Exploring Expandable-Grid Designs to Make iOS App Privacy Labels More Usable

Authors: 

Shikun Zhang and Lily Klucinec, Carnegie Mellon University; Kyerra Norton, Washington University in St. Louis; Norman Sadeh and Lorrie Faith Cranor, Carnegie Mellon University

Abstract: 

People value their privacy but often lack the time to read privacy policies. This issue is exacerbated in the context of mobile apps, given the variety of data they collect and limited screen space for disclosures. Privacy nutrition labels have been proposed to convey data practices to users succinctly, obviating the need for them to read a full privacy policy. In fall 2020, Apple introduced privacy labels for mobile apps, but research has shown that these labels are ineffective, partly due to their complexity, confusing terminology, and suboptimal information structure. We propose a new design for mobile app privacy labels that addresses information layout challenges by representing data collection and use in a color-coded, expandable grid format. We conducted a between-subjects user study with 200 Prolific participants to compare user performance when viewing our new label against the current iOS label. Our findings suggest that our design significantly improves users' ability to answer key privacy questions and reduces the time required for them to do so.

Open Access Media

USENIX is committed to Open Access to the research presented at our events. Papers and proceedings are freely available to everyone once the event begins. Any video, audio, and/or slides that are posted after the event are also free and open to everyone. Support USENIX and our commitment to Open Access.

BibTeX
@inproceedings {298912,
author = {Shikun Zhang and Lily Klucinec and Kyerra Norton and Norman Sadeh and Lorrie Faith Cranor},
title = {Exploring {Expandable-Grid} Designs to Make {iOS} App Privacy Labels More Usable},
booktitle = {Twentieth Symposium on Usable Privacy and Security (SOUPS 2024)},
year = {2024},
isbn = {978-1-939133-42-7},
address = {Philadelphia, PA},
pages = {139--157},
url = {https://www.usenix.org/conference/soups2024/presentation/zhang},
publisher = {USENIX Association},
month = aug
}