Social.woefdram.nl
Login
Register
Social.woefdram.nl
Login
Register
System Apps
Directory
Help
Language
Public Stream
QRator
Random Channel
Report Bug
Search
Sat, 14 Dec 2024 21:24:36 +0100
View Profile
Dale Price
via
Fubaroque
dale_price@mastodon.online
This is what the iOS contact permission prompt should be
Link to Source
Newer model iPhone mockup. At the top of the screen is a grid of contact pictures and the text “You have 579 contacts. Contact information includes names, emails, photos, phone numbers, addresses and more”. In the lower half of the screen, there is a header “Get permission before sharing contact info” with the text “We're not going to let you betray your friends that easily. You'll need to get their permission to allow ‘Flashlight Pro Free HD’ to access their contact info.” At the bottom are two buttons: “Request Permission From 579 Contacts” and “Don’t Share”
10
Fubaroque
Bert Hubert NL 🇺🇦🇪🇺
Ivo
Hans van Zijst
Jeroen van Tol 🍋
Thib
Hylke 🍵
Eelco alias 'Systeemkabouter'
🦊 Paul Schoonhoven 🍉 🍋
bazkie, bonkwave superstar
show all
43 comments
Sat, 14 Dec 2024 21:44:06 +0100
View Profile
Dale Price
dale_price@mastodon.online
and what the requestees see:
Link to Source
iPhone showing alert: “John Doe wants to share your contact information with ‘Flashlight Pro Free HD’. The app ‘Flashlight Pro Free HD’ on John’s iPhone will have access to your name, email, phone number, photo, address, and more.” The buttons are: “Allow" “Don’t Allow” “Block John and Delete From Contacts”
1
🦊 Paul Schoonhoven 🍉 🍋
Sat, 14 Dec 2024 22:36:06 +0100
View Profile
Rosie 🌹 :verified_trans: :queercat_lesbian:
rpmrosie@mk.absturztau.be
@dale_price@mastodon.online
same for android tbh
i always deny the permission no matter what
Link to Source
Sat, 14 Dec 2024 22:40:38 +0100
View Profile
CM Harrington
octothorpe@mastodon.online
@dale_price
just the third button is actually needed.
Link to Source
Sat, 14 Dec 2024 22:42:27 +0100
last edited: Sun, 15 Dec 2024 10:04:48 +0100
View Profile
Mer-fOKxTOwl
glowl@chaos.social
@dale_price
recently someone in an element call had an error and their "element call" part of element crashed. when that happend everyone of us got a popup with a request to give permission for them to share the crash logs.
first time i have ever seen such a thing happen.
Link to Source
Sat, 14 Dec 2024 22:55:48 +0100
View Profile
Farshid Hakimy / فرشید
farshidhakimy@chaos.social
@dale_price
this is how EVERY contact permission prompt should look like, not only the iOS one.
And there should be an option to share fake data with the app for it to stop asking for this permission.
Link to Source
Sun, 15 Dec 2024 00:01:52 +0100
View Profile
LuckyLuke
luckyluke4411@mastodon.social
@dale_price
Link to Source
Sun, 15 Dec 2024 00:11:54 +0100
View Profile
Advanced Persistent Teapot
http_error_418@hachyderm.io
@dale_price
yes except the default option and alternate should be the other way around
Link to Source
Sun, 15 Dec 2024 00:18:16 +0100
View Profile
Maarten Sneep
mrtnsnp@mastodon.social
@dale_price
Exactly, get even with the “We and our 1465 partners value your privacy”. This one is from vice.com.
Link to Source
GDPR dialog. We value your privacy We and our partners store and/or access information on a device, such as cookies and process personal data, such as unique identifiers and standard information sent by a device for personalised advertising and content, advertising and content measurement, audience research and services development. With your permission we and our partners may use precise geolocation data and identification through device scanning. You may click to consent to our and our 1465 partners’ processing as described above.
Sun, 15 Dec 2024 00:28:38 +0100
View Profile
Mason
mason@autistics.life
@dale_price
heck yea
Link to Source
Sun, 15 Dec 2024 01:03:24 +0100
View Profile
Josh
josh@bne.social
@dale_price
People need to look up consent and permission before submitting contact details via any sharing features too lol
Link to Source
Sun, 15 Dec 2024 01:06:25 +0100
View Profile
Mx Amber Alex (she/it)
amberage@eldritch.cafe
@dale_price
AMEN
Link to Source
Sun, 15 Dec 2024 02:30:45 +0100
View Profile
Aday
Aday@mas.to
@dale_price
the fact that they can share a photo of you with any gen AI seems a more pressing issue to me.
Link to Source
Sun, 15 Dec 2024 02:33:05 +0100
View Profile
zetabeta
zetabeta@mastodon.social
@dale_price
i edited little bit!
possible copyrights belong to actual owner, not for me.
Link to Source
edited picture. prompt in a smartphone screen for asking permission. first option is "allow". second option is "don't allow". third is much bigger than other two, it says "Block John Doe and Delete from contacts!".
Sun, 15 Dec 2024 05:27:08 +0100
View Profile
kat
kataclyst@spore.social
@dale_price
This is the way!
Link to Source
Sun, 15 Dec 2024 05:45:53 +0100
View Profile
bigiain
bigiain@aus.social
@dale_price
You left out the “Delete my name and all my details from John’s contacts.”
Link to Source
Sun, 15 Dec 2024 05:58:12 +0100
View Profile
Fred Brooker
fredbrooker@witter.cz
@dale_price
life doesn't work that way
Link to Source
Sun, 15 Dec 2024 07:14:18 +0100
View Profile
impossibleibex 4Harris
impossibleibex@mastodon.social
@dale_price
is there any reason why a flashlight app needs contact permissions?
Link to Source
Sun, 15 Dec 2024 07:15:59 +0100
View Profile
Fully operational gator system
MontgomeryGator@fouroclockfarms.club
@dale_price
There are programs on Android that kinda do this by misusing the work apps profile feature. This is where I throw social media and fast food apps. There are no contacts in the work mode address book, and when I hit the freeze button they all get chloroform naps.
Link to Source
An app named shelter, a shortcut labeled freeze apps, and a bunch of social media apps with the shelter icon in the corner.
Sun, 15 Dec 2024 07:35:39 +0100
View Profile
Daniel Django :verified_rainbow: (Akkoma)
django@kowelenz.social
@dale_price
imagine getting this request from a contact you haven't talked to in years. Would you block and delete, or only reject the request?
Link to Source
Sun, 15 Dec 2024 07:47:46 +0100
View Profile
Eli the Bearded
elithebearded@fed.qaz.red
@dale_price
If you can't remotely revoke the contact info from the dipshit, what good does it really do?
Link to Source
Sun, 15 Dec 2024 08:42:00 +0100
View Profile
Radlerin 🚴♀️
Radlerin@troet.cafe
@dale_price
There is a problem with this:
How should Flashlight+ Pro Free HD be able to contact me to ask for my permission to access my data if it has not already accessed my data?
Link to Source
Sun, 15 Dec 2024 09:00:16 +0100
View Profile
sebsauvage
sebsauvage@framapiaf.org
@dale_price
THIS.
So much.
Link to Source
Sun, 15 Dec 2024 09:33:42 +0100
View Profile
Fred Brooker
fredbrooker@witter.cz
@dale_price
bullshit
imagine controlling 500 people sharing habits in real life
Link to Source
Sun, 15 Dec 2024 10:02:43 +0100
View Profile
David
deFractal@infosec.exchange
@dale_price
The only third party app I’ve ever allowed access to contacts is
@signalapp
, that’s after seeing in their court responses that, as their published source code implies and privacy commitments claim, they don’t misuse that access.
Link to Source
Sun, 15 Dec 2024 10:35:55 +0100
View Profile
Michal Bryxí 🌱
MichalBryxi@veganism.social
@dale_price
I ... love the idea.
Link to Source
Sun, 15 Dec 2024 10:42:49 +0100
View Profile
Dušan Mitrović
dusnm@polymaths.social
@dale_price
I've unfortunately just accepted this as a fact of human nature. Nobody, and I mean nobody, ever asked me before sharing my contact with a third party, be it another human or, in this case it's even less likely, an app.
Link to Source
Sun, 15 Dec 2024 10:49:53 +0100
View Profile
frigginGlorious ✅
frigginglorious@freeradical.zone
@dale_price
is this what "zero trust" means?
Link to Source
Sun, 15 Dec 2024 12:11:47 +0100
View Profile
翠星石
Suiseiseki@freesoftwareextremist.com
@dale_price
That's not what demon rectangles are about.
If they weren't about doxing absolutely everyone, it wouldn't be possible for a cr...app to access any contact except for the ones you explicitly permit it to.
Link to Source
Sun, 15 Dec 2024 13:19:41 +0100
View Profile
Hans van Zijst
hans@social.woefdram.nl
@
impossibleibex 4Harris
I would say no.
I had a photo gallery on Android once that claimed to need access to my storage (which I understand), my camera (huh?), my network, contacts and agenda.
Needles to say I deleted that app.
@
Dale Price
Link to Source
Sun, 15 Dec 2024 13:44:18 +0100
View Profile
★Pope Miller the Defondor
miller@ruhr.social
@dale_price
a fucking _Flashlight_ App should have no access to contacts at all!
Period.
Link to Source
Sun, 15 Dec 2024 13:58:19 +0100
View Profile
Free Soft&Hardware Enthusiast
goatwildernesscollective@social.librem.one
@dale_price
nice except dont share should be selected by default ;)
Link to Source
Sun, 15 Dec 2024 19:16:46 +0100
View Profile
Kevin Karhan :verified:
kkarhan@infosec.space
@dale_price
+9001%
And it should demand that in writing by notarized letter and to be compliant not just with
#GDPR
, not push anythibg to
#iCloud
(which falls ubder
#CloudAct
aht thus *can'r comply) and preemtively sort out
#minors
(as they can't consent as per
#BDSG
, nor can their parents on their behalf!)...
Link to Source
Sun, 15 Dec 2024 19:40:07 +0100
View Profile
David
idbrii@mastodon.gamedev.place
@dale_price
Also, I wish the model of requesting a single contact was more common. On Android, you don't need address book permissions to open the phone contacts so the user can pick a person. It's only necessary to vacuum up all that personal data (and present it in your own UI).
Briefly looking at CNContact, it looks like iOS doesn't have a similar "pick one contact to share with app" API? What could make them add it?
Link to Source
Sun, 15 Dec 2024 19:42:42 +0100
View Profile
h3artbl33d :openbsd: :ve:
h3artbl33d@exquisite.social
@dale_price
This mockup is fantastic and something we really need.
Link to Source
Sun, 15 Dec 2024 19:55:42 +0100
View Profile
Sabrina Web :privacypride:
sabrinaweb71@sociale.network
@dale_price
there should be one more button, labeled "why the heck a flashlight needs my contacts info???"
Link to Source
Sun, 15 Dec 2024 21:02:56 +0100
View Profile
Saupreiss #Präparat500
Saupreiss@pfalz.social
@dale_price
Im mildly concerned - were used that pretty much all our contact Info is automatically shared with at least one, usually two companies whose whole purpose are advertisement and data abuse. One of them is even praised as „open system“ by many.
Link to Source
Sun, 15 Dec 2024 21:43:11 +0100
View Profile
Joël de Bruijn
me@t.joeldebruijn.nl
@dale_price
Brings back memories about me arguing with a family member who was ok sharing my contact info with ... Clubhouse
Link to Source
Sun, 15 Dec 2024 21:45:00 +0100
View Profile
Korrespondent zur See
Hinnerk@mastodon.social
@dale_price
@jean
But then how shall the app maker be able to maintain a list of who recommended flashlight the to their friends and who not?
Link to Source
Sun, 15 Dec 2024 23:00:13 +0100
View Profile
Metafrastis
dgavin@mastodon.online
@dale_price
Just a liiittle bit more effort and we could make data privacy bring all computer systems to a total halt, crashing the worldwide economy and making smartphones totally useless…
Are you kidding me? I already feel a burning hate for cookie banners and the dozens of times I get asked for consent about all and any thing every day on all my devices. Just let my define what I am OK with in the OS settings and stop bothering me.
Link to Source
Mon, 16 Dec 2024 01:53:11 +0100
View Profile
Christopher Snowhill
chris@social.losno.co
@dale_price
may as well require permission to even manually enter someone's deets into your contacts. That way I wouldn't have the contacts for two public schools who kept bugging me because some family gave my number for their children's contact info.
And I'd have to ask every business or person who ever contacted me to identify themselves and grant me permission to remember them later.
And I can grant automatically because I don't value my inbox privacy enough to be inundated with contact requests.
Link to Source
Mon, 16 Dec 2024 05:22:12 +0100
View Profile
John Gruber
gruber@mastodon.social
@dale_price
This could never work and makes no sense. Let’s say you get my email address from my website. You create a contact card for me with my name and email. You think *I* should get an alert when you want to share my email address and name? And that at that point I should be allowed to delete my info from you contacts, and block you from re-adding me?
Should I also be able to know when you mention me in a note in the Notes app?
Link to Source
Mon, 16 Dec 2024 15:25:38 +0100
View Profile
Dibs
dtwx@mastodon.social
@dale_price
100%
Link to Source
Mon, 16 Dec 2024 20:21:37 +0100
last edited: Mon, 16 Dec 2024 20:32:36 +0100
View Profile
Dale Price
dale_price@mastodon.online
For those tempted to argue about the impracticality of implementing my tongue-in-cheek mockup:
Imagine, instead of the silly alert message, a simple toggle in privacy settings “allow others who have me in their contacts to share my information with apps”
If it’s switched on, it flips a bit on a server that the other person’s OS can check, just like how it checks if you’ve set up iMessage etc.
The point wasn’t the UI, it’s that other people’s info shouldn’t be yours to give out to apps
Link to Source
Conversation Features
Loading...
Conversation Features
Loading...
Login
Email or nickname
Password
Remember me
Login
Register
Password Reset
Remote Authentication