Through the Spying-Glass: Data Privacy Concerns Regarding Mobile Spyware Apps
Payton P. Reisinger Spyware app surveillance technologies are rising in popularity for both legitimate monitoring and also to illegally spy on unsuspecting victims. In 2021, the Federal Trade Commission (FTC) issued its first ban of a spyware app, SpyFone, due to deceptive and unfair trade practices and lack of data security provisions. Some call for specific legislation to curb the effects of growing spyware apps, but opponents of regulation claim that legislative efforts will be too restrictive on growing technological industries or the legitimate uses of spyware apps. This Essay agrees with the policy rationale for implementing spyware legislation and...
Mind over Data: A Case for Increased Privacy Protections in Mobile Mental Health Apps
Marian Lemont As mobile mental health apps gain popularity as an emotional support alternative, privacy concerns regarding how consumers’ sensitive health data is handled are at an all-time high. Current federal privacy provisions provide insufficient consumer protection and thus render consumers’ sensitive information vulnerable to unwanted third-party sharing practices. The recently passed California Privacy Rights Act of 2020 (CPRA) includes new provisions governing businesses’ handling and deletion of sensitive user data. This article discusses how these new CPRA provisions provide a helpful framework to begin addressing this regulatory gap and identifies ways future privacy legislation can continue to strengthen mobile...
The Intersection of Product Liability Law and the Internet of Things
Lucas M. Amodio Every year, an increasing number of Internet of Things devices are released. These devices can make our lives easier, but they also make our data, and potentially ourselves, more vulnerable to hackers. The question is no longer theoretical, as many of these devices can have a real impact on the world around them, like a networked sprinkler system that, if hacked, could flood a target’s basement. Going forward, we can look to the current law of product liability and the Federal Trade Commission to protect individuals from harm and loss when these devices might be compromised. Read...
A Vendetta Against Alexa: Privacy Concerns in the Age of the Smart Home
Katherine Minorini A person’s right to privacy is so fundamental that it was written into the United States Constitution under the Fourth Amendment. This right, although protected, is not absolute, especially in circumstances involving voluntary disclosure of information to third parties. Issues arise when the third-party exception to the Fourth Amendment is coupled with the novel capabilities and innovations of the Internet of Things, especially with the smart home. This Essay argues that courts need to adapt their interpretation and application of the third-party doctrine so that information disclosed to and recorded by smart home manufacturers and servers respects Fourth...
The Liquidation of Data Privacy: How an Outdated Bankruptcy Code Threatens Consumer Information
Michael R. Akselrad In the modern world, billions of people share personal information online every day, ranging from consumer preferences to biometric and genetic identifiers, leading to the commoditization of user data, the value of which may dwarf the other assets of even large, multinational corporations. In the ordinary course of business, this user data may be kept confidential through such measures as privacy policies, statutory protections, and the reputational backlash facing a company that acts too brazenly with users’ sensitive information. In bankruptcy, however, some of these safeguards are eliminated in the interest of maximizing the value of the...
The Case for Prohibiting the Sale of Individual Genetic Testing Data to Third Parties
Nathaniel Jaffe Genetic technology is getting cheaper, and millions of individuals are using direct-to-consumer genetic testing (DTC-GT) services. At the same time, the scientific understanding of genetics is improving, making sequencing information more valuable for predictive medicine, research, forensics, and many other fields. In turn, genetic information has become more valuable for third parties like insurers, researchers, and pharmaceutical companies. DTC-GT providers are in a position to provide increasingly low-cost services to a growing consumer base, while stockpiling data of increasing commercial value. The sale of genetic data threatens the privacy of the individuals who provided it and opens them...
Data Privacy Concerns Regarding COVID-19 Contact Tracing Apps and Implications for the Field of Cybersecurity
Elana Lerner Brockmann The COVID-19 public health emergency has led to the development of contact tracing apps that enable governments and public health officials to track outbreaks and take appropriate measures in response. Contact tracing apps also allow individuals to be notified of potential contacts with infected individuals, promoting self-quarantine and reducing further spread of the virus. Although contact tracing apps have the potential to slow and reduce the spread of COVID-19, they have also brought to light data privacy and security concerns, which pose challenges to their overall use and efficacy. Congress should enact legislation to protect consumer data...
Privacy Rights of College Athletes: Controls on the Use of Technology to Collect Player Medical Data
Armen Grigorian College athletic departments are always looking to gain an edge over their competitors. Recently, these athletic departments have been gathering player medical data through various new technologies designed to track player performance in the hopes of better preparing for game day, but this raises many privacy concerns. College athletes are often asked to waive privacy protections for their medical data. This is problematic as there are currently no controls on what the universities can do with said data. For student-athletes to retain their privacy rights, the field must develop and implement restrictions on the accessibility of their personal...
Keeping Private Messages Private: End-to-End Encryption on Social Media
Steven Song Following recent data scandals, online users have become concerned that their private information on the Internet is susceptible to misappropriation. These concerns motivated data privacy regulations such as the General Data Protection Regulation and the California Consumer Privacy Act to ensure better protection against unauthorized access to personal data. Relatedly, Facebook has announced a plan to implement end- to-end encryption (E2EE) for all of its social media messaging systems. E2EE strictly limits access to private messages to the communicating parties. Even the company managing the messaging system cannot access these encrypted conversations. The implementation of E2EE, however, comes...
Neural Interfaces and Privacy Law: In Search of a Mind Meld
Alyson Tseng Neural interfaces are electronic devices that are placed on the brain and other parts of the neural system and can collect biometric and neurometric data. Rapid developments and commercialization of neural interfaces in the non-medical realm raise concernsregarding data privacy. The major privacy risks created by neural interfaces demonstrate the need for a sufficient regulatory framework that can adequately govern new technologies. Current laws are insufficient to regulate neural interfaces. This Essay proposes changes that a United States data protection law could adopt. It also encourages companies to consider digital ethics in the design of new technologies. Read...