TikTok: Difference between revisions

m Added a category
-u-n- (talk | contribs)
m Fix section; unabbreviate technical jargon
 
(2 intermediate revisions by 2 users not shown)
Line 15: Line 15:
==Consumer impact summary==
==Consumer impact summary==
{{Ph-C-CIS}}
{{Ph-C-CIS}}
===User freedom===
===User freedom===
*The app version requires an account to use the service.
*The app version requires an account to use the service.
===User privacy===
===User privacy===
As per Privacy Policy:<ref>{{Cite web |title=Privacy Policy |url=https://www.tiktok.com/legal/page/row/privacy-policy/en |access-date=Aug 14, 2025 |website=TikTok}}</ref>
As per Privacy Policy:<ref>{{Cite web |title=Privacy Policy |url=https://www.tiktok.com/legal/page/row/privacy-policy/en |access-date=Aug 14, 2025 |website=TikTok}}</ref>
Line 23: Line 25:
:'''Technical Information we collect about you.''' We collect certain information about the device you use to access the Platform, such as your IP address, user agent, mobile carrier, time zone settings, identifiers for advertising purposes, model of your device, the device system, network type, your screen resolution and operating system, app and file names and types, keystroke patterns or rhythms, battery state, audio settings and connected audio devices. [...]
:'''Technical Information we collect about you.''' We collect certain information about the device you use to access the Platform, such as your IP address, user agent, mobile carrier, time zone settings, identifiers for advertising purposes, model of your device, the device system, network type, your screen resolution and operating system, app and file names and types, keystroke patterns or rhythms, battery state, audio settings and connected audio devices. [...]
</blockquote>
</blockquote>
:*"Keystroke patterns or rhythms" is particularly notable as the in-app browser has been demonstrated to listen to inputs from keyboard and screen, as well as injecting JS code.<ref>{{Cite web |last=Krause |first=Felix |date=Aug 18, 2022 |title=iOS Privacy: Announcing InAppBrowser.com - see what JavaScript commands get injected through an in-app browser |url=https://krausefx.com/blog/announcing-inappbrowsercom-see-what-javascript-commands-get-executed-in-an-in-app-browser#tiktok |access-date=Aug 14, 2025 |quote=While you are interacting with the website, TikTok subscribes to all keyboard inputs (including passwords, credit card information, etc.) and every tap on the screen, like which buttons and links you click.}}</ref>
:*"Keystroke patterns or rhythms" is particularly notable as the in-app browser has been demonstrated to listen to inputs from keyboard and screen, as well as injecting JavaScript code.<ref>{{Cite web |last=Krause |first=Felix |date=Aug 18, 2022 |title=iOS Privacy: Announcing InAppBrowser.com - see what JavaScript commands get injected through an in-app browser |url=https://krausefx.com/blog/announcing-inappbrowsercom-see-what-javascript-commands-get-executed-in-an-in-app-browser#tiktok |access-date=Aug 14, 2025 |quote=While you are interacting with the website, TikTok subscribes to all keyboard inputs (including passwords, credit card information, etc.) and every tap on the screen, like which buttons and links you click.}}</ref>
*Also collects approximate location based on "SIM card and/or IP address" and precise location such as GPS.
*Also collects approximate location based on "SIM card and/or IP address" and precise location such as GPS.
*Serves personalized advertisements and runs its own AI-powered analytics tool for advertisers called "Insight Spotlight".<ref>{{Cite news |last=Sato |first=Mia |date=Jun 3, 2025 |title=TikTok will give advertisers even more data on trends and users |url=https://www.theverge.com/news/678255/tiktok-advertiser-summit-ai-targeting-data-seo |access-date=Jun 25, 2025 |work=The Verge}}</ref>
*Serves personalized advertisements and runs its own AI-powered analytics tool for advertisers called "Insight Spotlight".<ref>{{Cite news |last=Sato |first=Mia |date=Jun 3, 2025 |title=TikTok will give advertisers even more data on trends and users |url=https://www.theverge.com/news/678255/tiktok-advertiser-summit-ai-targeting-data-seo |access-date=Jun 25, 2025 |work=The Verge}}</ref>
Line 52: Line 54:
|
|
|}
|}
===GDPR infringement Article Article 13(1)(f) & Article 46(1) GDPR (''May. 2025'')===
On May 2, 2025 the Irish Supervisory Authority fines TikTok a total of €530 million for infringement of Articles 13(1)(f) GDPR and Article 46(1) GDPR. The Irish Supervisory Authority (SA) has ordered TikTok to suspend the transfer of data from users in the EEA to the People’s Republic of China and to bring its processing operations into compliance with Chapter V of the GDPR within a period of 6 months.<ref>Irish Supervisory Authority fines TikTok €530 million and orders corrective measures following Inquiry into transfers of EEA User Data to China (2025, Jul, 04). edpb.europa.eu. Retrieved Aug 16, 2025, from https://www.edpb.europa.eu/news/news/2025/irish-supervisory-authority-fines-tiktok-eu530-million-and-orders-corrective_en</ref>
On Friday, August 2, 2024, the US sued TikTok, and its affiliates for violating the Children’s Online Privacy Protection Act (“COPPA”), and it's rules. The DOJ alleges TikTok collected, stored, and processed large amounts of data from millions of child users on its app.<ref>{{Cite web |last=Johnson |first=Nicole |date=5 Aug 2024 |title=U.S. Sues TikTok for Children’s Online Privacy Protection Act (COPPA) Violations |url=https://www.hunton.com/hunton-retail-law-resource/u-s-sues-tiktok-for-childrens-online-privacy-protection-act-coppa-violations}}</ref>


==See also==
==See also==