Shine

Aviso: *privacidade não incluída neste produto

Shine

Shine, Inc
WiFi

Data da avaliação: 25 de Abril de 2023

|
A Mozilla investigou por 16 horas
|

Opinião da Mozilla

|
Votos das pessoas: Muito assustador

Shine was built by two women of color to focus on groups too often underrepresented in wellness conversations -- women of color. The app features daily meditations, self-care courses, personalized support, and monthly virtual workshops. With a majority of teachers being people of color, Shine is able to focus more specifically on the causes of stress, anxiety, and depression in the Black, Indigenous, and people of color communities, especially among women. Meditation topics focused on specific communities -- AAPI, Black, LGBTQ+, Latinx for example -- are designed to help users manage work frustrations, navigate relationships, and find joy. With a staff that is 80% BIPOC, Shine believes that fighting for the mental health of marginalized people helps fights for their lives and rights too. Yay for caring for and about marginalized communities! But how does Shine's privacy and security practices look? Well, unfortunately, in 2022 they didn't really shine. And then they got sold to Headspace, and their privacy practices don't really shine either.

O que pode acontecer se algo der errado?

First reviewed April 20, 2022. Review updated, April 25, 2023

The Shine app no longer exists. This is because Shine was acquired by Headspace Health in September, 2022. As of April 25, 2023, this app is no longer available for download in either the Google or Apple app stores. Also, their privacy policy no longer exists. According to the announcement, the plan was for the Shine app to be integrated into Headspace Health. So, it seems users of Shine got pushed over to Headspace. If you'd like to read our review of Headspace's privacy, you can find it here. Spoiler: We found Headspace's privacy practices have gotten worse since our review in 2022 and now earns our *Privacy Not Included warning label. Sorry to be the bearer of bad news.

Read our 2022 review:

Shine's privacy policy is rather hard to decipher at times (honestly, all privacy policies kinda are, but Shine's made our brain hurt just a little bit more). They lead off their privacy policy with what they call the company's privacy assurances. This includes statements like, "We do not sell your Personal Information to any nonaffiliated third parties." and "We do not share your Personal Information with nonaffiliated third parties that would use it to contact you about their own products and services, unless you have allowed us to do so and as permitted pursuant to a joint marketing agreement." But what do those statements actually mean? Does that mean that they could sell data to any affiliated third parties. Yes, it seems so. Does it mean they may share personal data with marketing and advertising providers. Again, yes it does. And what does you giving them permission pursuant of a joint marketing agreement etc etc. actually look like? It's rather confusing legalese that doesn't make us feel great about their overall privacy practices.

Shine says they can collect a fair amount of personal information on you including first and last name, postal address, email address, and other "identifying information that you choose." They can also collect information such as your annual revenue, gender, and certain demographic information they say they don't consider personal info but rather anonymized statistical data. Shine also says they can receive information about your from third parties including business partners, data brokers, or credit reporting agencies. So much data from so many places! We don't like it.

What does Shine do with all that data they collect? Well, quite a bit of promoting, advertising, marketing, market research and even "to provide you with information about third parties that may be of interest to you" according to their privacy policy. They say they can share your personal information with a whole host of people including marketing or advertising providers, professional advisors, and even Rakuten Advertising, an ad company that can collect their own personal information on you when you interact with Shine. So much data sharing! Again, we don't like it.

They go on to say, as so many mental health app companies we reviewed do, "We may disclose aggregated, anonymized, statistical data and/or non-identifying information about our Users without restriction." And here is where we must remind you that it has been found to be relatively easy to de-anonymize this data.

Shine collects a lot of personal information, shares a lot of personal information with a lot of people and on top of all that, they don't meet our Minimum Security Standards (we were able to log into the app with the weak password "111111". ) All in all, Shine leaves us concerned about their privacy and security practices. Which is a bummer, because we here at *Privacy Not Included firmly believe protecting the privacy of marginalized communities is very important. Here's hoping Shine will step up and do better for the communities they work to help.

Dicas para se proteger

  • Do not log in using third-party accounts like Facebook - Do not give consent for sharing of personal data for marketing and advertisement.
  • Chose a strong password! You may use a password control tool like 1Password, KeePass etc
  • Do not use social media plug-ins.
  • Use your device privacy controls to limit access to your personal information via app (do not give access to your camera, microphone, images, location unless neccessary) - Keep your app regularly updated
  • Limit ad tracking via your device (eg on iPhone go to Privacy -> Advertising -> Limit ad tracking) and biggest ad networks (for Google, go to Google account and turn off ad personalization)
  • Request your data be deleted once you stop using the app. Simply deleting an app from your device usually does not erase your personal data.
  • When starting a sign-up, do not agree to tracking of your data if possible.
  • mobile

Pode me bisbilhotar? informações

Câmera

Dispositivo: Não aplicável

Aplicativo: Não

Microfone

Dispositivo: Não aplicável

Aplicativo: Não

Rastreia localização

Dispositivo: Não aplicável

Aplicativo: Não

O que pode ser usado para se inscrever?

Facebook or Apple accounts can be used

Que dados a empresa coleta?

Como a empresa usa esses dados?

We ding this product as it may be combining data collected on you with data received from data brokers. Also it may disclose your personal data to third-party providers for marketing purposes.

"If we receive Personal Information about you from a third party (for example, our business partners, data brokers, or credit reporting agencies), we will protect it as set out in this Privacy Policy. If you are a third party providing Personal Information about somebody else, you represent and warrant that you have such person’s consent to provide the Personal Information to us."

"We may disclose your Personal Information to third party service providers for the purpose of enabling them to provide their services, if you have allowed us to do so, including but not limited to:

<...>

Marketing or advertising providers;

<...>

Rakuten Advertising;

We partner with Rakuten Advertising, who may collect personal information when you interact with our site. The collection and use of this information is subject to the privacy policy located here."

"We do not sell your Personal Information to any third parties."

"We do not share your Personal Information with third parties that would use it to contact you about their own products and services, unless you have allowed us to do so and as permitted pursuant to a jointly signed agreement."

Como você pode controlar seus dados?

We ding this product as it povides no data retention details.

"If you believe that any information we hold about you is inaccurate, out of date, incomplete, irrelevant or misleading, you can review and change your Personal Information by logging into your account profile on the Websites and navigating to the appropriate settings page or sending us an email at [email protected] to request access to, correct, or delete any Personal Information that you have provided to us. We cannot delete some of your Personal Information except by also deleting your User account. We may not accommodate a request to change information if we believe the change would violate any law or regulatory requirement, result in fraud, or cause the information to be incorrect."

Qual é o histórico conhecido da empresa na proteção de dados dos usuários?

Médio

No known privacy or security incidents discovered in the last 3 years.

Informações de privacidade infantil

"Our Websites are not intended for children under 13 years of age. No one under the age of 13 may provide any Personal Information to the Company or through the Websites. We do not knowingly collect Personal Information from children under 13. If you are under 13, do not use or provide any information through any of the Websites’ features/functionality, make any purchases through the Websites, use any of the interactive features that may be available on these Websites, or provide any information about yourself to us, including your name, address, telephone number, and/or email address and/or any screen name or username you may use. If we learn that we have collected or received Personal Information from a child under 13 without verification of parental consent, we will delete that information. If you believe we might have any information from or about a child under 13, please contact us at [email protected]."

Este produto pode ser usado offline?

Sim

You can download your Shine meditations

Informações de privacidade fáceis de entender?

Não

Links para informações de privacidade

Este produto atende aos nossos padrões mínimos de segurança? informações

Não

Criptografia

Sim

All information you provide to us through the Websites is secured by TLS technology, and is stored on our secure, password protected servers behind firewalls.

Senha forte

Sim

Improved their password requirement.

Atualizações de segurança

Sim

Gerencia vulnerabilidades

Não foi possível determinar

Política de privacidade

Sim

O produto usa inteligência artificial? informações

Não foi possível determinar

Esta inteligência artificial não é confiável?

Não foi possível determinar

Que tipo de decisões a inteligência artificial faz sobre você ou por você?

A empresa é transparente sobre como funciona a inteligência artificial?

Não foi possível determinar

O usuário tem controle sobre os recursos da inteligência artificial?

Não foi possível determinar

*privacidade não incluída

Mergulhe mais fundo

  • Headspace Health Announces Agreement to Acquire The Shine App, an Inclusive Mental Health and Wellbeing Platform
    Business Wire O link é aberto em uma nova aba
  • Mental health apps have terrible privacy protections, report finds
    The Verge O link é aberto em uma nova aba
  • 'Creepy' Mental Health And Prayer Apps Are Sharing Your Personal Data
    Forbes O link é aberto em uma nova aba
  • Mental health and prayer apps have some of the worst privacy protections, study claims, finding they 'track, share and capitalize' on users intimate thoughts and feelings
    Daily Mail O link é aberto em uma nova aba
  • This Wellness App Shines a Light on Black Mental Health
    PCMag O link é aberto em uma nova aba
  • Top 10 Free Mental Health Apps in 2022
    Psych Central O link é aberto em uma nova aba
  • Most Meditation Apps Are Voiced by White People, but the Founders of ‘Shine’ Are Changing That
    Pure Wow O link é aberto em uma nova aba
  • Shine brings its female-focused self-care app to Android
    TechCrunch O link é aberto em uma nova aba
  • Meet the Women Founders Behind Shine and Wysa, Two Apps Focused on Mental Health and Self-Care
    Yahoo! O link é aberto em uma nova aba
  • The Best Meditation Apps to Help With Anxiety
    Oprah Daily O link é aberto em uma nova aba
  • Shine App Founders Give a Master Class in Mindfulness
    Psych Central O link é aberto em uma nova aba
  • The Best Mental-Health Apps for POC, According to Experts
    The Strategist O link é aberto em uma nova aba

Comentários

Tem um comentário a fazer? Nos diga.