Media & Entertainment

Facebook Stops Irresponsibly Defaulting Privacy Of New Users’ Posts To “Public”, Changes To “Friends”

Comment

After years of putting new users at risk of oversharing by defaulting the visibility of their status updates and photos to public, Facebook is switching the default to “friends”. It will also start asking existing users to go through a “Privacy Checkup” flow where they can review and confirm their privacy settings. The changes should reduce the number of users accidentally exposing their content and personal information to a wider audience than they wanted.

Facebook Privacy Product Manager Mike Nowak admits to me that “Sometimes when people share things on Facebook, they feel like that info is more public than than they wanted or more people than they thought can see their posts. A lot of us have had the experience of sharing something and unexpectedly having it be more broadly visible [than we desired]” which he likens to hitting “reply all on an email”.

“We think oversharing is worse than under sharing”, Nowak claims.

PrivacyCheckup

An Era Of Broken Privacy

That’s a stern 180º from 2009 when Facebook first began defaulting new users’ posts to be publicly visible. Then in April 2010, Facebook rolled out sweeping privacy changes including “Recommended Settings” that were supposed to be reasonable defaults that matched the sensitivity of the data. Existing users were offered a chance to switch to the recommended settings, and new users were defaulted into them. While it rightly set personal and contact info to “friends only”, it brazenly set News Feed posts like status updates and photos, family and relationships, and bio and favorite quotations to “public”.

Privacy-Interface-Recommended-500x375

When I covered the defaults and changes back in 2010, I called them “risky”, because users who weren’t paying close attention might assume that since Facebook had launched for sharing with college buddies and was all about adding friends, that that’s who their posts would be seen by. That meant risqué behavior, sexy photos, crude jokes, or controversial opinions could be found by family members, employers, or random stalkers.

“We made the decision because we thought it was right for people and over time we’ve gotten the feedback that oversharing is worse than undersharing and that’s why we’re making this change to the friend setting now,” Nowak says.

These recommended settings were the nightmare incarnation of Facebook’s mission “to make the world more open and connected”.

Facebook CrestIt stemmed from a naive view that people should have nothing to hide — an easy perspective to take if you’re your own boss or have a high-value skill set in a progressive industry. It ignored the fact that many people don’t have the freedom to be so open, because they’re constantly judged by parents, teachers, and companies happy to hire someone else if they see you boozing it up, dancing, or spouting polarizing views. I hope one day we can all evolve past discriminating against people for how they recreate or express themselves and actually be more open, but there’s a difference between encouraging the world to embrace that future and dragging people into it.

The rotten defaults could be seen as the start of an ongoing push to get Facebook users sharing more publicly, in response to the rise of Twitter. Hashtags, Trending Topics, embedded posts, and the option for those under 18 to post publicly are the most recent product changes to that effect.

When I asked Nowak why the hell Facebook did this to the defaults, he said “We heard people wanted to share publicly and we observed this was an important trend on the Internet. We made the decision because we thought it was right for people.” But it wasn’t.

Making Privacy More Visible

In 2011, Facebook was forced to settle with the Federal Trade Commission and the Office of the Irish Data Protection Commisioner. The deals made the company subject to 20 years of privacy audits by the FCC, and forbid it from changing existing privacy settings without permission.

Thankfully since around the time of those settlements, Facebook has moved to making privacy controls easier to understand and access. Most importantly, it added an in-line privacy control button to the status composer in 2011 so users could choose their audience on a post by post basis.

Simplified Audience Selector WWW

Last month Facebook announced it was improving that privacy selector so it was more visible and immediately recognizable. You can see the new web design above and a before and after on mobile below. Facebook also redesigned the third-party app privacy settings, began reminding users posting publicly that everyone can see that content, and announced the option to log in to other apps anonymously to give users more control outside of Facebook.

Simplified Audience Selectors Mobile

But the public status update default for new users has been a necrotic vestigial wing of a more careless era of privacy fron before these settement. It’s good to see this finally excised.

Less Open For The Better

Now, new signups will have their News Feed posts defaulted to “friends”, but can change their audience to Public, Only Me, or a custom list at any time. This is a much better balance for privacy — start with a reasonably safe default and give people choice.

To educate new users about their options, Facebook says “First time posters will also see a reminder to choose an audience for their first post”, but the default will be Friends unless they switch it. Users can also change the privacy of past posts.

First time poster education

For existing users, nothing is changing about Facebook’s privacy system or how it works, but they will get some additional education.

Over the next few week, Facebook is rolling out the blue dinosaur privacy checkup tool it tested in March and April. Users posting publicly may see an alert apologizing for the interruption but reminding them they’re sharing with 1.28 billion Facebook users. Nowak tells me surveys showed that 80% of people who saw this privacy reminder found it helpful.

Public posting reminder

Now it’s roling out a more forceful “Privacy Checkup” that prompts users to review their existing privacy settings, as shown at the top of this article. This includes their News Feed post audience, the apps they share their data with, and the personal information they display on their profile.

AppControlPanel

Nowak tells me Facebook is trying to be “proactive about helping people get their privacy set up. We all heard the feedback that if people are sharing with more people than they intend to, it’s bad. Bad for them and bad for us because people feel less in control.”

Hopefully this is a sign that Facebook is turning over a new leaf when it comes to privacy. Two new features added this month, Nearby Friends and audio recognition that uses your phone’s microphone to tag photos and tv shows, both launching with a privacy-friendly opt-in model.

If you judge by monthly active users, you could say Facebook’s social network has conquered much of the world. But the company is hoping “Zuckerberg’s Law” comes true and people continue sharing twice as much each year. For that to happen, people can’t just accept Facebook as a utility they inevitably have to use. They have trust that the mission Facebook trumpets has an important clause implied at the end: “to make the world more open and connected…if it wants to be“.

More TechCrunch

There are many iPad apps to help you organize recipes; sync tasks across devices; be more productive; and manage your notes.

Best iPad apps to boost productivity and make your life easier

While online discourse would make it seem that venture has retreated to the Bay Area, with San Francisco being the most important place to build a startup, Index Ventures is…

Why Index Ventures is bulking up its investment team in NYC

In August, a Russian warlord posted a video on Telegram, showing a pair of Cybertrucks patrolling a road in Chechnya, armed seemingly with heavy machine guns. Leaving aside unanswerable (for…

A Russian warlord said he’ll take Cybertrucks into Ukraine; some experts think that’s unwise

WordPress.org has lifted its ban on hosting provider WP Engine until October 1, after putting a block on it earlier this week. The block prevented several sites from updating their…

WordPress.org temporarily lifts its ban on WP Engine

The world of WordPress, one of the most popular technologies for creating and hosting websites, is going through a very heated controversy. The core issue is the fight between WordPress…

The WordPress vs. WP Engine drama, explained

ChatGPT could get more expensive to use in coming years. The New York Times, citing internal OpenAI docs, reports that OpenAI is planning to raise the price of individual ChatGPT…

OpenAI might raise the price of ChatGPT to $44 by 2029

Binance founder Changpeng “CZ” Zhao was released from U.S. custody on Friday after serving out his four-month sentence in a low-security correctional facility. CZ’s sentence was the product of a…

Binance founder ‘CZ’ released from custody after four-month sentence

EV startup Canoo has been hit with two new lawsuits from suppliers linked to the drivetrains that power its electric vehicles, just weeks after the company kicked off a major…

Canoo hit with two supplier lawsuits as last remaining co-founder leaves

Welcome to Startups Weekly — your weekly recap of everything you can’t miss from the world of startups. Want it in your inbox every Friday? Sign up here. This week…

AI dominated both YC Demo Day and startup news

Three Iranian hackers working for the Islamic Revolutionary Guard Corps (IRGC) targeted the Trump campaign in an attempted hack-and-leak operation, according to the Department of Justice.

Iranian hackers charged with hacking Trump campaign to ‘stoke discord’

Wordy is a new iOS app that offers a unique way to learning English. The app automatically translates and defines unknown words while you watch your favorite movies or TV…

Wordy’s new app helps you learn vocabulary while watching movies and TV shows

The WSJ reports that OpenAI’s next funding round, worth around $6.5 billion, could close as soon as the first week in October.

OpenAI’s $6.5B funding round may close as soon as next week

We’re thrilled to welcome Bret Taylor to TechCrunch Disrupt 2024. As the former co-CEO of Salesforce, founder of Quip, former CTO of Facebook, the co-creator of Google Maps, and current…

Bret Taylor of Sierra joins TechCrunch Disrupt 2024

The U.K.s’ antitrust authority has concluded that Amazon’s partnership and equity investment in AI startup Anthropic can’t be investigated under current merger rules due to the size and scope of…

Amazon dodges antitrust scrutiny in UK over Anthropic investment

We’re in the final hours to save up to $600 on TechCrunch Disrupt 2024 tickets! Grab your tickets now and seize this final opportunity for major savings before the countdown…

Last hours to snag up to $600 off TechCrunch Disrupt 2024 passes

Reset your clocks: Meta has been hit with yet another privacy penalty in Europe. On Friday, Ireland’s Data Protection Commission (DPC) announced a reprimand and a €91 million fine —…

Meta fined $101.5M for 2019 breach that exposed hundreds of millions of Facebook passwords

The world’s second-largest money transfer provider, which filed a data breach notice with U.K. authorities, serves over 50 million people.

UK data watchdog confirms it’s investigating MoneyGram data breach

Note-taking apps typically aim to make you more efficient and productive. A lot of those apps concentrate on quickly jotting down your thoughts, organizing them better, or a mix of…

Napkin is a note-taking app that is not about making you more productive

Here are the startups from YC Demo Day 2 that we thought stood out from the flock.

9 startups that stood out on YC Demo Day 2

UAE-based Redwood has acquired a majority stake in the game streaming platform Loco as the Indian firm looks to expand focus to international markets, TechCrunch has learned and confirmed. Redwood,…

Indian game streaming startup Loco sells majority stake to Redwood

SpaceX’s Starlink satellite internet network is expected to hit a new customer milestone this week, company President Gwynne Shotwell told Texas legislators on Tuesday.  “This week, by the way, we…

Starlink hits 4 million subscribers

AI video generators need to believe that filmmakers will use their models in the production process. Otherwise why exist? To jump-start the new AI film ecosystem, Runway has set aside…

Runway earmarks $5M to fund up to 100 films using AI-generated video

Departures might be dominating the week’s OpenAI-related headlines. But comments on AI bias from Anna Makanju, the company’s VP of global affairs, also grabbed our attention. Makanju, speaking on a…

OpenAI’s VP of global affairs claims o1 is ‘virtually perfect’ at correcting bias, but the data doesn’t quite back that up

Lending startup Figure will be launching an AI tool powered by GPT-4 to help catch errors in lending documents. 

Former Brex COO who now heads unicorn fintech Figure says GPT is already upending the mortgage industry

Drata, a security compliance automation platform that helps companies adhere to frameworks such as SOC 2 and GDPR, has laid off 9% of its workforce, amounting to 40 people. Founded in 2020, Drata integrates…

Security compliance unicorn Drata lays off 9% of its workforce

As OpenAI boasts about its o1 model’s increased thoughtfulness, small, self-funded startup Nomi AI is building the same kind of technology. Unlike the broad generalist ChatGPT, which slows down to…

Nomi’s companion chatbots will now remember things like the colleague you don’t get along with

The company recently closed a $130 million round, according to an SEC filing, bringing the total to $327 million.

Zap Energy investors in recent $130M round included Soros Fund and Laurene Powell Jobs’ Emerson Collective

Welcome back to TechCrunch Mobility — your central hub for news and insights on the future of transportation. Sign up here for free — just click TechCrunch Mobility! I’ve been…

Uber snags another robotaxi deal, aviation startups land VC bucks, and where Rivian Foundation money is going

That lack of user interaction — or request for consent — is what confused and concerned some former Kaspersky customers.

Kaspersky defends force-replacing its security software without users’ explicit consent

Featured Article

Tesla Superchargers: GM, Ford, Rivian, and other EV brands with access

EV owners of GM vehicles like the Chevrolet Silverado EV and Cadillac Lyriq will now officially have access to Tesla’s Superchargers.

Tesla Superchargers: GM, Ford, Rivian, and other EV brands with access