Third Party Developers Can Read Gmail Emails

Fresh privacy concerns have been raised after it reported that third-party app developers can read the emails of millions of Gmail users.

And to make matters worse, it seems that Google employees can also read Gmail emails, but this is done on a more limited basis.

Google for its part is insisting it has done nothing wrong, but the issue is sure to raise privacy concerns about the use of their online data.

Email access

The issue came to light after the Wall Street Journal highlighted how Gmail’s access settings allows data companies and app developers to see people’s emails and view private details.

This data for example can include recipient addresses, time stamps, and even entire messages.

Criticism is being levelled at Google, as although this only happens if the user has granted consent, it is not clear from the form that it also allows humans (and not just computers) to read emails.

Google meanwhile has told The Verge that it only gives data to vetted third-party developers and with users’ explicit consent.

It is reported that Google’s vetting process involves checking whether a company’s identity is correctly represented by its app, its privacy policy states that it will monitor emails, and the data that the company is requesting makes sense for what the company does.

These ‘trusted’ companies can include email managing firms such as Return Path and Edison Software.

The WSJ apparently contacted both companies, which said they had human engineers view hundreds to thousands of email messages in order to train machine algorithms to handle the data.

And it also seems that Google staffers can read people’s emails but only in “very specific cases. This is the user has granted his or her consent, or where the company needs to do so for security purposes, such as investigating a bug or abuse,” the search engine giant told the WSJ.

Privacy concerns

The discovery will no doubt cause concern for some, especially amid a heightened sense of alarm caused by the likes of Facebook allowing firms such as Cambridge Analytica to harvest people’s data.

And there is also a question of security.

Last year for example, Google users fell victim to a phishing attack that disguised itself as a permissions request from Google Docs to gain access to user contacts using the same authorisation system.

And earlier this week it was reported that both Google and Facebook may be breaking the newly introduced General Data Protection Regulation (GDPR) with “dark patterns” that effectively trick users into choosing privacy-intrusive options, campaigners have said.

Can you protect your privacy online? Take our quiz!

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

Facebook Demands Old FTC Documents In Antitrust Battle

Fresh development in Meta's battle against US regulator, seeking to force Facebook to divest itself…

4 hours ago

Fate Of Newport Wafer Fab Uncertain, As Government Delays Sale Decision

Government delays decision over whether the UK's largest maker of chips can be purchased by…

5 hours ago

Amazon Faces UK Investigation For Suspected Anti-competitive Practices

Another probe. Busy week for the UK's CMA after it confirms investigation of Amazon over…

22 hours ago

UK Regulator Begin Probe Of Microsoft’s Activision Buyout

The CMA confirms start of investigation into Microsoft's $69 billion purchase of leading gaming holding…

24 hours ago

Online Safety Bill Tweak To Combat Russian Misinformation

Foreign interference and misinformation to be designated a priority offence under Online Safety Bill, the…

1 day ago