Canadian law clinic files privacy complaint against Facebook
A Canadian university law clinic has filed a privacy complaint against Facebook,
alleging that the social-networking site's policies include 22 separate violations
of a Canadian privacy law.
The complaint, from the Canadian Internet Policy and Public Interest Clinic
(CIPPIC), based at the University of Ottawa Faculty of Law, says Facebook has
failed to inform its members of how personal information is disclosed to third-party
advertisers, and has failed to obtain permission from members to disclose their
personal information. Facebook's policies violate the Canadian Personal Information
Protection and Electronic Documents Act (PIPEDA), CIPPIC said
in its complaint, filed with the Office of the Privacy Commissioner.
CIPPIC targeted Facebook
because the site is popular in Canada, with about 7 million members of the site
in a nationwide population of 33 million, said clinic director Philippa Lawson.
Social-networking sites are "proving to be a tremendous tool for community-building
and social change, but at the same time, a minefield of privacy invasion,"
Lawson said. "We chose to focus on Facebook ... because it appeals to young
teens who may not appreciate the risks involved in exposing their personal details
online."
Canadian Privacy Commissioner Jennifer Stoddart has a year to act on CIPPIC's
complaint. The commissioner's office focuses on negotiation to resolve privacy
disputes, but it can seek court injunctions if negotiations fail to resolve
the issues.
Facebook, in a statement, said it prides itself on "industry-leading controls"
that it offers users over their personal information.
"Weve reviewed the complaint and found it has serious factual errors
-- most notably its neglect of the fact that almost all Facebook data is willingly
shared by users," Facebook said. "The complaint also misinterprets
PIPEDA in a manner that would effectively forbid voluntary online sharing of
information and ignores key elements of Facebooks privacy policy and architecture."
Facebook has taken several steps in recent months to resolve continuing privacy
concerns. In mid-March, the site rolled out new privacy controls that allow
users to choose which of their friends can see personal information, and in
April, the site released a plug-in to allow users to monitor and delete cookies
created by the controversial Facebook Beacon advertising system.
The complaint is based on Facebook's privacy policies and controls as of March
27, Lawson said.
Sign up for ITworld's Daily newsletter
Follow ITworld on Twitter @IT_world
jfruh
Apple syncing patent can't come soon enough
pasmith
New Twitter features borrow from 3rd party clients
Esther Schindler
Open Source Changes the Software Acquisition Process
mikelgan
How to set up continuous podcast play on the new iTunes
David Strom
Five important Windows 7 mobility features
sjvn
Guard your Wi-Fi for your own sake
Sandra Henry-Stocker
Grepping on Whole Words
Sidekick: The Good News & the Bad News
Either way you look at it Microsoft Data Center management did not follow standards or best practices in this failure. In which case it makes me wonder more about the outsourcing of corporate data much less personal data.
- mburton325
Join the conversation here
Quick, practical advice for IT pros. Made fresh daily.
Want to cash in on your IT savvy? Send your tip to tips@itworld.com. If we post it, we'll send you a $25 Amazon e-gift card.












