ADVERTISEMENTREMOVE AD

Audit Clears Facebook Despite Cambridge Analytica Leaks

This brings back the question of, how useful are these audits? 

Published
Tech News
3 min read
story-hero-img
i
Aa
Aa
Small
Aa
Medium
Aa
Large
Hindi Female

An audit of Facebook's privacy practices for the Federal Trade Commission found no problems even though the company knew at the time that a data-mining firm improperly obtained private data from millions of users — raising questions about the usefulness of such audits.

Facebook agreed to outside audits every two years as part of a 2011 settlement with the FTC over its privacy practices. It is not clear from the report whether the company informed PricewaterhouseCoopers, which performed the audit, of the Cambridge Analytica data grab that would put Facebook in the crosshairs of Congress.

The heavily redacted audit by PricewaterhouseCoopers is available on the FTC's website. It covers the period between 12 February 2015 to 11 February 2017.

PwC declined to comment, but Facebook said on Friday that keeping data secure is a priority.

We remain strongly committed to protecting people’s information. We appreciate the opportunity to answer questions the FTC may have.
Rob Sherman, Facebook’s Deputy Chief Privacy Officer
ADVERTISEMENTREMOVE AD

The fact that PwC found no issues raised red flags for privacy advocates.

“The FTC failed to protect the public,” said Jeffrey Chester, executive director of the nonprofit digital rights group Center for Digital Democracy. “Instead of conducting its own review to enforce one of its most important decisions— the consent decree —it looked the other way, which allowed Facebook to engage in serious misconduct.”

Chester said the audit shows that the “FTC cannot be relied on to really protect consumers.”

The 2011 consent decree bound Facebook to a 20-year privacy commitment. Any violations of that pact could cost the company a ton of money. In his congressional testimony last week, Facebook CEO Mark Zuckerberg appeared uninformed about key details of the agreement, saying he did not remember if it carried a financial penalty.

Any violations of the 2011 agreement could subject Facebook to fines of $41,484 per violation per user per day. To put that in context, Facebook could theoretically owe $8 billion for one single day violation affecting all of its American users, or about half of the profit that the company booked for all of last year.

This brings back the question of, how useful are these audits? 
Mark Zuckerberg, CEO, Facebook seated to kickstart the first of the two US Senate hearing. 
(Photo: AP)
0

The agreement requires that Facebook users give “affirmative express consent” any time that data they haven't made public is shared with a third party. Cambridge Analytica accessed information from so many users (the firm puts the number at 30 million, although Facebook has said 87 million) because it was able to access the data of people's friends, and not just people who explicitly permitted access when they took a personality quiz. While Facebook did have controls in place that allowed people to restrict such access, they are found buried in the site's settings and are difficult to find.

Sen Catherine Cortez Masto, a Democrat from Nevada, said during last week's hearing that in her view, “these requirements were not met,” because user consent shouldn't have been buried in privacy settings.

PwC disagreed.

“In our opinion, Facebook's privacy controls were operating with sufficient effectiveness to provide reasonable assurance to protect the privacy of covered information and that the controls have so operated throughout the Reporting Period, in all material respects for the two years ended 11 February 2017,” the report states.

Facebook is also under a separate investigation by the FTC because of the Cambridge Analytica scandal. The agency is looking at whether Facebook has engaged in "unfair acts" that cause "substantial injury" to consumers.

Also Read:

ADVERTISEMENTREMOVE AD

(The Quint is now on WhatsApp. To receive handpicked stories on topics you care about, subscribe to our WhatsApp services. Just go to TheQuint.com/WhatsApp and hit send.)

(At The Quint, we are answerable only to our audience. Play an active role in shaping our journalism by becoming a member. Because the truth is worth it.)

Read Latest News and Breaking News at The Quint, browse for more from tech-and-auto and tech-news

Topics:  Facebook   Mark Zuckerberg   Data Leak 

Speaking truth to power requires allies like you.
Become a Member
3 months
12 months
12 months
Check Member Benefits
Read More
×
×