Developers: Beware of Ad Libraries that Betray Your Users’ Location Privacy
Across mobile platforms, advertising companies provide developers with software development kits (SDKs) that make it easy to monetize their apps. But those same SDKs can automatically feed users’ location data into ad systems that location data brokers use to track people. Many developers may not even be aware of this privacy violation, let alone the users who are directly affected. When…
Advertising firms supply developers with software development kits (SDKs) that simplify app monetization. However, these SDKs often covertly transmit users' location data to ad systems utilized by data brokers for tracking individuals. Developers may remain oblivious to this privacy breach, alongside the impacted users. Exposing users to not only intrusive ads but also privacy risks is a consequence of permitting advertising SDKs to collect location data.
Location data sourced from the advertising sector has been employed in ICE investigations, global surveillance tools, outing a gay priest, tracking union activists, and monitoring US military personnel. Defaults play a crucial role, affecting both users and developers. An investigation by the Electronic Frontier Foundation (EFF) has identified several advertising SDKs that knowingly collect and disseminate users' location data by default when integrated into Android apps with location permissions.
Developers must attentively scrutinize the location-sharing settings of their advertising tools to avoid inadvertently exposing users' location information. This report elucidates how advertising SDKs facilitate and promote location data sharing via privacy-invading defaults, financial motivations, and ambiguous documentation.
Written by urgent.news from EFF Deeplinks's reporting — not their text. Machine-written — it may contain errors, so check the original before relying on it.