Reducing Permission Requests in Mobile Apps

被引:16
作者
Peddinti, Sai Teja [1 ]
Bilogrevic, Igor [1 ]
Taft, Nina [1 ]
Pelikan, Martin [1 ]
Erlingsson, Ulfar [1 ]
Anthonysamy, Pauline [1 ]
Hogben, Giles [1 ]
机构
[1] Google Inc, Mountain View, CA 94043 USA
来源
IMC'19: PROCEEDINGS OF THE 2019 ACM INTERNET MEASUREMENT CONFERENCE | 2019年
关键词
Mobile Apps; Permissions;
D O I
10.1145/3355369.3355584
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Users of mobile apps sometimes express discomfort or concerns with what they see as unnecessary or intrusive permission requests by certain apps. However encouraging mobile app developers to request fewer permissions is challenging because there are many reasons why permissions are requested; furthermore, prior work [25] has shown it is hard to disambiguate the purpose of a particular permission with high certainty. In this work we describe a novel, algorithmic mechanism intended to discourage mobile-app developers from asking for unnecessary permissions. Developers are incentivized by an automated alert, or "nudge", shown in the Google Play Console when their apps ask for permissions that are requested by very few functionally-similar apps-in other words, by their competition. Empirically, this incentive is effective, with significant developer response since its deployment. Permissions have been redacted by 59% of apps that were warned, and this attenuation has occurred broadly across both app categories and app popularity levels. Importantly, billions of users' app installs from the Google Play have benefited from these redactions.
引用
收藏
页码:259 / 266
页数:8
相关论文
共 36 条
  • [1] Agarwal Y., 2013, P MOBISYS
  • [2] Almuhimedi Hazim, 2015, P CHI
  • [3] Android Developers, 2019, APP PERM BEST PRACT
  • [4] [Anonymous], 2019, ANDROID STUDIO PROJE
  • [5] [Anonymous], 2016, New York Times
  • [6] [Anonymous], 2017, S US PRIV SEC SOUPS
  • [7] [Anonymous], 2016, 12 S US PRIV SEC SOU
  • [8] [Anonymous], 2016, DEEP LEARNING
  • [9] [Anonymous], 2011, P WEB
  • [10] [Anonymous], 2018, Wired