ChatGPT and Gemini are constantly seeking new ways to collecting data, often disguising data collection as entertainment.\n\nThis raises critical privacy and cybersecurity concerns. \n\nAre we unknowingly training AI models that could later be used for facial recognition, surveillance, or other invasive applications? \n\nLet us know what you think - do you see OpenAI's Ghibli-style image generator as clever marketing or a potential privacy trap? \n\nInterested in private Gen AI? Check out our post here: https://www.secretsofprivacy.com/p/the-privacy-risks-of-ai-chatbots-like-chatgpt&quot;,&quot;body_json&quot;:{&quot;type&quot;:&quot;doc&quot;,&quot;attrs&quot;:{&quot;schemaVersion&quot;:&quot;v1&quot;},&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;How AI Companies Trick You Into Training Their Models &quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#129489;&#8205;&#128188; Exec 1: Our AI models are falling behind in facial recognition and image generation. We need more data.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#128105;&#8205;&#128188; Exec 2: But getting enough high-quality images will take too long.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#129333; Exec 3: What if we launch a fun feature that encourages people to upload their own photos?&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#129489;&#8205;&#128188; Exec 1: &#128514; LOL. People won't fall for that anymore. They already post less personal content on social media.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#129333; Exec 3: &#129300; Hear me out. We offer a tool that transforms a personal photo into an anime version. People will love it. They&#8217;ll share the results, and we&#8217;ll get a fresh batch of faces to train our AI.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#129489;&#8205;&#128188; Exec 1: &#128527; That might work&#8230; but will they really go for it?&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#129333; Exec 3: &#9989; They&#8217;ll think it&#8217;s just for fun. Meanwhile, we improve our dataset&#8212;for free.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;&#128680; &quot;},{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;Be mindful of what you upload.&quot;},{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot; Your personal data is more valuable than ever as AI technology evolves. Gen AI tools like ChatGPT and Gemini are constantly seeking new ways to collecting data, often disguising data collection as entertainment.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;This raises critical &quot;},{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;privacy&quot;},{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot; and &quot;},{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;cybersecurity&quot;},{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot; concerns. &quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;Are we unknowingly training AI models that could later be used for facial recognition, surveillance, or other invasive applications? &quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;Let us know what you think - do you see OpenAI's Ghibli-style image generator as clever marketing or a potential &quot;},{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;privacy trap&quot;},{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;? &quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;Interested in private Gen AI? Check out our post here: &quot;},{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;link&quot;,&quot;attrs&quot;:{&quot;href&quot;:&quot;https://www.secretsofprivacy.com/p/the-privacy-risks-of-ai-chatbots-like-chatgpt&quot;,&quot;target&quot;:&quot;_blank&quot;,&quot;rel&quot;:&quot;nofollow ugc noopener&quot;,&quot;class&quot;:&quot;note-link&quot;}}],&quot;text&quot;:&quot;https://www.secretsofprivacy.com/p/the-privacy-risks-of-ai-chatbots-like-chatgpt&quot;}]}]},&quot;restacks&quot;:11,&quot;reaction_count&quot;:19,&quot;attachments&quot;:[{&quot;id&quot;:&quot;e679d48f-ccf2-4d81-ad48-6a7258154cd1&quot;,&quot;type&quot;:&quot;image&quot;,&quot;imageUrl&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a89600da-6af8-4df0-af78-3ac929c8ab0c_1024x1024.webp&quot;,&quot;imageWidth&quot;:1024,&quot;imageHeight&quot;:1024,&quot;explicit&quot;:false}],&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;user_id&quot;:169760400,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/53778fb9-dd8e-4594-82d5-b49708bb0864_3214x2880.png&quot;,&quot;user_bestseller_tier&quot;:null,&quot;userStatus&quot;:{&quot;bestsellerTier&quot;:null,&quot;subscriberTier&quot;:null,&quot;leaderboard&quot;:null,&quot;vip&quot;:false,&quot;badge&quot;:null,&quot;paidPublicationIds&quot;:[],&quot;subscriber&quot;:null}},&quot;source&quot;:null,&quot;forumChannel&quot;:null}" data-component-name="CommentPlaceholder"></div><p>OkCupid&#8217;s founders didn&#8217;t need a clever feature to capture valuable biometric data because they already had three million photos sitting in a database. But the outcome is the same: </p><blockquote><p>your face, in a training set, with no restrictions on what gets built from it.</p></blockquote><p>The enforcement consequence for any of this is, apparently, a compliance checklist. Which shouldn&#8217;t be surprising to anyone following these incidents. Penalties handed down by regulators are usually small compared to company revenues. Businesses then calculate the cost of protecting (or not protecting) your privacy, and when the answer is zero (or near zero) dollars in penalties, the math doesn&#8217;t work in favor of your privacy. </p><div class="digest-post-embed" data-attrs="{&quot;nodeId&quot;:&quot;0c7daeba-6bd4-42c1-b468-eae8d68db6a7&quot;,&quot;caption&quot;:&quot;Travel back in time to a McDonald's drive-thru in the 1990s.&quot;,&quot;cta&quot;:&quot;Read full story&quot;,&quot;showBylines&quot;:true,&quot;showDescription&quot;:true,&quot;showImage&quot;:true,&quot;size&quot;:&quot;sm&quot;,&quot;isEditorNode&quot;:true,&quot;title&quot;:&quot;What McDonalds Hot Coffee Can Teach You About Protecting Your Data&quot;,&quot;publishedBylines&quot;:[],&quot;post_date&quot;:&quot;2025-04-11T01:12:41.543Z&quot;,&quot;cover_image&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d5435224-38bb-40b7-a3ff-d3158078a631_1536x1024.png&quot;,&quot;cover_image_alt&quot;:null,&quot;canonical_url&quot;:&quot;https://www.secretsofprivacy.com/p/what-mcdonalds-hot-coffee-can-teach-you-about-protecting-your-data&quot;,&quot;section_name&quot;:null,&quot;video_upload_id&quot;:null,&quot;id&quot;:160831137,&quot;type&quot;:&quot;newsletter&quot;,&quot;reaction_count&quot;:7,&quot;comment_count&quot;:2,&quot;publication_id&quot;:1961031,&quot;publication_name&quot;:&quot;Secrets of Privacy&quot;,&quot;publication_logo_url&quot;:&quot;https://substackcdn.com/image/fetch/$s_!yQg9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;belowTheFold&quot;:true,&quot;youtube_url&quot;:null,&quot;show_links&quot;:null,&quot;feed_url&quot;:null}"></div><p>For photos specifically, the only meaningful control you still have is <strong>upload discipline</strong>. Review which apps have access to your Google, Apple, or Facebook account, and think carefully before handing your face to the next platform that makes it seem fun or convenient. The photos you never put up can&#8217;t be handed to anyone.</p><p>You can't un-upload a photo, and you can't control where it goes once a company has it. Knowing that your photos can move from a dating app to a defense contractor through a personal email and a handshake should change how you evaluate the next platform that asks for your face. While the next platform asking for your photo isn't OkCupid, the incentive structure is identical.</p><div><hr></div><p>One more thing: I've been sharing the behind-the-scenes of building <strong>DoxxScore</strong> over on Substack Notes. Things like the thinking behind the product, what I've learned about digital privacy along the way, and where it's headed. If that interests you, a sample post is below. DoxxScore goes live next week, so stay tuned for more information. &#8987;</p><div class="comment" data-attrs="{&quot;url&quot;:&quot;https://open.substack.com/&quot;,&quot;commentId&quot;:223555918,&quot;comment&quot;:{&quot;id&quot;:223555918,&quot;date&quot;:&quot;2026-03-05T19:42:04.863Z&quot;,&quot;edited_at&quot;:&quot;2026-03-21T16:00:16.466Z&quot;,&quot;body&quot;:&quot;Part 5: First Look at the DoxxScore Site\n\nWe've been heads-down building DoxxScore for weeks. Today I want to share a first look at the website.\n\nA few design decisions that were important to us:\n\n\n\n\n\nClean and professional. Privacy is a serious topic. We avoided anything cutesy or gamified. The interface is built to communicate trust and clarity.\n\n\n\nInformation hierarchy. When someone gets their results, the most important thing is: what's my risk level and what do I do about it? Everything else is secondary. The design reflects that.\n\n\n\nActionable by default. Every finding in your report comes with a recommended next step. We didn't want people to feel overwhelmed. We wanted them to feel equipped.\n\nStill in testing and still refining. But getting close. &#9203;&quot;,&quot;body_json&quot;:{&quot;type&quot;:&quot;doc&quot;,&quot;attrs&quot;:{&quot;schemaVersion&quot;:&quot;v1&quot;},&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;Part 5: First Look at the DoxxScore Site&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;We've been heads-down building DoxxScore for weeks. Today I want to share a first look at the website.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;A few design decisions that were important to us:&quot;}]},{&quot;type&quot;:&quot;bulletList&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;listItem&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;Clean and professional&quot;},{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;. Privacy is a serious topic. We avoided anything cutesy or gamified. The interface is built to communicate trust and clarity.&quot;}]}]},{&quot;type&quot;:&quot;listItem&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;Information hierarchy&quot;},{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;. When someone gets their results, the most important thing is: what's my risk level and what do I do about it? Everything else is secondary. The design reflects that.&quot;}]}]},{&quot;type&quot;:&quot;listItem&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;Actionable by default&quot;},{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;. Every finding in your report comes with a recommended next step. We didn't want people to feel overwhelmed. We wanted them to feel equipped.&quot;}]}]}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;Still in testing and still refining. But getting close. &#9203;&quot;}]}]},&quot;restacks&quot;:2,&quot;reaction_count&quot;:10,&quot;attachments&quot;:[{&quot;id&quot;:&quot;2ff473b2-8e40-441d-869d-0875a21a861c&quot;,&quot;type&quot;:&quot;image&quot;,&quot;imageUrl&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e0e6636f-dffe-481f-9804-40d9cf424269_668x531.png&quot;,&quot;imageWidth&quot;:668,&quot;imageHeight&quot;:531,&quot;explicit&quot;:false},{&quot;id&quot;:&quot;e3315a37-2754-4975-b6fe-89707329dec2&quot;,&quot;type&quot;:&quot;image&quot;,&quot;imageUrl&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8047196f-d88c-428d-9de6-c050f3770faf_618x518.png&quot;,&quot;imageWidth&quot;:618,&quot;imageHeight&quot;:518,&quot;explicit&quot;:false},{&quot;id&quot;:&quot;f928b951-15bd-4555-a028-b8f4c1cb77ca&quot;,&quot;type&quot;:&quot;image&quot;,&quot;imageUrl&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2b64526f-7e36-4369-bce5-9a153f41cda1_646x517.png&quot;,&quot;imageWidth&quot;:646,&quot;imageHeight&quot;:517,&quot;explicit&quot;:false},{&quot;id&quot;:&quot;e0fbdafa-7c14-4fc3-ab01-61d871ffdc2a&quot;,&quot;type&quot;:&quot;image&quot;,&quot;imageUrl&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1fabe045-4281-41e6-97ff-3be989ccc6c5_627x449.png&quot;,&quot;imageWidth&quot;:627,&quot;imageHeight&quot;:449,&quot;explicit&quot;:false},{&quot;id&quot;:&quot;c25a000c-015c-4be2-8910-61def4e1e3ea&quot;,&quot;type&quot;:&quot;comment&quot;,&quot;publication&quot;:null,&quot;post&quot;:null,&quot;comment&quot;:{&quot;id&quot;:221958200,&quot;body&quot;:&quot;The Hardest Part of Building a Privacy Tool\n\nHere's the hard part about building a privacy-focused product, which probably isn&#8217;t all that surprising:\n\n\n\nYou constantly run into tension between the product you want to build and the principles behind it.\n\nDoxxScore is a tool that helps people understand their digital exposure. To do that effectively, we need to ask the right questions. That includes your online habits, your digital footprint, and the decisions you've made (or haven't made) about your personal information over the years.\n\nIn other words: \n\n\n\nwe need to do some of the same things that make people uncomfortable when data brokers do it.\n\nThe difference is:\n\n\n\n\n\nconsent\n\n\n\ntransparency\n\n\n\npurpose.\n\nUsers opt in. They know exactly what we're checking. And the entire point is to help them reduce their exposure, not profit from it.\n\nBut that tension forced us to think very carefully about how we handle data, what we store (as little as possible), and how to communicate what we're doing at every step.\n\nBuilding in the privacy space means your product has to live up to a higher standard. Your users are privacy-conscious by definition. They'll read your privacy policy. They'll ask hard questions.\n\nAnd they should.&quot;,&quot;body_json&quot;:{&quot;type&quot;:&quot;doc&quot;,&quot;attrs&quot;:{&quot;schemaVersion&quot;:&quot;v1&quot;},&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;marks&quot;:[{&quot;type&quot;:&quot;bold&quot;}],&quot;text&quot;:&quot;The Hardest Part of Building a Privacy Tool&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;Here's the hard part about building a privacy-focused product, which probably isn&#8217;t all that surprising:&quot;}]},{&quot;type&quot;:&quot;blockquote&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;You constantly run into tension between the product you want to build and the principles behind it.&quot;}]}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;DoxxScore is a tool that helps people understand their digital exposure. To do that effectively, we need to ask the right questions. That includes your online habits, your digital footprint, and the decisions you've made (or haven't made) about your personal information over the years.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;In other words: &quot;}]},{&quot;type&quot;:&quot;blockquote&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;we need to do some of the same things that make people uncomfortable when data brokers do it.&quot;}]}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;The difference is:&quot;}]},{&quot;type&quot;:&quot;orderedList&quot;,&quot;attrs&quot;:{&quot;start&quot;:1,&quot;type&quot;:null},&quot;content&quot;:[{&quot;type&quot;:&quot;listItem&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;consent&quot;}]}]},{&quot;type&quot;:&quot;listItem&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;transparency&quot;}]}]},{&quot;type&quot;:&quot;listItem&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;purpose.&quot;}]}]}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;Users opt in. They know exactly what we're checking. And the entire point is to help them reduce their exposure, not profit from it.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;But that tension forced us to think very carefully about how we handle data, what we store (as little as possible), and how to communicate what we're doing at every step.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;Building in the privacy space means your product has to live up to a higher standard. Your users are privacy-conscious by definition. They'll read your privacy policy. They'll ask hard questions.&quot;}]},{&quot;type&quot;:&quot;paragraph&quot;,&quot;content&quot;:[{&quot;type&quot;:&quot;text&quot;,&quot;text&quot;:&quot;And they should.&quot;}]}]},&quot;publication_id&quot;:null,&quot;post_id&quot;:null,&quot;user_id&quot;:169760400,&quot;type&quot;:&quot;feed&quot;,&quot;date&quot;:&quot;2026-03-02T17:26:45.870Z&quot;,&quot;edited_at&quot;:&quot;2026-03-21T16:00:33.079Z&quot;,&quot;ancestor_path&quot;:&quot;&quot;,&quot;reply_minimum_role&quot;:&quot;everyone&quot;,&quot;media_clip_id&quot;:null,&quot;user&quot;:{&quot;id&quot;:169760400,&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;handle&quot;:&quot;secretsofprivacy&quot;,&quot;previous_name&quot;:null,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/53778fb9-dd8e-4594-82d5-b49708bb0864_3214x2880.png&quot;,&quot;bio&quot;:&quot;Practical privacy for busy people. Cut your digital exposure, avoid common threats, and stack simple privacy wins.&quot;,&quot;profile_set_up_at&quot;:&quot;2023-09-18T19:21:06.695Z&quot;,&quot;reader_installed_at&quot;:&quot;2024-03-10T17:28:13.530Z&quot;,&quot;bestseller_tier&quot;:null,&quot;status&quot;:{&quot;bestsellerTier&quot;:null,&quot;subscriberTier&quot;:null,&quot;leaderboard&quot;:null,&quot;vip&quot;:false,&quot;badge&quot;:null,&quot;paidPublicationIds&quot;:[],&quot;subscriber&quot;:null},&quot;primary_publication&quot;:{&quot;id&quot;:1961031,&quot;subdomain&quot;:&quot;secretsofprivacy&quot;,&quot;custom_domain&quot;:&quot;www.secretsofprivacy.com&quot;,&quot;custom_domain_optional&quot;:false,&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;logo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;author_id&quot;:169760400,&quot;user_id&quot;:169760400,&quot;handles_enabled&quot;:false,&quot;explicit&quot;:false,&quot;is_personal_mode&quot;:false,&quot;payments_state&quot;:&quot;enabled&quot;,&quot;pledges_enabled&quot;:false,&quot;ios_app_payments_enabled&quot;:true}},&quot;reaction_count&quot;:10,&quot;reactions&quot;:{&quot;&#10084;&quot;:10},&quot;restacks&quot;:2,&quot;restacked&quot;:false,&quot;children_count&quot;:1,&quot;user_bestseller_tier&quot;:null,&quot;userStatus&quot;:{&quot;bestsellerTier&quot;:null,&quot;subscriberTier&quot;:null,&quot;leaderboard&quot;:null,&quot;vip&quot;:false,&quot;badge&quot;:null,&quot;paidPublicationIds&quot;:[],&quot;subscriber&quot;:null},&quot;user_primary_publication&quot;:{&quot;id&quot;:1961031,&quot;subdomain&quot;:&quot;secretsofprivacy&quot;,&quot;custom_domain&quot;:&quot;www.secretsofprivacy.com&quot;,&quot;custom_domain_optional&quot;:false,&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;logo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9cc9649c-9d5f-41b2-9190-62cd7b3f1762_1000x1000.png&quot;,&quot;author_id&quot;:169760400,&quot;user_id&quot;:169760400,&quot;handles_enabled&quot;:false,&quot;explicit&quot;:false,&quot;is_personal_mode&quot;:false,&quot;payments_state&quot;:&quot;enabled&quot;,&quot;pledges_enabled&quot;:false,&quot;ios_app_payments_enabled&quot;:true},&quot;language&quot;:null,&quot;autotranslate_to&quot;:null,&quot;attachments&quot;:[{&quot;id&quot;:&quot;7b989b17-335e-4cb3-81e2-a763886cecf2&quot;,&quot;type&quot;:&quot;textlink&quot;,&quot;url&quot;:&quot;https://substack.com/@secretsofprivacy/note/c-220937042&quot;}]},&quot;trackingParameters&quot;:{&quot;item_primary_entity_key&quot;:&quot;c-221958200&quot;,&quot;item_entity_key&quot;:&quot;c-221958200&quot;,&quot;item_type&quot;:&quot;comment&quot;,&quot;item_comment_id&quot;:221958200,&quot;item_content_user_id&quot;:169760400,&quot;item_content_timestamp&quot;:&quot;2026-03-02T17:26:45.870Z&quot;,&quot;item_context_type&quot;:&quot;comment&quot;,&quot;item_context_type_bucket&quot;:&quot;&quot;,&quot;item_context_timestamp&quot;:&quot;2026-03-02T17:26:45.870Z&quot;,&quot;item_context_user_id&quot;:169760400,&quot;item_context_user_ids&quot;:[],&quot;item_can_reply&quot;:false,&quot;item_last_impression_at&quot;:null,&quot;impression_id&quot;:&quot;f44dea60-3d0e-4ed8-80cd-90c061d59d2c&quot;,&quot;followed_user_count&quot;:233,&quot;subscribed_publication_count&quot;:24,&quot;is_following&quot;:true,&quot;is_explicitly_subscribed&quot;:false,&quot;note_velocity_factor&quot;:0.985486645171,&quot;note_delay_seconds&quot;:85,&quot;note_notes_per_hour&quot;:5446.599876,&quot;item_current_reaction_count&quot;:10,&quot;item_current_restack_count&quot;:2,&quot;item_current_reply_count&quot;:1}}],&quot;name&quot;:&quot;Secrets of Privacy&quot;,&quot;user_id&quot;:169760400,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/53778fb9-dd8e-4594-82d5-b49708bb0864_3214x2880.png&quot;,&quot;user_bestseller_tier&quot;:null,&quot;userStatus&quot;:{&quot;bestsellerTier&quot;:null,&quot;subscriberTier&quot;:null,&quot;leaderboard&quot;:null,&quot;vip&quot;:false,&quot;badge&quot;:null,&quot;paidPublicationIds&quot;:[],&quot;subscriber&quot;:null}},&quot;source&quot;:null,&quot;forumChannel&quot;:null}" data-component-name="CommentPlaceholder"></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><p><em>Looking for help with a privacy issue or privacy concern? Chances are we&#8217;ve covered it already or will soon. Follow us on <a href="https://twitter.com/secretsofprivac">X</a> and <a href="https://www.linkedin.com/company/secrets-of-privacy/">LinkedIn</a> for updates on this topic and other internet privacy related topics.</em></p><div><hr></div><h5><strong>Disclaimer: None of the above is to be deemed legal advice of any kind. These are *opinions* written by a privacy and tech attorney with years of working for, with and against Big Tech and Big Data. And this post is for informational purposes only and is not intended for use in furtherance of any unlawful activity. This post may also contain affiliate links, which means that at no additional cost to you, we earn a commission if you click through and make a purchase.</strong></h5><ul><li><p>Privacy freedom is more affordable than you think. We tackle the top Big Tech digital services and price out privacy friendly competitors <a href="https://www.secretsofprivacy.com/p/from-free-to-freedom-how-much-it-costs-to-take-back-your-online-privacy">here</a>. The results may surprise you.</p></li><li><p>Check out our new, free <a href="https://tools.secretsofprivacy.com/username-generator">username generator</a> to help you create unique usernames for different accounts. Reusing usernames is convenient, but terrible for your privacy. This tool makes it easy to create unique usernames on the fly.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share Secrets of Privacy&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://www.secretsofprivacy.com/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share Secrets of Privacy</span></a></p></li></ul>]]></content:encoded></item></channel></rss>