Facebook Announces Privacy Improvements in Response to Recommendations by Canadian Privacy Commissioner
Facebook to provide users with even greater control over information shared with third-party applications, and revisions to privacy policy PALO ALTO, Calif. — August 27, 2009 …
Context & Ripple Effects
This announcement lands two months after Facebook's July 2009 push to reframe sharing around control and simplicity, and it converts that framing into concrete policy changes — but under external pressure rather than internal initiative alone. Both the improved third-party application controls and the privacy policy revisions are framed by Facebook itself as responses to recommendations from the Canadian Privacy Commissioner.
The story drew at least one industry syndication (All Facebook flagged it as having significant impact), suggesting platform watchers read it as more than cosmetic housekeeping: how Facebook handles app-level data access is the core commercial question for its developer ecosystem, which had been growing on relatively open defaults.
First-order effects
- Facebook users gain explicit controls over what information third-party applications can access, shrinking the default surface that app developers can pull from.
- Facebook's published privacy policy is formally revised to align with the Privacy Commissioner's recommendations, meaning the changes are documented commitments rather than informal settings tweaks.
Second-order effects
- Application developers on Facebook's platform must rework permission flows and data expectations against the tighter boundary, raising integration costs across the ecosystem.
- Other national privacy regulators now have a working precedent that a single commissioner's findings can force design changes at a global platform — expect copycat inquiries aimed at comparable disclosure practices elsewhere.
Third-order effects
- If the pattern holds, social-platform data access shifts from being governed purely by unilateral terms of service to being co-shaped by privacy authorities, making regulatory response a standing input into product design rather than an occasional crisis event.
The trend: National privacy regulators are becoming direct authors of how major social platforms expose user data to third-party developers.