|
|
|
|
|
by throwawayjay01
2629 days ago
|
|
How would this work in the case of data portability? If Facebook were to be forced to provide an API that allowed users to export all of their data to a competing social network would Facebook be responsible for ensuring that the competitor was using the data responsibly? |
|
Putting control in the hands of the user is quite different from allowing third parties to exfiltrate data on a user without their consent.
(It is worth noting that this approach is still exploitable---third party convinces users to cough up their authentication codes, then acts as the user and makes the request for the whole kingdom themselves. But user education on the amount of power handed to someone when you literally give them your passwords is a separate issue).