Cognitive disconnect: Understanding facebook connect login permissions

Nicky Robinson, Joseph Bonneau

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

We study Facebook Connect's permissions system using crawling, experimentation, and user surveys. We find several areas in which it it works differently than many users and developers expect. More permissions can be granted than developers intend. In particular, permissions that allow a site to post to the user's profile are granted on an all-or-nothing basis. While users generally understand what data sites can read from their profile, they generally do not understand the full extent of what sites can post. In the case of write permissions, we show that user expectations are influenced by the identity of the requesting site although this has no impact on what is actually enforced. We also find that users generally do not understand the way Facebook Connect permissions interact with Facebook's privacy settings. Our results suggest that users understand detailed, granular messages better than those that are broad and vague.

Original languageEnglish (US)
Title of host publicationCOSN 2014 - Proceedings of the 2014 ACM Conference on Online Social Networks
PublisherAssociation for Computing Machinery
Pages247-258
Number of pages12
ISBN (Electronic)9781450331982
DOIs
StatePublished - Oct 1 2014
Event2nd ACM Conference on Online Social Networks, COSN 2014 - Dublin, Ireland
Duration: Oct 1 2014Oct 2 2014

Publication series

NameCOSN 2014 - Proceedings of the 2014 ACM Conference on Online Social Networks

Other

Other2nd ACM Conference on Online Social Networks, COSN 2014
Country/TerritoryIreland
CityDublin
Period10/1/1410/2/14

Keywords

  • Facebook
  • Online social networks
  • Permissions
  • Privacy

ASJC Scopus subject areas

  • Computer Networks and Communications

Fingerprint

Dive into the research topics of 'Cognitive disconnect: Understanding facebook connect login permissions'. Together they form a unique fingerprint.

Cite this