<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Concurring Opinions &#187; Privacy (Consumer Privacy)</title>
	<atom:link href="http://www.concurringopinions.com/archives/category/privacy-consumer-privacy/feed" rel="self" type="application/rss+xml" />
	<link>http://www.concurringopinions.com</link>
	<description>The Law, the Universe, and Everything</description>
	<lastBuildDate>Sat, 21 Nov 2009 02:51:48 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.3</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Consumer Attitudes on Privacy and Behavioral Marketing</title>
		<link>http://www.concurringopinions.com/archives/2009/09/20818.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/09/20818.html#comments</comments>
		<pubDate>Wed, 30 Sep 2009 01:28:39 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=20818</guid>
		<description><![CDATA[<p>Joseph Turow, Chris Hoofnagle, Jennifer King, Amy Bleakley, and Michael Hennessy have just issued a very interesting consumer survey on privacy and behavioral marketing entitled, Americans Reject Tailored Advertising and Three Activities that Enable It.</p>
<p>Some of the survey&#8217;s findings:</p>
<p>* Even when they are told that the act of following them on websites will take place anonymously, Americans’ aversion to it remains: 68% “definitely” would not allow it, and 19% would “probably” not allow it. (p. 2)</p>
<p>* 69% of American adults feel there should be a law that gives people the right to know everything that a website knows about them. (p. 2)</p>
<p>* 92% agree there should be a law that requires “websites and advertising companies to delete all stored information about an individual, if requested [...]]]></description>
			<content:encoded><![CDATA[<p>Joseph Turow, Chris Hoofnagle, Jennifer King, Amy Bleakley, and Michael Hennessy have just issued a very interesting consumer survey on privacy and behavioral marketing entitled, <a href="http://ssrn.com/abstract=1478214">Americans Reject Tailored Advertising and Three Activities that Enable It</a>.</p>
<p>Some of the survey&#8217;s findings:</p>
<blockquote><p>* Even when they are told that the act of following them on websites will take place anonymously, Americans’ aversion to it remains: 68% “definitely” would not allow it, and 19% would “probably” not allow it. (p. 2)</p>
<p>* 69% of American adults feel there should be a law that gives people the right to know everything that a website knows about them. (p. 2)</p>
<p>* 92% agree there should be a law that requires “websites and advertising companies to delete all stored information about an individual, if requested to do so.” (p. 2)</p>
<p>* Signaling frustration over privacy issues, Americans are inclined toward strict punishment of information offenders. 70% suggest that a company should be fined more than the maximum amount suggested ($2,500) “if a company purchases or uses someone’s information illegally.” (p. 3)</p>
<p>* Our survey did find that younger American adults are less likely to say no to tailored advertising than are older ones. Still, more than half (55%) of 18- 24 year-olds do not want tailored advertising. And contrary to consistent assertions of marketers, young adults have as strong an aversion to being followed across websites and offline (for example, in stores) as do older adults. 86% of young adults say they don’t want tailored advertising if it is the result of following their behavior on websites other than one they are visiting, and 90% of them reject it if it is the result of following what they do offline. (p. 2)</p></blockquote>
<p>These are just a few of the many findings in this fascinating <a href="http://ssrn.com/abstract=1478214">survey</a>.  The New York Times has <a href="http://www.nytimes.com/2009/09/30/business/media/30adco.html">coverage of the survey here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/09/20818.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tweeting for the Party</title>
		<link>http://www.concurringopinions.com/archives/2009/09/tweeting-for-the-party.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/09/tweeting-for-the-party.html#comments</comments>
		<pubDate>Mon, 28 Sep 2009 19:11:26 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Cyberlaw]]></category>
		<category><![CDATA[Google & Search Engines]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (Electronic Surveillance)]]></category>
		<category><![CDATA[Privacy (Law Enforcement)]]></category>
		<category><![CDATA[Privacy (National Security)]]></category>
		<category><![CDATA[Social Network Websites]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=20752</guid>
		<description><![CDATA[<p>During the 2008 election, Democrats effectively used Web 2.0 platforms to garner interest in the campaign and win supporters.  President Obama has been widely hailed as the first &#8220;Tech President,&#8221; and he seems to have trounced the Facebook landscape.  To date, President Barack Obama has over 6.6 million Facebook friends, while Sarah Palin only has 848, 614 Facebook pals and Mitt Romney has 70, 130.</p>
<p>Although the President has proven his mettle on Facebook and MySpace (where he has over 1.8 million friends), Republicans rule the day on the micro-blogging front.  The Congressional Research Service reports that congressional Republicans out-tweeted their Democratic counterparts during two one-week periods this summer.  Nancy Scola attributes Congressional Republicans&#8217; Twitter dominance to their desire to regain the public&#8217;s attention and favor [...]]]></description>
			<content:encoded><![CDATA[<p><a rel="attachment wp-att-20756" href="http://www.concurringopinions.com/archives/2009/09/tweeting-for-the-party.html/120px-twitter_badge_1"><img class="alignright size-full wp-image-20756" src="http://www.concurringopinions.com/wp-content/uploads/2009/09/120px-Twitter_Badge_1.png" alt="120px-Twitter_Badge_1" width="120" height="82" /></a>During the 2008 election, Democrats effectively used Web 2.0 platforms to garner interest in the campaign and win supporters.  President Obama has been widely hailed as the first &#8220;Tech President,&#8221; and he seems to have trounced the Facebook landscape.  <a href="http://techpresident.com/scrape_plot/facebook">To date</a>, President Barack Obama has over 6.6 million Facebook friends, while Sarah Palin only has 848, 614 Facebook pals and Mitt Romney has 70, 130.</p>
<p>Although the President has proven his mettle on Facebook and MySpace (where he has over 1.8 million friends), Republicans <a href="http://techpresident.com/blog-entry/twitter-where-republicans-are-majority">rule</a> the day on the micro-blogging front.  The Congressional Research Service <a href="http://www.politico.com/static/PPM138_090922_twitter.html">reports</a> that congressional Republicans out-tweeted their Democratic counterparts during two one-week periods this summer.  Nancy Scola <a href="http://techpresident.com/blog-entry/twitter-where-republicans-are-majority">attributes</a> Congressional Republicans&#8217; Twitter dominance to their desire to regain the public&#8217;s attention and favor now that they are in the minority.  AMERICAblogs&#8217; John Aravosis <a href="http://www.americablog.com/2009/09/republicans-out-tweet-democrats.html">worries</a> that Democrats have ceded their online advantage.</p>
<p>No matter the current political victor in this social media landscape, Government 2.0 is here to stay.  It surely has great potential to shine light on government policymaking and to marshal public participation, especially from people who otherwise wouldn&#8217;t bother getting involved with government policymaking.  Adding the President as a friend on MySpace and joining live chats may seem to be a relatively costless endeavor as compared to writing letters or commenting on agency rulemakings.  But Government 2.0 also poses privacy risks: social media sites not only give government access to people&#8217;s policy insights but also access to all of individuals&#8217; social media data, such as their videos, photos, walls musings, &#8220;Top 25 things you don&#8217;t know about me&#8221; lists, and the like.  Soon, I will be posting on SSRN a draft of my essay &#8220;The One-Way Mirror: Enhancing Participation and Securing Privacy for Government 2.0&#8243; (forthcoming George Washington Law Review) and hope to get your feedback.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/09/tweeting-for-the-party.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Burglars Like Facebook, Too</title>
		<link>http://www.concurringopinions.com/archives/2009/09/burglars-like-facebook-too.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/09/burglars-like-facebook-too.html#comments</comments>
		<pubDate>Tue, 22 Sep 2009 18:53:59 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Anonymity]]></category>
		<category><![CDATA[Criminal Law]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (Law Enforcement)]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Weird]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=20628</guid>
		<description><![CDATA[<p>Facebook offers much to law enforcement, perhaps more than many might think.  Last week, a Pennsylvania man was arraigned for felony burglary, having allegedly broken into a woman&#8217;s home and stolen jewelry.  The defendant seemingly played a big role in ensuring his capture: he checked his Facebook page during the burglary.  The victim noticed that the defendant&#8217;s Facebook account appeared on her computer after the burglary.  No joke.  This takes harming oneself through social networking to a new level.</p>
]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-20631" src="http://www.concurringopinions.com/wp-content/uploads/2009/09/111px-Digitale-crimi.png" alt="111px-Digitale-crimi" width="111" height="120" />Facebook offers much to law enforcement, perhaps more than many might think.  Last week, a Pennsylvania man <a href="http://www.journal-news.net/page/content.detail/id/525232.html">was arraigned</a> for felony burglary, having allegedly broken into a woman&#8217;s home and stolen jewelry.  The defendant seemingly played a big role in ensuring his capture: he checked his Facebook page during the burglary.  The victim noticed that the defendant&#8217;s Facebook account appeared on her computer after the burglary.  No joke.  This takes harming oneself through social networking to a new level.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/09/burglars-like-facebook-too.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Facebook Settles Beacon Lawsuit</title>
		<link>http://www.concurringopinions.com/archives/2009/09/facebook-settles-beacon-lawsuit.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/09/facebook-settles-beacon-lawsuit.html#comments</comments>
		<pubDate>Tue, 22 Sep 2009 05:00:40 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Social Network Websites]]></category>
		<category><![CDATA[Web 2.0]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=20604</guid>
		<description><![CDATA[<p>A while ago, I wrote a lot about  Facebook&#8217;s Beacon on this blog:</p>
<p id="post-12463">* The Facebook-Fandango Connection: Invasion of Privacy?</p>
<p>* Facebook’s Beacon: News Feeds All Over Again?</p>
<p>* Facebook and the Appropriation of Name or Likeness Tort</p>
<p>* The New Facebook Ads — Starring You: Another Privacy Debacle?</p>
<p id="post-12368">* Facebook — the New DoubleClick?</p>
<p id="post-12402">* Facebook Listens and Responds</p>
<p id="post-12335">* Facebook’s Beacon, Blockbuster, and the Video Privacy Protection Act</p>
<p>A class action suit was initiated against Facebook, and recently, a settlement agreement has been reached.  According to the WSJ:</p>
<p>Facebook Inc. said Friday it settled a class-action lawsuit related to its Beacon Web product, a controversial service that displayed actions that users took on other Web sites back on Facebook.</p>
<p>As part of the settlement, which is pending approval [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.concurringopinions.com/archives/images/facebook3.jpg" alt="facebook3.jpg" hspace="5" width="245" height="92" align="right" />A while ago, I wrote a lot about  Facebook&#8217;s Beacon on this blog:</p>
<p id="post-12463">*<a title="Permanent Link to The Facebook-Fandango Connection: Invasion of Privacy?" rel="bookmark" href="../archives/2007/11/the_facebookfan.html"> The Facebook-Fandango Connection: Invasion of Privacy?</a></p>
<p>* <a title="Permanent Link to Facebook’s Beacon: News Feeds All Over Again?" rel="bookmark" href="../archives/2007/11/facebooks_beaco.html">Facebook’s Beacon: News Feeds All Over Again?</a></p>
<p>* <a href="../archives/2007/11/facebook_and_th.html">Facebook and the Appropriation of Name or Likeness Tort</a></p>
<p>* <a href="../archives/2007/11/the_new_faceboo.html">The New Facebook Ads — Starring You: Another Privacy Debacle?</a></p>
<p id="post-12368">* <a title="Permanent Link to Facebook — the New DoubleClick?" rel="bookmark" href="../archives/2007/12/facebook_the_ne.html">Facebook — the New DoubleClick?</a></p>
<p id="post-12402">* <a title="Permanent Link to Facebook Listens and Responds" rel="bookmark" href="../archives/2007/11/facebooks_liste.html">Facebook Listens and Responds</a></p>
<p id="post-12335">* <a title="Permanent Link to Facebook’s Beacon, Blockbuster, and the Video Privacy Protection Act" rel="bookmark" href="../archives/2007/12/facebooks_beaco_1.html">Facebook’s Beacon, Blockbuster, and the Video Privacy Protection Act</a></p>
<p>A class action suit was initiated against Facebook, and recently, a settlement agreement has been reached.  According to the <a href="http://online.wsj.com/article/SB125332446004624573.html">WSJ</a>:</p>
<blockquote><p>Facebook Inc. said Friday it settled a class-action lawsuit related to its Beacon Web product, a controversial service that displayed actions that users took on other Web sites back on Facebook.</p>
<p>As part of the settlement, which is pending approval in the U.S. District Court of the Northern District of California, the social-network concern will shut down the Beacon service, which it has been phasing out but which is still being used by a small number of Web sites, according to a Facebook spokesman.</p>
<p>The company will also pay $9.5 million to create a foundation to fund products that promote online privacy, safety and security, the spokesman said. The settlement was submitted to the court late Friday evening.</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/09/facebook-settles-beacon-lawsuit.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Understanding Privacy in Paperback</title>
		<link>http://www.concurringopinions.com/archives/2009/09/understanding-privacy-in-paperback.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/09/understanding-privacy-in-paperback.html#comments</comments>
		<pubDate>Mon, 14 Sep 2009 14:36:16 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Articles and Books]]></category>
		<category><![CDATA[Book Reviews]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (Electronic Surveillance)]]></category>
		<category><![CDATA[Privacy (Gossip & Shaming)]]></category>
		<category><![CDATA[Privacy (ID Theft)]]></category>
		<category><![CDATA[Privacy (Law Enforcement)]]></category>
		<category><![CDATA[Privacy (Medical)]]></category>
		<category><![CDATA[Privacy (National Security)]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=20251</guid>
		<description><![CDATA[<p>I&#8217;m pleased to announce that my book, Understanding Privacy, has just come out in paperback from Harvard University Press, with a price that&#8217;s much more reasonable and affordable than the hardcover.</p>
<p>Understanding Privacy offers a comprehensive overview of the many difficulties involved in discussions of privacy. Drawing from a broad array of interdisciplinary sources, I set forth a framework for understanding privacy that provides clear practical guidance for engaging with privacy issues.</p>
]]></description>
			<content:encoded><![CDATA[<p><a href="http://understanding-privacy.com"><img src="http://www.concurringopinions.com/archives/images/Cover%205%20medium.jpg" alt="Cover 5 medium.jpg" hspace="5" width="225" height="342" align="right" /></a>I&#8217;m pleased to announce that my book, <a href="http://understanding-privacy.com"><em>Understanding Privacy</em></a>, has just come out in paperback from Harvard University Press, with a price that&#8217;s much more reasonable and affordable than the hardcover.</p>
<p><a href="http://understanding-privacy.com/"><em>Understanding Privacy</em></a> offers a comprehensive overview of the many difficulties involved in discussions of privacy. Drawing from a broad array of interdisciplinary sources, I set forth a framework for understanding privacy that provides clear practical guidance for engaging with privacy issues.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/09/understanding-privacy-in-paperback.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>I See Code: Plain View and Computer Searches</title>
		<link>http://www.concurringopinions.com/archives/2009/08/i-see-code-plain-view-and-computer-searches.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/08/i-see-code-plain-view-and-computer-searches.html#comments</comments>
		<pubDate>Thu, 27 Aug 2009 13:01:15 +0000</pubDate>
		<dc:creator>Deven Desai</dc:creator>
				<category><![CDATA[Cyberlaw]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (Electronic Surveillance)]]></category>
		<category><![CDATA[Privacy (Law Enforcement)]]></category>
		<category><![CDATA[Privacy (National Security)]]></category>
		<category><![CDATA[Balco]]></category>
		<category><![CDATA[Fourth Amendment]]></category>
		<category><![CDATA[Judge Kozinski]]></category>
		<category><![CDATA[Ninth Circuit]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=19550</guid>
		<description><![CDATA[<p>The Ninth Circuit has taken a swat computer searches and the plain view doctrine (pdf). I have not yet read the entire opinion but Orin Kerr has a series of posts about the decision here. And Shaun Martin, for whom I have a ton of respect as well, covers the case here. Shaun&#8217;s post captures how well-written the opinion is: &#8220;In my dreams I could write an opinion this good. It&#8217;s clear. It&#8217;s concise. It provides meaningful, systemic guidelines. It&#8217;s just. It&#8217;s got a keen sense of both the practical way the world works as well as the dangers inherent in certain conduct. In short, it&#8217;s exactly what I want in a wide-ranging opinion that makes meaningful precedent. &#8230; If you only read a dozen [...]]]></description>
			<content:encoded><![CDATA[<p>The Ninth Circuit has taken a <a href="http://www.ca9.uscourts.gov/datastore/opinions/2009/08/26/05-10067eb.pdf">swat computer searches and the plain view doctrine</a> (pdf). I have not yet read the entire opinion but Orin Kerr has a series of <a href="http://www.volokh.com/archives/archive_2009_08_23-2009_08_29.shtml#1251345830">posts about the decision here</a>. And Shaun Martin, for whom I have a ton of respect as well, <a href="http://calapp.blogspot.com/2009/08/us-v-comprehensive-drug-testing-9th-cir.html">covers the case here</a>. Shaun&#8217;s post captures how well-written the opinion is: &#8220;In my dreams I could write an opinion this good. It&#8217;s clear. It&#8217;s concise. It provides meaningful, systemic guidelines. It&#8217;s just. It&#8217;s got a keen sense of both the practical way the world works as well as the dangers inherent in certain conduct. In short, it&#8217;s exactly what I want in a wide-ranging opinion that makes meaningful precedent. &#8230; If you only read a dozen Ninth Circuit opinions this year, this should be amongst them.&#8221;</p>
<p>Dan and others will likely have more to say, so stay tuned, folks. As Orin notes, &#8220;This is really new territory, so it will be interesting to see how it plays out. I suspect we&#8217;ll find out soon, as there are a lot of these cases.&#8221; In the interim, here are three paragraphs worth reading:</p>
<blockquote><p>The point of the Tamura procedures is to maintain the privacy of materials that are intermingled with seizable materials, and to avoid turning a limited search for particular information into a general search of office file systems and computer databases. If the government can’t be sure whether data may be concealed, compressed, erased or booby-trapped without carefully examining the contents of every file—and we have no cavil with this general proposition—then everything the government chooses to seize will, under this theory, automatically come into plain view. Since the government agents ultimately decide how much to actually take, this will create a powerful incentive for them to seize more rather than less: Why stop at the list of all baseball players when you can seize the entire Tracey Directory? Why just that directory and not the entire hard drive? Why just this computer and not the one in the next room and the next room after that? Can’t find the computer? Seize the Zip disks under the bed in the room where the computer once might have been. See United States v. Hill, 322 F. Supp. 2d 1081 (C.D. Cal. 2004). Let’s take everything back to the lab, have a good look around and see what we might stumble upon.</p>
<p>This would make a mockery of Tamura and render the carefully crafted safeguards in the Central District warrant a nullity. All three judges below rejected this construction, and with good reason. One phrase in the warrant cannot be read as eviscerating the other parts, which would be the result if the “otherwise legally seized” language were read to permit the government to keep anything one of its agents happened to see while performing a forensic analysis of a hard drive. The phrase is more plausibly construed as referring to any evidence that the government is entitled to retain entirely independent of this seizure.</p>
<p>To avoid this illogical result, the government should, in future warrant applications, forswear reliance on the plain view doctrine or any similar doctrine that would allow it to retain data to which it has gained access only because it was required to segregate seizable from non-seizable data. If the government doesn’t consent to such a waiver, the magistrate judge should order that the seizable and non-seizable data be separated by an independent third party under the supervision of the court, or deny the warrant altogether. </p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/08/i-see-code-plain-view-and-computer-searches.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Booze, Budget Cuts, and Politics: A Facebook Tell-All</title>
		<link>http://www.concurringopinions.com/archives/2009/08/booze-budget-cuts-and-politics-a-facebook-tell-all.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/08/booze-budget-cuts-and-politics-a-facebook-tell-all.html#comments</comments>
		<pubDate>Mon, 24 Aug 2009 14:15:19 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Culture]]></category>
		<category><![CDATA[Current Events]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=19410</guid>
		<description><![CDATA[<p>Every summer, the Maryland Association of Counties (MACO) sponsors a networking bonanza where pols solidify contacts over drinks.  With the budget disaster, Maryland Governor Martin O&#8217;Malley promised a &#8220;sober&#8221; MACO outing.  Surely, partying on the state&#8217;s dime would seem in poor taste given the state&#8217;s continued layoffs and furloughs.  Well, that was the plan, at least in theory.</p>
<p>During the MACO conference, a gubernatorial staffer posted 115 party pics on Facebook, documenting the Governor, Mayor, county executives, and staffers having drinks during the event.  It took little time for the pictures to leak: they now reside on the blog Maryland Politics Watch despite the staffer&#8217;s delection of the pictures from his Facebook page.</p>
<p>Why would the staffer post the party pics given the Governor&#8217;s admonition for a [...]]]></description>
			<content:encoded><![CDATA[<p>Every summer, the Maryland Association of Counties (MACO) sponsors a networking bonanza where pols solidify contacts over drinks.  With the budget disaster, Maryland Governor Martin O&#8217;Malley promised a &#8220;<a href="http://maryland-politics.blogspot.com/2009/08/pols-party-while-budget-burns.html">sober</a>&#8221; MACO outing.  Surely, partying on the state&#8217;s dime would seem in poor taste given the state&#8217;s continued layoffs and furloughs.  Well, that was the plan, at least in theory.</p>
<p>During the MACO conference, a gubernatorial staffer posted <a href="http://maryland-politics.blogspot.com/2009/08/pols-party-while-budget-burns.html">115 party pics</a> on Facebook, documenting the Gove<a rel="attachment wp-att-19423" href="http://www.concurringopinions.com/archives/2009/08/booze-budget-cuts-and-politics-a-facebook-tell-all.html/111px-party_shooter"><img class="alignright size-full wp-image-19423" src="http://www.concurringopinions.com/wp-content/uploads/2009/08/111px-Party_shooter.jpg" alt="111px-Party_shooter" width="111" height="120" /></a>rnor, Mayor, county executives, and staffers having drinks during the event.  It took little time for the pictures to leak: they now reside on the blog <a href="http://maryland-politics.blogspot.com/2009/08/pols-party-while-budget-burns.html">Maryland Politics Watch</a> despite the staffer&#8217;s delection of the pictures from his Facebook page.</p>
<p>Why would the staffer post the party pics given the Governor&#8217;s admonition for a sober event and given the dour economic outlook in the state?  Guest blogger <a href="http://james.grimmelmann.net/">James Grimmelmann</a><a href="http://james.grimmelmann.net/">&#8217;s</a> important &#8220;<a href="http://www.concurringopinions.com/archives/2009/08/iowa-law-review-volume-94-issue-4-may-2009.html">Saving Facebook</a>&#8221; article, just published in the <a href="http://www.concurringopinions.com/archives/2009/08/iowa-law-review-volume-94-issue-4-may-2009.html">Iowa Law Review</a>, explains why.  Social network site users have a powerful sense of privacy.  Facebook&#8217;s design produces the sense that users engage in private conversations.  Users see their friends&#8217; pictures and names when they send messages and post wall missives, pictures, and videos.  They sense that users are &#8220;just like them&#8221; and thus would be unlikely to betray them.  We also trust others because double nuclear annihilation lurks.  If we publicize our friends&#8217; pictures and videos beyond the Facebook walls, we can expect the same in turn.  As Grimmelmann convincingly develops, social network site users cannot appreciate the real privacy risks of sharing on Facebook: we are cognitively limited in that way.  Grimmelmann&#8217;s piece develops a strategy for addressing these issues and is a must read.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/08/booze-budget-cuts-and-politics-a-facebook-tell-all.html/feed</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>The Convergence of the Public and Private in Online Spaces</title>
		<link>http://www.concurringopinions.com/archives/2009/08/the-convergence-of-the-public-and-private-in-online-spaces.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/08/the-convergence-of-the-public-and-private-in-online-spaces.html#comments</comments>
		<pubDate>Wed, 05 Aug 2009 14:02:05 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Cyberlaw]]></category>
		<category><![CDATA[Google & Search Engines]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=18731</guid>
		<description><![CDATA[<p></p>
<p>Last month, Government Technology had an article entitled &#8220;Blurring the Line,&#8221; which discussed the increasingly public nature of online social networking sites.  Employers now &#8220;friend&#8221; employees, leaving the employed likely to accept those friendships out of fear for losing their jobs.  The article discusses the problems attendant to the convergence of of our work, social, and family worlds and asks whether this phenomenon will alter the nature of those spaces from a sharing free-for-all to a more buttoned-down, &#8220;not afraid for the boss to see&#8221; experience.</p>
<p>In reading the article, I wondered if the story will play out in a different way, one that will meet employers&#8217; desire to harness the connectivity of social networking sites without compromising its current incarnation.  As we have seen in [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-18734" src="http://www.concurringopinions.com/wp-content/uploads/2009/08/1003297_workman_sign.jpg" alt="1003297_workman_sign" width="100" height="66" /></p>
<p>Last month, <a href="http://www.govtech.com/"><em>Government Technology</em></a> had an article entitled &#8220;<a href="http://www.govtech.com/gt/699077">Blurring the Line</a>,&#8221; which discussed the increasingly public nature of online social networking sites.  Employers now &#8220;friend&#8221; employees, leaving the employed likely to accept those friendships out of fear for losing their jobs.  The article discusses the problems attendant to the convergence of of our work, social, and family worlds and asks whether this phenomenon will alter the nature of those spaces from a sharing free-for-all to a more buttoned-down, &#8220;not afraid for the boss to see&#8221; experience.</p>
<p>In reading the article, I wondered if the story will play out in a different way, one that will meet employers&#8217; desire to harness the connectivity of social networking sites without compromising its current incarnation.  As we have seen in the government sector with internal wikis like Intellipedia, we may see employers increasingly adopt in-house social networking sites, say a [Name] Company Connect.org, just as we have seen employers wade into the Twitter space.  We may already be doing this (and it would be really interesting to learn about it), but perhaps such sites would nip in the bud employers/managers/supervisors&#8217; desire to friend their underlings.  This may detract from the goal of monitoring employees, but we surely have enough of that in the workplace already (as well as the ability to view employees&#8217; profiles for the very many people who fail to set rigorous privacy settings, as ACM studies show).  And it may save employers from having looked at employees&#8217; damning wall musings and pictures and figuring out just what to do about it.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/08/the-convergence-of-the-public-and-private-in-online-spaces.html/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Zuckerberg&#8217;s Law on Data Sharing, Not Puffery</title>
		<link>http://www.concurringopinions.com/archives/2009/07/zuckerbergs-law-on-data-sharing-not-puffery.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/07/zuckerbergs-law-on-data-sharing-not-puffery.html#comments</comments>
		<pubDate>Thu, 16 Jul 2009 19:32:28 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Architecture]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Web 2.0]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=18246</guid>
		<description><![CDATA[<p>As I noted in a blog post late last year, Mark Zuckerberg, chief executive of Facebook, has predicted that “next year, people will share twice as much information as they share this year, and that next year, they will be sharing twice as much as they did the year before.”  He explained that &#8220;people are ever more willing to tell others what they are doing, who their friends are and even what they look like as they crawl home from a college party.  Recent statistics support his optimism (and then some).  Yesterday, Zuckerberg announced that his social networking site now has 250 million active users, up from 200 million users just three months ago and 150 million in January.</p>
<p>This development has much significance.  It tells [...]]]></description>
			<content:encoded><![CDATA[<p>As I noted in a <a href="http://www.concurringopinions.com/archives/2008/12/zuckerbergs_law_1.html">blog</a> post late last year, Mark Zuckerberg, chief executive of Facebook, has <a href="http://query.nytimes.com/gst/fullpage.html?res=9C0DEEDA1F3FF933A25752C1A96E9C8B63">predicted</a> that “next year, people will share twice as much information as they share this year, and that next year, they will be sharing twice as much as they did the year before.”  He explained that &#8220;people are ever more willing to tell others what they are doing, who their friends are and even what they look like as they crawl home from a college party.  Recent statistics support his optimism (and then some).  Yesterday, Zuckerberg <a href="http://www.washingtonpost.com/wp-dyn/content/article/2009/07/15/AR2009071501966.html">announced</a> that his social networking site now has 250 million active users, up from 200 million users just three months ago and 150 million in January.</p>
<p>This development has much significance.  It tells us that social networking is no passing fad &#8212; it is deeply embedded in our daily lives and will likely remain so despite many parents&#8217; dismay.  It suggests that we are more connected personally (and perhaps more distracted professionally).  And it <a rel="attachment wp-att-18280" href="http://www.concurringopinions.com/archives/2009/07/zuckerbergs-law-on-data-sharing-not-puffery.html/120px-facebook_svg"><img class="alignright size-full wp-image-18280" src="http://www.concurringopinions.com/wp-content/uploads/2009/07/120px-facebook_svg.png" alt="120px-facebook_svg" width="120" height="45" /></a>means that we entrust Facebook with an exponentially increasing amount of data.  Facebook&#8217;s information security practices and privacy policies are thus worth watching carefully.  No doubt, this development will have other far-reaching impacts so your comments are most welcome.</p>
<p>Wikimedia Commons Image</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/07/zuckerbergs-law-on-data-sharing-not-puffery.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Predicting Social Security Numbers from Public Data</title>
		<link>http://www.concurringopinions.com/archives/2009/07/predicting-social-security-numbers-from-public-data.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/07/predicting-social-security-numbers-from-public-data.html#comments</comments>
		<pubDate>Tue, 07 Jul 2009 03:41:30 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Articles and Books]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (ID Theft)]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=17976</guid>
		<description><![CDATA[<p>Alessandro Acquisti and Ralph Gross have recently published their provocative article, Predicting Social Security Numbers from Public Data in the Proceedings of the National Academy of Sciences.  According to the abstract:</p>
<p>Information about an individual&#8217;s place and date of birth can be exploited to predict his or her Social Security number (SSN). Using only publicly available information, we observed a correlation between individuals&#8217; SSNs and their birth data and found that for younger cohorts the correlation allows statistical inference of private SSNs. The inferences are made possible by the public availability of the Social Security Administration&#8217;s Death Master File and the widespread accessibility of personal information from multiple sources, such as data brokers or profiles on social networking sites. Our results highlight the unexpected privacy consequences [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-17978" title="ssn" src="http://www.concurringopinions.com/wp-content/uploads/2009/07/ssn.jpg" alt="ssn" width="190" height="199" />Alessandro Acquisti and Ralph Gross have recently published their provocative article, <a href="http://www.pnas.org/content/early/2009/07/02/0904891106.abstract">Predicting Social Security Numbers from Public Data</a> in the <em>Proceedings of the National Academy of Sciences</em>.  According to the abstract:</p>
<blockquote><p>Information about an individual&#8217;s place and date of birth can be exploited to predict his or her Social Security number (SSN). Using only publicly available information, we observed a correlation between individuals&#8217; SSNs and their birth data and found that for younger cohorts the correlation allows statistical inference of private SSNs. The inferences are made possible by the public availability of the Social Security Administration&#8217;s Death Master File and the widespread accessibility of personal information from multiple sources, such as data brokers or profiles on social networking sites. Our results highlight the unexpected privacy consequences of the complex interactions among multiple data sources in modern information economies and quantify privacy risks associated with information revelation in public forums.</p></blockquote>
<p>Acquisti and Gross&#8217;s study has generated significant media attention.  Here&#8217;s an article by Bob Sullivan for <a href="http://redtape.msnbc.com/2009/07/theres-a-new-reason-to-worry-about-the-security-of-your-social-security-number-turns-out-theyre-easy-to-guess--a-gro.html">MSNBC </a>and by Hadley Leggett for <a href="http://www.wired.com/wiredscience/2009/07/predictingssn/">Wired</a>.  As Sullivan writes:</p>
<blockquote><p>The two say they can guess the first 5 digits of the Social Security number of anyone born after 1988 within two guesses, knowing only birth date and location. The last four digits, while harder to guess, can be had within a few hundred guesses in many situations &#8212; a trivial hurdle for criminals using automated tools.</p></blockquote>
<p>SSNs are currently used by numerous businesses and organizations to allow access to accounts – they function as a kind of password.  They are also used to verify identity when people sign up for a new credit card or other account.  They are thus a very useful tool for identity thieves and fraudsters who want to impersonate people to improperly access their accounts or obtain credit cards in their name.</p>
<p>The current focus of policymakers has been to provide better protections against the disclosure of SSNs.</p>
<p>Acquisti and Gross’s paper provides a powerful demonstration that protecting against the disclosure of SSNs is not providing enough protection to consumers.   The article shows that no matter how much protection against the disclosure of SSNs, SSNs can be determined with other public information.</p>
<p>Congress or the FTC should prohibit companies from using SSNs as a means to verify identity. Companies, organizations, and government entities should be prohibited from using SSNs as a means of verifying identity to provide access to accounts or to create new accounts.  Merely protecting against the disclosure of SSNs is insufficient since Acquisti and Gross demonstrate they can readily be predicted.</p>
<p>The government and businesses are at fault here.  Too many business and organizations use the SSN improperly as a means to verify identity.  And the government is at fault for creating the SSN and allowing it to be used improperly in ways that harm people.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/07/predicting-social-security-numbers-from-public-data.html/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>New Developments in Cryptography and Privacy</title>
		<link>http://www.concurringopinions.com/archives/2009/06/new-developments-in-cryptography-and-privacy.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/06/new-developments-in-cryptography-and-privacy.html#comments</comments>
		<pubDate>Tue, 30 Jun 2009 18:35:08 +0000</pubDate>
		<dc:creator>Deven Desai</dc:creator>
				<category><![CDATA[Cyberlaw]]></category>
		<category><![CDATA[Google & Search Engines]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (Electronic Surveillance)]]></category>
		<category><![CDATA[Privacy (Law Enforcement)]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[cryptography]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=17830</guid>
		<description><![CDATA[<p>According to Help Net Security, Craig Gentry, a researcher at IBM, appears to have found a way to allow &#8220;the deep and unlimited analysis of encrypted information &#8211; data that has been intentionally scrambled &#8211; without sacrificing confidentiality.&#8221; The solution involves a an &#8220;ideal lattice.&#8221; I&#8217;ll leave the explanation of all the math to the math/computer science folks. As the Help Net article notes, the solution seems to enable some great advantages for anyone providing cloud computing for:</p>
<p>computer vendors storing the confidential, electronic data of others will be able to fully analyze data on their clients&#8217; behalf without expensive interaction with the client, and without seeing any of the private data. With Gentry&#8217;s technique, the analysis of encrypted information can yield the same detailed results [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.concurringopinions.com/wp-content/uploads/2009/06/ofb_encryption.jpg" alt="ofb_encryption" title="ofb_encryption" width="480" height="229" class="alignright size-full wp-image-17832" />According to <a href="http://www.net-security.org/">Help Net Security</a>, Craig Gentry, a researcher at IBM, appears to have found a way to allow &#8220;<a href="http://www.net-security.org/secworld.php?id=7690">the deep and unlimited analysis of encrypted information &#8211; data that has been intentionally scrambled &#8211; without sacrificing confidentiality</a>.&#8221; The solution involves a an &#8220;ideal lattice.&#8221; I&#8217;ll leave the explanation of all the math to the math/computer science folks. As the Help Net article notes, the solution seems to enable some great advantages for anyone providing cloud computing for:</p>
<blockquote><p>computer vendors storing the confidential, electronic data of others will be able to fully analyze data on their clients&#8217; behalf without expensive interaction with the client, and without seeing any of the private data. With Gentry&#8217;s technique, the analysis of encrypted information can yield the same detailed results as if the original data was fully visible to all.</p></blockquote>
<p>It all sounds wonderful. One could have encrypted data and let others data mine while maintaining anonymity or privacy. Yet, something seemed odd to me. So I did what lawyers do, I called someone who knew more about computer science and asked for some help. That person explained that yes this could mean one could query an encrypted database without decrypting the data. The example to consider is a database of book purchases. One could ask how many people bought both book A and book B and see that result without ever seeing what a specific person purchased. Great, right? Not so fast.</p>
<p>As this person reminded me, with other sources of information one can figure out what a specific person did. That reminded me of the AOL debacle. With a little work, people were able to figure out who the anonymous subjects were. </p>
<p>All of which highlights that privacy is not binary. The cluster of information and the ability to analyze it seems often, if not always, to lead to problems about the use of information. So if this breakthrough allows a company or the government to claim that we should remain calm and all is well, we may want to remain clam but show how all may not be well. A few regulations about the use of the data even if supposedly anonymous, might allow the beneficial aspects of the solution to thrive while limiting the harms that can occur.</p>
<p>Image: <a href="http://commons.wikimedia.org/wiki/File:Ofb_encryption.png">WikiCommons</a><br />
By: Gwenda; License: Public Domain<br />
(My apologies to CS folks if the image does not match the breakthrough&#8217;s area of encryption)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/06/new-developments-in-cryptography-and-privacy.html/feed</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>Why We Should Care About Privacy in a Government 2.0 World</title>
		<link>http://www.concurringopinions.com/archives/2009/06/why-should-we-care-about-the-privacy-implications-of-government-20.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/06/why-should-we-care-about-the-privacy-implications-of-government-20.html#comments</comments>
		<pubDate>Fri, 19 Jun 2009 16:34:07 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Cyberlaw]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (Law Enforcement)]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=17383</guid>
		<description><![CDATA[<p>Yesterday, I wrote about the public&#8217;s expectations regarding privacy when interacting with government on social networking sites such as Facebook, MySpace, Flickr among others.  Why should we care if agencies collect our musings, videos, and pictures that we have willingly shared with online &#8220;friends,&#8221; both real and imaginary ones?</p>
<p>Here are some practical concerns: the personal information on MySpace pages could be collected and joined with other data gathered from private data mining companies, public sector databases, etc.  (Oftentimes, data about us collected by third parties is often faulty).  All together, the information could suggest (albeit falsely) that we constitute a threat to society.  Law enforcement could be informed and our names could be put on watch lists.  This is not a hypothetical problem, see here.  [...]]]></description>
			<content:encoded><![CDATA[<p><a rel="attachment wp-att-17392" href="http://www.concurringopinions.com/archives/2009/06/why-should-we-care-about-the-privacy-implications-of-government-20.html/1151047_women_color_4"><img class="alignright size-full wp-image-17392" src="http://www.concurringopinions.com/wp-content/uploads/2009/06/1151047_women_color_4.jpg" alt="1151047_women_color_4" width="100" height="69" /></a>Yesterday, I <a href="http://www.concurringopinions.com/archives/2009/06/the-privacy-implications-of-friending-the-white-house-part-ii.html">wrote</a> about the public&#8217;s expectations regarding privacy when interacting with government on social networking sites such as Facebook, MySpace, Flickr among others.  Why should we care if agencies collect our musings, videos, and pictures that we have willingly shared with online &#8220;friends,&#8221; both real and imaginary ones?</p>
<p>Here are some practical concerns: the personal information on MySpace pages could be collected and joined with other data gathered from private data mining companies, public sector databases, etc.  (Oftentimes, data about us collected by third parties is often faulty).  All together, the information could suggest (albeit falsely) that we constitute a threat to society.  Law enforcement could be informed and our names could be put on watch lists.  This is not a hypothetical problem, see <a href="http://www.concurringopinions.com/archives/2008/10/cointelpro_in_a.html">here</a>.  If federal agencies collected and maintained that data in their systems, it would be covered by the Privacy Act of 1974.  Nonetheless, you would still appear on a watch list or assigned another ignominious fate by an <a href="http://papers.ssrn.com/sol3/papers.cfm?abstract_id=1012360">automated government system</a>.</p>
<p>As a normative matter, the absence of privacy vis-a-vis government on online social networking sites is unappealing.  It would likely have an impact on our willingness to friend government agencies.  We would be less likely to join online conversations that the Open Government directive hopes to generate.  Or if we friend a government agency because we want to peer inside its operations, we may edit what we include on our profiles.  As <a href="http://www.law.georgetown.edu/faculty/jec/index.htm">Julie Cohen</a> has elegantly developed in her <a href="http://papers.ssrn.com/sol3/papers.cfm?abstract_id=233597">work</a>, the lack of privacy would chill our creativity and desire to experiment with different aspects of our personalities.  And <a href="http://www.bus.miami.edu/faculty-and-research/faculty-directory/business-law/abril/index.html">Patricia Sanchez Abril</a> has a superb piece entitled &#8220;<a href="http://papers.ssrn.com/sol3/papers.cfm?abstract_id=1392285">A (My)Space of One&#8217;s Own: On Privacy and Online Social Networks</a>&#8221; that discusses the social implications of a &#8220;no privacy&#8221; presumption in information we share with our friends on social networking sites.  Justice Douglas&#8217;s remark that &#8220;monitoring, if prevalent, certainly kills free discourse and spontaneous utterances&#8221; should not be lost to us here.</p>
<p>Wikimedia Commons Image</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/06/why-should-we-care-about-the-privacy-implications-of-government-20.html/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>The Privacy Implications of &#8220;Friending&#8221; the White House (Part II)</title>
		<link>http://www.concurringopinions.com/archives/2009/06/the-privacy-implications-of-friending-the-white-house-part-ii.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/06/the-privacy-implications-of-friending-the-white-house-part-ii.html#comments</comments>
		<pubDate>Thu, 18 Jun 2009 17:41:28 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Administrative Law]]></category>
		<category><![CDATA[Google & Search Engines]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=17268</guid>
		<description><![CDATA[<p>Since I last wrote about President Obama&#8217;s Facebook friends, Government 2.0 has  steadily progressed.  Since early May, our Commander-in-Chief has added more than 150,000 new friends.  The FDA has initiated its Transparency Blog and will soon add a Twitter feed and Facebook page.  More state agriculture agencies reach the public through social networking sites.  Of course, the government social-networking phenomenon is not brand new:  since 2007, the Commerce Department&#8217;s National Oceanic and Atmospheric Administration has maintained a virtual island in Second Life  and the CDC has had a MySpace page.   Nonetheless, it is a particularly auspicious time to think about this trend&#8217;s privacy implications especially in light of the GSA&#8217;s recent agreement with video-sharing and social networking sites to permit agencies to use their services.</p>
<p>What [...]]]></description>
			<content:encoded><![CDATA[<p><a rel="attachment wp-att-17349" href="http://www.concurringopinions.com/archives/2009/06/the-privacy-implications-of-friending-the-white-house-part-ii.html/1063773_friends"><img class="alignright size-full wp-image-17349" src="http://www.concurringopinions.com/wp-content/uploads/2009/06/1063773_friends.jpg" alt="1063773_friends" width="100" height="66" /></a>Since I last <a href="http://www.concurringopinions.com/archives/2009/04/president_obama_2.html#more-10178">wrote</a> about President Obama&#8217;s Facebook friends, Government 2.0 has  steadily progressed.  Since early May, our Commander-in-Chief has <a href="http://www.facebook.com/barackobama">added</a> more than 150,000 new friends.  The FDA has initiated its <a href="http://fdatransparencyblog.fda.gov/">Transparency Blog</a> and will soon add a <a href="http://www.genomeweb.com/blog/fda-twitter-feed-and-facebook-page-will-be-next">Twitter feed and Facebook page</a>.  <a href="http://www.chillicothegazette.com/article/20090617/NEWS01/906170307/1002/rss01">More state agriculture agencies</a> reach the public through social networking sites.  Of course, the government social-networking phenomenon is not brand new:  since 2007, the Commerce Department&#8217;s National Oceanic and Atmospheric Administration has maintained a <a href="http://www.federaltimes.com/index.php?S=3240006">virtual island</a> in Second Life  and the CDC has had a MySpace page.   Nonetheless, it is a particularly auspicious time to think about this trend&#8217;s privacy implications especially in light of the GSA&#8217;s recent <a href="http://www.nextgov.com/nextgov/ng_20090325_5490.php">agreement</a> with video-sharing and social networking sites to permit agencies to use their services.</p>
<p>What are the public&#8217;s privacy expectations when using government social media?  It is surely too early to identify a clear sense of our expectations, at least in any well-studied way.  But the Obama Administration has provided some sense of what we should expect when we join a future Facebook group sponsored by OMB or engage in virtual conversations with agency officials in Second Life.  How so?  The current push for agencies to use Web 2.0 platforms stems from President Obama&#8217;s <a href="http://www.gwu.edu/~nsarchiv/news/20090121/2009_transparency_memo.pdf">January 21, 2009 Open Government memorandum</a>.  The memorandum urges executive departments and agencies to be more transparent, participatory, and collaborative.  Agencies &#8220;should harness new technologies to put information about their operations and decisions online and readily available to the public.&#8221;  They should &#8220;offer Americans increased opportunities to participate in policymaking and to provide their Government with the benefits of their collective expertise and information.&#8221;  And they should use &#8220;innovative tools, methods, and systems to cooperate&#8221; and collaborate with the public and private sectors in making policy.  USA.gov&#8217;s Sheila Campbell has <a href="http://www.nextgov.com/nextgov/ng_20090325_5490.php">explained</a> that agencies will appoint directors of new media to determine how they can use social networking tools to meet mission goals and comply with President Obama&#8217;s Open Government directive.  As White House CIO Vivek Kundra has <a href="http://radar.oreilly.com/2009/03/vivek-kundra-federal-cio-in-hi.html">noted</a>, public comment on programs will hopefully be a &#8220;two-way interaction between government and its citizens.&#8221;  White House spokesperson Moira Mack <a href="http://bits.blogs.nytimes.com/2009/05/04/should-the-white-house-be-a-place-for-friends/?pagemode=print">clarified</a> the point:  &#8220;we are focused on opening government to the people (and not the other way around), and like with any other online friends, the individual users can still choose to keep information private using their privacy settings.&#8221;</p>
<p>So what does all of this signal about our privacy when interacting with government agencies via Facebook, MySpace, Twitter, You Tube, etc.?  The Open Government directive tells us that government wants to shine light on <em>its</em> activities and get our opinions and expertise on <em>policy</em> matters.  It says nothing about government&#8217;s interest in our personal lives, i.e., what we write on our friends&#8217; walls, the 25 things you don&#8217;t know about us, our network of friends, etc.  Our personal lives seem downright out of place in any discussion of the Open Government directive.  This seems to create a <em>presumption of openness</em> as to policy-related matters and a <em>presumption of privacy</em> as to individuals&#8217; personal matters.</p>
<p><span id="more-17268"></span>In other words, the Government has created a one-way mirror: the public can peer into agency workings, data, and policymaking but the agency behind the mirror cannot glance back into our personal lives.  And why would we even think that President Obama, the CDC, or NASA has the time or policy-driven motive to see the movies we love, the albums we bought, or the amount of money we spent at a bar?  As a commentator on eParticipation <a href="http://eparticipation.com/content/government-agencies-use-social-networking-sites">noted</a>: &#8220;While the UK Home Office is planning to gain access to social networking sites to snoop on its citizens, the Obama administration seeks to use the same technology to engage with voters and find out what they want.&#8221;  Agencies&#8217; recent forays into Facebook environment reflect this intuition.  Agencies have created Facebook &#8220;fan pages&#8221; that allow Facebook users to join, receive updates (transparency), and conduct discussions on the wall or in forums (participatory/collaborative).  Agencies, however, cannot peer inside the lives of their fans: it is a one-way mirror of sorts.</p>
<p>Tomorrow I will discuss the normative implications of the one-way mirror and would love your feedback on my intuitions.</p>
<p>H/T to the ever-insightful <a href="http://paulohm.com/">Paul Ohm</a> who shared with me his insights on the one-way mirror.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/06/the-privacy-implications-of-friending-the-white-house-part-ii.html/feed</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>Credit Cards, Data Mining, and Privacy</title>
		<link>http://www.concurringopinions.com/archives/2009/05/credit-cards-data-mining-and-privacy.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/05/credit-cards-data-mining-and-privacy.html#comments</comments>
		<pubDate>Mon, 18 May 2009 17:35:35 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>

		<guid isPermaLink="false">http://www.concurringopinions.com/?p=15881</guid>
		<description><![CDATA[<p>The New York Times Magazine has an interesting article entitled What Does Your Credit Card Company Know About You? From the article:</p>
<p>Put another way, credit-card companies are becoming much more interested in understanding their customers’ lives and psyches, because, the theory goes, knowing what makes cardholders tick will help firms determine who is a good bet and who should be shown the door as quickly as possible.</p>
<p>Luckily for the industry, small groups of executives at most of the large firms have spent the last decade studying cardholders from almost every angle, and collection agencies have developed more sophisticated dunning techniques. They have sought to draw psychological and behavioral lessons from the enormous amounts of data the credit-card companies collect every day. They’ve run thousands of [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-15883" title="creditcard-7" src="http://www.concurringopinions.com/wp-content/uploads/2009/05/creditcard-7.jpg" alt="creditcard-7" width="225" height="168" />The New York Times Magazine has an interesting article entitled <a href="http://www.nytimes.com/2009/05/17/magazine/17credit-t.html"><em>What Does Your Credit Card Company Know About You?</em></a> From the article:</p>
<blockquote><p>Put another way, credit-card companies are becoming much more interested in understanding their customers’ lives and psyches, because, the theory goes, knowing what makes cardholders tick will help firms determine who is a good bet and who should be shown the door as quickly as possible.</p>
<p>Luckily for the industry, small groups of executives at most of the large firms have spent the last decade studying cardholders from almost every angle, and collection agencies have developed more sophisticated dunning techniques. They have sought to draw psychological and behavioral lessons from the enormous amounts of data the credit-card companies collect every day. They’ve run thousands of tests and crunched the numbers on millions of accounts. One result of all that labor is the conversation between Santana — a former bouncer whose higher education consists solely of corporate-sponsored classes like “the Psychology of Collections” — and the man from Massachusetts. When Santana contacted the man last month, he was armed with detailed information about his life and trained in which psychological approaches were most likely to succeed.</p></blockquote>
<p>The article goes on to say:</p>
<p><span id="more-15881"></span></p>
<blockquote><p>The exploration into cardholders’ minds hit a breakthrough in 2002, when J. P. Martin, a math-loving executive at Canadian Tire, decided to analyze almost every piece of information his company had collected from credit-card transactions the previous year. Canadian Tire’s stores sold electronics, sporting equipment, kitchen supplies and automotive goods and issued a credit card that could be used almost anywhere. Martin could often see precisely what cardholders were purchasing, and he discovered that the brands we buy are the windows into our souls — or at least into our willingness to make good on our debts. His data indicated, for instance, that people who bought cheap, generic automotive oil were much more likely to miss a credit-card payment than someone who got the expensive, name-brand stuff. People who bought carbon-monoxide monitors for their homes or those little felt pads that stop chair legs from scratching the floor almost never missed payments. Anyone who purchased a chrome-skull car accessory or a “Mega Thruster Exhaust System” was pretty likely to miss paying his bill eventually.</p>
<p>Martin’s measurements were so precise that he could tell you the “riskiest” drinking establishment in Canada — Sharx Pool Bar in Montreal, where 47 percent of the patrons who used their Canadian Tire card missed four payments over 12 months. He could also tell you the “safest” products — premium birdseed and a device called a “snow roof rake” that homeowners use to remove high-up snowdrifts so they don’t fall on pedestrians.</p>
<p>Testing indicated that Martin’s predictions, when paired with other commonly used data like cardholders’ credit histories and incomes, were often much more precise than what the industry traditionally used to forecast cardholder riskiness.</p></blockquote>
<p>For more, read the <a href="http://www.nytimes.com/2009/05/17/magazine/17credit-t.html">article</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/05/credit-cards-data-mining-and-privacy.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Justice Scalia&#8217;s Dossier: Joel Reidenberg Responds</title>
		<link>http://www.concurringopinions.com/archives/2009/05/justice_scalias_3.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/05/justice_scalias_3.html#comments</comments>
		<pubDate>Fri, 01 May 2009 17:43:38 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Supreme Court]]></category>

		<guid isPermaLink="false">http://www.solove.org/archives/2009/05/justice-scalias-dossier-joel-reidenberg-responds.html</guid>
		<description><![CDATA[<p>Professor Joel Reidenberg has asked me to post the following response to the story regarding his Justice Scalia dossier class assignment:</p>
<p>There seems to be significant misinformation circulating in the blogosphere relating to the nature of my class exercise, its instructional use, and how the exercise became public.</p>
<p>The exercise was part of my Information Privacy Law class this semester.   The course, in exploring the origins and scope of privacy law, examined the ways technology can both invade and protect personal information and examined how the law related to those technologies.  We used a traditional case book, Solove &#038; Schwartz, and I supplemented the book with two concurrent exercises that are treated as course materials: 1) each week the students posted links on the [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="Reidenberg-Joel.jpg" src="http://www.concurringopinions.com/archives/images/Reidenberg-Joel.jpg" width="131" height="189" align="right" hspace="5"/><a href="http://reidenberg.home.sprynet.com/">Professor Joel Reidenberg</a> has asked me to post the following response to the <a href="http://www.concurringopinions.com/archives/2009/04/justice_scalias_2.html">story regarding his Justice Scalia dossier class assignment</a>:</p>
<blockquote><p>There seems to be significant misinformation circulating in the blogosphere relating to the nature of my class exercise, its instructional use, and how the exercise became public.</p>
<p>The exercise was part of my Information Privacy Law class this semester.   The course, in exploring the origins and scope of privacy law, examined the ways technology can both invade and protect personal information and examined how the law related to those technologies.  We used a traditional case book, <a href="http://informationprivacylaw.com">Solove &#038; Schwartz</a>, and I supplemented the book with two concurrent exercises that are treated as course materials: 1) each week the students posted links on the course discussion board to news stories related to privacy issues so that we could discuss them in class and make connections to the casebook reading assignments;  and, 2) throughout the semester, the students posted on a class discussion board links to information found on the web related to the class research exercise.</p>
<p>The research exercise is designed for class discussion to illustrate law and policy issues associated with readily available information, contextual use, social norms and the scope of legal protection.  The exercise seeks to provide a first-hand experience for discussions of the boundary between public and private information, the loss of practical obscurity and the capacity of law to respond to these issues.  For the exercise last year, I framed the research as a challenge to the class to find a specific piece of esoteric information about me.   The class was surprised at how much information could be found readily.  This year, I planned for the course to focus more attention on the blurring of public and private information and decided to frame the research exercise as a challenge to find information about a public figure.   Very early in the semester, a news report about Justice Scalia&#8217;s speech was posted on the class discussion board as one of the weekly news items.  He was reported to have made the comment that treating much of the information on the web as private was &#8220;silly.&#8221;</p></blockquote>
<p><span id="more-10168"></span></p>
<blockquote><p>As our class session began to discuss the article and the transparency of personal information on the web, Justice Scalia became the logical public figure for the exercise researching publicly available personal information.  Over the course of the semester, students posted links to web pages containing information about Justice Scalia, which in turn led to information about his family.   To enhance a summation class discussion on the issues of aggregation and secondary use, the loss of anonymity, and legal responses, I had one of the students compile the information in an organized dossier format.   The class was pretty shocked by the results.  This was one of the teachable points.</p>
<p>Our class dossier has remained a course document- we have not published it and have not disclosed the personal information found on the web.</p>
<p>Last week, however, I referenced the exercise during Fordham&#8217;s privacy conference when I gave a presentation on &#8220;The Transparency of Personal Information and the Rule of Law.&#8221;   Here&#8217;s the abstract of my talk:</p>
<blockquote><p>This presentation will explore the erosion of the boundary between public and private information on the Internet.   The thesis is that the transparency of personal information available online erodes the rule of law in two ways.  First, the transparency of personal information that is created by private sector activities enables government to collect and use personal information purchased from the private sector in ways that side step political and legal checks and balances.  Second, technical self-help in the development of network infrastructure that seeks to assure complete anonymity online may used by individuals and groups to evade legal responsibility and the rule of law.  The presentation will conclude with a discussion of governance implications and norms.</p></blockquote>
<p>In illustrating the point that there is an over-transparency of personal information,  I described the class exercise from last year and this year, the type of information the class found and the students&#8217; astonishment at the results.  I did not not release any of Justice Scalia&#8217;s personal information.</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/05/justice_scalias_3.html/feed</wfw:commentRss>
		<slash:comments>41</slash:comments>
		</item>
		<item>
		<title>Justice Scalia&#8217;s Dossier: Interesting Issues about Privacy and Ethics</title>
		<link>http://www.concurringopinions.com/archives/2009/04/justice_scalias_2.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/04/justice_scalias_2.html#comments</comments>
		<pubDate>Wed, 29 Apr 2009 17:43:14 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Supreme Court]]></category>

		<guid isPermaLink="false">http://www.solove.org/archives/2009/04/justice-scalias-dossier-interesting-issues-about-privacy-and-ethics.html</guid>
		<description><![CDATA[<p>Earlier this year, I blogged about Justice Scalia&#8217;s remarks about privacy at the Institute of American and Talmudic Law.  According to media accounts:</p>
<p>&#8220;Every single datum about my life is private? That&#8217;s silly,&#8221; Scalia [said]. . . .</p>
<p>Scalia said he was largely untroubled by such Internet tracking. &#8220;I don&#8217;t find that particularly offensive,&#8221; he said. &#8220;I don&#8217;t find it a secret what I buy, unless it&#8217;s shameful.&#8221;</p>
<p>He added there&#8217;s some information that&#8217;s private, &#8220;but it doesn&#8217;t include what groceries I buy.&#8221; . . . .</p>
<p>Considering every fact about someone&#8217;s life private is &#8220;extraordinary,&#8221; he said, noting that data such as addresses have long been discernible, even if technology has made them easier to find.</p>
<p>At a recent conference at Fordham University sponsored in part by the [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="justice-scalia.jpg" src="http://www.concurringopinions.com/archives/images/justice-scalia.jpg" width="192" height="249" align="right" hspace="5"/>Earlier this year, <a href="http://www.concurringopinions.com/archives/2009/01/justice_scalias_1.html">I blogged about Justice Scalia&#8217;s remarks about privacy</a> at the Institute of American and Talmudic Law.  According to media accounts:</p>
<blockquote><p>&#8220;Every single datum about my life is private? That&#8217;s silly,&#8221; Scalia [said]. . . .</p>
<p>Scalia said he was largely untroubled by such Internet tracking. &#8220;I don&#8217;t find that particularly offensive,&#8221; he said. &#8220;I don&#8217;t find it a secret what I buy, unless it&#8217;s shameful.&#8221;</p>
<p>He added there&#8217;s some information that&#8217;s private, &#8220;but it doesn&#8217;t include what groceries I buy.&#8221; . . . .</p>
<p>Considering every fact about someone&#8217;s life private is &#8220;extraordinary,&#8221; he said, noting that data such as addresses have long been discernible, even if technology has made them easier to find.</p></blockquote>
<p>At a <a href="http://www.fordham.edu/academics/office_of_research/research_centers__in/center_for_ethics_ed/events/privacy_rights_and_w/">recent conference</a> at Fordham University sponsored in part by the <a href="http://law.fordham.edu/ihtml/clip-2home.ihtml?id=451">Center on Law and Information Policy</a>, Professor Joel Reidenberg discussed an assignment he gave to his class this past semester &#8212; find any public information about Justice Scalia and compile it into a dossier.  As Kashmir Hill reports at <a href="http://abovethelaw.com/2009/04/fordham_law_compiling_a_dossie.php">Above the Law</a>:</p>
<blockquote><p>&#8220;Justice Scalia said he doesn&#8217;t care what people find out about him on the Internet,&#8221; said Reidenberg during his presentation on the transparency of personal information. &#8220;So I challenged my class to compile a dossier on him.&#8221;</p>
<p>Now four months later, at the end of the semester, the dossier (available online somewhere, but password protected) is 15 pages long. Among its contents are Nino&#8217;s home address, his home phone number, the movies he likes, his food preferences, his wife&#8217;s personal e-mail address, and &#8220;photos of his lovely grandchildren.&#8221;</p>
<p>&#8220;When the discrete bits of personal information were assembled at the end of the semester, the extent of the overall dossier and some of the particular items of readily available information on the web concerning his family and family life were astonishing to the class,&#8221; Reidenberg wrote to us.</p></blockquote>
<p>Before the news of the dossier was reported by Above the Law, Reidenberg had sent a letter informing Justice Scalia about the dossier and offering to allow him to see it if he desired.  The dossier was not made public.</p>
<p>Justice Scalia <a href="http://abovethelaw.com/2009/04/justice_scalia_responds_to_for.php">recently responded</a> to the Above the Law post about Joel Reidenberg&#8217;s experiment:</p>
<p><span id="more-10179"></span></p>
<blockquote><p>I stand by my remark at the Institute of American and Talmudic Law conference that it is silly to think that every single datum about my life is private. I was referring, of course, to whether every single datum about my life deserves privacy protection in law.</p>
<p>It is not a rare phenomenon that what is legal may also be quite irresponsible. That appears in the First Amendment context all the time. What can be said often should not be said. Prof. Reidenberg&#8217;s exercise is an example of perfectly legal, abominably poor judgment. Since he was not teaching a course in judgment, I presume he felt no responsibility to display any.</p></blockquote>
<p>Scalia&#8217;s characterization of his remarks above seems to be a bit of a retrenchment.  If he was <em>only</em> saying that not every single piece of information about his life is private, then this is just too obvious to be worth saying.  My interpretation of his remarks (caveat: I haven&#8217;t been able to locate his entire speech) is that he believes that certain kinds of information are not private &#8212; Internet tracking, most items of consumption (unless embarrassing), addresses, and so on.  He partly seems to endorse the view that there&#8217;s no privacy violation if there&#8217;s &#8220;<a href="http://ssrn.com/abstract=998565">nothing to hide</a>.&#8221;</p>
<p>In my <a href="http://www.concurringopinions.com/archives/2009/01/justice_scalias_1.html">blog post</a>, quoting from my book, <a href="http://understanding-privacy.com">Understanding Privacy</a> (2008), I argued that the compilation of dossiers can rise to a privacy violation:</p>
<blockquote><p>[P]rivacy may be implicated if one combines a variety of relatively innocuous bits of information. Businesses and government often aggregate a wide array of information fragments, including pieces of information we would not view as private in isolation. Yet when combined, they paint a rather detailed portrait of our personalities and behavior, a problem I call &#8220;aggregation.&#8221; (p. 70)</p></blockquote>
<p>One of the issues discussed at the conference (informally rather than at the public portion of the event) were the ethics of compiling the dossier and whether to inform Justice Scalia about it.  In our informal discussion of the issue during the conference, we had a lively debate with a variety of views.  Some thought that it was poetic justice for Scalia, taking him up on his challenge that he wouldn&#8217;t be bothered by such information compiling.  If he didn&#8217;t see it as a privacy problem, then there was no harm in doing it.  Others thought it since they viewed it as a privacy violation, it shouldn&#8217;t matter what Scalia thought about it &#8212; it was creepy nonetheless.  Some thought that Reidenberg should inform Scalia about it; others thought that this might make Scalia uncomfortable.  In the end, no consensus was reached.</p>
<p>Some questions worth pondering:</p>
<p>1. Is Justice Scalia justified in his anger about the dossier?  Or does this prove that his stated views on privacy do not match his actual attitudes?</p>
<p>2. Was compiling the dossier of publicly-available information unethical?  If so, why?</p>
<p>3. Would it be unethical for Reidenberg to release the dossier to the public?</p>
<p>4. Do the ethics of the dossier experiment change if the subject of the dossier were someone who didn&#8217;t share Scalia&#8217;s views about privacy?  Suppose it were made of somebody who was a staunch privacy advocate.  Should the underlying beliefs of the subject of the dossier matter for assessing the ethics of the endeavor?</p>
<p><strong>UPDATE:</strong> Here is Joel Reidenberg&#8217;s response to Justice Scalia&#8217;s reaction:</p>
<blockquote><p>I&#8217;m surprised by Justice Scalia&#8217;s characterization of the project.  The scope of protection for privacy in our society is at the forefront of the public policy debate. I assign this research project annually and last year used myself as itssubject. The exercise never fails to provide a keen demonstration for my students of the privacy issues associated with aggregating discrete bits of otherwise innocuous personal information.</p>
<p>When there are so few privacy protections for secondary use of personal information, that information can be used in many troubling ways. A class assignment that illustrates this point is not one of them. Indeed, the very fact that Justice Scalia found it objectionable and felt compelled to comment underscores the value and legitimacy of the exercise.</p></blockquote>
<p><strong>UPDATE #2:</strong>: Joel Reidenberg has responded in more depth.  I&#8217;ve <a href="http://www.concurringopinions.com/archives/2009/05/justice_scalias_3.html">posted his remarks here</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/04/justice_scalias_2.html/feed</wfw:commentRss>
		<slash:comments>52</slash:comments>
		</item>
		<item>
		<title>Surveillance Cameras: Putting on Our Skis to Ride Down that Slippery Slope</title>
		<link>http://www.concurringopinions.com/archives/2009/04/surveillance_ca_2.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/04/surveillance_ca_2.html#comments</comments>
		<pubDate>Sun, 12 Apr 2009 20:16:57 +0000</pubDate>
		<dc:creator>Danielle Citron</dc:creator>
				<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.solove.org/archives/2009/04/surveillance-cameras-putting-on-our-skis-to-ride-down-that-slippery-slope.html</guid>
		<description><![CDATA[<p>In 2003, Eugene Volokh published an essay adaptation of his Harvard Law Review article, &#8220;The Mechanisms of the Slippery Slope.&#8221;  The essay defends the slippery slope metaphor in two interesting ways.  It argues that because law plays a powerful expressive role, it changes our thinking about certain behaviors.  It can condition us to accept future policies that to today&#8217;s sensibilities would be unappealing.  Today&#8217;s rules alter our attitudes and, in turn, de-sensitize us for more extreme changes in the law.  These changes also can lead us to perilous decisions in the future by lowering the costs of certain activities, making future changes in policy politically attractive because they won&#8217;t cost us much.</p>
<p></p>
<p>In reading the essay today, I was struck by [...]]]></description>
			<content:encoded><![CDATA[<p>In 2003, Eugene Volokh published an <a href="http://www.legalaffairs.org/issues/March-April-2003/scene_marapr03_volokh.msp">essay</a> adaptation of his Harvard Law Review article, &#8220;The Mechanisms of the Slippery Slope.&#8221;  The essay defends the slippery slope metaphor in two interesting ways.  It argues that because law plays a powerful expressive role, it changes our thinking about certain behaviors.  It can condition us to accept future policies that to today&#8217;s sensibilities would be unappealing.  Today&#8217;s rules alter our attitudes and, in turn, de-sensitize us for more extreme changes in the law.  These changes also can lead us to perilous decisions in the future by lowering the costs of certain activities, making future changes in policy politically attractive because they won&#8217;t cost us much.</p>
<p><img alt="120px-Ski_Dubai_Slope.jpg" src="http://www.concurringopinions.com/archives/images/120px-Ski_Dubai_Slope.jpg" width="120" height="40" align="right" hspace="5"/></p>
<p>In reading the essay today, I was struck by an example that Volokh provides as demonstrating the perils of the slippery slope: surveillance cameras.  The essay asks us to consider a proposal to install video cameras on street lights to deter or catch criminals.  Volokh explains that &#8220;[o]n its own, the plan may not seem that susceptible to police abuse, as long as the tapes are viewed only when someone reports a crime and otherwise recycled every day or two.  Many people may be inclined to support installing the cameras, even if they would oppose a more intrusive extension of that policy, such as linking the cameras to face-recognition software or permanently archiving the tapes.&#8221;  The slippery slope concern is that once government invests in buying and wiring these cameras, the cost of implementing comprehensive surveillance falls dramatically.  This may persuade swing voters to endorse a broader surveillance plan, even if they would have opposed it on cost grounds at the outset.  Moreover, the introduction of surveillance cameras changes our view of them: government thought them an effective way to combat crime (and terrorism) and hence broader surveillance may prove useful too.  Perhaps we barely notice the cameras as we drive by them; our attitudes and fears have been changed, yet what led us to fear those cameras in the first place has not.</p>
<p>Volokh was spot on in his intuitions: today, six years after the essay&#8217;s publication, states and localities across the country employ surveillance cameras that do not just stream video to police departments for short time periods.  Instead, in many states and localities, street surveillance cameras wirelessly transmit video footage to state and locallly-run <a href="http://www.securitymanagement.com/news/port-long-beach-fusion-center-opens-005197">fusion centers </a>that use facial recognition software and other analytical tools like data mining to draw inferences about those images, all in the name of detecting and preventing future crimes and &#8220;hazards.&#8221;  Whatever misgivings we may have had about surveillance cameras in 2003, they serve expansive ends in 2009.  Perhaps, in a post 9/11 environment, we have become de-sensitized to surveillance aimed to combat terrorism, even though those cameras may very well be used in ways that having little to do with national security.  Perhaps because the federal government gave states and localities the money to purchase them, they become more politically palatable.  And perhaps it is because the public knows little about their use.  No matter the reason, we seem to be skiing down the slippery slope.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/04/surveillance_ca_2.html/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Lessons from the Identity Trail</title>
		<link>http://www.concurringopinions.com/archives/2009/04/lessons_from_th.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/04/lessons_from_th.html#comments</comments>
		<pubDate>Thu, 09 Apr 2009 05:01:38 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Anonymity]]></category>
		<category><![CDATA[Articles and Books]]></category>
		<category><![CDATA[Book Reviews]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Privacy (ID Theft)]]></category>
		<category><![CDATA[Privacy (Law Enforcement)]]></category>
		<category><![CDATA[Privacy (Medical)]]></category>

		<guid isPermaLink="false">http://www.solove.org/archives/2009/04/lessons-from-the-identity-trail.html</guid>
		<description><![CDATA[<p>There&#8217;s a terrific new book of essays about privacy out from Oxford University Press &#8212; LESSONS FROM THE IDENTITY TRAIL: ANONYMITY, PRIVACY AND IDENTITY IN A NETWORKED SOCIETY (Oxford University Press 2009).  It&#8217;s edited by Ian Kerr, Valerie Steeves, and Carole Lucock.  The essays are fascinating and are written by a number of very prominent privacy scholars.  Highly recommended!</p>
<p>The book is available free for download under a Creative Commons license.  One third of the essays are now posted online.  The rest will become available in two more stages &#8212; on April 22th and May 6th.  This is the first book to be published by Oxford University Press under a Creative Commons license.</p>
<p>The book is available on Amazon.com or on [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://idtrail.org/content/view/799"><img alt="lessons-from-the-identity-trail.jpg" src="http://www.concurringopinions.com/archives/images/lessons-from-the-identity-trail.jpg" width="157" height="240" align="right" hspace="5"/></a>There&#8217;s a terrific new book of essays about privacy out from Oxford University Press &#8212; <a href="http://idtrail.org/content/view/799">LESSONS FROM THE IDENTITY TRAIL: ANONYMITY, PRIVACY AND IDENTITY IN A NETWORKED SOCIETY</a> (Oxford University Press 2009).  It&#8217;s edited by Ian Kerr, Valerie Steeves, and Carole Lucock.  The essays are fascinating and are written by a number of very prominent privacy scholars.  Highly recommended!</p>
<p>The book is <a href="http://idtrail.org/content/view/799">available free for download</a> under a Creative Commons license.  One third of the essays are now posted online.  The rest will become available in two more stages &#8212; on April 22th and May 6th.  This is the first book to be published by Oxford University Press under a Creative Commons license.</p>
<p>The book is available on <a href="http://www.amazon.com/exec/obidos/redirect?link_code=as2&#038;path=ASIN/0195372476&#038;tag=thedigitalper-20&#038;camp=1789&#038;creative=9325">Amazon.com </a>or on our special <a href="http://www.us.oup.com/us/catalog/general/subject/~~/Ym9va0NvdmVycz15ZXMmY3A9Mjc0MTUmcGY9MTAmcHI9MTAmcHJvbW89dHJ1ZSZyZWZlcnJlcj1odHRwJTNBJTJGJTJGd3d3Lm91cC5jb20lM0E4MiUyRldFQi1JTkYlMkZ0ZW1wbGF0ZXMlMkZSZWdpb25hbF9Ib21lX1BhZ2UlMkZ1c2EuanNwJTNGaG9tZSUzRHRydWUlMjZ2aWV3JTNEdXNhJnNkPUFTQyZzZj1mZWF0dXJlZCZzcz10aXRsZS5hc2Mmdmlldz11c2E=">Concurring Opinions Oxford University Press promo page for 20% off</a>.</p>
<p>Here&#8217;s the table of contents:</p>
<p><span id="more-10291"></span><br />
<strong>I. PRIVACY</strong></p>
<p>Introduction to Part I</p>
<p>Chapter 1. Soft Surveillance, Hard Consent: The Law and Psychology of Engineering Consent</p>
<p>by IAN KERR, JENNIFER BARRIGAR, JACQUELYN BURKELL, AND KATIE BLACK</p>
<p>Chapter 2. Approaches to Consent in Canadian Data Protection Law</p>
<p>by PHILIPPA LAWSON AND MARY O&#8217;DONOGHUE</p>
<p>Chapter 3. Learning from Data Protection Law at the Nexus of Copyright and Privacy</p>
<p>by ALEX CAMERON</p>
<p>Chapter 4. A Heuristics Approach to Understanding Privacy-Protecting Behaviors in Digital Social Environments</p>
<p>by ROBERT CAREY AND JACQUELYN BURKELL</p>
<p>Chapter 5. Ubiquitous Computing and Spatial Privacy</p>
<p>by ANNE UTECK</p>
<p>Chapter 6. Core Privacy: A Problem for Predictive Data Mining</p>
<p>by JASON MILLAR</p>
<p>Chapter 7. Privacy Versus National Security: Clarifying the Trade-Off</p>
<p>by JENNIFER CHANDLER</p>
<p>Chapter 8. Privacy’s Second Home: Building a New Home for Privacy Under Section 15 of the Charter</p>
<p>by DAPHNE GILBERT</p>
<p>Chapter 9. What Have You Done for Me Lately? Reflections on Redeeming Privacy for Battered Women</p>
<p>by JENA MCGILL</p>
<p>Chapter 10. Genetic Technologies and Medicine: Privacy, Identity, and Informed Consent</p>
<p>by MARSHA HANEN</p>
<p>Chapter 11. Reclaiming the Social Value of Privacy</p>
<p>by VALERIE STEEVES</p>
<p><strong>II. IDENTITY</strong></p>
<p>Introduction to Part II</p>
<p>Chapter 12. A Conceptual Analysis of Identity</p>
<p>by STEVEN DAVIS</p>
<p>Chapter 13. Identity: Difference and Categorization</p>
<p>by CHARLES D. RAAB</p>
<p>Chapter 14. Identity Cards and Identity Romanticism</p>
<p>by A. MICHAEL FROOMKIN</p>
<p>Chapter 15. What’s in a Name? Who Benefits from the Publication Ban in Sexual Assault Trials?</p>
<p>by JANE DOE</p>
<p>Chapter 16. Life in the Fish Bowl: Feminist Interrogations of Webcamming</p>
<p>by JANE BAILEY</p>
<p>Chapter 17. Ubiquitous Computing, Spatiality, and the Construction of Identity: Directions for Policy Response</p>
<p>by DAVID J. PHILLIPS</p>
<p>Chapter 18. Dignity and Selective Self-Presentation</p>
<p>by DAVID MATHESON</p>
<p>Chapter 19. The Internet of People? Reflections on the Future Regulation of Human-Implantable Radio Frequency Identification</p>
<p>by IAN KERR</p>
<p>Chapter 20. Using Biometrics to Revisualize the Canada–U.S. Border</p>
<p>by SHOSHANA MAGNET</p>
<p>Chapter 21. Soul Train: The New Surveillance in Popular Music</p>
<p>by GARY T. MARX</p>
<p>Chapter 22. Exit Node Repudiation for Anonymity Networks</p>
<p>by JEREMY CLARK, PHILIPPE GAUVIN, AND CARLISLE ADAMS</p>
<p>Chapter 23. TrackMeNot: Resisting Surveillance in Web Search</p>
<p>by DANIEL C. HOWE AND HELEN NISSENBAUM</p>
<p><strong>III. ANONYMITY</strong></p>
<p>Introduction to Part III 63.60 Kb</p>
<p>Chapter 24. Anonymity and the Law in the United States</p>
<p>by A. MICHAEL FROOMKIN</p>
<p>Chapter 25. Anonymity and the Law in Canada</p>
<p>by CAROLE LUCOCK AND KATIE BLACK</p>
<p>Chapter 26. Anonymity and the Law in the United Kingdom</p>
<p>by IAN LLOYD</p>
<p>Chapter 27. Anonymity and the Law in the Netherlands</p>
<p>by SIMONE VAN DER HOF, BERT JAAP KOOPS, AND RONALD LEENES</p>
<p>Chapter 28. Anonymity and the Law in Italy</p>
<p>by GIUSELLA FINOCCHIARO</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/04/lessons_from_th.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Unsending an Email</title>
		<link>http://www.concurringopinions.com/archives/2009/03/unsending_an_em.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/03/unsending_an_em.html#comments</comments>
		<pubDate>Thu, 26 Mar 2009 02:31:40 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>
		<category><![CDATA[Technology]]></category>

		<guid isPermaLink="false">http://www.solove.org/archives/2009/03/unsending-an-email.html</guid>
		<description><![CDATA[<p>From CNN:</p>
<p>Most of us have done it.</p>
<p>Instead of hitting &#8220;reply&#8221; to an e-mail, we accidentally push &#8220;reply all,&#8221; sending a potentially embarrassing or insulting message to those we didn&#8217;t intend to see it.</p>
<p>To address this problem, Google Inc.&#8217;s Gmail Labs has launched an experimental feature called &#8220;Undo Send&#8221; that gives users a chance to rewrite their message, correct settings or simply fix typos.</p>
<p>When a Gmail user who enables this feature sends an e-mail, a button that says &#8220;Undo&#8221; will pop up on their screen for five seconds. If the user hits the button within that time, the service will retrieve the e-mail in draft form &#8212; allowing the user to make changes or cancel the message altogether.</p>
<p>I assume that this service works by delaying sending [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="email1a.jpg" src="http://www.concurringopinions.com/archives/images/email1a.jpg" width="300" height="200" align="right" hspace="5"/>From <a href="http://www.cnn.com/2009/TECH/03/25/gmail.labs.email/index.html">CNN</a>:</p>
<blockquote><p>Most of us have done it.</p>
<p>Instead of hitting &#8220;reply&#8221; to an e-mail, we accidentally push &#8220;reply all,&#8221; sending a potentially embarrassing or insulting message to those we didn&#8217;t intend to see it.</p>
<p>To address this problem, Google Inc.&#8217;s Gmail Labs has launched an experimental feature called &#8220;Undo Send&#8221; that gives users a chance to rewrite their message, correct settings or simply fix typos.</p>
<p>When a Gmail user who enables this feature sends an e-mail, a button that says &#8220;Undo&#8221; will pop up on their screen for five seconds. If the user hits the button within that time, the service will retrieve the e-mail in draft form &#8212; allowing the user to make changes or cancel the message altogether.</p></blockquote>
<p>I assume that this service works by delaying sending out an email after the user hits the send button.  Suppose that Google offered a different service, one that allowed users to edit or delete emails sent <em>after being received by recipients</em>.  Currently, I don&#8217;t think it would be possible within the technical architecture of email systems, but I wonder whether there&#8217;s a way it could be possible and/or legal.  Would such a service be desirable?  It would certainly be so for senders, who may want to zap the existence of emails they later came to regret.  But what about the recipients, who would suddenly see emails vanish from their inboxes or change in content?</p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/03/unsending_an_em.html/feed</wfw:commentRss>
		<slash:comments>15</slash:comments>
		</item>
		<item>
		<title>FreeCreditReport.com Spoof Song</title>
		<link>http://www.concurringopinions.com/archives/2009/02/freecreditrepor_1.html</link>
		<comments>http://www.concurringopinions.com/archives/2009/02/freecreditrepor_1.html#comments</comments>
		<pubDate>Sun, 22 Feb 2009 21:37:04 +0000</pubDate>
		<dc:creator>Daniel Solove</dc:creator>
				<category><![CDATA[Humor]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Privacy (Consumer Privacy)]]></category>

		<guid isPermaLink="false">http://www.solove.org/archives/2009/02/freecreditreportcom-spoof-song.html</guid>
		<description><![CDATA[<p>I&#8217;ve blogged in the past about FreeCreditReport.com and the fact that I think it ought to be shut down.  This is one of the rather obnoxious attempts by the credit reporting agencies to exploit people&#8217;s fears of identity theft as a tool to generate money.</p>
<p>FreeCreditReport.com is not free.  You can get your free credit report at the official site, AnnualCreditReport.com.</p>
<p>Here&#8217;s a terrific spoof of a FreeCreditReport.com commercial.  These commercials appear all over cable TV with jingles about how people&#8217;s lives were ruined by identity theft or bad credit and how all their woes could have been averted if they only used FreeCreditReport.com:</p>
<p></p>
<p>The Fair Credit Reporting Act (FCRA) requires that credit reporting agencies &#8220;follow reasonable procedures to assure maximum possible accuracy of the [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve <a href="http://www.concurringopinions.com/archives/2007/03/the_free_credit.html">blogged in the past</a> about FreeCreditReport.com and the fact that I think it ought to be shut down.  This is one of the rather obnoxious attempts by the credit reporting agencies to exploit people&#8217;s fears of identity theft as a tool to generate money.</p>
<p>FreeCreditReport.com is not free.  You can get your free credit report at the official site, <a href="https://www.annualcreditreport.com/cra/index.jsp">AnnualCreditReport.com</a>.</p>
<p>Here&#8217;s a terrific spoof of a FreeCreditReport.com commercial.  These commercials appear all over cable TV with jingles about how people&#8217;s lives were ruined by identity theft or bad credit and how all their woes could have been averted if they only used FreeCreditReport.com:</p>
<p><object width="425" height="344"><param name="movie" value="http://www.youtube.com/v/nIO9gs7pC88&#038;rel=0&#038;color1=0xb1b1b1&#038;color2=0xcfcfcf&#038;hl=en&#038;feature=player_embedded&#038;fs=1"></param><param name="allowFullScreen" value="true"></param><embed src="http://www.youtube.com/v/nIO9gs7pC88&#038;rel=0&#038;color1=0xb1b1b1&#038;color2=0xcfcfcf&#038;hl=en&#038;feature=player_embedded&#038;fs=1" type="application/x-shockwave-flash" allowfullscreen="true" width="425" height="344"></embed></object></p>
<p>The Fair Credit Reporting Act (FCRA) requires that credit reporting agencies &#8220;follow reasonable procedures to assure maximum possible accuracy of the information concerning the individual about whom the report relates.&#8221; 15 U.S.C. § 1681 e(b).  If services like FreeCreditReport.com are really necessary to protect oneself from inaccuracies, then why wouldn&#8217;t these be required by the FCRA for free?  If such services are unnecessary, then the advertisements are doubly false &#8212; trying to sell consumers a &#8220;free&#8221; service that&#8217;s not really free plus selling a service as essential and necessary yet that&#8217;s unnecessary.</p>
<p>As I wrote in my <a href="http://www.concurringopinions.com/archives/2007/03/the_free_credit.html">previous post</a>:</p>
<blockquote><p>The other irony is this: It is the practices of the credit reporting agencies that have put many consumers at risk for identity theft. Now, they are selling consumers protection from a problem that is at least in part their own making. It reminds me of the scene in The Godfather Part II, where the mob would rob and pillage people&#8217;s stores and then offer security protection for a fee.</p></blockquote>
<p>Hat tip: <a href="http://www.boingboing.net/2009/02/22/funny-spoof-song-abo.html">BoingBoing</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.concurringopinions.com/archives/2009/02/freecreditrepor_1.html/feed</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
	</channel>
</rss>
