tag:blogger.com,1999:blog-69934232680197246112024-03-04T20:05:32.336-08:00Carmelo Fontana < weblog >Tech lawyer | Internet enthusiast Unknownnoreply@blogger.comBlogger57125tag:blogger.com,1999:blog-6993423268019724611.post-51453921107194474822011-02-05T03:54:00.000-08:002011-02-05T03:54:34.271-08:00New Rules for Cookies in the EUI posted a blog in Italian on the implementation of the recent changes in EU regulation on Cookies.<br />
If you don't speak Italian you can take a peak using Google Translate.<br />
This is the link to the <a href="http://www.carmelofontana.com/2011/02/come-cambia-la-disciplina-dei-cookies.html">Italian version</a> and this is the link to the <a href="http://translate.google.com/translate?client=tmpg&hl=en&u=http%3A%2F%2Fwww.carmelofontana.com%2F2011%2F02%2Fcome-cambia-la-disciplina-dei-cookies.html&langpair=it%7Cen">English automated Translation</a>.<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com14tag:blogger.com,1999:blog-6993423268019724611.post-50550703699399141032010-06-22T22:16:00.000-07:002010-06-22T22:16:06.870-07:00Privacy Seals - How Useful Are They?Recently, I've been considering whether to get a privacy seal for my start-up. A privacy seal (which is a species of a<a href="http://en.wikipedia.org/wiki/Trust_seal"> trust seal</a>) is a certification offered by a private company that essentially confirms that a website's privacy policies and other documents/features after testing your privacy policies comply with US law, EU safe harbor, COPPA, etc.<br />
<br />
<b>Cost.</b><br />
Of course, the first thing to consider (putting on my business hat) is how much does it cost and what is the return?<br />
<br />
For a young start-up, the cost of a basic seal (certifying just the privacy policy) is around $1000. Then, if you start adding services (dispute resolution with customers), certification of Safe Harbor compliance or certification on other features (emails, applications), the cost goes up and can quickly reach $5,000.<br />
<br />
In fact, the pricing model of most of the (very few) companies offering privacy seals is based on the amount of revenue generated by the website - the higher the revenues, the higher the cost. So, if a company has revenues of, let's say, $5 million - the cost of the certification will be about $10,000. So, relatively speaking, it is not so expensive. <br />
<br />
<b>Legal Value.</b><br />
The seal is just a nice stamp on the website and does not have any specific legal value. It may represent a good marketing tool, but before starting to pay money for the certification I would consider many different things to assess the potential return. Moreover, it is important to consider the quality of the company making the certification. <br />
<br />
Recently, certification company ControlScan was the subject of <a href="http://www.ftc.gov/opa/2010/02/controlscan.shtm">charges brought by the FTC</a> for misleading consumers regarding the significance of a ControlScan certification seal. Theoretically, the companies who used ControlScan certifications could also be subject to suits over this issue. Obviously, no one is interested in buying a litigation risk. So, before shelling out the money for a certification, it is advisable to double-check the company doing the certification. <br />
<b><br />
</b><br />
<b>Best Practices.</b><br />
A good reason to consider having a privacy seal is that many of the major Internet companies have it. It may be especially helpful to have such a seal in the area of privacy law (where the interpretation is not always straightforward and enforcement is uncertain). It is always a good idea to be in line with the best practices in the industry. Theoretically, this could provide a defense against some kinds of litigation. <br />
<b><br />
</b><br />
<b>Return.</b><br />
Of course, improving the website reputation and bolstering users' trust is a revenue driver... yet, before getting too excited, I think it is necessary to consider the specific nature of the services offered by the site and the dynamic of the user base. For instance, I believe the seal may be more important for an e-commerce site and less important for an search engine or a general portal. <br />
<br />
Also, it is very important to understand the meaning/reputation that the privacy seal may have in the specific users' community. For instance, I believe that certain seals may be more reputable than others in certain jurisdictions while, in some communities, the seals (and privacy issues in general) may not have sufficient relevance to justify the expense.<br />
<br />
Additionally, some services may use other tools to enhance users' trust and consumer reliance. For instance, in B2B services, the reputation of the company and the existence of a close relationship very likely supersede the value of a third party seal. <br />
<b><br />
</b><br />
<b>My call.</b><br />
For my start-up, I think it is not worth the money. The nature of the service provided, the business model, and the close relationship with users weigh against getting a privacy seal.<br />
<br />
On the other hand, moving forward as revenues increase, the cost of the seal may become marginal and it might not hurt to get it.<br />
<div><br />
</div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-6591132191610670442010-05-23T16:06:00.000-07:002010-05-23T16:17:35.677-07:00Facebook About to Change Privacy Policy. Again...It took me a bit to understand and figure out all the privacy options on Facebook... And now it may be time to<a href="http://thenextweb.com/socialmedia/2010/05/23/facebook-ceo-we%E2%80%99ve-made-a-bunch-of-mistakes-changes-coming-this-week/"> start all over again.</a> <br />
I concede that some changes were REALLY necessary. However, updating the policies and modifying the control interface so frequently is also affecting users' ability to understand what is going on. <br />
Perhaps FB will send a notice to inform of the changes and proactively explain...<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-27544413752480410952010-05-14T15:03:00.000-07:002010-05-14T19:09:04.292-07:00Google: Agreement With Italian Antitrust Authority<div>Following an investigation by the Italian Antitrust authority, Google agreed to change its terms of use regarding AdSense and to allow more transparency in the rev-sharing with publishers and content providers. Also, considering the alleged abuse of dominant position with respect to Google News, Google agreed to maintain separation between News and Search indexing. Accordingly, Google will keep deploying separate set of crawls to feed into its News aggregator. As a result, publishers and content providers will be able to pull-out of Google News while keeping their visibility intact on Google Search.</div><div><a href="http://www.agcm.it/AGCM_ITA/DOCUM/Impegni.nsf/0/dd34936f812f8122c12577230039354c/$FILE/p21067s_all.pdf">Here is the document</a> with the details (in Italian...). </div><div>In fact, I believe that this agreement underscores the powerful connection between Google's two products AdSense and Google News. Another way to look at the issue could be considering the ongoing negotiation between Google and content providers as to achieve a fair rev-sharing deal with respect to Google News ads revenues. <br />
Probably, AdSense was not considered a viable solution anymore, given the little transparency allowed by Google's trade secrets. However, it seems that Google and the newspaper industry are moving forward and coordinating their business models since Google is now willing to disclose information about the revenues generated out of the publishers' content. <br />
I have the feeling that more open policies in AdSense may also cast some light on the existence of price discriminations amongst different kinds of content and content providers (i.e. AdSense affiliates). If this is the case, the ads market will surely benefit from it and even the "little guys" may be able to cut better deals for their content. </div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-30101511467694600762010-05-13T16:03:00.000-07:002010-05-13T16:25:27.027-07:00Art. 29 Working Party: unacceptable that Facebook changed default settings to the user's detriment<span class="Apple-style-span" style="font-family: 'Lucida Grande'; font-size: small;"><span class="Apple-style-span" style="font-size: 11px;"><span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: 14px; line-height: 17px;"><span style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;">Yesterday <a href="http://ec.europa.eu/justice_home/fsj/privacy/workinggroup/index_en.htm">Art. 29 Working Party</a></span><span style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"> issued a <a href="http://ec.europa.eu/justice_home/fsj/privacy/news/docs/pr_12_05_10_en.pdf">press release</a> where it declared it unacceptable that Facebook radically altered its privacy policies to the detriment of users.</span></span></span></span><br />
<span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: 14px; line-height: 17px;">The issue concerns the default settings. The WP recommended:</span><br />
<blockquote><i><span class="Apple-style-span" style="font-size: small;">a default setting in which access to the profile information and information about the connections of a user is limited to self-selected contacts. Any further access, such as by search engines, should be an explicit choice of the user.</span></i></blockquote><span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: medium;"><span class="Apple-style-span" style="font-size: 14px; line-height: 17px;">However, Facebook users know that it is necessary to navigate the privacy settings and go through a series of opt-outs.</span></span><br />
<span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: medium;"><span class="Apple-style-span" style="font-size: 14px; line-height: 17px;">Furthermore, the WP points out to Facebook and other social networks the lesson learned by Google in Italy: when a user uploads some contents involving a third party's personal data it is necessary to "to obtain free and unambiguous consent."</span></span><br />
<span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: medium;"><span class="Apple-style-span" style="font-size: 14px; line-height: 17px;">On the latter point there are still some fundamental technical problems. In fact, I am not sure how it would be possible to protect the interests of third parties by assigning such tasks to the social network platform, unless the WP requires that Facebook or other social networking sites add another check-box on their terms ... something like this:</span></span><br />
<blockquote><i><span class="Apple-style-span" style="font-size: small;">"You represent that the uploaded or shared content (" Content ") does not violate the privacy and / or other personal rights of third parties and that in any case you have previously obtained free and unambiguous consent to the publication of the Content from the owner of any personal data or personal rights relating to the Content."</span></i></blockquote><span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: medium;"><span class="Apple-style-span" style="font-size: 14px; line-height: 17px;">It would be easy for users to mark this check-box (among the many). Who knows if this will be more effective than similar disclaimers about copyrighted content.</span></span><br />
<span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: medium;"><span class="Apple-style-span" style="font-size: 14px; line-height: 17px;"><br />
</span></span><br />
<div><span class="Apple-style-span" style="font-family: 'Lucida Grande'; font-size: small;"><span class="Apple-style-span" style="font-size: 11px;"><span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: 14px; line-height: 17px;"></span></span></span><br />
<span class="Apple-style-span" style="font-family: 'Lucida Grande'; font-size: small;"><span class="Apple-style-span" style="font-size: 11px;"><span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: 14px; line-height: 17px;"></span></span></span><br />
<span class="Apple-style-span" style="font-family: 'Lucida Grande'; font-size: small;"><span class="Apple-style-span" style="font-size: 11px;"><span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: 14px; line-height: 17px;"><div class="separator" style="clear: both; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; text-align: center;"><a href="http://upload.wikimedia.org/wikipedia/commons/thumb/e/eb/Blue_check.svg/600px-Blue_check.svg.png" imageanchor="1" style="clear: left; color: #0c9fe7; float: left; margin-bottom: 1em; margin-left: 0px; margin-right: 1em; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; text-decoration: none;"><img alt="600px-Blue_check.svg.png (600 × 600)" border="0" height="200" src="http://upload.wikimedia.org/wikipedia/commons/thumb/e/eb/Blue_check.svg/600px-Blue_check.svg.png" style="border-bottom-width: 0px; border-left-width: 0px; border-right-width: 0px; border-top-width: 0px; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 4px; padding-left: 4px; padding-right: 4px; padding-top: 4px;" width="200" /></a></div></span></span></span><span class="Apple-style-span" style="font-family: 'Lucida Grande'; font-size: small;"><span class="Apple-style-span" style="font-size: 11px;"><span class="Apple-style-span" style="color: #333333; font-family: Arial, Helvetica, sans-serif; font-size: 14px; line-height: 17px;"><span style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"><span class="Apple-style-span" style="color: #0b5394; font-size: x-large; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;">CHECK ...</span></span></span></span></span></div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com5tag:blogger.com,1999:blog-6993423268019724611.post-36075847751403022522010-05-08T20:35:00.000-07:002010-05-08T21:10:51.632-07:00Brief History of Online Feedback / Rating... Some Thoughts<div class="separator" style="clear: both; text-align: center;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg2iuF4owhBW1B_xHdefNLBULuUOT30XHhS_BxMW4btW1QZO-MW57kh5v7ygJrJNm4ulvVnWEdxc8IR48spjtRa_qDMOM3b_DmWI_fHzER1qAs8hyhrP9asiGARs9r2LG-JahTBslGi8PYi/s1600/Picture+6.png" imageanchor="1" style="clear: right; float: right; margin-bottom: 1em; margin-left: 1em;"><img border="0" height="157" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg2iuF4owhBW1B_xHdefNLBULuUOT30XHhS_BxMW4btW1QZO-MW57kh5v7ygJrJNm4ulvVnWEdxc8IR48spjtRa_qDMOM3b_DmWI_fHzER1qAs8hyhrP9asiGARs9r2LG-JahTBslGi8PYi/s200/Picture+6.png" width="200" /></a></div><b>Stage 1.</b> Men were created with the ability to have opinions of their own. Opinions can be complex, simple, logical, contradictory, expressed verbally, non-verbally, etc.<br />
<br />
<b>Stage 2.</b> Then men became Internet users and were allowed to give feedback on a 5-star basis. Internet users still have opinions and share them in form of "Comments".<br />
<a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhGoe8E_tWGlpfk-ddfxT8IPNzORKp28enWQep4_ITW59yZk89rsCh4nSA506lzq1GVLQNqjBeZExya8rGk4OBWKtBIFQg5aoOD5FM2lojEwre_LI9HCcSwm0mSr1bC71BLzQHpZ15u9iZc/s1600/Picture+3.png" imageanchor="1" style="clear: left; display: inline !important; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="53" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhGoe8E_tWGlpfk-ddfxT8IPNzORKp28enWQep4_ITW59yZk89rsCh4nSA506lzq1GVLQNqjBeZExya8rGk4OBWKtBIFQg5aoOD5FM2lojEwre_LI9HCcSwm0mSr1bC71BLzQHpZ15u9iZc/s200/Picture+3.png" width="200" /></a><br />
<a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhGoe8E_tWGlpfk-ddfxT8IPNzORKp28enWQep4_ITW59yZk89rsCh4nSA506lzq1GVLQNqjBeZExya8rGk4OBWKtBIFQg5aoOD5FM2lojEwre_LI9HCcSwm0mSr1bC71BLzQHpZ15u9iZc/s1600/Picture+3.png" imageanchor="1" style="clear: left; display: inline !important; margin-bottom: 1em; margin-right: 1em;"></a><b></b><br />
<b></b><br />
<b><div style="display: inline !important; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; text-align: left;"><div style="display: inline !important;"><span class="Apple-style-span" style="font-weight: normal;"><b>Stage 3.</b></span><span class="Apple-style-span" style="font-weight: normal;"> Following, users had the possibility to give a thumb up OR a thumb down. Users can reply to comments or even re-post them in their own opinion-stream.</span></div></div></b><br />
<b></b><br />
<b><div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; text-align: left;"><span class="Apple-style-span" style="font-weight: normal;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgy8Zyv3vhvnsjWtT0WoF1MOSA0OSzhVKtgjYAcr-tCTNTS2YcxmziFtfhyUIhkjBrkj11nDnvQJtPvnA2nnawcHivbRr2MkplBwilQ6bp2l4F5YSJFEdo_jHtvCIUYDT61LBX0-1Gd1IgM/s1600/Picture+5.png" imageanchor="1" style="clear: left; display: inline !important; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="65" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgy8Zyv3vhvnsjWtT0WoF1MOSA0OSzhVKtgjYAcr-tCTNTS2YcxmziFtfhyUIhkjBrkj11nDnvQJtPvnA2nnawcHivbRr2MkplBwilQ6bp2l4F5YSJFEdo_jHtvCIUYDT61LBX0-1Gd1IgM/s200/Picture+5.png" width="200" /></a></span></div></b><b>Stage 4.</b> More recently, users can "Like" stuff. No complexity whatsoever is necessary nor allowed. Similarly, any negative feedback is unpractical (or curtailed) since it would be bad form with respect to "business partners" of the site in use. Yes, it is possible to write something if you really, really care (which happens when you are upset about a service you paid for). However, other than in such case, who bothers about typing if they can just click.<br />
<a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg_Vf4didBv2mD08PBUoweI2-fx4D_vNkDhFobvqbXC9_VDtluE21Zv8ehqCuL4zRrLqsQQ6vFb7u7OHee60sfavieC2ZVaFSqEeAm7rVQYpz8PKuSmut8BnytkO2vgmPG8p9FI8sPkVS30/s1600/Picture+7.png" imageanchor="1" style="clear: left; display: inline !important; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg_Vf4didBv2mD08PBUoweI2-fx4D_vNkDhFobvqbXC9_VDtluE21Zv8ehqCuL4zRrLqsQQ6vFb7u7OHee60sfavieC2ZVaFSqEeAm7rVQYpz8PKuSmut8BnytkO2vgmPG8p9FI8sPkVS30/s1600/Picture+7.png" /></a><br />
<b>But wait, there is more.</b> The evolution of feedback and rating systems is not limited to the progressive simplification of the tools and the user interface. It rather (and more importantly) concerns what data are collected and associated with the users' ratings.<br />
<br />
The person who is rating content or items (the "rater") has become the center of the action. This is somehow counterintuitive, yet the most valuable information for the website has nothing to do with the items rated thereby. In fact, the most valuable information is that one concerning the "rater": its tastes, preferences, behavior, etc. <br />
<br />
Therefore, it is key that such information is made as standard and accessible as possible. For this reason rating on one dimension ("Like" button) may work better and eliminates certain "noise" in users' behavior analysis. Hence, simplification is functional to enhance user-profiling and, eventually, to better target those users with relevant ads.<br />
<div style="text-align: left;"><br />
</div><div style="text-align: left;">On the other hand, all kinds of feedback regarding content/items have become a very effective "bait" to incentivize interaction and attract traffic. This happens despite being common knowledge that on-line feedback and ratings are easily manipulated and often unreliable.</div><br />
I believe we can start looking at feedback and ratings from a different perspective. In fact, I have the impression that their social significance has changed as they do not represent anymore a vehicle to convey opinions but rather a form of basic interaction to show an acknowledgment that something does exist. To the contrary, if there is no "Like" button underneath it, such thing cannot be part of the user's profile for advertising purposes. And, that somehow makes that piece of content invisible on the Internet.<br />
<a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhmyIk48wehHQOaMkS0W8UptnohrjR_30cASh1_FmoUsObv8Pz6fJ0QuljbCEQOPrQTAhjsksKKk5hwDN2tAg4ESPKV_FeDiAbbgpZQfSxwtIcdU1hqgu6_c0RJdTj3jA9pRhSIrvqKnbIw/s1600/Picture+4.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="61" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhmyIk48wehHQOaMkS0W8UptnohrjR_30cASh1_FmoUsObv8Pz6fJ0QuljbCEQOPrQTAhjsksKKk5hwDN2tAg4ESPKV_FeDiAbbgpZQfSxwtIcdU1hqgu6_c0RJdTj3jA9pRhSIrvqKnbIw/s200/Picture+4.png" width="200" /></a><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-42503568135129653352010-05-06T15:58:00.000-07:002010-05-06T15:59:13.514-07:00Privacy Bill Introduced. More Notices and Consent.The House of Representatives recently introduced a bill (<a href="http://www.boucher.house.gov/images/stories/Privacy_Draft_5-10.pdf"><span id="goog_1536005073"></span>pdf here<span id="goog_1536005074"></span></a>) that, if passed, would significantly change the game of privacy regulation. The bill requires notice to and, in some cases, consent of an individual prior to the collection and disclosure of certain personal information related to that individual. <br />
This bill will raise the bar for all businesses, whether on-line or off-line. It also promises to harmonize the US regulation with the higher EU standard.<br />
However, one of the limits of this proposed bill is that it stresses the importance of privacy policies and privacy notices, while both the Internet industry and consumer groups seem to agree that privacy policies are ineffective since very few people read them and even fewer can understand their content.<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com2tag:blogger.com,1999:blog-6993423268019724611.post-22307234076023611752010-03-26T13:51:00.000-07:002010-05-10T22:05:33.695-07:00Facebook and Site Open Governance (Again)Facebook is very aware that every move it makes is recorded and meticulously analyzed by observers from all countries. <br />
<br />
Then, Facebook came up with the brilliant idea to turn this attention to his advantage by inviting its user base and said observers to join the debate about the governance of the site.<br />
<br />
In other words, Facebook is now going to change its TOS and Privacy Policy and is asking users' feedback.<br />
<div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"><br style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;" /></div><div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"><span style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"><a href="http://translate.googleusercontent.com/translate_c?hl=en&langpair=it%7Cen&u=http://blog.facebook.com/blog.php%3Fpost%3D376904492130&rurl=translate.google.com&twu=1&client=tmpg&usg=ALkJrhiCLod5q7tWGgI-HFC9foE6pfcKig" style="color: #0c9fe7; margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; text-decoration: none;">HERE's</a> blog where the proposed changes are discussed.</span></div><div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"><br style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;" /></div><div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"><span style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;">I will add my comments soon (unless in the next few hours they decide to make no changes at all).</span></div><div><span style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px;"><br />
</span></div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-72777785311080951172010-03-18T10:27:00.000-07:002010-03-18T10:40:10.144-07:00Facebook Settles Beacon Privacy Class ActionPast December 2009, Facebook contacted its user to inform them of the existence of <a href="http://carmelofontana.blogspot.com/2009/12/facebook-offers-to-settle-privacy-class.html">this class action</a>.<br />
If you were wondering what happened, a $9.5 million settlement has been approved.<br />
<a href="http://www.wired.com/threatlevel/2010/03/facebook-beacon-2/">Here</a> you find more details.<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-20258112834096008242010-03-18T10:09:00.000-07:002010-03-18T10:09:34.852-07:00Definition of Controller and Processor in Data TreatmentOn Feb. 16, the Art. 29 Data Protection Working Party released its <a href="http://ec.europa.eu/justice_home/fsj/privacy/docs/wpdocs/2010/wp169_en.pdf">Opinion 1/2010</a> on the concepts of "controller" and "processor". I find it an extremely useful attempt to re-embrace the definition of such concepts, especially after the Google Italia case.<br />
<br />
Among the many examples, the opinion also contains some interesting insights about Behavioral Advertising. <div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-75237714691457235662010-03-04T01:41:00.000-08:002010-03-04T13:38:06.182-08:00Italian Republic v. Google Video. Why Was Google Convicted?<div style="margin-bottom: 0in;">Three of Google's executives were recently convicted by the Court of Milan for violating Italian privacy laws. Google's executives were held liable because Google Video, hosted, allowed comments and did not promptly (or promptly enough upon notice) take down a video portraying a disabled kid getting abused by his schoolmates. The schoolmates who actually uploaded the video were convicted and sentenced to 10 months of community service. You may find a more complete description of the facts <a href="http://venturebeat.com/2010/02/24/google-execs-found-guilty-in-italian-court-for-youtube-video/" target="_blank">here</a>.<br />
<br />
The ruling is subject to appeal and Google has said it will challenge the ruling. Many people have commented on the case reflecting upon its deep implications over <a href="http://www.nytimes.com/2010/02/28/weekinreview/28liptak.html">freedom of speech</a>, privacy law and the Internet business model. I personally share the concern that prior control over <a href="http://en.wikipedia.org/wiki/UGC" target="_blank">UGC</a> might dangerously compress freedom of speech, yet the solution certainly is not to neglect users' and third parties’ privacy protection. The bottom line is that such a ruling may shake the foundations of the Internet industry and that nobody I know has a clear idea about a good trade-off among the many conflicting interests.<br />
<br />
In this post, however, I will more simply focus on explaining the probable reasons for the Google conviction. I say "probable" because the full opinion has not yet been published. Still, I have an impression of the probable reasons for the conviction based upon reading the statements released by <a href="http://www.apogeonline.com/webzine/2010/02/25/caso-vividown-parla-lavvocato-di-google">Google's attorney</a> and the <a href="http://espresso.repubblica.it/dettaglio/caso-google-la-replica-della-procura/2122058/0">Prosecutor</a> in charge of the case. <br />
<br />
<b>Reason #1. There is no safe harbor for privacy violations.</b> This may be surprising for most Internet companies but, as a matter of law, EU privacy regulation in general, and the Italian one in particular, do NOT apply the safe harbor exemption to matters concerning the right to privacy. It may appear like a loophole in the system, but probably, when drafting the E-Commerce directive, the EU legislator did not have in mind a service totally based on UGC, such as a video sharing platform. <a href="http://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=CELEX:32000L0031:EN:HTML">Directive 2000/31/CE</a> shields mere conduit, cashing and hosting services against commercial liabilities, but not against the rights "of individuals with regard to the processing of personal data...".<br />
<br />
Article 1, §5, lett. b of the E-Commerce directive says: "This Directive shall not apply to: ...<br />
(b) questions relating to information society services covered by Directives 95/46/EC and 97/66/EC."<br />
<br />
Guess what subject matter is regulated by <a href="http://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=CELEX:31995L0046:EN:NOT">Directive 95/46/EC</a>?<br />
<br />
Pretty straight forward, isn't it? If there is no safe harbor for a privacy violation --> liability of the service provider for contributing to the criminal conduct.<br />
<br />
The same regulation applies in Italy by virtue of the Legislative Decree n. 70, 2003 art. 1, comma 2 lett. b which precludes the application of the safe harbor regime (art. 14 and ff.) for matters involving privacy rights.<br />
<br />
<b>Reason #2. Google violated the Italian Personal Data Protection Code. </b> Google's counsel released a <a href="http://www.apogeonline.com/webzine/2010/02/25/caso-vividown-parla-lavvocato-di-google">statement</a> indicating the rules allegedly violated by Google, as specified in the indictment: art. 23, 26 and 17 of the Data Protection Code. art. 23 and art. 26 (<a href="http://www.garanteprivacy.it/garante/document?ID=1219452">here</a> an official version in English) provide that before processing any personal data it is necessary to seek consent of the owner of the data. This is necessary moreover (written consent is required) if the processing concerns sensitive data, such as the existence of a heath condition. It is probable that the Court considered that depicting the likeness of a person affected by Down Syndrome is sufficient to constitute "processing of sensitive data", considering the apparent and recognizable existence of a heath condition in the person portrayed.<br />
<br />
Art. 17 provides a general obligation to consult with the Data Protection Authority before initiating any potentially dangerous processing of personal data. The violation of such article may be construed as creating liability for other independent violations. We'll see when the opinion is published...<br />
<br />
<b>Reason #3. Google did not take down the video promptly.</b> Proof of a prompt take down is crucial to prove or disprove damages. In fact, damages are necessary for the application of the criminal sanction set forth in art. 167 of the Data Protection Code.<br />
<br />
Google took the video down after the police made such request. The victim's representative argued that the video was actually accessible for about 2 months and, even after the video was flagged by some users and a take down notice filed by the victim's representative, Google did not respond with the requested promptness. <br />
<br />
Thus, the Prosecutor accused Google of being inefficient and untimely in taking down the video since, as Google's deputy general counsel for Europe also <a href="http://googleblog.blogspot.com/2010/02/serious-threat-to-web-in-italy.html">admits</a>, Google took the video down only when the police asked to do so, many days after the first flagging. However, there is no clear information about the timeline of mentioned facts. We'll see...<br />
<br />
Furthermore, the Court probably concluded that the accessibility of the video for about 2 months, coupled with the significant amount of views and comments, gave Google notice (or should have given Google notice) of the existence of the video. This is my speculation. We'll see...<br />
<br />
Unfortunately, there is no black letter law applicable to take down notices for privacy violations. In fact, nothing like the DMCA exists in the EU even with respect to IP rights. I bet Google misses the clear cut provisions of the DMCA when dealing with the EU.<br />
<br />
In fact, the Prosecutor <a href="http://espresso.repubblica.it/dettaglio/caso-google-la-replica-della-procura/2122058/1">remarked</a> about Google's vague and evasive attitude towards certain requests for discovery. It turns out that Google was unable to restore the original page with the comments or to produce the first flagging of the video. Google’s defense is, according to the Prosecutor, that producing this evidence was too costly and complicated for Google's engineers. Well, the Court might have thought it wasn't... </div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com1tag:blogger.com,1999:blog-6993423268019724611.post-80655909433559299182010-02-19T10:22:00.000-08:002010-03-04T13:38:52.467-08:00P2P Sharing and Reasonable Expectation of Privacy<div style="margin-bottom: 0in;">Having a reasonable expectation of privacy is the basis for the application of the 4th amendment of the US Constitution which provides protection against illegal searches and seizures. If you have a reasonable expectation of privacy in the items to be searched the police must get a warrant before any search. Of course, there are some exceptions to this rule (exigent circumstances, search incident to arrest, etc.)... but let's talk about a computer.<br />
<br />
Do we have a reasonable expectation of privacy in the contents of our hard drives? It depends on what software you are running. The law says that if you run a peer to peer, you impliedly accept that people can access the contents of your files. Therefore, you do not have a reasonable expectation of privacy. As a consequence, if the police find evidence of illegality, such evidence can be used to prosecute you. <br />
<br />
This is what case law says about file-sharing and this principle was recently reaffirmed in a <a href="http://www.wired.com/threatlevel/2010/02/feds-can-search-seize-p2p-files-without-warrant/">child-pornography case.</a><br />
<br />
The defense attorneys in this case tried to distinguish the facts arguing the complexity of the tools used by the police to access the computer of the suspect and his subjective mental state. Of course, the subjective mental state is irrelevant and the argument of "system penetration" (AKA hacking) was trumped by the circumstance that the data was otherwise accessible through a "widespread" exposition to the public. In fact, there was not any system penetration and the government only used a hash-mark analysis as a sorting mechanism to prevent the government from having to sift, one by one, through suspect's already publicly exposed files.<br />
<br />
However, this case is important in clarifying at least one principle. <br />
What if you are using a sharing software that you think is not publicly accessible? If the functioning of the software implies exchange of communication, you are advised of your reduced expectation of privacy. </div><div style="margin-bottom: 0in;"><br />
Here is the <a href="http://www.wired.com/images_blogs/threatlevel/2010/02/boroway.pdf">decision.</a></div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-59505243453487667392010-02-18T09:38:00.000-08:002010-03-04T13:39:47.936-08:00Europarliament Says No to SWIFT<div style="margin-bottom: 0in;">Last week (on Feb 12) the European Parliament did not renew its commitment to the <a href="http://www.europarl.europa.eu/sides/getDoc.do?pubRef=-//EP//NONSGML+IM-PRESS+20100209IPR68674+0+DOC+PDF+V0//EN">SWIFT</a> agreement. Such agreement was adopted after 9.11 as an anti-terror measure that allowed US authorities to monitor EU financial transactions. <br />
<br />
The news went under the radar, but it is a very significant change in the EU attitude towards data protection and civil liberties. Also, this is a result of Treaty of Lisbon, which gave lawmakers the power to review and approve measures that effect internal security.<br />
<br />
The political rationale of such position may be summarized as follow: "We need to apply EU standards to EU data", "to give people a right of redress" in the event of misuse of personal data, and to allow access to data "on a case by case basis".<br />
<br />
Here the <a href="http://www.europarl.europa.eu/news/public/story_page/019-68537-039-02-07-902-20100205STO68536-2010-08-02-2010/default_en.htm">press release </a>of the Civil Liberty Committee. Here the comment of the <a href="http://online.wsj.com/article/SB10001424052748704431404575066941940401092.html?mod=WSJ_Opinion_AboveLEFTTop">WSJ</a>.</div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-56945111277983701052010-02-17T11:04:00.000-08:002010-02-17T11:04:03.839-08:00La SIAE e i Monopoli di Stato contro i Video Poker illegali (in ITALIAN)La SIAE ha siglato un <a href="http://www.siae.it/edicola.asp?click_level=0500.0100.0200&view=4&open_menu=yes&id_news=9014">accordo</a> con i Monopoli di Stato per contribuire alle ispezioni relative all' "utilizzo illegale degli apparecchi da divertimento e intrattenimento" (forse i video-poker manomessi? ). <br />
<br />
Premesso che non ho letto l'accordo e non so quale sia la legal-basis per questa collaborazione -- solo alcune riflessioni da profano.<br />
<br />
1) Sicuramente e' un importante contributo alle attivita' di enforcement e una interessante soluzione per sfruttare la capillare presenza della SIAE sul territorio. La SIAE indubbiamente svolge un serivizio utilissimo;<br />
<br />
2) E' anche un modo creativo di esplorare nuovi "stream of revenues" che poterbbero aiutare la ristrutturazione dell'ente e re-interpretarne (in parte) la funzione sociale (anche a seguito delle polemiche degli ultimi giorni);<br />
<br />
3) Ma cosa c'entra il diritto d'autore? E gli eventuali compensi riscossi (immagino una percentuale delle sanzioni o una flat-fee versata da parte dei monopoli) andrebbero distribuiti agli associati?<br />
<br />
In altre parole, e scusate la banalizzazione, a che titolo Adriano Celentano potrebbe ricevere una frazione della multa pagata dal bar di quartiere di Centocelle per avere manomesso il flipper... e in quel bar, peraltro, il mangiacassette e' rotto da anni e non si verifica alcuna diffusione di opere protette... :)<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com1tag:blogger.com,1999:blog-6993423268019724611.post-53073283579961225732010-02-14T22:07:00.000-08:002010-02-14T22:07:18.469-08:00International Patent Filings and Economic Downturn are CorrelatedWIPO observed that the number of patent filings under the Patent Cooperation Treaty (PCT) in 2009 was significantly lower that the preceding year. <br />
Here is what <a href="http://www.wipo.int/pressroom/en/articles/2010/article_0003.html">WIPO observed in details</a>.<br />
<a href="http://www.wipo.int/pressroom/en/articles/2010/article_0003.html"></a>This is probably because the economic downturn that has affected both the inventive activity (less resources for R&D) and the IP protection strategy adopted by firms. <br />
It is arguable than many firms and small inventors preferred a local approach to patent filings, perhaps envisioning that global protection might make sense only at a later stage.<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-75969237156818079722010-01-28T15:38:00.000-08:002010-01-28T15:39:16.962-08:00Data Protection Day, EC says Privacy will be big challenge in next decade<div class="separator" style="clear: both; text-align: center;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjRzgoV1A2q7JUGT8ggRCaA6BQLy9zbAUPkV4-7vqsr3src3ccoWGgVCkUaep7WV3g-nwEiHbPWg0XvmqDFBoWTj6NSH6SMzzOBaTB42l2E0TthchpLDaf06Oia-8ZHNbKsvuECCdNvD-ep/s1600-h/viviane_reding.jpg" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="200" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjRzgoV1A2q7JUGT8ggRCaA6BQLy9zbAUPkV4-7vqsr3src3ccoWGgVCkUaep7WV3g-nwEiHbPWg0XvmqDFBoWTj6NSH6SMzzOBaTB42l2E0TthchpLDaf06Oia-8ZHNbKsvuECCdNvD-ep/s200/viviane_reding.jpg" width="182" /></a><br />
</div>EU Commissioner Viviane Reding <a href="http://europa.eu/rapid/pressReleasesAction.do?reference=IP/10/63&format=HTML&aged=0&language=EN&guiLanguage=en">acknowledged</a> the importance of protection of Europeans' rights. What I liked about this statement is the clear identification of a handful of really hot and complicated issues:<br />
<br />
<br />
<ul><li> behavioural advertising;</li>
<li> social networking sites;</li>
<li> smart chips used to trace people movements;</li>
<li> Lisbon Treaty and the Charter of Fundamental Rights enforcement with respect to privacy.</li>
</ul><br />
<div>The principle, said EU commissioner, is that "EU rules should allow everyone to realise their right to know when their personal data can be lawfully processed... and to say no to it whenever they want."<br />
<div><br />
</div><div>I know I am silly, but "realise the right to know" is a bit different from <i>actually knowing</i>... :)<br />
</div></div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-84085353818771038782010-01-22T09:32:00.000-08:002010-01-22T09:32:35.075-08:00Floobs to File for Bankruptcy<a href="http://floobs.com/index.html">Floobs</a>, a Finnish livestreaming/video-sharing website, <a href="http://ca.reuters.com/article/technologyNews/idCATRE60L1JZ20100122">declared</a> it is about to file for bankruptcy.<br />
It is a shame that a well designed and original website is unable to move forward. <br />
Some months ago <a href="http://www.time.com/time/magazine/article/0,9171,1890387-1,00.html">many people</a> were celebrating a new happy season for Internet start-ups. <br />
Is it really so sunny outside?<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-17821988553495388672010-01-20T01:58:00.000-08:002010-01-20T02:00:58.903-08:00Privacy Compliance is Optional<div class="separator" style="clear: both; text-align: center;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg_qAHP4cI4jf2Em3c1AT7J6vCPV31HWeZpppgDD9uFo0LL9sO1OmnBZUL0UYyAh8VWUNWAE_EA6V3YDnuXrrcBylgOdqg0a4m9x2b8ASp0868gF-NeG_Tgv_ux_3DRAcemELmlT_hUClxR/s1600-h/bing-logo.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="146" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEg_qAHP4cI4jf2Em3c1AT7J6vCPV31HWeZpppgDD9uFo0LL9sO1OmnBZUL0UYyAh8VWUNWAE_EA6V3YDnuXrrcBylgOdqg0a4m9x2b8ASp0868gF-NeG_Tgv_ux_3DRAcemELmlT_hUClxR/s200/bing-logo.png" width="200" /></a><br />
</div>NYT today <a href="http://www.nytimes.com/2010/01/20/technology/companies/20search.html?ref=business">reports</a> that Bing (Microsoft) declared that it would comply with privacy regulation.<br />
<br />
Irrespective of any comments on MS's statement, I believe it is interesting how public opinion has become used to privacy NON-compliance. Insomuch that the news is the statement of compliance.<br />
<br />
NYT also notices: “Google and other engines are starting to realize that consumers around the world are placing an increasing value on privacy and that can have business consequences.”<br />
<br />
It seems that privacy regulation is considered rather an inconvenient hassle to deal with just to improve corporate reputation before customers. I wonder what happened to that old principle AKA <a href="http://en.wikipedia.org/wiki/Rule_of_law">Rule of Law</a>...<br />
<br />
Then I wonder, is the current situation due to a very cumbersome and barely inapplicable regulation? Or it is rather due to insufficient enforcement mechanism? Or both?<div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-42173745636712284832010-01-15T17:14:00.000-08:002010-01-15T17:14:43.898-08:00The Economics of TerrorismI would like to feature this interesting <a href="http://www.ted.com/">TED</a> talk by <a href="http://en.wikipedia.org/wiki/Loretta_Napoleoni">Loretta Napoleoni</a> about the Economics of terroristic organizations. This presentation is IMHO enlightening at least to add perspective to the way we look at terrorism. For instance, I did not know that Patriot Act had consequences on the monetary system. Did you know that the currency most used for money laundry is now the Euro?<br />
<br />
<br />
<object height="326" width="446"><param name="movie" value="http://video.ted.com/assets/player/swf/EmbedPlayer.swf"></param><param name="allowFullScreen" value="true" /><param name="wmode" value="transparent"></param><param name="bgColor" value="#ffffff"></param><param name="flashvars" value="vu=http://video.ted.com/talks/dynamic/LorettaNapoleoni_2009G-medium.flv&su=http://images.ted.com/images/ted/tedindex/embed-posters/LorettaNapoleoni-2009G.embed_thumbnail.jpg&vw=432&vh=240&ap=0&ti=712&introDuration=16500&adDuration=4000&postAdDuration=2000&adKeys=talk=loretta_napoleoni_the_intricate_economics_of_terrorism;year=2009;theme=not_business_as_usual;theme=new_on_ted_com;theme=bold_predictions_stern_warnings;theme=unconventional_explanations;theme=speaking_at_tedglobal2009;event=TEDGlobal+2009;&preAdTag=tconf.ted/embed;tile=1;sz=512x288;" /><embed src="http://video.ted.com/assets/player/swf/EmbedPlayer.swf" pluginspace="http://www.macromedia.com/go/getflashplayer" type="application/x-shockwave-flash" wmode="transparent" bgColor="#ffffff" width="446" height="326" allowFullScreen="true" flashvars="vu=http://video.ted.com/talks/dynamic/LorettaNapoleoni_2009G-medium.flv&su=http://images.ted.com/images/ted/tedindex/embed-posters/LorettaNapoleoni-2009G.embed_thumbnail.jpg&vw=432&vh=240&ap=0&ti=712&introDuration=16500&adDuration=4000&postAdDuration=2000&adKeys=talk=loretta_napoleoni_the_intricate_economics_of_terrorism;year=2009;theme=not_business_as_usual;theme=new_on_ted_com;theme=bold_predictions_stern_warnings;theme=unconventional_explanations;theme=speaking_at_tedglobal2009;event=TEDGlobal+2009;"></embed></object><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-50301836805570112042009-12-28T18:03:00.000-08:002010-01-22T09:35:54.114-08:00The Pirate Bay Case - Italian Supreme Court's Ruling (New Safe Harbor Created?)<div class="separator" style="clear: both; text-align: center;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEh9Y1Hyyg_JHkFvNBCWtVOHbqkkIbc9Cb9L9W5vaQmVQrgdYR-kiaxh-WyWc0tc0l-s9SQRIni1vJTM3Q-iWuiR3RqBtrmgBURhIJqQpvVIQVdCshiQ1-kzfTdaWjZIszpn9z-ytKMbr0Ie/s1600-h/Picture%201.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEh9Y1Hyyg_JHkFvNBCWtVOHbqkkIbc9Cb9L9W5vaQmVQrgdYR-kiaxh-WyWc0tc0l-s9SQRIni1vJTM3Q-iWuiR3RqBtrmgBURhIJqQpvVIQVdCshiQ1-kzfTdaWjZIszpn9z-ytKMbr0Ie/s400/Picture%201.png" /></a><br />
</div><div class="separator" style="clear: both; text-align: center;"><br />
</div>Do you remember the <a href="http://www.nytimes.com/2008/08/14/technology/14iht-webpirate.15301147.html?_r=1">Pirate Bay case</a> (TPB)? The website thepiratebay.org was subject to a temporary restraining order (TRO) in relation to a criminal copyright proceeding pending before the Court of Bergamo. The order was successfully challenged by defendant TPB. Following, the prosecutor brought the case before the Italian Supreme Court of Cassation seeking reversal. The Supreme Court shared the prosecutor's position, and <a href="http://www.ilsole24ore.com/fc?cmd=document&file=/art/SoleOnLine4/Norme%20e%20Tributi/2009/12/cassazione-sentenza-49437-2009.pdf?cmd=art">vacated the ruling remitting to the lower Court</a>.<br />
<br />
The issue with the TRO was mainly concerning the possibility to restrain a website by ordering the ISP not to connect to such identified URL and respective sub-pages. Although such issue of practical and effective restriction of the access to a website is very interesting, I find that another notable part of the ruling concerns the "<i>fumus commissi delicti</i>", AKA the reasonable probability of success on the merits.<br />
<br />
The Court anticipated TPB's liability and meanwhile mentioned a couple of interesting things about the standard for contributory infringement and (perhaps?) a new<a href="http://en.wikipedia.org/wiki/Safe_harbor"> safe harbor</a>.<br />
<br />
The Court acknowledged that the primary infringement was undoubtedly conducted by the website-users for being them the authors of the uploading. Yet, TPB is liable because it contributed to the relevant conduct by indexing the torrent files, and by providing a search engine to access such files. Hence, the threshold for contributory infringement lays with these additional activities which constitute sufficient basis to charge TBD as co-conspirator in the infringing conduct ("<i>concorso nel reato</i>").<br />
<br />
But the very interesting is that, according to the Court, TPB would be innocent if its conduct was <b>"completely agnostic" </b>(i.e. just unaware...) of the content of the files uploaded by users. Hence, this decision adopts a very severe notion of control with respect to the infringing conduct, being mere knowledge sufficient.<br />
<br />
The Court goes forward and <b>surprisingly</b> states that such agnostic situation is present in the <b>social networking sites</b> because in such SNS the indexing and listing of files is performed at a peripheral level, by users. Thus, only the users (uploading files) may be found liable. And this is pretty much where <s>the decision doesn't make sense</s> I get lost... <br />
<br />
Anyway, few things seem clear enough: 1) providing a file-sharing tool is O.K. as long as the files are not indexed and/or searchable (so... Google beware!); 2) if torrents, links or other content are "agnostically" stored is still O.K., 3) if you share copyrighted material on a social network you may end up being the only one liable.<br />
<br />
<br />
<span style="color: #666666;"><span class="Apple-style-span" style="font-size: small;">Here below in the image is the relevant part of the ruling... in Italian.</span></span><br />
<br />
<div class="separator" style="clear: both; text-align: center;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi2n0mwzs4u_S-jLvr53Q_2guvCNsI56_dlOA1m4CA1E6WbMiCgeTOXaGMTivWtSwLn1fh-pfQGWEcJbadAlRzcrRDbluWbjYRxT4QSzITe9NME2y2ErjAKd1p6OptFm0CSj3gB22iNxsoX/s1600-h/Cassazione+-+the+Pirate+bay+2.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEi2n0mwzs4u_S-jLvr53Q_2guvCNsI56_dlOA1m4CA1E6WbMiCgeTOXaGMTivWtSwLn1fh-pfQGWEcJbadAlRzcrRDbluWbjYRxT4QSzITe9NME2y2ErjAKd1p6OptFm0CSj3gB22iNxsoX/s400/Cassazione+-+the+Pirate+bay+2.jpg" /></a><br />
</div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com1tag:blogger.com,1999:blog-6993423268019724611.post-87536794532006570792009-12-22T04:57:00.000-08:002009-12-28T18:35:36.649-08:00Compare New and Old Privacy PolicyIt isn't always easy to compare the latest version of a on-line document with the prior... especially when the old document is promptly removed for legal reasons. If you need a Delta-View (a redline) combined with a Feedburner to catch up with all TOS and Privacy Policy modifications by major Internet companies, well, <a href="http://www.tosback.org/">Tosback.org </a>is a great tool.<br />
<div>Here, for example, it is the new paragraph added by Facebook in the new Privacy Policy:<br />
<blockquote>"Certain categories of information such as your name, profile photo, list of friends and pages you are a fan of, gender, geographic region, and networks you belong to are considered publicly available to everyone, including Facebook-enhanced applications, and therefore do not have privacy settings. You can, however, limit the ability of others to find this information through search using your search privacy settings."</blockquote></div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0tag:blogger.com,1999:blog-6993423268019724611.post-53931267650102450722009-12-20T17:33:00.000-08:002009-12-28T18:35:36.649-08:00Facebook Big Brother - Personal is Public<div class="separator" style="clear: both; text-align: center;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjyZos7IF0uQbbUjLfBOFZaHHSWQdza9KRe85txeZwNs8KZRU_1K4gOvDYL8ZH4OdQQgmnWVC5zUZ8CBcF6YrbXfcu4rhxkMaEjj79P-2JMI95MVYTVXEukRlgcJD15dIpjYgJ-nvTzY5U5/s1600-h/facebook%20-%20big%20brother.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"><img border="0" height="375" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjyZos7IF0uQbbUjLfBOFZaHHSWQdza9KRe85txeZwNs8KZRU_1K4gOvDYL8ZH4OdQQgmnWVC5zUZ8CBcF6YrbXfcu4rhxkMaEjj79P-2JMI95MVYTVXEukRlgcJD15dIpjYgJ-nvTzY5U5/s400/facebook%20-%20big%20brother.jpg" width="400" /></a><br />
</div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com1tag:blogger.com,1999:blog-6993423268019724611.post-80181341346508438932009-12-17T20:21:00.000-08:002009-12-28T18:35:36.650-08:00Mediaset Wins Injunction Vs. Youtube (UPDATED)<b>This post is in Italian... Sorry :)</b><br />
<br />
Leggo il <a href="http://www.lastknight.com/2009/12/16/internet-non-e-un-luogo-diverso/comment-page-1/#comment-303288">post di Matteo Flora</a>, consulente di Mediaset, che diffonde il comunicato della vittoria di Mediaset contro Youtube nel contenzioso riguardante la rimozione di contenuti Mediaset su Youtube.<br />
<br />
Queste alcune mie considerazioni "a caldo", cosi' come postate in commento al blog di Matteo:<br />
<br />
<blockquote><blockquote>Davvero non capisco cosa ci sia di "storico" nel fare rimuovere da Youtube contenuti gia' accertati "illeciti". E non ci voleva certo il giudice ad accertare che "il Grande Fratello" sia un prodotto proprietario. Quanto alla responsabilita' (per "contributory/secondary infringment" forse, vista la qualifica di editore) di Youtube, la decisione ristabilisce una nozione di controllo che riporta la giurispurdenza italiana ai tempi di Napster.<br />
</blockquote><blockquote>Comunque il <a href="http://business.webnews.it/news/leggi/12085/mediaset-vince-il-ricorso-youtube-condannato/">dispositivo</a> della decisione e' ASSOLUTAMENTE OVVIO<br />
</blockquote></blockquote><blockquote><blockquote><blockquote><i>[-- l'immediata rimozione di immagini fisse o video relative al "Grande Fratello" decima edizione;</i><br />
</blockquote></blockquote></blockquote><blockquote><blockquote><blockquote><i>-- di terminare immediatamente la violazione dei diritti connessi al GF; </i><br />
</blockquote></blockquote></blockquote><blockquote><blockquote><blockquote><i>-- il respingimento delle richieste di entrambe le parti.]</i><br />
</blockquote></blockquote><blockquote>Infatti, pittosto che una costosa lite dinanzi all'AGO Mediaset avrebbe, altrattanto efficaciemente, potuto invocare una rimozione (Take Down) con una DMCA Take Down Notice (regime interamente recepito dai TOS di Youtube). E avrebbe probabilmente potuto trovare un accordo con Youtube sulle modalita’ per l’identificazione dei contenuti ritenuti infringing. Del resto fanno cosi’ content provider della rinomanza di Lucas Film, Universal Studios, CBS, etc. etc. Ancora, molti di questi content provider sono riusciti a concludere con Youtube accordi di rev-sharing relativi agli ads collocati nelle pagine con contenuti proprietari oltre ad includere nei video meccanismi di promozione diretta dei propri contenuti. La scarsa conoscenza del mezzo e la ricerca di una sentenza di grande risonanza mediatica hanno invece portato a questa strategia (processuale e di business) poco lungimirante e difficilmente remunerativa, IMHO. Sono in attesa di vedere come nel merito Mediaset quantifichera’ i danni… considerando che potrebbe vedersi eccepire, in compensazione, le addizionali revenues generate dalla maggior diffusione dei propri contenuti. Noto a margine che in Italia non esistono neppure i treble damages da applicare al willful infringement… Per cui: se l’effetto positivo e’ superiore alla effettiva diminuzione degli ascolti o del valore dell’opera protetta: niente danno e la sanzione dovra’ essere solo ingiuntiva…. Cioe’ la stessa cosa che si sarebbe potuta ottenere in via non contenziosa compilando un modulo di poche righe. Ma, come si dice... À la guerre comme à la guerre!<br />
</blockquote></blockquote><b>UPDATE</b> Preciso che non si tratta di compensazione in senso tecnico, come domanda o eccezione riconvenzionale (nel qual caso sarebbe necessario un credito). Ma si tratta di un effetto di limitazione/eliminazione del danno (compensa in senso economico), da valutarsi ai sensi del 1223 e ai sensi del 1226 c.c.. In mancanza di “conseguenze economiche negative” Mediaset ha diritto solo alla tutela ingiuntiva e i danni morali... Visto che nel nostro ordinamento non esistono danni punitivi. <div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com3tag:blogger.com,1999:blog-6993423268019724611.post-25913333099676102342009-12-14T17:00:00.000-08:002009-12-28T18:35:36.653-08:00EU Ratifies WIPO Internet Treaties<div style="text-align: left;"><div class="" style="clear: both; text-align: left;"><a href="http://static.p2p-weblog.com/p2p-weblog.com/imgname--eu_extends_copyright_to_95_years---50226711--800px-European_copyright.svg.jpg" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" height="132" src="http://static.p2p-weblog.com/p2p-weblog.com/imgname--eu_extends_copyright_to_95_years---50226711--800px-European_copyright.svg.jpg" width="200" /></a>The <a href="http://europa.eu/rapid/pressReleasesAction.do?reference=IP/09/1916&format=HTML&aged=0&language=EN&guiLanguage=en">EU formally ratified</a> the WIPO <a href="http://www.wipo.int/treaties/en/ip/wct/">Copyright Treaty</a> and the WIPO <a href="http://www.wipo.int/treaties/en/ip/wppt/">Performances and Phonograms Treaty</a> (together known as the "Internet Treatisies"). In practice, this is not a revolution for the applicable regulation since: 1) many EU member States were already and directly parties to these treaties; 2) the content of the WIPO Internet Treaties was mostly included in the Directive 2001/29/EC (Copyright Directive - implemented by all the 27 EU members).<br />
</div></div><div style="text-align: justify;"><div style="text-align: left;"><br />
</div></div><div style="text-align: left;"><div style="text-align: justify;"><div style="text-align: left;">However, this ratification has a symbolic meaning because it is the first time that the EU holds the status of contracting party in the field of copyright. This surely represents a strong endorsement of the WIPO's role in reinforcing international copyright protection and the rights of performers and phonogram producers on the Internet and other digital networks.<br />
</div></div></div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com1tag:blogger.com,1999:blog-6993423268019724611.post-56534855348246629422009-12-13T13:19:00.000-08:002009-12-28T18:35:36.654-08:00Berlusconi's Smile Crashed - UPDATEDI woke up this morning (9 hours later than people in Italy) and I see this picture.<br />
<br />
<div class="separator" style="clear: both; text-align: center;"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjrsdrYkM58IBRmlyGwb2jk0m1feWftGVLsSx2HgWYk990dqJ7SldVwKsi9yxdDWC_3jOux-7gAjIaYQIOVzdhUoZK1HE5ryOFot5YhB-hssC9FnBbYdAfRHGpWfvA7rELTert16ok-C0Av/s1600-h/berlusconi%20pugno%20faccia.jpg" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjrsdrYkM58IBRmlyGwb2jk0m1feWftGVLsSx2HgWYk990dqJ7SldVwKsi9yxdDWC_3jOux-7gAjIaYQIOVzdhUoZK1HE5ryOFot5YhB-hssC9FnBbYdAfRHGpWfvA7rELTert16ok-C0Av/s200/berlusconi%20pugno%20faccia.jpg" /></a><br />
</div>The person who punched Berlusconi (actually hit him with a small statue of the Milan's Duomo), Mr. Massimo Tartaglia, has been under psychological treatment for more than 10 years. Hence, I'd rather not talk about any political significance of such violent action. <br />
<br />
Also, I woke up this morning and I read this article on the <a href="http://www.nytimes.com/2009/12/13/opinion/13sun2.html?partner=rssnyt&emc=rss">New York Times</a> about how political opinions displayed on social networks are monitored by the CIA and the Department of Defense.<br />
Here is the remainder of my considerations:<br />
<ul><li> On Facebook, one hour after the punch,<a href="http://www.facebook.com/pages/Massimo-Tartaglia/239205452597?ref=search&sid=503301880.2599845256..1"> a group in support of Massimo Tartaglia</a> was created and over <s>19,000</s> 22,000 (increased 3,000 by the time I posted this blog) people joined in the next 3 hours. Are there so many people who hate Berlusconi? Apparently yes... </li>
<li>On Twitter <a href="http://twitter.com/#search?q=berlusconi%20">(#Berlusconi) </a>the event is receiving huge global coverage at a pace of about 50 twits every minute throughout the last 3 hours. Comments are not flattering for Berlusconi who is not very loved even abroad.</li>
<li>All these people who participated in sharing or commenting the news about Berlusconi are disclosing very sensitive data about their political opinions. Are they aware of the risk of being recorded or profiled? I'd go on out a limb and say no...</li>
<li>Last but not least --security services where art thou? Isn't it unbelievable that anybody could plant a jab in the face of the Italian prime minister?</li>
</ul><div><b><u>UPDATE</u>: The group in support of Tartaglia was </b><a href="http://www.nytimes.com/2009/12/16/technology/internet/16iht-face.html"><b>deleted</b></a><b>. Facebook groups about Berlusconi are monitored by the Government. </b><a href="http://www.timesonline.co.uk/tol/news/world/europe/article6958110.ece"><b>Fake groups</b></a><b> in support of Berlusconi were created by changing the title of big existing groups (some created for charity). The situation has never been so bad for freedom of speech in Italy... not in the last 61 years.</b><br />
</div><div class="blogger-post-footer">Feed</div>Unknownnoreply@blogger.com0