Ring app on Android covertly sends personally identifiable information of users to third parties including Facebook and MixPanel
Ring isn't just a product that allows users to surveil their neighbors. The company also uses it to surveil its customers.
Context & Ripple Effects
The EFF finding lands mid-pattern rather than out of nowhere. Two months earlier, leaked documents showed Amazon's Ring had prototyped neighborhood "watch lists" built on facial recognition, framing the company as building surveillance outward at neighbors — this report flips the lens inward, onto Ring's own customers.
The disclosure also set up the immediate follow-on: after independent analysis showed Ring sharing data with Facebook and Google without consent, Ring committed to giving users more control over data sharing. A year later, a separate flaw in the Neighbors app was exposing posters' home addresses before Ring patched it — together these reports sketch a company whose data practices kept outrunning its privacy posture.
First-order effects
- Ring Android users' personally identifiable information was flowing to Facebook and Mixpanel without their knowledge, making the camera vendor itself a data collector on its customer base.
Second-order effects
- Ring's promised data-sharing controls become the test of whether Amazon can keep the product's law-enforcement-adjacent ambitions — including the facial-recognition features gauged in internal surveys — politically viable under mounting privacy scrutiny.
Third-order effects
- If the pattern holds, consumer surveillance hardware gets pushed toward explicit, opt-in third-party data sharing as a baseline expectation, with researchers like EFF acting as the de facto audit layer the category lacked.
The trend: Smart-home surveillance vendors are being forced from covert telemetry toward user-controlled data sharing as researchers and press expose what the apps actually transmit.