Investigation finds Facebook has over 1,000 contractors moderating private WhatsApp messages and images that were reported by users
ProPublica
Context & Ripple Effects
Facebook's use of human review has already extended beyond public feeds: reporting showed the company had workers label private posts and photos for AI improvement, making the WhatsApp finding part of a broader tension between data handling and privacy expectations.
WhatsApp has also faced pressure to act on harmful group activity, including child-exploitation material shared in groups. The investigation makes clear that user reports can create a human-access path into material that users may otherwise regard as private.
First-order effects
People who report WhatsApp messages or images may have that material reviewed by Facebook contractors, narrowing the practical meaning of WhatsApp's privacy assurances for reported content.
Facebook and its contractor partners must manage both sensitive user material and moderator exposure; a prior bug that exposed moderators' identities shows the operational risks around that workforce.
Second-order effects
WhatsApp's safety enforcement becomes more visibly dependent on contractor review, complicating how Facebook explains the boundary between encrypted private communications and abuse reporting.
Facebook's prior use of people to label private material for AI and its use of contractors for reports put greater weight on its contractor safeguards, rather than treating moderation as separate from privacy practices.
Third-order effects
If reported-content review becomes a recurring focal point, private messaging services will be judged not only on encryption claims but also on the disclosure, access controls, and labor practices surrounding their abuse-reporting pipelines.
The trend: Private-platform safety systems are bringing human moderation and data-governance scrutiny into services marketed around private communications.
The gist is: “Facebook promises that Nobody Else Can Read Conversation Messages! But if a Participant forwards the message to the WhatsApp Abuse Team, that's not true!” That's all. And it's bullshit. People can forward messages to anyone, and it can still be E2E encrypted. https:…
This ProPublica article on WhatsApp is terrible. It is inconsistent with much of what ProPublica has written in the past, it incorrectly conflates responsible reporting mechanisms with proactive moderation, and creates the wrong incentive structure for E2EE products. https://twit…
If I receive a WhatsApp message and then send it to the WhatsApp abuse team because it's abusive, I am not undermining e2e encryption any more than if I screenshot the message and post it here for everyone to see.
New from us: Facebook says it doesn't look at WhatsApp messages: “No one else can read or listen to its content, not even WhatsApp.” That's not true. https://www.propublica.org/... By @peterelkind @jackgillum @CraigSilverman https://twitter.com/...
There are a lot of problems at WhatsApp, but “the existence of abuse reporting undermines the promise of end-to-end encryption” is an impressively bad take.
I agree that my friends at @propublica got this one be really wrong. This could have been a good story, as there seems to be interesting reporting on what metadata WhatsApp collects and how it is used and shared. I wish they'd focussed on that. https://alecmuffett.com/...
It's all over! @ProPublica exposes how @Facebook has compromised users' privacy: “Together, the company's actions have left WhatsApp—the largest messaging app in the world,with two billion users—far less private than its users likely understand or expect.” https://www.propublica.…
How Facebook Undermines Privacy Protections for Its 2 Billion WhatsApp Users — “WhatsApp reviewers gain access to private content when users hit the “report” button on the app” // Sure, privacy is complicated but how is this [bigtech] “undermining” it? https://www.propublica.org/…
As Zuckerberg had put it earlier, in testimony to the U.S. Senate in 2018, “We don't see any of the content in WhatsApp.” “Those assurances are not true.” https://www.propublica.org/...
think a lot of people assumed this,,,, but it's.....good to have confirmation that whatsapp is not really 𝙥𝙧𝙞𝙫 𝙖𝙩𝙚 private https://twitter.com/... https://twitter.com/...
I love ya ProPublica, and I think FB is a privacy train wreck, but this is in NOT a back door — if a user reports receiving an abusive E2E WhatsApp message, their (now cleartext) received message/media & the previous 4 are forwarded back to FB. Basically a signed screenshot. http…
And to suggest in any way that WhatsApp encryption is broken excuse WhatsApp will look at messages that users forward to them when sending a report is just bad. The article should be so much clearer on this issue.
Ugh. This “allowing users to report abuse is the same as intrusive corporate surveillance” utter nonsense is at best risibly ignorant, and at worst outright disingenuous and deliberately misleading. I expect a lot better of Pro Publica. https://twitter.com/...
100%. The interesting story on WhatsApp's privacy failings are about the fact that it retains metadata, which can be subpoenaed and weaponized against users, like w BuzzFeed's FinCEN whistleblower. But the ProPublica piece went whole hog & implied scandal in places there is none.…
@ericuman ... this is not true at all. WhatsApp messages are end-to-end encrypted. Facebook does NOT have access to them. This was referring specifically to messages reported.
I'm certainly no FB apologist. But this article is frankly an unfair hatchet job. The main premise boils down to “WA Users can voluntarily forward messages to FB. This is a violation of E2E.” By that argument, iOS and Android undermine privacy by allowing screenshots of apps. htt…
keep in mind: WhatsApp has more than 1,000 contract workers filling floors of office buildings they examine millions of pieces of users' content. The company has an extensive monitoring operation and regularly shares personal information with prosecutors https://www.propublica.or…