Before and after GDPR: tracking in mobile apps
Computers and Society
2021-12-22 v1
Abstract
Third-party tracking, the collection and sharing of behavioural data about individuals, is a significant and ubiquitous privacy threat in mobile apps. The EU General Data Protection Regulation (GDPR) was introduced in 2018 to protect personal data better, but there exists, thus far, limited empirical evidence about its efficacy. This paper studies tracking in nearly two million Android apps from before and after the introduction of the GDPR. Our analysis suggests that there has been limited change in the presence of third-party tracking in apps, and that the concentration of tracking capabilities among a few large gatekeeper companies persists. However, change might be imminent.
Keywords
Cite
@article{arxiv.2112.11117,
title = {Before and after GDPR: tracking in mobile apps},
author = {Konrad Kollnig and Reuben Binns and Max Van Kleek and Ulrik Lyngs and Jun Zhao and Claudine Tinsman and Nigel Shadbolt},
journal= {arXiv preprint arXiv:2112.11117},
year = {2021}
}