Jul 23, 2018

Between the lines: Venmo's public transaction feed is a bad idea

Ina Fried, author of Login

Payments app Venmo includes a feed of what everyone is buying. Screenshot: Venmo.com

I'm late to the Venmo craze. I only signed up last week in hopes of getting everyone to pay me back for drinks and food for a tech reporter meet-up, but the craziest part to me was learning that transactions are made public by default.

Between the lines: Sharing transaction information publicly could reveal a lot, especially if one makes a lot of transactions over time. While designed for friends, information shared publicly could find its way into the hands of data brokers, credit monitors or others.

  • As a reporter, it struck me as a potential gold mine of information, but I can't think of any good reason why someone would want to share their purchase history and LOTS of reasons why that's a terrible idea.

What I'm seeing: I connected to my Facebook feed and contacts purposely to see what I could learn. My friends' purchases ranged from the usual meals and bar tabs, to rugby tickets and a hockey jersey. There wasn't a ton of compromising info, but in addition to my babysitter and several co-workers, I was surprised to see one prominent critic of social media sharing a number of recent purchases.

Berlin-based researcher Hang Do Thi Duc discovered even more by sorting through all the publicly available data and posting her findings online. The site profiles a few different individuals, including a cannabis retailer, whose transactions were made public. She was kind enough not to share real names of the merchant or customers, but that info was among the information available.

Our thought bubble: Obviously there are generational differences when it comes to sharing information. That said, there also seems to be a shift in thinking thanks to the Facebook controversies. The assumption from the mid-2000s till recently was that social networks make things better by encouraging sharing. Now there's a wider awareness that everything we share can be used against us. 

What they're saying: For its part, Venmo says its site was always designed to be social, it doesn't share the amounts paid or publicize what it deems potentially sensitive transactions (those made with a Venmo card or stores that accept Venmo.) The company doesn't plan to change its defaults, but does plan to step up its education efforts.

"Our latest app includes a pop-up privacy tutorial that every user will see when they first open the app to further educate the user on how to choose their preferred privacy settings," a Venmo representative told Axios. "Users will see these tutorials over the coming weeks."

Meanwhile: Snapchat is giving up on Snapcash, its effort to rival Venmo. The peer-to-peer payments technology, which was launched in 2014 in partnership with Square, is set to shut down at the end of August, per TechCrunch.

Go deeper

Updated 1 hour ago - Politics & Policy

Coronavirus dashboard

Illustration: Sarah Grillo/Axios

  1. Global: Total confirmed cases as of 3 p.m. ET: 6,703,686 — Total deaths: 393,393 — Total recoveries — 2,906,748Map.
  2. U.S.: Total confirmed cases as of 3 p.m. ET: 1,885,197 — Total deaths: 108,708 — Total recoveries: 485,002 — Total tested: 18,680,529Map.
  3. Public health: WHCA president says White House violated social-distancing guidelines to make reporters "a prop" — Jailing practices contribute to spread.
  4. States: Cities are retooling public transit to lure riders back.
  5. Jobs: Better-than-expected jobs report boosts stock market.
  6. Media: The Athletic lays off 8% of staff, implements company-wide pay cut.

Scoop: German foreign minister to travel to Israel with warning on annexation

Heiko Maas. Photo: Michael Kappeler/picture alliance via Getty Images

German Foreign Minister Heiko Maas is expected to travel to Israel next week to warn that there will be consequences if Israeli leaders move forward with plans to annex parts of the West Bank, Israeli officials and European diplomats tell me.

Why it matters: Israeli and European officials agree that if Israel goes ahead with unilateral annexation, the EU will respond with sanctions.

Minneapolis will ban police chokeholds following George Floyd's death

A memorial for George Floyd at the site of his death in Minneapolis. Photo: Steel Brooks/Anadolu Agency via Getty Images

Minneapolis has agreed to ban the use of police chokeholds and will require nearby officers to act to stop them in the wake of George Floyd's death, AP reports.

Why it matters: The agreement between the city and the Minnesota Department of Human Rights, which has launched an investigation into Floyd's death while in police custody, will be enforceable in court.