Feeds

American ISPs already sharing data with outside ad firms

To Phorm or Not to Phorm

Boost IT visibility and business value

"Many customers are uneasy with the current status-quo," Front Porch CEO Zach Britton told us. "Our challenge, as an industry, is to communicate what is, and isn't transpiring. If successful, we will show that ISP-based behavioral targeting offers greater benefits and is less privacy invasive than typical Google searches. If not, the industry will be stillborn."

If these companies steer clear of personally identifiable information - and they insist they do - their services are perfectly legal in US. But, says Ari Schwartz, chief operating officer of the Center for Democracy and Technology, the services may be "pushing the boundaries of what consumers expect". It all depends on whether these companies - and their ISP partners - are open about what they're doing.

"[These firms] are going to say they're not transferring any personal information, and all the US laws are based on personal information," Schwartz told us. "But there are some questions as to whether they're properly notifying people.

"There has to be an unavoidable notice for consumers," he continued. "We think that burying the information in the terms of service is clearly not enough." And he would prefer that these companies use an opt-in model - rather than an opt-out.

Like NebuAd, Front Porch insists that it properly notifies ISP customers. In the US, it has deployed its service on both residential ISPs and wireless hotspots. On the residential side, it says that users are notified via its very own browser-based "messaging system."

"We mandate that all our ISP partners ensure that 100 per cent of users understand what's going on and, secondly, that 100 per cent of users get the choice about whether they want to participate or not."

The company's notification screen looks something like this:

Front Porch Message Screen

Front Porch notification screen

Supplied by the company, this is a generic version of the screen - with 'insert logo here' used to indicate where the name of the participating ISP is posted. When it appears in a browser, users can bypass the screen by clicking on a link just above it, but the company says that if a user doesn't check 'yes' or 'no,' the screen will reappear at a later time.

Britton does acknowledge that the language on this screen changes from time to time - the 'yes' and the 'no' boxes might be reversed, for instance - but he insists that every user sees a screen like this.

On the hotspot side, things work a bit differently. The messaging service is not used. Instead, users are only notified from a lengthy terms of service that appears when they sign up - and there's no opt-out.

"If you're traveling through one of our airports or hotel chains or whatever, and it's offering free internet access, in that first page there's a clear part that says we will give you targeted advertising while you're on this network.

"This is a free service, so if you don't want targeted advertising, you just say no to the free access."

Meanwhile, NebuAd sent us a copy of its standard contract, where ISPs are required to "directly" notify customers. But Knology seems to contradict the company's definition of "directly." And although other ISPs, including WOW! and the Kansas-based Embarq, have added language to their terms of service indicating they're using a service like NebuAd's, it's unclear if they provide more direct notification.

WOW! - formerly known as WideOpenWest - did not respond to our requests for comment, while Embarq sent us this canned statement: "Like other companies, we are evaluating behavioral marketing tools, but we have not decided whether to move forward with them. Our Privacy Policy anticipates and alerts customers to possible future use of these tools, and offers customers the opportunity to simply and quickly opt out. Embarq takes its customers' privacy very seriously and we take every precaution to ensure information about our customers remains secure and anonymous."

There are also rumors flying that Phorm will soon launch on ISPs here in the States, and the rumors touch on at least one big name: AT&T. AT&T says it hasn't even tested Phorm's service. "We're not using them, and we have never have used them. As far as what we might do, whether it's network investment of policy or anything else, we can't talk about that," said AT&T spokesman Dave Pacholczyk. "You're not the first to ask. We know that that rumor is out there." ®

The essential guide to IT transformation

More from The Register

next story
UK fuzz want PINCODES on ALL mobile phones
Met Police calls for mandatory passwords on all new mobes
Don't call it throttling: Ericsson 'priority' tech gives users their own slice of spectrum
Actually it's a nifty trick - at least you'll pay for what you get
Three floats Jolla in Hong Kong: Says Sailfish is '3rd option'
Network throws hat into ring with Linux-powered handsets
Fifteen zero days found in hacker router comp romp
Four routers rooted in SOHOpelessly Broken challenge
New Sprint CEO says he will lower axe on staff – but prices come first
'Very disruptive' new rates to be revealed next week
US TV stations bowl sueball directly at FCC's spectrum mega-sale
Broadcasters upset about coverage and cost as they shift up and down the dials
Trans-Pacific: Google spaffs cash on FAST undersea packet-flinging
One of 6 backers for new 60 Tbps cable to hook US to Japan
Tech city types developing 'Google Glass for the blind' app
An app and service where other people 'see' for you
Canadian ISP Shaw falls over with 'routing' sickness
How sure are you of cloud computing now?
UK mobile coverage is BETTER than EVER, networks tell Ofcom
Regulator swallows this line and parrots it back out at us. What are they playing at?
prev story

Whitepapers

5 things you didn’t know about cloud backup
IT departments are embracing cloud backup, but there’s a lot you need to know before choosing a service provider. Learn all the critical things you need to know.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Build a business case: developing custom apps
Learn how to maximize the value of custom applications by accelerating and simplifying their development.
Rethinking backup and recovery in the modern data center
Combining intelligence, operational analytics, and automation to enable efficient, data-driven IT organizations using the HP ABR approach.
Next gen security for virtualised datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.