Jump to content

Nanoleaf

From Consumer_Action_Taskforce
Revision as of 23:52, 6 February 2025 by 188.192.12.91 (talk) (added badly formatted information about data collection behaviour by Nanoleaf)

Article Status Notice: This Article is a stub

Notice: This Article Requires Additional Expansion

This article is underdeveloped, and needs additional work to meet the wiki's Content Guidelines and be in line with our Mission Statement for comprehensive coverage of consumer protection issues. Issues may include:

  • This article needs to be expanded to provide meaningful information
  • This article requires additional verifiable evidence to demonstrate systemic impact
  • More documentation is needed to establish how this reflects broader consumer protection concerns
  • The connection between individual incidents and company-wide practices needs to be better established
  • The article is simply too short, and lacks sufficient content

How You Can Help:

  • Add documented examples with verifiable sources
  • Provide evidence of similar incidents affecting other consumers
  • Include relevant company policies or communications that demonstrate systemic practices
  • Link to credible reporting that covers these issues
  • Flesh out the article with relevant information

This notice will be removed once the article is sufficiently developed. Once you believe the article is ready to have its notice removed, visit the Discord (join here) and post to the #appeals channel, or mention its status on the article's talk page.

Nanoleaf is a company that specializes in LED lighting, it was founded in 2012 and launched its first products with Kickstarter funding.[1] Nanoleaf products are highly popular with many YouTubers using them in their backdrop.

Nanoleaf
Basic information
Founded 2012
Type Private
Industry Consumer Electronics
Official website https://nanoleaf.me/


Anti-consumer practices

Nanoleaf is using GPL software in their smart home products based on OpenWrt and do not contribute back the GPL source code, or allow users to run their own software on their hardware.[2][3][4]

Additional stub information

Nanoleaf devices collect information about the network environment they are in and submit this data to the manufacturer. This is never disclosed upon setting up the device and since the device has its own network connection via WiFi, it will stay on all the time and very aggressively send metrics. This was noted by many members of the Pi-Hole community because their nanoleaf devices would be the top consumers of DNS traffic on their network with one Nanoleaf bridge creating 100,000-300,000 DNS requests per day, attempting to reach endpoints like:

  • collector.nanoleaf.com
  • apollo.nanoleaf.com
  • iaso.nanoleaf.com

This traffic does not cease when the user configures their light panels to operate in LAN mode. Offlining the light panels entirely does not impede the operation of the device in any way, since control is done locally via the network over the HomeKit protocol, which does not go through Nanoleafs servers and it also does not depend on whether the user has set up or uses cloud integrations. Furthermore, these requests are made regardless of whether automatic firmware updates are enabled or not.

Nanoleaf have responded to an inquiry by a customer saying that the communication that takes place every few seconds is for "communicating to our [Nanoleaf's] cloud for various functionalities including firmware upgrade, integrating with third party services such as Google Assistant, Alexa etc."

Nanoleaf have since issued a firmware update seemingly disabling this data collection as of firmware update 5.2.1 for the original Nanoleaf Aurora panels after they were discontinued for two years. It is unconfirmed whether newer, currently sold models also had this telemetry removed.

https://forum.nanoleaf.me/forum/community-support/homecalls

https://www.reddit.com/r/Nanoleaf/comments/m35bv5/collectornanoleafme_top_talker_on_network/

https://www.reddit.com/r/Nanoleaf/comments/m8g50y/my_4_aurora_are_creating_a_total_of_137000_dns/

https://nanoleaf.me/en-EU/about-us/privacy-policy/

References