Attention to privacy on Facebook has been intense in recent months after the company made more profile information public by default, added options to its already-complicated privacy settings and introduced features to personalise external websites using people's profile information.
The company responded last week by launching a simplified privacy dashboard, restoring the ability to hide some public profile data and giving users an "off" switch to block all third-party Web sites and applications from accessing their accounts.
Now that the dust has largely settled, IDG News Service had a chance to chat with Facebook chief technology officer Bret Taylor about the latest privacy controversies and Facebook's reaction. An edited transcript of the conversation follows.
IDG News Service: There has been an intense focus on Facebook privacy recently, but protecting one's privacy online must be a broader endeavour. What's a holistic view of the online privacy problem, in your opinion?
Bret Taylor: One thing that was lost in the dialogue prior to some of our changes last week is that Facebook is a service primarily about sharing. People join our site to share with their friends. The reason you publish a photo to Facebook as opposed to saving it on your hard drive is because you want your friends to see it and comment on it and like it. Facebook isn't a service primarily about securing your information but about sharing your information, while giving users the confidence to know with whom they're sharing the information.
Privacy on Facebook and privacy on the Internet are very different things because obviously when your bank mentions privacy it means something completely different than when Facebook mentions privacy. When we talk about privacy at Facebook we're really talking about how can you know that when you publish a photo only your friends and extended network can see it. Also when your best friend from elementary school looks you up, that he can figure out if [this is you], which is another very important part of our service. So balancing the privacy aspects of sharing with discovery and this massive directory of everyone in the world, which Facebook is also very useful for, are just some of the problems we're dealing with, which are very different from other Internet services.
IDGNS: Privacy advocates want Facebook to set more conservative default settings for sharing and to leave it up to users to pro-actively opt into and enable broader sharing of their information. How do you strike a balance between those concerns and the risk of hurting Facebook's social-networking nature, which is to help people find other people and interact with them?
Taylor: That balance is something we talk about a lot internally. Obviously, you need a certain amount of sharing because otherwise you wouldn't be able to friend new people because they weren't your friends yet. What we've tried to do with our privacy defaults is reflect the norms of usage on our site. Obviously, the default settings are not perfect for everybody, so we try to make changing those defaults extremely easy, which is what our launch last week was about. Most people have changed their privacy settings at one time or another.
IDGNS: Many privacy concerns centre on Facebook users' confusion about what and how information is being shared. Have you considered providing users with anonymised usage analytics for their profiles, so that they can see, say, that this photo was viewed by five friends, seven friends of friends and three people not connected to them in any way? The idea being that people get a concrete picture of how their content is being viewed and that they can adjust privacy settings based on that concrete knowledge if necessary.
Taylor: It's an interesting idea. I'm not sure if it's something we've considered.
IDGNS: Some people say Facebook search goes too far in making site data discoverable, while others complain that it doesn't go far enough. What's the right balance for the search function on Facebook?
Taylor: The primary use of Facebook search is finding people. The thing a lot of the technology community has been focused on is searching over the Facebook stream. But on Facebook, the primary purpose of the search box is finding people. A distinguishing feature of Facebook search is that it's personalised by default, so you can search through all your friends' updates. It's a very unique and personalised experience over a set of content that is very personal, like status updates and photos.
Searching over the status updates tagged with the [public] "everyone" setting has been very well-received by our users, but we haven't invested tons of efforts into it because we've been focused on other areas of the site to date. We've been eager to hear everyone's feedback as we exposed the APIs [application programming interfaces], but I don't think we have any specific plans to announce at this point.
IDGNS: Regarding your "everyone" privacy setting, which makes content available to everyone on and off Facebook, what happens when someone whose profile is set to "friends only" interacts with a friend whose profile is set to "everyone"? Whose privacy settings govern those interactions, if, say, the "everyone" friend comments on a photo of the other "friends only" person?
Taylor: Comments inherit the privacy of the object on which you comment. So if I comment on a post that's set to "everyone" then my comment is also viewable by everyone.