The SwipeiPhone X is officially here, and with it comes a bevy of new bells and whistles that Apple promises justify the smartphone's hefty price tag.
Once such feature is the front-facing TrueDepth camera, which powers both Face ID and gives us the lovely notch. However, according to an Apple contract recently shared with app developers, it also opens up users to a new and not yet fully understood privacy risk.
According to Reuters, which managed to review the terms of a third-party app developer agreement with Apple, the data gleaned by the TrueDepth camera need not remain on a customer's phone. Instead, it can be transmitted to non-Apple servers — a revelation that has some privacy and security experts concerned.
SEE ALSO: So how worried should we be about Apple's Face ID?Notably, Apple has gone out of its way to address privacy concerns related to its Face ID biometric system. The company has promised that all data gathered by Face ID will remain on the phone, and that "[when] using Face ID, the [third-party] app is notified only as to whether the authentication was successful; it can’t access Face ID or the data associated with the enrolled face."
Importantly, however, that doesn't mean app developers won't have access to the TrueDepth camera and the data it gathers.
"Unless Apple comes up with something a bit stronger than a wag of the finger, this has the potential of getting real ugly."
"App makers who want to use the new camera on the iPhone X can capture a rough map of a user’s face and a stream of more than 50 kinds of facial expressions," explains Reuters. "This data, which can be removed from the phone and stored on a developer’s own servers, can help monitor how often users blink, smile or even raise an eyebrow."
We reached out to Apple to confirm that this is in fact the basic structure of third-party app developers' contracts with the company, and will update this story if and when we hear back.
But why does any of this matter? Well, Apple has reportedly forbidden third-party app makers from either selling face data to marketers or using it for advertising purposes. However, according to Dan Tentler, a security researcher with The Phobos Group, once the data leaves Apple's grip it no longer matters what the rules are.
If the technological capability is there for abuse, he notes, bad actors will find a way to abuse it.
"It wont matter. Advertisers are going to [go after the data] anyway, and it's plausible there will be a black market or underground market for quietly lifting that data off of phones despite [Apple's] rules," Tentler explained over email. "The trouble here is that their defensive mechanism appears to be just a bunch of rules, and it's staggeringly obvious that making something against the rules only stops people who elect to follow the rules."
Which, yeah, that doesn't sound so good.
Tentler took his warning even further, saying, "if people followed the rules, we'd never see malware being sent to people through advertising networks, or, you know, murder. You can't depend on rules alone to stop people from doing bad things, so unless Apple comes up with something a bit stronger than a wag of the finger, this has the potential of getting real ugly."
So, are iPhone X owners doomed to live a life of potential privacy abuse by unscrupulous app developers? Not necessarily, but they do need to exercise some caution.
Jim Dempsey, the Executive Director of Berkeley's Center for Law & Technology, told Mashable that while Apple does have a good track record when it comes to privacy, the specifics of the TrueDepth sensor require an extra level of consumer awareness.
"Now, for some apps, [users] will also be receiving notices asking permission to collect facial data," he wrote via email. "It's very easy to say yes, because you want the features offered by the app, which seem cool at the moment. I think consumers have to become even more vigilant about those requests. There is a risk — probably already a reality — that many folks become desensitized to the requests for permission, accept them, and then forget about them."
In other words, the next time a fun-looking third-party app asks for permission to access the data gathered by your iPhone X's TrueDepth camera, maybe think long and hard before tapping "OK."
Topics Apple Cybersecurity iPhone Privacy
Spotify Wrapped 2024 was trash. Strava's was good though.Tablet deals: Get up to 46% off on tablets from Amazon, Apple, and SamsungApple reportedly cancels plans for iPhone subscription serviceBest Amazon deal: The Shark AI Ultra robot vacuum is 50% offNYT Connections Sports Edition hints and answers for December 19: Tips to solve Connections #87Best Sony TV deal: Save $1,100 on 75Best Xbox Series X deal: Save $50 on the 1TB digital console at Best BuyNYT Connections Sports Edition hints and answers for December 18: Tips to solve Connections #86Apple's Home app could get robot vacuum support in iOS 18.3Indiana Pacers vs. Phoenix Suns 2024 livestream: Watch NBA onlineBest video game deal: Get Super Mario Bros. Wonder for $42.99 at WootHonda's new 0 Series electric car prototypes go hard on the 80s future aestheticBest audiobook deals: Save up to 80% on holiday titles at AmazonBest Garmin deal: Save $100 on Garmin vívoactive 5Spotify Wrapped 2024 was trash. Strava's was good though.Best iPad deal: Save $99 on Apple iPad (10th Gen)Scientists find 2 stars 'thriving' on the brink of a giant black holeNASA performs extreme test on moon spacecraft, releases footagePolyamorous influencer breakups: What happens when hypervisible relationships endBest Xbox Series X deal: Save $50 on the 1TB digital console at Best Buy Why Meghan Markle is so much more than just 'Prince Harry's girlfriend' Airline makes a sarcastic dig at Trump on Election Day Twitter vows to make itself less spammy with new policy change Party pooper Trump is having a cash bar at his election night party Trump gets confused by difference between 'county' and 'country' On Election Day 2016, the whole world is Winston Churchill FAFSA's saucy reply to a high schooler's luxurious prom video has students stressed All the ways to watch the votes roll in 20 #DogsAtPollingStations to get you through Election Day Donald Trump gets booed on his way to vote Tesla's Sentry Mode helps police find burglar How did NASA create its own pretty artificial auroras? Rockets, of course. Toblerone controversy causes British meltdown Teen ransomware 'K!NG' blew his loot on drugs, gambling, and sex 'Avengers: Endgame' Fandango pre Why Daenerys Targaryen should end up on the Iron Throne Scammers use tax The ice lost by Earth's glaciers weighs as much as 27 billion 747s Oops, Eric Trump just broke the law Mariah Carey responds to a fan's tweet about people who don't like her