Microsoft to pay $20m for child privacy violations

1 year ago 28

Microsoft buildingImage source, Getty Images

By Max Matza

BBC News, Seattle

Microsoft volition wage $20m (£16m) to US national regulators aft it was recovered to person illegally collected information connected children who had started Xbox accounts.

The Federal Trade Commission (FTC) reached a colony with the institution connected Monday, which besides includes accrued protections for kid gamers.

Among different violations, the FTC recovered that Microsoft failed to pass parents astir its information postulation policies.

It follows a akin enactment against Amazon past week implicit its Echo devices.

The FTC said Microsoft violated the Children's Online Privacy Protection Act by not decently getting parental consent and by retaining idiosyncratic information connected children nether 13 for longer than indispensable for accounts created earlier 2021.

The instrumentality requires online services and websites directed towards children to get a parent's consent and to pass the genitor astir idiosyncratic information being collected astir their child.

Xbox users indispensable make an relationship to usage definite services. Information specified arsenic afloat name, email code and day of commencement are collected arsenic portion of the acceptable up.

Not until aft obtaining idiosyncratic information, specified arsenic the child's telephone number, did Microsoft inquire for a genitor to supply permission.

From 2015 to 2020 Microsoft retained information "sometimes for years" from the relationship acceptable up, adjacent erstwhile a genitor failed to implicit the process, the FTC said successful a statement.

The institution besides failed to pass parents astir each the information it was collecting, including the user's illustration representation and that information was being distributed to 3rd parties.

"Regrettably, we did not conscionable lawsuit expectations and are committed to complying with the bid to proceed improving upon our information measures," Microsoft's Dave McCarthy, CVP of Xbox Player Services, wrote successful an Xbox blog post.

"We judge that we tin and should bash more, and we'll stay steadfast successful our committedness to safety, privacy, and information for our community."

As portion of the settlement, Microsoft indispensable besides institute caller information protections for children. That includes maintaining a strategy to delete each idiosyncratic information aft 2 weeks if nary parental consent is obtained.

The bid indispensable beryllium approved by a national justice earlier it tin spell into effect.

Last week, Amazon agreed to wage $25m aft the FTC recovered that it had retained delicate data, including dependable recordings of children, for years.

Amazon's doorbell camera portion Ring besides agreed to wage retired $5.8m aft giving employees unrestricted entree to customers' data.

Read Entire Article