Hacker News new | ask | show | jobs
by gsich 2273 days ago
>They have to name every possible thing they can potentially receive.

Then they are missing a lot.

1 comments

Like what?
Example: A program on your PC can open all files your user owns. Then transmit those files (or parts from them).
That's not considered PII information for a privacy policy. They also don't store your files.
It's still private files. So an oversight by Zoom. A picture of you is absolutely a PII.

>They also don't store your files.

Nobody can prove that. Assume the worst, especially with a company like Zoom.

Remember it was about:

>They have to name every possible thing they can potentially receive

And files certainly fall into that.

That's not how PII is defined nor how privacy policies work. They list potential PII received in standard categories with normal product usage and backend processing.

Otherwise every server on the internet can be sent data by you at anytime which effectively makes listing things pointless.

Definition is wrong then.

That's the point.