The Digital Standard is an ambitious, community-led effort to build a framework to test and rate products and services on the basis of privacy, security, and data practices.
Thanks for your procedure suggestion. In our current procedure, we capture all network traffic from all IoT devices in test. So, we know which endpoint the test device connected to by default.
Privacy (Is it private?) / Overreach - Collecting Too Much Data / Privacy by default
For procedures here, aside from looking at what's disclosed, it may be worth monitoring what kind of network traffic a product is generating.
For the indicator regarding user settings, maybe specify precisely that common things like telemetry or error reporting should be opt-in.