gorilla-devs / GDLauncher-Carbon

GDLauncher Carbon is a simple, yet powerful Minecraft custom launcher with a strong focus on the user experience
https://gdlauncher.com
Other
118 stars 12 forks source link

Unacceptable Default Privacy Settings and Potential GDPR Violation #336

Open RedstoneMedia opened 4 months ago

RedstoneMedia commented 4 months ago

I've noticed that all privacy options in your app, including personalized ads, are enabled by default. This is a concern as it's against EU regulations.

https://github.com/gorilla-devs/GDLauncher-Carbon/assets/34373974/b8289d35-b5f6-4040-b826-a38bbbfcad15

User Experience in the "Merchants" Section

In the "Merchants" section, all permissions are also enabled by default. When a user unchecks a permission, the widget reloads and takes the user back to the top of the list. This list is quite long, making it difficult for users to manage their permissions. (and disabling legitimate interests selectively)

Dark Design Patterns

Moreover, there seems to be a dark design pattern at play. The 'Accept All' button has a primary color fill, making it stand out, while the 'Reject All' button only has a border and is the same color as the background. This could potentially lead users to click on 'Accept All' without fully understanding the implications.

Potential GDPR Violation

These issues could potentially be seen as an attempt to discourage users from managing their privacy settings, which could be a violation of GDPR.

Conclusion

I'm sure this wasn't intentional, but it's something that needs to be addressed to avoid any potential legal issues and to improve the user experience.

Edit: Added video for better demonstration of the issue

Edit 2: I have now found out that this is part of the overwolf CMP, but since this app uses it, it is still relevant (and there is no linked GitHub for ow-electron), it might be a misconfiguration of this system.

MaxLevs commented 4 months ago

Is there a way to update these settings after setting it up?

RedstoneMedia commented 4 months ago

Is there a way to update these settings after setting it up?

If you are asking if you can access this page in the app: Then yes you can. This is where I got to this window. Go to settings > Privacy > Ads Personalization & Data > Manage