3
PCPD News
私隱專員公署通訊
•
Issue no. 30
私隱政策聲明的清晰度
Level of Transparency
《私隱政策聲明》難以閱讀
Readability -
PPS was hard to read
沒有提供有效的聯絡方法
Contactability -
without usable contact information
《私隱政策聲明》不容易找到而未有出
現在「私隱政策」的頁面
Findability -
PPS not available under a "Privacy
Policy" heading on the website
14%
19%
8%
6%
11%
40%
20% 0% 40% 60% 80% 100%
2014
2013
讀取資料權限的清晰度及範圍
Transparency and
Scope of Data Access Permission
讀取資料權限要求疑似過度
Possbile excessive permissions
of data access
沒有提供私隱聲明/私隱聲明不清晰
Missing/unclear pre-installtion
communications
72%
59%
85%
31%
20% 0% 40% 60% 80% 100%
Hong Kong
Global
「我的天文台」《私隱政策聲明》
Privacy Policy Statement of
“
My Observatory
”
the apps’ functionality, and most
importantly, how the apps explained
to consumers why they wanted the
personal information and what they
planned to do with it.
A press conference was held on 15
December to announce the results of
the Sweep with respect to local mobile
apps. The Commissioner commented,
"Transparency is central to respecting
the privacy of individuals and it is
paramount that organisations develop
transparent online privacy policies so
that individuals understand how their
personal data is handled in this virtual
context. Admittedly, conveying privacy
information to consumers can present
unique challenges in the app world,
where screens are small and users'
attention can be intermittent. That said,
compliance with the legal obligations
under the Ordinance is a must."
On the other hand, some examples
of best practices are noted in the
international Sweep:
• 15% of apps provided a clear
explanation of how they would
collect, use and disclose personal
information. The most privacy
friendly apps offered brief, easy-
to-understand explanations of
what the app would and would not
collect and use pursuant to each
permission.
• Pop-ups, layered information and
just-in-time notification were
used to inform users of potential
collections or uses of information
when they were about to happen.
It is important to note that some highly
popular apps in the e-marketplace were
among those that received top ratings
in transparency, demonstrating that
when properly explained to consumers,
the collection of information does not
negatively impact on downloads.
2014 Study Report on the Privacy
Policy Transparency of Smartphone
Applications
www.pcpd.org.hk/english/resources_cen t r e / pub l i ca t i ons / su r vey s / f i l e s /
sweep2014_e.pdf
公署認為「我的天文台」程式是值得參考的。該程式提供了易於理解的《私隱
政策聲明》,顧及用戶的需要,說明會讀取及不會讀取的資料。而且,儘管
Android
版本在安裝程式時已取得位置資料的權限,但其後仍讓用戶選擇容許
或不容許該程式讀取位置資料。這例子正好證明開發受歡迎、實用及保障私隱
的程式是可行的。
PCPD was impressed by the app MyObservatory as it featured an easily
understandable PPS that addressed the concerns of users by articulating
what data it would and would not access. Furthermore, the Android version
facilitated users to allow or disallow location information to be read by the
app, even though such permission had already been obtained at the time of
app installation. This demonstrates that it is possible to develop an app that is
popular, functional and privacy-friendly.
2. 為了提供定點天氣服
務,該應用程式會獲
取用戶位置,以便於
香港天文台伺服器上
讀取最適合用戶的資
料以供使用。用戶的
位置不會被傳送離開
該應用程式。該功能
需要用戶授權「粗略
式(網絡式)位置」及
「精細的(GPS)位置」。
6. 該應用程式於「我的
天氣報告」功能中可
能需要使用智能手機
的相機鏡頭,並把用
戶拍下的照片存放於
用戶的智能手機上。
該應用程式不會取用
智能手機相片簿內的
資料。