Log In

Reset Password

Most local websites deficient in privacy policy language

First Prev 1 2 3 Next Last
Privacy Commissioner Alexander White says Bermuda’s participation in the Global Privacy Enforcement Network Sweep was an important first step (File photograph)

A Bermuda Privacy Commission survey of 196 local websites and apps found that 76 per cent used language that was difficult to understand when it came to user privacy, and only 40 per cent had any privacy policy notice at all.

These were some of the findings from the Privacy Commission’s first participation in an annual worldwide survey of online privacy protection.

From January 29 to February 2, the local Privacy Commission was one of 26 global privacy enforcement authorities that acted as “sweepers” in the Global Privacy Enforcement Network sweep.

The annual initiative is aimed at increasing awareness of privacy rights and responsibilities, encouraging compliance with privacy legislation, and enhancing co-operation between international privacy enforcement authorities.

The Privacy Commissioner, Alexander White, said: “Participating in this sweep was an important first step for our office into the phase of conducting active investigations.”

He gave credit to assistant commissioner Christopher Moulder and his team for not only executing the global privacy sweep, but also adding Bermuda-specific sweep questions. These took into account many organisations’ early stage of Personal Information Protection Act readiness.

Less than half of all locally domiciled websites the Privacy Commission looked at had a user privacy policy (File photograph)

Pipa comes into effect on January 1, and will regulate and protect the use of personal information by individuals, companies, public authorities and other organisations in Bermuda.

“We recognise that with Pipa not yet in effect, some organisations may not yet have their privacy notices where they would like them,” Mr White said. “The sweep gives our office statistics about what sort of guidance would be useful. The sweep results provide a baseline by which we can measure our progress as a community in these areas. We encourage organisations not to wait, but to start on the ‘Road to Pipa’ now.”

Privacy Commissioner Alexander White says Bermuda’s participation in the Global Privacy Enforcement Network Sweep was an important first step (File photograph)

The sweep found that nearly all of the 1,000-plus websites and mobile apps they looked at employed one or more deceptive design patterns that made it difficult for users to make privacy-protective decisions.

Deceptive design patterns, also referred to as dark patterns, use features that steer users towards options that may result in the collection of more of their personal information.

These patterns may also force users to take multiple steps to find a privacy policy, log out, or delete their account, or present them with repetitive prompts aimed at frustrating them and ultimately pushing them to give up more of their personal information than they would like.

Those involved in the privacy sweep replicated the user experience by engaging with websites and apps to assess the ease with which they could make privacy choices, obtain privacy information, and log out of or delete an account.

The local sweep took place on February 1.

“I believe the sweep went extremely well, as it gave us an opportunity to examine organisations specific to the scope but also provided us with valuable data from an overall Pipa compliance standpoint,” Mr Moulder said.

The data confirmed that there was much work to be done.

“I’m hopeful that future sweeps will highlight the steps taken by organisations now towards full Pipa compliance,” he said.

You must be Registered or to post comment or to vote.

Published July 09, 2024 at 5:22 pm (Updated July 09, 2024 at 7:38 pm)

Most local websites deficient in privacy policy language

What you
Need to
1. For a smooth experience with our commenting system we recommend that you use Internet Explorer 10 or higher, Firefox or Chrome Browsers. Additionally please clear both your browser's cache and cookies - How do I clear my cache and cookies?
2. Please respect the use of this community forum and its users.
3. Any poster that insults, threatens or verbally abuses another member, uses defamatory language, or deliberately disrupts discussions will be banned.
4. Users who violate the Terms of Service or any commenting rules will be banned.
5. Please stay on topic. "Trolling" to incite emotional responses and disrupt conversations will be deleted.
6. To understand further what is and isn't allowed and the actions we may take, please read our Terms of Service
7. To report breaches of the Terms of Service use the flag icon