Third Party Developers Can Read Gmail Emails

Fresh privacy concerns have been raised after it reported that third-party app developers can read the emails of millions of Gmail users.

And to make matters worse, it seems that Google employees can also read Gmail emails, but this is done on a more limited basis.

Google for its part is insisting it has done nothing wrong, but the issue is sure to raise privacy concerns about the use of their online data.

Email access

The issue came to light after the Wall Street Journal highlighted how Gmail’s access settings allows data companies and app developers to see people’s emails and view private details.

This data for example can include recipient addresses, time stamps, and even entire messages.

Criticism is being levelled at Google, as although this only happens if the user has granted consent, it is not clear from the form that it also allows humans (and not just computers) to read emails.

Google meanwhile has told The Verge that it only gives data to vetted third-party developers and with users’ explicit consent.

It is reported that Google’s vetting process involves checking whether a company’s identity is correctly represented by its app, its privacy policy states that it will monitor emails, and the data that the company is requesting makes sense for what the company does.

These ‘trusted’ companies can include email managing firms such as Return Path and Edison Software.

The WSJ apparently contacted both companies, which said they had human engineers view hundreds to thousands of email messages in order to train machine algorithms to handle the data.

And it also seems that Google staffers can read people’s emails but only in “very specific cases. This is the user has granted his or her consent, or where the company needs to do so for security purposes, such as investigating a bug or abuse,” the search engine giant told the WSJ.

Privacy concerns

The discovery will no doubt cause concern for some, especially amid a heightened sense of alarm caused by the likes of Facebook allowing firms such as Cambridge Analytica to harvest people’s data.

And there is also a question of security.

Last year for example, Google users fell victim to a phishing attack that disguised itself as a permissions request from Google Docs to gain access to user contacts using the same authorisation system.

And earlier this week it was reported that both Google and Facebook may be breaking the newly introduced General Data Protection Regulation (GDPR) with “dark patterns” that effectively trick users into choosing privacy-intrusive options, campaigners have said.

Can you protect your privacy online? Take our quiz!

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

Microsoft Launches Smallest AI Model, Phi-3-mini

Lightweight artificial intelligence model launched this week by Microsoft, offering more cost-effective option for Azure…

1 hour ago

US Senate Passes TikTok Ban Or Divestment Bill

ByteDance protest falls on deaf ears, as Senate passes TikTok ban or divest bill, with…

3 hours ago

Raimondo Downplays Huawei Smartphone Chip

US Commerce Secretary Gina Raimondo says Huawei's flagship smartphone chip 'years behind' US technology, shows…

1 day ago

Cloud Companies Reject Broadcom VMware Pricing Changes

Cloud companies, business user groups say Broadcom price changes do not address their concerns, as…

1 day ago

UK Lawsuit Claims Grindr Shared HIV Status

Dating app Grindr sued over claims it shared sensitive user data, including HIV status, with…

1 day ago

Meta Opens Quest VR OS To Third Party Gadget Makers

Meta Platforms opens operating system behind Quest virtual reality headsets to third parties amidst competition…

1 day ago