Page MenuHomePhabricator

Make Privacy Policy/ToS on Beta Cluster explain the privacy implications of using Beta
Open, MediumPublic

Description

On eg: http://en.wikipedia.beta.wmflabs.org/wiki/Main_Page

That's incorrect; beta labs does not provide the same privacy guarantees that production does, as far more people have server and/or log access. (That's a feature, not a bug; beta is used by developers to test their code and we want as many developers to be able to do that as possible.) So the production ToU and privacy policy make completely false privacy claims; the cookie statement (while it probably doesn't make any false claims) is hosted in production and thus references the production privacy statement, which is bound to be confusing; and the labs terms of use (while not making false claims) doesn't really say anything relevant, and is apparently interpreted by some people in ways that do not hold for the beta cluster (see e.g. T161051#4043353).

These should be removed and replaced with a dedicated privacy policy which explains that by using the site you accept that your network data is recorded and made available to a fairly large group of volunteer developers. Big flashing red letters might be in order.

Event Timeline

greg raised the priority of this task from to Medium.
greg updated the task description. (Show Details)
greg changed Security from none to None.
greg added subscribers: Aklapper, bd808, greg.

Change 244968 had a related patch set uploaded (by Alex Monk):
Custom privacypage message for labs to point to correct policies

https://gerrit.wikimedia.org/r/244968

Change 244968 merged by jenkins-bot:
Custom privacypage message for labs to point to correct policies

https://gerrit.wikimedia.org/r/244968

Krenair subscribed.

So it seems that didn't actually change the footer. Other messages are used there?

Okay, turns out I was looking at a cached copy. We still need to fix the extra "By using this site, you agree to the Terms of Use and Privacy Policy." part (the proper privacy policy link at the very bottom is updated).

I don't think making the privacy policy link to the labs terms of use is helpful. The kind of confusion it creates can be evidenced in T161051. It should instead link to some page that explains that there is no privacy in the beta cluster.

In T77858#4045113, @Tgr wrote:

I don't think making the privacy policy link to the labs terms of use is helpful. The kind of confusion it creates can be evidenced in T161051.

No it can't, that is a broken link

Anyway it creates confusion :-) The Labs ToU is between tool developers and the WMF, not users and the WMF. It does not really make sense to link from as generic site footer as a ToU (and even less as a privacy policy, which it is not).

In T77858#4045141, @Tgr wrote:

Anyway it creates confusion :-) The Labs ToU is between tool developers and the WMF, not users and the WMF. It does not really make sense to link from as generic site footer as a ToU (and even less as a privacy policy, which it is not).

I don't think it creates as much confusion as pointing at the prod privacy policy. It might not be perfect but I think the change was an improvement.

Also the labs TOU is not specific to the tools project.

In any case, come up with a better page and I'll be happy to try to get the link changed (and I assume the others originally involved in this would be too)

I don't think it creates as much confusion as pointing at the prod privacy policy. It might not be perfect but I think the change was an improvement.

It certainly was; I expressed myself poorly. What I meant to say was that it's still not ideal.

Tgr renamed this task from Make Privacy Policy/ToS on Beta Cluster link to the labs version (not production version) to Make Privacy Policy/ToS on Beta Cluster explain the privacy implications of using Beta.Apr 1 2018, 3:06 PM
Tgr updated the task description. (Show Details)
Tgr updated the task description. (Show Details)