designing the user experience for online privacy, at iapp navigate 2013

29
©2009 Carnegie Mellon University : 1 Designing the User Experience for Online Privacy IAPP June 21, 2013 Jason Hong Associate Professor, HCII Computer Human Interaction: Mobility Privacy Security

Upload: jason-hong

Post on 27-Jan-2015

108 views

Category:

Technology


0 download

DESCRIPTION

Talk I gave at IAPP 2013 Navigate conference, on designing for the user experience of privacy. I give examples of why privacy is so hard to design for. I also talk about three ideas for improving privacy, including privacy nutrition labels, using crowdsourcing, and privacy placebos. https://www.privacyassociation.org/events_and_programs/navigate_2013/

TRANSCRIPT

Page 1: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

00

9 C

arn

eg

ie M

ello

n U

niv

ers

ity :

1

Designing the User Experience for Online Privacy

IAPPJune 21, 2013

Jason HongAssociate Professor, HCII

ComputerHumanInteraction:MobilityPrivacySecurity

Page 2: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

2

Full policy is 10x this length

Page 3: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

3

But this assumes people read it

Page 4: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

4

Page 5: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

5

Mental models not always clear

Page 6: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

6

Location Data

Unique device ID

Location Data

Network Access

Unique device ID

Location Data

Unique device ID

Many hidden and surprising behaviors

Page 7: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

7

Timing really matters too

Page 8: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

8

Page 9: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

9

Not always clear who your audience is

Page 10: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

10

Page 11: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

11

Too many options!

Page 12: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

12

So what can we do to help with the user experience?

Page 13: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

13

Can we simplify and standardize privacy info?

(Kelley et al, CHI 2010)

Page 14: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

14

Standard symbolsStandard locations

High level visual feedback

Page 15: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

15

Finding Surprises

Can we find the gaps between what people think an app does and what an app actually does?

App Behavior(What an app actually does)

User Expectations(What people think

the app does)

Page 16: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

16

Amazon Mechanical Turk

Page 17: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

17

Page 18: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

18

Expectations Condition

Why do you think Angry Birds uses your location data?

How comfortable are you with Angry Birds using your location data?

Page 19: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

19

Purpose Condition

Angry Birds uses your location data for advertising.

How comfortable are you with Angry Birds using your location data?

Page 20: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

20

Results for Location Data (N=20 per app, Expectations Condition)

App Comfort Level (-2 – 2)

Maps 1.52

GasBuddy 1.47

Weather Channel 1.45

Foursquare 0.95

TuneIn Radio 0.60

Evernote 0.15

Angry Birds -0.70

Brightest Flashlight Free -1.15

Toss It -1.2

Page 21: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

21

“[H]e was able to identify about 25 products that… allowed him to assign each shopper a ‘pregnancy prediction’ score. [H]e could also estimate her due date to within a small window, so Target could send coupons timed to very specific stages of her pregnancy.”

Page 22: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

22

“We’d put an ad for a lawn mower next to diapers. We’d put a coupon for wineglasses next to infant clothes. That way, it looked like all the products were chosen by chance.”

Page 23: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

23

Privacy placebos?

Page 24: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

24

ComputationCommunication

Sensing

Page 25: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

25

Page 26: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

26

Page 27: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

27

Page 28: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

28

Page 29: Designing the User Experience for Online Privacy, at IAPP Navigate 2013

©2

01

3 C

arn

eg

ie M

ello

n U

niv

ers

ity :

29