• 1 Post
  • 505 Comments
Joined 2 years ago
cake
Cake day: October 7th, 2024

help-circle
  • You are correct that this is normal for the OS. The OS will use this data to determine your location. What is not normal is abusing the Bluetooth permission to send a list of scanned devices to app vendor. They should only be collecting the location, not the raw Bluetooth list. I don’t know what the app is to confirm, but the way they said it, they would be handing all of the local device data along with the standard location permission. This is the extra data that can be used to isolate you more than just a location could.

    This is similar to browser fingerprinting, but worse because your phone goes with you everywhere.

    One final mention is that the app is likely not collecting that list once, but rather regularly, so they could build a profile on what devices you’re in range of and by extension where you are regularly, even if you chose to disable your location, since they’re using Bluetooth MAC addresses as their workaround.