Privacy Zuckering
What it is
Tricking people into sharing more about themselves than they intended — through defaults set to public, settings scattered across a maze, upbeat framing of disclosure, and silent changes to what “private” means.
How it works
Real-world examples
- •Facebook's December 2009 privacy overhaul, which the Electronic Frontier Foundation's timeline of Facebook's privacy policy and Matt McKeon's 2010 visualisation both show shifting default visibility from friends toward everyone; the FTC's 2011 consent order followed.
- •Google's location settings: a 2018 Associated Press investigation found location stored under “Web & App Activity” even when “Location History” was off, which ended in a $391.5 million settlement with 40 US states in 2022.
- •Venmo's default-public transaction feed, through which journalists in 2021 located President Biden's account and contacts in minutes — a default few users knew they had.
- •The Norwegian Consumer Council's 2018 report Deceived by Design: at each step of a settings review, Facebook and Google presented the privacy-intrusive option as the default and the alternative as a loss.
Historical case studies
Ethical guidelines
- ●Private by default; sharing is the choice the user makes, not the one they must undo — the GDPR's data-protection-by-default rule (Article 25) says so in law.
- ●Put all privacy controls in one place, reachable in two taps, with a plain statement of who can see each item.
- ●Never change the visibility of existing content or settings without an explicit, separate choice; a “new privacy experience” that widens exposure is a breach of the earlier promise.
- ●Frame both options neutrally: “visible to friends” and “visible to everyone”, not “connect with the world” and “limit your experience”.
How to defend against it
- ►Assume every new account is public until you have checked, and do the privacy settings at sign-up rather than “later”; use the platform's “view as public” or “privacy checkup” feature to see what a stranger sees.
- ►Set specific known defaults: Venmo transactions to private, Google Web & App Activity and Location History off or auto-deleting, Facebook past posts limited, contact syncing off.
- ►When a platform announces a “new privacy experience” or “simplified settings”, treat it as a prompt to re-audit, not as reassurance; screenshot your settings before and after.
- ►Use the rights that exist: request your data and its deletion under the GDPR (EU/UK) or the CCPA (California), and opt out of data brokers, who resell what the defaults exposed.
- ►Separate identities: an alias e-mail and minimal profile for services you do not need to be found on, so that a default set to public exposes little.
From the Defense Playbook
On any checkout, sign-up, or consent screen, read each checkbox and toggle before you continue, noting whether it is already ticked and whether ticking means yes or no, because defaults and confusing wording are how extras, marketing consent, and data sharing are obtained from people who never chose them.
When an interface tricks you (a hidden charge, a fake countdown, a cancellation maze, consent you never gave), document it and report it to the regulator and the platform, because enforcement against deceptive design is driven by complaint data and one documented report protects people who would never have spotted the trick.
Every playbook entry states how strong its evidence is and when not to use it. Browse the full playbook.
References
- Brignull, H. (2023). Deceptive Patterns: Exposing the Tricks Tech Companies Use to Control You. Testimonium LtdThe origin of the term privacy zuckering in the 2010 taxonomy and its definition.
- Forbrukerrådet (Norwegian Consumer Council) (2018). Deceived by Design: How Tech Companies Use Dark Patterns to Discourage Us from Exercising Our Rights to Privacy. Forbrukerrådet report, June 2018Documentation of defaults, framing, and placement steering Facebook and Google users toward privacy-intrusive settings.
- Brandimarte, L., Acquisti, A., & Loewenstein, G. (2013). Misplaced Confidences: Privacy and the Control Paradox. Social Psychological and Personality Science, 4(3), 340-347The finding that more control over publishing information increases disclosure — the control paradox that privacy-settings interfaces exploit.
- Federal Trade Commission (2011). In the Matter of Facebook, Inc. — Decision and Order. FTC Docket No. C-4365, consent order announced November 2011The finding that Facebook told users information would be kept private while making it public, and the resulting order.
Related Articles
Dark Patterns in UX: How Apps Manipulate Your Behavior
Subscription traps, misleading interfaces, and engineered addiction. Understanding the persuasion techniques built into the apps you use every day.
OSINT for Beginners: Open Source Intelligence Explained
Open Source Intelligence (OSINT) uses publicly available data to gather actionable insights. Here is a beginner-friendly guide to what OSINT is and how it is used.