Testing products for data privacy and security
It’s an exciting and treacherous time to be a consumer. The benefits of new digital products and services are well documented, but the new risks they introduce are not. Basic security precautions are ignored to hasten time to market. Biased algorithms govern access to fair pricing. And four of the five most valuable companies in the world earn their revenue through products that mine vast quantities of consumer data, creating an unprecedented concentration of corporate power. A recent survey at Consumer Reports showed that 65% of Americans lack confidence their data is private or secure, with most consumers feeling powerless to do anything about it.
We’re trying to do something about that.
Consumer Reports has been testing products and services for 80 years, equipping consumers with the information they need to make smarter choices, enact new policies and regulations, and reshape the marketplace for the better. Our nonprofit mission has led to standardized safety features in vehicles, removed toxins from our food supply, and blocked the creation of corporate monopolies. Today, we’re announcing a new initiative to bring that mission to the world of connected products and services.
A team consisting of Disconnect, Ranking Digital Rights, the Cyber Independent Testing Lab, and Consumer Reports has come together to build a new testing standard for digital products. Available at TheDigitalStandard.org, it looks at consumer expectations of behavior across four key assertions: electronics and software-based products should be secure, consumer information should be kept private, ownership rights of consumers should be maintained, and products should be designed to combat harassment and protect free expression.
The standard is new and so is the approach. We’ve launched the first, work-in-progress version as an open project. The material is published under a Creative Commons license and posted to GitHub. Anyone who is interested in tackling the complexities of testing products and services for privacy, security, and data practices is invited to contribute.
With the launch of the standard we’re entering the next phase of the work. Over the next two years, we intend to publish regular investigations into different product and service verticals. The research will be used to empower consumers and anchor new policy initiatives, but also to refine and flesh out the standard. Digital products introduce a host of new challenges to product testing: Can you rate a product without looking at the service layer behind it? Do you pull a rating once a product receives an over-the-air update? Do you have to audit corporate data centers or is it valid to test based only on publicly-available information? Once we have a better grasp of how to apply the standard, we’ll explore how to build it into our regular product ratings.
Our future power as consumers depends on our ability to assert our rights to data privacy and security. That ability, in turn, depends on the quality and volume of independent, trustworthy information available to us. We want companies to compete to offer the most secure products and services, consumers to wield full control of their data in the marketplace, and our collective voice to drive responsible corporate behavior. Shining a light on privacy and data practices is the first step to converting the values we share into actionable influence over the markets that touch our lives.
The a-X sereies of portable workstations resemble the earliest laptops, but are fully contemporary beasts fitted with top-of-the-range AMD Threadripper CPUs, up to 256GB of RAM and dual GPUs. And price tags hovering around $8000. PC Gamer: Picture this: you sit down in a meeting alongside your colleagues. They pull out their Surfaces, iPads, phones, […]
There are many nondescript and mundane tools for data recovery, but the Spider Board is not one of them. It lives up to its name, with 25 leglike needles that, carefully placed on copper traces on a denuded card, suck the data out of them like fly juice. PC-3000 Flash Spider Board Adapter is a […]
Terence Eden found a turntable [Amazon] that cost only £30 (~$40): “I accidentally bought a load of vinyl records. So I decided to buy the cheapest, shittiest, turntable possible,” he writes. For firty paands he even gets a USB port to rip the records directly to digital. Is it any good? Not really. It plays […]
For those who want a career in video games, there’s no reason to sit around and wait. EA and Rockstar Games probably aren’t going to seek you out and knock on your door with a job opportunity. But if you’re an indie developer with a good idea and some passion, you can create a really […]
Nobody is happy about the current state of our COVID-ravaged education system. With a new school year fast approaching, plans for teaching students still in flux, and political in-fighting driving more fear and confusion about whether or not to re-open campuses, teachers and parents are concerned. Meanwhile, most kids are just fine with spending less […]
Creating a fantasy world for a video or role-playing game is tough enough. In addition to all the game framework and functionality that goes into a build of any size, creators invariably sweat over the most minute details of every weapon, outfit, or other distinctive objects in their game. Even if your game is set […]