Silicon Valley Apps for Kids Meetup Laura D. Berger October 22, 2012 The views expressed herein are those of the speaker, and do not represent the views.

Slides:



Advertisements
Similar presentations
Mobile Payments and the FTC Manas Mohapatra Director of Mobile Policy Mobile Technology Unit Federal Trade Commission The views expressed are not necessarily.
Advertisements

Virginia State Bar Annual Meeting Corporate Counsel Section Update on Do Not Call & Spam Michael Goodman Federal Trade Commission
NAU HIPAA Awareness Training
Deceptive/False/Unfair Advertising Emma Kazaryan Street Law.
P A R T P A R T Regulation of Business Administrative Agencies The Federal Trade Commission Act and Consumer Protection Laws Antitrust: The Sherman Act.
4.01 Foundational knowledge of promotion
Children's Online Privacy Protection Act and the Video Privacy Protection Act By: Alana Rushing.
IS3350 Security Issues in Legal Context
FERPA: WHAT YOU SHOULD KNOW ILASFAA April 18, 2008 Amy Perrin Director of Financial Aid Elgin Community College.
PRIVACY A Consumer Reporting Agency Perspective. Collect and Sell Information on People Credit Bureaus – Equifax, Experian & TransUnion – are CRA’s But.
Deceptive Trade Practices Enforcement in Private Student Loans Dino Tsibouris Tsibouris & Associates, LLC.
Hong Kong Privacy Code on Human Resource Management
Introduction to the APPs and the OAIC’s regulatory approach Presented by: Este Darin-Cooper Director, Regulation and Strategy May 2015.
2/16/2010 The Family Educational Records and Privacy Act.
FARMINGTON AREA PUBLIC SCHOOLS SUMMER TECHNOLOGY ACADEMY AUGUST 18TH, 2010 Web 2.0 Tools.
FERPA 2008 New regulations enact updates from over a decade of interpretations.
Chapter 9 Information Systems Controls for System Reliability— Part 2: Confidentiality and Privacy Copyright © 2012 Pearson Education, Inc. publishing.
Children, Privacy and the Internet. Why do we need special protection for children?
NTIA Privacy Multistakeholder Meeting March 25, 2014 Amanda Koulousias, Attorney Division of Privacy and Identity Protection Federal Trade Commission FTC.
FAMILY EDUCATIONAL RIGHTS AND PRIVACY ACT Electronic Signatures This work is the intellectual property of the author. Permission is granted for this material.
Per Anders Eriksson
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
® 1 New Maryland Team Law Real Estate Teams and Groups.
“Internet” and “Operator” (COPPA Statute) InternetOperator Collectively the myriad of computer and telecommunications facilities, including equipment.
CONSUMER PROTECTION AND LITIGATION: CONSUMER PROTECTION AND LITIGATION: Ryan Mehm Attorney Bureau of Consumer Protection Federal Trade Commission The views.
1. What is the DMCA? Digital Millennium Copyright Act. Signed into law in Provides the legal framework for copyright holders to claim copyright.
The U.S. Approach to Consumer Protection in the Online World U.S. Presentation FTAA Joint Government Private Sector Committee on Electronic Commerce 13th.
Blogger Advertising & the Federal Trade Commission Meredith Lowry Wright Lindsey Jennings
10 Tips for Privacy in Mobile Games Steve Augustino Kelley Drye & Warren LLP (with a little help from Tom Petty)
Enterprise data (decentralized control, data security and privacy) Incident Response: State and Federal Law Rodney Petersen Security Task Force Coordinator.
Acceptable Use Policies, Online Safety, and Photo Permission Forms Elizabeth White Tara Dykes Julie Howe.
Health Insurance Portability and Accountability Act (HIPAA)
FTC: Anatomy of a Data Security/Privacy Investigation and the Future of Privacy John Jay College of Criminal Justice Center for Cybercrime Studies November.
Federal Trade Commission required to issue and enforce regulations concerning children’s online privacy. Initial COPPA Rule effective April 21, 2000;
Smart Machines, Smart Privacy: Rules of the Road and Challenges Ahead The views expressed are those of the speaker and not necessarily those of the FTC.
Data Protection Compliance Professor Ian Walden Institute of Computer and Communications Law, Centre for Commercial Law Studies, Queen Mary, University.
IBT - Electronic Commerce Privacy Concerns Victor H. Bouganim WCL, American University.
Understanding HIPAA (Health Insurandce Portability and Accountability Act)
CYBERLAW Cyberlaw Meets Family Law: The Children’s Online Privacy Protection Act of 1998 (COPPA) Class of Nov. 11, 2002 Professor Susanna Fischer.
Jurisdiction FTC Act: Unfair or deceptive acts or practices in or affecting commerce, are hereby declared unlawful 15 U.S.C. § 45.
LAW OF COMPUTER TECHNOLOGY FALL 2015 © 2015 MICHAEL I. SHAMOS Regulatory Law Michael I. Shamos, Ph.D., J.D. Institute for Software Research School of.
Federal Agencies and Laws for Consumer Rights
The Internet of Things and Consumer Protection
Student Financial Assistance. Session 55-2 Session 55 Internet Privacy Laws.
Mass Media Law 18 th Edition Don Pember Clay Calvert Chapter 15 Regulation of Advertising McGraw-Hill/Irwin © 2013 McGraw-Hill Companies. All Rights Reserved.
Acceptable Use Policy By: Ashley Crehan Jessica Harmon Emily Edwards.
Essentials Of Business Law Chapter 27 Conducting Business In Cyberspace McGraw-Hill/Irwin Copyright © 2007 The McGraw-Hill Companies, Inc. All rights reserved.
Privacy Policy Issues & Pages Amy Reese INF385E Information Architecture and Design 1 UT iSchool 21 September 2004.
Sharing Information (FERPA) FY07 REMS Initial Grantee Meeting December 5, 2007, San Diego, CA U.S. Department of Education, Office of Safe and Drug-Free.
Introduction to the Australian Privacy Principles & the OAIC’s regulatory approach Privacy Awareness Week 2016.
Privacy and Security Considerations in Research and Clinical Trials February 28, 2013 Joanna K. Napp, J.D., M.P.H. Chief Privacy Officer and Compliance.
COPPA: CHILDREN'S PRIVACY, YOUR GAME, AND THE CHANGING ONLINE LANDSCAPE MONA IBRAHIM SENIOR ASSOCIATE INTERACTIVE ENTERTAINMENT LAW GROUP
BBB Wise Giving Alliance & The International Committee of Fundraising Organizations Advancing Trust in the Charitable Sector Federal Trade Commission,
“Kids First, New Mexico Wins!” NMPED Data Conference Spring 2016 Dan Hill General Counsel, Public Education Department Randi Johnson General Counsel, State.
Practical Applications of Law Scenario Norminicka Clare Barry University.
Mini Law Lesson: Law of Apps Brian Heidelberger
Consumer Information Federal Trade Commission Act grants Federal Trade Commission (FTC) responsibility regarding unfair methods of competition and unfair.
Privacy Laws Family Educational Rights and Privacy Act Protection of Pupil Rights Amendment Individual’s with Disabilities in Education Act Children’s.
Nassau Association of School Technologists
How FTC Regulation of Native Advertising Impacts PR Practice
Silicon Valley Apps for Kids: COPPA BASICS
Federal Agencies and Laws for Consumer Rights
Internet Advertising FTC 101.
12 Key Laws.
6 October 2016 Social media: do you have the right social media strategy that will impact your business’ growth? - Legal and Regulatory Issues William.
Final Amended COPPA Rule
Whistleblower Program
BA 625: Privacy Law and Policy
Student Privacy in the age of big data
Presentation transcript:

Silicon Valley Apps for Kids Meetup Laura D. Berger October 22, 2012 The views expressed herein are those of the speaker, and do not represent the views of the Commission or any individual Commissioner. 1

 FTC Act (Section 5) prohibits unfair or deceptive acts and practices in or affecting commerce  FTC also enforces 45 other statutes and more than 30 trade regulation rules  Privacy-related standards the FTC enforces include Children’s Online Privacy Protection Act (“COPPA”), as well as other laws, such as the Gramm-Leach-Bliley Act and the Fair Credit Reporting Act. 2

 Deception  a material representation or omission that is likely to mislead consumers acting reasonably under the circumstances  Unfairness  practices that cause or are likely to cause substantial injury to consumers that are not outweighed by countervailing benefits to consumers or competition and are not reasonably avoidable by consumers.  Note: Section 5 and COPPA violations often are alleged in tandem – e.g., if you say you don’t collect information from kids under 13, but you do. 3

4

 Tell the truth about what your app can do.  Disclose key information clearly and conspicuously.  Build privacy considerations in from the start.  Be transparent about your data practices.  Offer easy to find and easy to use choices.  Honor your privacy promises.  Protect kids’ privacy.  Collect sensitive information only with consent.  Keep user data secure. 5

 COPPA is the only child-specific federal privacy law in the United States.  Among other things, operators of commercial websites and online services must provide NOTICE and obtain parents’ CONSENT before collecting personal information from children under age 13. 6

 Permit parents to make informed choices about when and how children’s personal information is collected, used, and disclosed online; and  Enable parents to monitor their children’s interactions and help protect them from the risks of inappropriate online disclosures. 7

 Operators of commercial websites and online services directed to children that collect, maintain, or provide the opportunity to disclose personally identifying information or “PII.”  Operators of general audience sites and services (including teen/tween sites) who have actual knowledge that they collect kids’ PII.  Entities on whose behalf operators collect the information. 8

FTC considers several factors, including:  Subject matter, content, age of models, language, graphics, activities, or incentives;  Whether advertising promoting or appearing on the site or service is directed to children;  Evidence about intended audience;  Empirical evidence about audience composition.  2011 Proposed Additions: Music & celebrities appealing to children. 9

10

11

 Must have actual knowledge that they collect personal information from children.  “Actual knowledge” can come from asking a child’s age, grade, birthday, other age- identifiers. May also come from notification from a concerned parent or other individual. 12

 Post a privacy policy and links to the policy wherever personal information is collected.  Give parents direct notice of its information practices.  With certain exceptions, obtain verifiable parental consent before collecting information. And... 13

 Provide parents access and opportunity to delete child’s personal information and opt-out of future collection.  Limit collection of personal information.  Establish and maintain reasonable procedures to protect the confidentiality, security, and integrity of personal information.  2011 Proposal: Strengthen security provision; add data retention/deletion requirements 14

 There are 5 approved safe harbors:  Aristotle, Inc.  CARU  ESRB  Privo, Inc.  TRUSTe  An operator participating in and complying with an FTC-approved safe harbor will be deemed to be in compliance with the Rule. 15

 FTC actively enforces COPPA.  Agency has filed 20 federal court actions, and has obtained over $7.6 million in civil penalties. 16

 FTC is authorized to seek up to $16,000/violation in penalties, and may also seek:  Deletion of personal information collected without parental consent;  Employee education and written acknowledgement;  Written compliance report to FTC; and  Consumer education. 17

18

19

 Full name  Physical address  address  Social Security Number  Telephone number  A screen name revealing  A persistent identifier combined with personal information or “PI”  Any information tied to PI Proposal: Persistent Identifiers not used for “support for internal operations” Geolocation Screen-names not used for “support for internal operations” Photos, Videos

 Add new methods: electronic scans, video- conferencing, or use of government issued ID that is immediately deleted.  Eliminate Plus  2 new approval procedures:  Commission approval  Safe Harbor approval 21

22

23

 Reviewed 200 kids apps on Android and 200 on Apple  Looked for disclosures available in App stores or by developers  Very little information disclosed prior to download  Recommendation – app stores, developers and other ecosystem participants need to improve disclosures re data practices 24