<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Nathaniel Fruchter</title>
    <description>Personal website of Nathaniel Fruchter</description>
    <link>http://nathanielfruchter.com/</link>
    <atom:link href="http://nathanielfruchter.com/feed.xml" rel="self" type="application/rss+xml" />
    
      <item>
        <title>Thoughts on risk communication</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;48fd&quot; class=&quot;section section--body section--first&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;4d31&quot; id=&quot;4d31&quot; class=&quot;graf graf--h3 graf--leading graf--title&quot;&gt;Risk communication&lt;/h3&gt;&lt;blockquote name=&quot;5df1&quot; id=&quot;5df1&quot; class=&quot;graf graf--blockquote graf--startsWithDoubleQuote graf-after--h3&quot;&gt;“…when [people] see experts failing, laypeople can effectively assert their desire to affect both personal and political decisions. These battles for control may not be quick or tidy processes. […]&lt;/blockquote&gt;&lt;blockquote name=&quot;3d44&quot; id=&quot;3d44&quot; class=&quot;graf graf--blockquote graf-after--blockquote&quot;&gt;Once specialists lose the trust needed to serve as credible sources, the public’s learning process becomes much more complicated. Laypeople no longer know where to go for information. Their interactions with risk specialists may be colored by emotional reactions by all parties.”&lt;/blockquote&gt;&lt;p name=&quot;b68b&quot; id=&quot;b68b&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;Sound familiar? Let’s take a minute to talk about communicating risk. The above quote isn’t a recent retrospective on the coronavirus pandemic. Instead, it’s from &lt;a href=&quot;https://www.google.com/books/edition/Risk_Communication/ieXbkmYf3mAC?hl=en&amp;amp;gbpv=0&quot; data-href=&quot;https://www.google.com/books/edition/Risk_Communication/ieXbkmYf3mAC?hl=en&amp;amp;gbpv=0&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;Risk Communication: A Mental Models Approach&lt;/em&gt;&lt;/a&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;, &lt;/em&gt;a 2002 guide to the discipline.&lt;/p&gt;&lt;p name=&quot;595b&quot; id=&quot;595b&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;With various regions in the US potentially going back under some sort of lockdown or “stay at home” order, there’s been a resurgence in people talking about &lt;a href=&quot;https://www.nytimes.com/2020/12/03/us/california-stay-at-home-order.html&quot; data-href=&quot;https://www.nytimes.com/2020/12/03/us/california-stay-at-home-order.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;openly flouting restrictions&lt;/a&gt; of various kinds. How did we get to this point? &lt;/p&gt;&lt;p name=&quot;7ff0&quot; id=&quot;7ff0&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;To address the elephant in the room: we can’t ignore the many systemic failures of governance here in the US. For instance, the false choice between &lt;a href=&quot;https://today.duke.edu/2020/08/prioritizing-economy-over-public-health-wrong-approach-scholars-say&quot; data-href=&quot;https://today.duke.edu/2020/08/prioritizing-economy-over-public-health-wrong-approach-scholars-say&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;public health and the economy&lt;/a&gt; (partially driven by the lack of any substantial stimulus or financial backstop by the federal government) is a commonly stated reason to ignore restrictions. Cynicism and a lack of trust also contribute—”why should I comply,” you might ask, &lt;a href=&quot;https://www.latimes.com/california/story/2020-12-03/skelton-edd-inmate-unemployment-fraud-scandal-french-laundry-embarassment&quot; data-href=&quot;https://www.latimes.com/california/story/2020-12-03/skelton-edd-inmate-unemployment-fraud-scandal-french-laundry-embarassment&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;if our leaders are ignoring their own messages&lt;/a&gt;? &lt;/p&gt;&lt;figure name=&quot;b73a&quot; id=&quot;b73a&quot; class=&quot;graf graf--figure graf--layoutOutsetLeft graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;0*Tenhv87VN4s6KBRQ&quot; data-width=&quot;1014&quot; data-height=&quot;1462&quot; src=&quot;https://cdn-images-1.medium.com/max/600/0*Tenhv87VN4s6KBRQ&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;The original table, from Atman, C. J., Fischhoff, B., Bostrom, A., Morgan, M. G., Fischhoff, B. (2002). Risk Communication: A Mental Models Approach&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;81db&quot; id=&quot;81db&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;What if we zoom in a bit further from these macro issues, though, and look at some other contributing factors? &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;I think our risk communication shortcomings are certainly up there.&lt;/strong&gt; Broader public health issues like &lt;a href=&quot;https://www.npr.org/2020/11/26/939286976/ppe-shortages-persist-nearly-9-months-into-the-coronavirus-pandemic&quot; data-href=&quot;https://www.npr.org/2020/11/26/939286976/ppe-shortages-persist-nearly-9-months-into-the-coronavirus-pandemic&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;supply chain failures&lt;/a&gt; and &lt;a href=&quot;https://www.cnn.com/2020/11/30/health/us-coronavirus-monday/index.html&quot; data-href=&quot;https://www.cnn.com/2020/11/30/health/us-coronavirus-monday/index.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;hospital capacity&lt;/a&gt; rightfully remain in the headlines. &lt;/p&gt;&lt;p name=&quot;ac27&quot; id=&quot;ac27&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;But—and I believe equally importantly— discussion of risk communication has remained under the radar, generally limited to &lt;a href=&quot;https://www.cidrap.umn.edu/news-perspective/2020/08/commentary-public-healths-share-blame-us-covid-19-risk-communication&quot; data-href=&quot;https://www.cidrap.umn.edu/news-perspective/2020/08/commentary-public-healths-share-blame-us-covid-19-risk-communication&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;academic comment&lt;/a&gt;.&lt;/p&gt;&lt;p name=&quot;275c&quot; id=&quot;275c&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;What missteps did we make along the way?&lt;/strong&gt; Let’s revisit the risk communication guide I mentioned at the beginning. A table from the book, &lt;a href=&quot;https://onlinelibrary.wiley.com/doi/abs/10.1111/j.1539-6924.1995.tb00308.x&quot; data-href=&quot;https://onlinelibrary.wiley.com/doi/abs/10.1111/j.1539-6924.1995.tb00308.x&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;reproduced from an earlier 1995 article by Fischhoff&lt;/a&gt;, makes for a good place to start. It traces the evolution of a communication project over time. The examples in the table are framed around the acceptance of a risk, but the same principles work the other way around for our current pandemic moment. Let’s take a look at few of the “stages” he highlights in this process.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;&lt;section name=&quot;b270&quot; class=&quot;section section--body&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;0169&quot; id=&quot;0169&quot; class=&quot;graf graf--h3 graf--leading&quot;&gt;Stage 1&lt;/h3&gt;&lt;p name=&quot;9b96&quot; id=&quot;9b96&quot; class=&quot;graf graf--p graf--startsWithDoubleQuote graf-after--h3&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;“All we have to do is get the numbers right.”&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p name=&quot;c412&quot; id=&quot;c412&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;It’s February 2020. Those of us in the US are becoming more aware of the effects of the pandemic in China and parts of Europe, but the federal government in the US is downplaying the threat.&lt;/p&gt;&lt;p name=&quot;edf1&quot; id=&quot;edf1&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Similarly, the &lt;a href=&quot;https://www.npr.org/sections/goatsandsoda/2020/04/10/829890635/why-there-so-many-different-guidelines-for-face-masks-for-the-public&quot; data-href=&quot;https://www.npr.org/sections/goatsandsoda/2020/04/10/829890635/why-there-so-many-different-guidelines-for-face-masks-for-the-public&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;U.S. Surgeon General initially&lt;/a&gt; downplays the importance of masks at the end of February. Perhaps it was a misconception, or perhaps an effort to save supplies of critical PPE with a heavily burdened supply chain at the time. &lt;/p&gt;&lt;p name=&quot;8f85&quot; id=&quot;8f85&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;As the table states: &lt;em class=&quot;markup--em markup--p-em&quot;&gt;“If risks are well managed […] then no one may ever be interested in hearing about them.” &lt;/em&gt;With the benefit of hindsight, we know that this was wishful thinking and that critical time was lost. &lt;/p&gt;&lt;p name=&quot;761f&quot; id=&quot;761f&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;The table goes on: &lt;em class=&quot;markup--em markup--p-em&quot;&gt;“…if [the strategy] fails, then people may ask awkward questions about the long silence. Was something being hidden? Or did the experts just not care?” &lt;/em&gt;That’s, unfortunately, a bit more like it.&lt;/p&gt;&lt;h3 name=&quot;e3a2&quot; id=&quot;e3a2&quot; class=&quot;graf graf--h3 graf-after--p&quot;&gt;Stages 2 and 3&lt;/h3&gt;&lt;p name=&quot;a769&quot; id=&quot;a769&quot; class=&quot;graf graf--p graf--startsWithDoubleQuote graf-after--h3&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;“All we have to do is tell them the numbers” &lt;/em&gt;&lt;/strong&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;and &lt;/em&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;“All we have to do is explain what we mean by the numbers.”&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;&lt;figure name=&quot;57e3&quot; id=&quot;57e3&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*qTh6HTsXuAL3nDL4AcT7Hw.jpeg&quot; data-width=&quot;1394&quot; data-height=&quot;696&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*qTh6HTsXuAL3nDL4AcT7Hw.jpeg&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Governor Cuomo’s slide briefings were actually a pretty bright spot when it came to communicating risk. &lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;3ce5&quot; id=&quot;3ce5&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;It’s March, April, and May. The pandemic has hit the US. It’s in full swing as the first wave sweeps across various parts of the US—first Washington and New York, then a quick progression elsewhere. &lt;/p&gt;&lt;p name=&quot;df06&quot; id=&quot;df06&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Political leaders emphasize the importance of doing your part for your city or state. We’re inundated by numbers and curves. Case counts, positivity rates, death rates, and hospital capacity statistics all come up as justifications for how we need to collectively respond. They’re explained by governors, mayors, and the rare federal spokesperson (basically, Dr. Fauci). Often, these numbers aren’t even risk assessments, but are instead raw statistics. Yet:&lt;/p&gt;&lt;blockquote name=&quot;51f5&quot; id=&quot;51f5&quot; class=&quot;graf graf--blockquote graf--startsWithDoubleQuote graf-after--p&quot;&gt;“Numbers alone do not tell the entire story about risks. Often, people need to understand how a risky process works, in order to devise strategies for dealing with it or to feel competent to follow public debate.”&lt;/blockquote&gt;&lt;p name=&quot;bf5d&quot; id=&quot;bf5d&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;Unfortunately, many communication methods are stuck here years later. &lt;/p&gt;&amp;lt;/&lt;p name=&quot;244c&quot; id=&quot;244c&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;I’m no expert in the field and I don’t have any big ideas for those in our hospitals, governments, and newsrooms. However, I think we’d do well to consider our prior experience communicating about the pandemic—and, yes, our prior experience defining the entire field of risk communication.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Sat, 22 Jan 2022 00:00:00 -0600</pubDate>
        <link>http://nathanielfruchter.com/notes/2022/risk-communication.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2022/risk-communication.html</guid>
      </item>
    
      <item>
        <title>On Facebook&apos;s most recent privacy debacle</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;9b4e&quot; class=&quot;section section--body section--first section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;p name=&quot;a819&quot; id=&quot;a819&quot; class=&quot;graf graf--p graf--leading&quot;&gt;The bottom line here: Facebook did curtail access to profile information after 2014 (see the Cambridge Analytica scandal). &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;But&lt;/strong&gt; — and this is a very important qualifier — they did so for developers with access to the public API. The breaking news from the &lt;em class=&quot;markup--em markup--p-em&quot;&gt;New York Times &lt;/em&gt;is that &lt;a href=&quot;https://www.nytimes.com/2018/12/18/technology/facebook-privacy.html&quot; data-href=&quot;https://www.nytimes.com/2018/12/18/technology/facebook-privacy.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;“special partnerships” with other large tech companies were not subject to the same controls&lt;/a&gt;.&lt;/p&gt;&lt;h4 name=&quot;96cd&quot; id=&quot;96cd&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;What does this mean?&lt;/h4&gt;&lt;p name=&quot;7054&quot; id=&quot;7054&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Functionally, I think, we find ourselves in a similar situation to Cambridge Analytica — perhaps with better-intentioned actors on the other end. I’ll claim the real concern here is not that Facebook let this data go (it was bound to happen). &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Instead, it’s that the data is out there and &lt;em class=&quot;markup--em markup--p-em&quot;&gt;we’re not really sure how to track its travel&lt;/em&gt; after it leaves FB’s metaphorical gates.&lt;/strong&gt; We don’t know what exactly happened to the data once it arrived on the systems of Bing, Yahoo, Netflix, Spotify — and the 144 other companies that had partnerships.&lt;/p&gt;&lt;p name=&quot;8b0a&quot; id=&quot;8b0a&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Even if we put complete faith in all 150 companies and believe they never misused the data, we’ve seen that these savvy companies are not immune to security incidents or breaches. (On top of everything else, this is a pretty charitable interpretation of the problem; the &lt;em class=&quot;markup--em markup--p-em&quot;&gt;Times&lt;/em&gt; cites data sharing agreements with “automakers and media organizations”, not paragons of good cybersecurity.)&lt;/p&gt;&lt;p name=&quot;a842&quot; id=&quot;a842&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;The core of this issue? We have no idea how the data — perhaps used to train machine learning models or generate features that make their way to advertisers — will trickle out in various transformed and aggregate forms. The relative difficulty of finding out where valuable pieces of data have gone—likes, messages, public and private communication—makes it hard to quantify the potential harms of this policy.&lt;/p&gt;&lt;p name=&quot;fd77&quot; id=&quot;fd77&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;To be frank, I wouldn’t be surprised if the majority of data didn’t go anywhere: I’m sure most of the private messages that Spotify could theoretically access were never accessed and that much of the data they had for legitimate reasons has stayed on their servers. However, even if one subset of private data from an obscure automaker’s infotainment systems gets hacked or misused, there has been harm done. This is of the same fear that we had about CA: sure, they may have used it for unsavory political stuff, but we don’t know how they post-processed, combined, sold, or transformed our data afterwards. Did it get aggregated and further sold to advertisers? Perhaps peddlers of foreign influence? Or, more charitably, is it languishing unused on a server?&lt;/p&gt;&lt;h4 name=&quot;f905&quot; id=&quot;f905&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Facebook’s Response&lt;/h4&gt;&lt;p name=&quot;697b&quot; id=&quot;697b&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;There’s also the small matter of the &lt;a href=&quot;https://www.ftc.gov/news-events/press-releases/2011/11/facebook-settles-ftc-charges-it-deceived-consumers-failing-keep&quot; data-href=&quot;https://www.ftc.gov/news-events/press-releases/2011/11/facebook-settles-ftc-charges-it-deceived-consumers-failing-keep&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Federal Trade Commission’s 2011 consent decree&lt;/a&gt; which barred Facebook from sharing user data without “explicit permission.” Facebook’s current argument is that partners are extensions of the Facebook platform and therefore sharing wasn’t subject to terms of the decree. In a recent &lt;a href=&quot;https://newsroom.fb.com/news/2018/12/facebooks-partners/&quot; data-href=&quot;https://newsroom.fb.com/news/2018/12/facebooks-partners/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;blog post&lt;/a&gt; on the subject of partnerships, they state:&lt;/p&gt;&lt;blockquote name=&quot;98cd&quot; id=&quot;98cd&quot; class=&quot;graf graf--blockquote graf-after--p&quot;&gt;Our integration partners had to get authorization from people. You would have had to sign in with your Facebook account to use the integration offered by Apple, Amazon or another integration partner.&lt;/blockquote&gt;&lt;p name=&quot;609b&quot; id=&quot;609b&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;On the subject of access to Facebook messages, they also state:&lt;/p&gt;&lt;blockquote name=&quot;bba0&quot; id=&quot;bba0&quot; class=&quot;graf graf--blockquote graf-after--p&quot;&gt;[P]eople had to explicitly sign in to Facebook first to use a partner’s messaging feature.&lt;/blockquote&gt;&lt;p name=&quot;f2e0&quot; id=&quot;f2e0&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;They also discuss their &lt;em class=&quot;markup--em markup--p-em&quot;&gt;Instant Personalization&lt;/em&gt; feature which allowed select partners to reference part of your Facebook social graph in their own products, calling it an ability for you to &lt;em class=&quot;markup--em markup--p-em&quot;&gt;“see public information [your] friends shared” &lt;/em&gt;embedded in other services.&lt;/p&gt;&lt;p name=&quot;bd5c&quot; id=&quot;bd5c&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Across these contexts, I believe Facebook’s argument about the irrelevance of the consent decree is weak. While it’s true that users are taking a concrete action to link a service to Facebook when logging in with their credentials, I’m not convinced that this substitutes for affirmative consent. Users’ perceptions of their data flows does not always align with the realities of the underlying technical systems, and it’s not clear that users were made aware of the fact that data flowed through third parties—&lt;em class=&quot;markup--em markup--p-em&quot;&gt;even if the data was never stored&lt;/em&gt;. With the right line of argument, this could certainly be argued in court as a violation of the consent decree.&lt;/p&gt;&lt;h4 name=&quot;4f8a&quot; id=&quot;4f8a&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Trust and Consent&lt;/h4&gt;&lt;p name=&quot;67bf&quot; id=&quot;67bf&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;I also believe that this is an indication that we need to be mindful when we discuss consent and data. Consent for &lt;em class=&quot;markup--em markup--p-em&quot;&gt;handling&lt;/em&gt; of data is much different than consent for &lt;em class=&quot;markup--em markup--p-em&quot;&gt;collection &lt;/em&gt;of data. Platforms—and users—have been conflating the two for a while. An unrelated story from &lt;a href=&quot;https://www.buzzfeednews.com/article/charliewarzel/apps-are-revealing-your-private-information-to-facebook-and&quot; data-href=&quot;https://www.buzzfeednews.com/article/charliewarzel/apps-are-revealing-your-private-information-to-facebook-and&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;Buzzfeed&lt;/em&gt; on the sharing of Facebook advertising identifiers&lt;/a&gt; touches on this:&lt;/p&gt;&lt;blockquote name=&quot;93a8&quot; id=&quot;93a8&quot; class=&quot;graf graf--blockquote graf-after--p&quot;&gt;A Facebook representative clarified to BuzzFeed News that while it enables users to opt out of targeted ads from third parties, the controls apply to the usage of the data and not its collection.&lt;/blockquote&gt;&lt;p name=&quot;b52b&quot; id=&quot;b52b&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;Is this the right model to be using for consent? The European Union’s GDPR approximates this split by differentiating between &lt;a href=&quot;https://www.gdpreu.org/the-regulation/key-concepts/data-controllers-and-processors/&quot; data-href=&quot;https://www.gdpreu.org/the-regulation/key-concepts/data-controllers-and-processors/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;data &lt;em class=&quot;markup--em markup--p-em&quot;&gt;controllers&lt;/em&gt; and &lt;em class=&quot;markup--em markup--p-em&quot;&gt;processors&lt;/em&gt;&lt;/a&gt;, but we have no such definition here in the U.S. outside of certain specific sectors. I think there’s a lot of thinking and work to be done here, especially on the subject of these fine-grained consent questions.&lt;/p&gt;&lt;p name=&quot;0dcf&quot; id=&quot;0dcf&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;Finally, there’s the matter of trust. This is their 4th or 5th major breach of trust in less than two years. I’m sure FB will always have a lot of staying power due to platform effects and its insane critical mass, but I have to wonder what the tipping point is. Will there be calls for regulation? Personally, I’m in favor of forcing Facebook to bust open its walled garden and forcing it to interconnect with outside systems on kinder terms. At the same time, though, others are calling for it to be broken up antitrust style — and I think they may have a point too.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Wed, 19 Dec 2018 00:00:00 -0600</pubDate>
        <link>http://nathanielfruchter.com/notes/2018/facebook.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2018/facebook.html</guid>
      </item>
    
      <item>
        <title>Net neutrality, bots, and the FCC</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;c6ff&quot; class=&quot;section section--body section--first&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;0b60&quot; id=&quot;0b60&quot; class=&quot;graf graf--h3 graf--leading graf--title&quot;&gt;Net neutrality, bots, and the FCC: a retrospective&lt;/h3&gt;&lt;figure name=&quot;3ac4&quot; id=&quot;3ac4&quot; class=&quot;graf graf--figure graf-after--h3&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*XGREsmvc5e4rbP2elRHk2A.png&quot; data-width=&quot;1346&quot; data-height=&quot;718&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*XGREsmvc5e4rbP2elRHk2A.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Spoiler alert&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;f72d&quot; id=&quot;f72d&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;December 14th, 2017: The FCC voted. There are 23 million comments on the docket. How has our conversation about net neutrality shifted? What lessons does that hold for our future? Here are some collected thoughts on three things: how we’ve talked about net neutrality, how we’ve misunderstood “bots”, and how the comment process may need to evolve.&lt;/p&gt;&lt;p name=&quot;ae5b&quot; id=&quot;ae5b&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;(&lt;a href=&quot;https://medium.com/@nhf/catch-up-on-net-neutrality-in-30-seconds-f37c904a48b6&quot; data-href=&quot;https://medium.com/@nhf/catch-up-on-net-neutrality-in-30-seconds-f37c904a48b6&quot; class=&quot;markup--anchor markup--p-anchor&quot; target=&quot;_blank&quot;&gt;For those just tuning in, here’s a quick primer on what happened.&lt;/a&gt;)&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;&lt;section name=&quot;36d7&quot; class=&quot;section section--body&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;aca3&quot; id=&quot;aca3&quot; class=&quot;graf graf--h3 graf--leading&quot;&gt;Part 1: How We Talk to the FCC&lt;/h3&gt;&lt;h4 name=&quot;7a66&quot; id=&quot;7a66&quot; class=&quot;graf graf--h4 graf-after--h3&quot;&gt;1. What does net neutrality mean to us?&lt;/h4&gt;&lt;p name=&quot;567b&quot; id=&quot;567b&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;It goes without saying that the FCC’s actions have ignited a firestorm. Our discussion of net neutrality has far surpassed its original technical and legal context. Those talking heads on CNN weren’t arguing over the finer points of the &lt;a href=&quot;https://www.law.cornell.edu/uscode/text/47/chapter-5/subchapter-II&quot; data-href=&quot;https://www.law.cornell.edu/uscode/text/47/chapter-5/subchapter-II&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Communications Act of 1934&lt;/a&gt;.&lt;/p&gt;&lt;p name=&quot;33b7&quot; id=&quot;33b7&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Instead, net neutrality has become a byword which means many things to many different people. In no particular order, it has become a stand-in for:&lt;/p&gt;&lt;ul class=&quot;postList&quot;&gt;&lt;li name=&quot;df65&quot; id=&quot;df65&quot; class=&quot;graf graf--li graf-after--p&quot;&gt;our abstract idea of &lt;a href=&quot;https://cdt.org/press/the-fcc-moves-to-destroy-the-open-internet-by-overturning-net-neutrality-protections/&quot; data-href=&quot;https://cdt.org/press/the-fcc-moves-to-destroy-the-open-internet-by-overturning-net-neutrality-protections/&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;the “Open Internet”&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;ecc5&quot; id=&quot;ecc5&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;consumer &lt;a href=&quot;https://www.freepress.net/blog/2017/12/05/dont-believe-atts-net-neutrality-lies&quot; data-href=&quot;https://www.freepress.net/blog/2017/12/05/dont-believe-atts-net-neutrality-lies&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;dissatisfaction with telecom monopolies&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;6c09&quot; id=&quot;6c09&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;&lt;a href=&quot;https://www.theverge.com/2017/7/13/15949920/net-neutrality-killing-small-isps&quot; data-href=&quot;https://www.theverge.com/2017/7/13/15949920/net-neutrality-killing-small-isps&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;job creation and infrastructure investment&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;4ddd&quot; id=&quot;4ddd&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;support for &lt;a href=&quot;https://www.fcc.gov/ecfs/filing/107131278701585&quot; data-href=&quot;https://www.fcc.gov/ecfs/filing/107131278701585&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;entrepreneurship and American competitiveness&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;b889&quot; id=&quot;b889&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;influence of &lt;a href=&quot;https://www.theverge.com/2017/3/29/15100620/congress-fcc-isp-web-browsing-privacy-fire-sale&quot; data-href=&quot;https://www.theverge.com/2017/3/29/15100620/congress-fcc-isp-web-browsing-privacy-fire-sale&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;money in politics&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;a01b&quot; id=&quot;a01b&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;related battles over &lt;a href=&quot;https://protonmail.com/blog/net-neutrality-and-online-freedom/&quot; data-href=&quot;https://protonmail.com/blog/net-neutrality-and-online-freedom/&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;privacy, surveillance, and online freedom&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;c927&quot; id=&quot;c927&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;&lt;a href=&quot;https://www.wired.com/story/bots-broke-fcc-public-comment-system/&quot; data-href=&quot;https://www.wired.com/story/bots-broke-fcc-public-comment-system/&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;fake news and “bots”&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;e0ee&quot; id=&quot;e0ee&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;worry about &lt;a href=&quot;https://www.bloomberg.com/news/articles/2017-11-29/fake-views-444-938-russian-emails-among-suspect-comments-to-fcc&quot; data-href=&quot;https://www.bloomberg.com/news/articles/2017-11-29/fake-views-444-938-russian-emails-among-suspect-comments-to-fcc&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Russian interference in United States affairs&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;2c47&quot; id=&quot;2c47&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;pushes for &lt;a href=&quot;https://arstechnica.com/tech-policy/2017/07/senator-blasts-fcc-for-refusing-to-provide-ddos-analysis/&quot; data-href=&quot;https://arstechnica.com/tech-policy/2017/07/senator-blasts-fcc-for-refusing-to-provide-ddos-analysis/&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;government transparency&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;1fae&quot; id=&quot;1fae&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;&lt;a href=&quot;https://qz.com/1067007/people-are-uploading-memes-and-fake-documents-to-the-fcc-website-using-api-keys-the-agency-gave-out/&quot; data-href=&quot;https://qz.com/1067007/people-are-uploading-memes-and-fake-documents-to-the-fcc-website-using-api-keys-the-agency-gave-out/&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;how the government and public interact&lt;/a&gt;&lt;/li&gt;&lt;li name=&quot;09e8&quot; id=&quot;09e8&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;not least of all, &lt;a href=&quot;http://www.slate.com/blogs/future_tense/2017/11/27/racist_threatening_attacks_on_fcc_chair_ajit_pai_won_t_save_net_neutrality.html&quot; data-href=&quot;http://www.slate.com/blogs/future_tense/2017/11/27/racist_threatening_attacks_on_fcc_chair_ajit_pai_won_t_save_net_neutrality.html&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;an ugly proxy battle with a Trump Administration appointee&lt;/a&gt; (specifically, Ajit Pai)&lt;/li&gt;&lt;/ul&gt;&lt;p name=&quot;3bfd&quot; id=&quot;3bfd&quot; class=&quot;graf graf--p graf-after--li&quot;&gt;The list goes on. We have to recognize that there are dozens of separate discussions occurring. First, we have the technical and legal issues surrounding Title II reclassification. Second (through tenth, or twentieth) we have these adjacent conversations about policy, economics, and politics. At the bottom of the stack, there remains the larger issue of how we engage with our policy process — and how the Internet is shaping that.&lt;/p&gt;&lt;p name=&quot;7f8d&quot; id=&quot;7f8d&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;I believe that last one is a question that we’ll be returning to again and again.&lt;/p&gt;&lt;h4 name=&quot;4b8d&quot; id=&quot;4b8d&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;2. How should we view the FCC’s comment process?&lt;/h4&gt;&lt;p name=&quot;f803&quot; id=&quot;f803&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;According Jeff Kao, &lt;a href=&quot;https://hackernoon.com/more-than-a-million-pro-repeal-net-neutrality-comments-were-likely-faked-e9f0e3ed36a6&quot; data-href=&quot;https://hackernoon.com/more-than-a-million-pro-repeal-net-neutrality-comments-were-likely-faked-e9f0e3ed36a6&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;“More than a Million Pro-Repeal Net Neutrality Comments were Likely Faked.”&lt;/a&gt; Or, from the &lt;em class=&quot;markup--em markup--p-em&quot;&gt;Washington Post:&lt;/em&gt; &lt;a href=&quot;https://www.washingtonpost.com/news/the-switch/wp/2017/11/24/fcc-net-neutrality-process-corrupted-by-fake-comments-and-vanishing-consumer-complaints-officials-say/&quot; data-href=&quot;https://www.washingtonpost.com/news/the-switch/wp/2017/11/24/fcc-net-neutrality-process-corrupted-by-fake-comments-and-vanishing-consumer-complaints-officials-say/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;“FCC net neutrality process ‘corrupted’ by fake comments and vanishing consumer complaints, officials say.”&lt;/a&gt;&lt;/p&gt;&lt;p name=&quot;05f6&quot; id=&quot;05f6&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Is this a problem? Let’s examine why someone would think it is — or isn’t.&lt;/p&gt;&lt;h4 name=&quot;a164&quot; id=&quot;a164&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Viewpoint A: Public comment is working fine.&lt;/h4&gt;&lt;blockquote name=&quot;10de&quot; id=&quot;10de&quot; class=&quot;graf graf--blockquote graf--startsWithDoubleQuote graf-after--h4&quot;&gt;“As I said previously, the raw number is not as important as the substantive comments that are in the record,” &lt;a href=&quot;https://arstechnica.com/tech-policy/2017/07/ajit-pai-not-concerned-about-number-of-pro-net-neutrality-comments/&quot; data-href=&quot;https://arstechnica.com/tech-policy/2017/07/ajit-pai-not-concerned-about-number-of-pro-net-neutrality-comments/&quot; class=&quot;markup--anchor markup--blockquote-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;&lt;strong class=&quot;markup--strong markup--blockquote-strong&quot;&gt;Pai said&lt;/strong&gt;&lt;/a&gt;. “We want to weigh all comments and make sure that we take a full view of the record, and again make the appropriate judgment based on those facts and the law as it applies.”&lt;/blockquote&gt;&lt;p name=&quot;25d1&quot; id=&quot;25d1&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;Why does the public comment system exist in the first place? The FCC is an expert agency and uses the public comment process to solicit alternative viewpoints and analyses it may not know about or have considered. Opportunity to comment during a Federal agency’s &lt;a href=&quot;https://www.thebalance.com/steps-in-the-federal-rulemaking-process-1669507&quot; data-href=&quot;https://www.thebalance.com/steps-in-the-federal-rulemaking-process-1669507&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;rulemaking process&lt;/em&gt;&lt;/a&gt; is a broad requirement of the 1946 &lt;a href=&quot;https://www.federalregister.gov/uploads/2011/01/the_rulemaking_process.pdf&quot; data-href=&quot;https://www.federalregister.gov/uploads/2011/01/the_rulemaking_process.pdf&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Administrative Procedure Act&lt;/a&gt;.&lt;/p&gt;&lt;p name=&quot;feca&quot; id=&quot;feca&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;The FCC makes a lot of rules, so most dockets are about relatively niche telecom issues. For example, take 17–239 &lt;a href=&quot;https://www.fcc.gov/ecfs/search/filings?proceedings_name=17-239&amp;amp;sort=date_disseminated,DESC&quot; data-href=&quot;https://www.fcc.gov/ecfs/search/filings?proceedings_name=17-239&amp;amp;sort=date_disseminated,DESC&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;“&lt;em class=&quot;markup--em markup--p-em&quot;&gt;Inquiry Concerning 911 Access, Routing, and Location in Enterprise Communications Systems”&lt;/em&gt;&lt;/a&gt;: there are under 30 filed comments, all of which are from industry, government, or academia. This is the use case that the FCC built its comment process for. This is also the reason why Chairman Pai was able to factually state that the “raw number” of comments is not important: the FCC isn’t under any obligation to equally weigh the comments it receives.&lt;/p&gt;&lt;p name=&quot;420b&quot; id=&quot;420b&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;In other words, the FCC’s comment system was not built to be a public opinion poll. It was built to solicit very specific types of feedback and analysis. It seems to be doing a fine job of that.&lt;/p&gt;&lt;h4 name=&quot;e936&quot; id=&quot;e936&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Viewpoint B: But it is a problem!&lt;/h4&gt;&lt;blockquote name=&quot;6484&quot; id=&quot;6484&quot; class=&quot;graf graf--blockquote graf--startsWithDoubleQuote graf-after--h4&quot;&gt;“Before my fellow FCC members vote to dismantle net neutrality, they need to get out from behind their desks and computers and speak to the public directly. The FCC needs to hold hearings around the country to get a better sense of how the public feels about the proposal.” &lt;a href=&quot;http://beta.latimes.com/opinion/op-ed/la-oe-rosenworcel-fcc-net-neutrality-repeal-20171122-story.html&quot; data-href=&quot;http://beta.latimes.com/opinion/op-ed/la-oe-rosenworcel-fcc-net-neutrality-repeal-20171122-story.html&quot; class=&quot;markup--anchor markup--blockquote-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;— FCC Commissioner Rosenworcel&lt;/a&gt;&lt;/blockquote&gt;&lt;p name=&quot;17f7&quot; id=&quot;17f7&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;While the comment process may work in a narrow scope, we’ve seen a lot of issues manifest themselves on the net neutrality docket. We need to think about how the comment system can evolve to serve the public in new ways.&lt;/p&gt;&lt;p name=&quot;00af&quot; id=&quot;00af&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;First, we have a gap in perception between &lt;em class=&quot;markup--em markup--p-em&quot;&gt;how the FCC&lt;/em&gt; thinks the comment system should work and &lt;em class=&quot;markup--em markup--p-em&quot;&gt;how the public&lt;/em&gt; thinks the comment system actually works. The FCC thinks that the status quo “expert alternative viewpoint” model is sustainable. However, the public thinks the process should be more like an opinion poll and reflect popular sentiment. Therefore, they feel like they’re being denied a voice in the process and that the FCC is turning a blind eye.&lt;/p&gt;&lt;p name=&quot;02cf&quot; id=&quot;02cf&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Second, we need to ensure that the FCC is not ignoring legitimate requests to correct the record or obtain information. The &lt;a href=&quot;http://thehill.com/policy/technology/363988-fcc-rejects-ny-ags-probe-into-net-neutrality-comments&quot; data-href=&quot;http://thehill.com/policy/technology/363988-fcc-rejects-ny-ags-probe-into-net-neutrality-comments&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Commission’s reticence in dealing with the New York Attorney General’s&lt;/a&gt; fraud investigation and &lt;a href=&quot;https://pioneersfornetneutrality.tumblr.com/&quot; data-href=&quot;https://pioneersfornetneutrality.tumblr.com/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;alleged reliance on technical inaccuracies in its regulatory argument&lt;/a&gt; are worrying. A flawed rulemaking process leads to flawed rules: this is something I hope we can agree on, regardless of ideology.&lt;/p&gt;&lt;p name=&quot;8056&quot; id=&quot;8056&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Finally — of course — we need to make sure that individuals’ identities aren’t being borrowed (to put it diplomatically) and attached to statements that aren’t their own. The fact that individuals or groups have done this throughout the comment process indicates they think sufficient commenting firepower will be sufficient to sway the public or media discourse about the subject. Whether or not that effect actually holds is up for debate. However, it does indicate we need to examine the incentives (and legality) around this kind of behavior.&lt;/p&gt;&lt;h4 name=&quot;26d7&quot; id=&quot;26d7&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;3. So, has the comment process been “corrupted”?&lt;/h4&gt;&lt;p name=&quot;9a10&quot; id=&quot;9a10&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;The argument for “no”: &lt;/strong&gt;The core mechanics of the FCC’s comment system have not been broken. If we agree that the FCC’s existing processes are sufficient for the &lt;em class=&quot;markup--em markup--p-em&quot;&gt;specific purpose of providing alternative viewpoints into the rulemaking process&lt;/em&gt;, there has been no corruption of that process.&lt;/p&gt;&lt;p name=&quot;ffb0&quot; id=&quot;ffb0&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;The argument for “yes”&lt;/strong&gt;: It’s not corrupted, but it’s certainly fraying at the edges. Even if the process is working for the vast majority of issues, that’s not sufficient. We have a disconnect between how the public and FCC view the process. We also have bad incentives at play: &lt;a href=&quot;https://www.theverge.com/2017/12/13/16773908/new-york-attorney-general-eric-schneiderman-fake-comments&quot; data-href=&quot;https://www.theverge.com/2017/12/13/16773908/new-york-attorney-general-eric-schneiderman-fake-comments&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;It’s hard to claim that a process that allows for criminal impersonation is totally sound.&lt;/a&gt; Finally, we have institutional issues at play with the FCC if it does turn out that those &lt;a href=&quot;https://pioneersfornetneutrality.tumblr.com/&quot; data-href=&quot;https://pioneersfornetneutrality.tumblr.com/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;technical inaccuracies&lt;/a&gt; are core to the logic of the current rule-making.&lt;/p&gt;&lt;p name=&quot;7e9e&quot; id=&quot;7e9e&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;As issues of telecom and Internet policy loom larger in the public consciousness — and as they unavoidably become politicized — we need to find better outlets for engagement and opinion to filter into the FCC’s policy processes.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;&lt;section name=&quot;72b0&quot; class=&quot;section section--body&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;3930&quot; id=&quot;3930&quot; class=&quot;graf graf--h3 graf--leading&quot;&gt;Part 2: Bots — A Quick Aside&lt;/h3&gt;&lt;p name=&quot;ba01&quot; id=&quot;ba01&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;The &lt;a href=&quot;https://www.wired.com/story/bots-broke-fcc-public-comment-system/&quot; data-href=&quot;https://www.wired.com/story/bots-broke-fcc-public-comment-system/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;use of bots during the comment period&lt;/a&gt; has gotten a lot of play in the media. Are bots bad? And how do they affect how we think about the future of public comment?&lt;/p&gt;&lt;h4 name=&quot;db9c&quot; id=&quot;db9c&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;1. What is a bot?&lt;/h4&gt;&lt;p name=&quot;c17c&quot; id=&quot;c17c&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;First, though, we need to clarify what exactly a “bot” is in this case and why it’s different from other bots you might be familiar with. Here, I’m going to define a bot as a &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;“program designed to automatically post comments in bulk to the FCC’s systems.” &lt;/strong&gt;Note there is no value judgment attached to this definition: it’s purely technical. Why?&lt;/p&gt;&lt;p name=&quot;a05d&quot; id=&quot;a05d&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Generally when we talk about bots, we think about automated actors playing in a space that was created for humans to interact in. Think about bots in online gaming or “fake news” bots posting on Facebook. In both cases, there’s the assumption that the &lt;em class=&quot;markup--em markup--p-em&quot;&gt;(gamer / poster) &lt;/em&gt;is a human and that the person using the bot will gain an unwanted advantage in &lt;em class=&quot;markup--em markup--p-em&quot;&gt;(winning / spreading information).&lt;/em&gt; Here, we agree bots are bad because you’re &lt;em class=&quot;markup--em markup--p-em&quot;&gt;playing a human system with a computer that presents itself like other humans.&lt;/em&gt;&lt;/p&gt;&lt;p name=&quot;7b78&quot; id=&quot;7b78&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;This is not the case with the FCC’s Electronic Comment Filing System (&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;ECFS&lt;/strong&gt;). The ECFS was designed from the outset with an API — an interface that lets programs automatically interface with the ECFS. &lt;a href=&quot;https://www.fcc.gov/ecfs/public-api-docs.html#&quot; data-href=&quot;https://www.fcc.gov/ecfs/public-api-docs.html#&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;In fact, the FCC conveniently provides documentation for developers to… wait for it… automatically file comments in bulk.&lt;/a&gt;&lt;/p&gt;&lt;h4 name=&quot;b5fd&quot; id=&quot;b5fd&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;2. Are bots bad?&lt;/h4&gt;&lt;figure name=&quot;2c63&quot; id=&quot;2c63&quot; class=&quot;graf graf--figure graf--iframe graf-after--h4&quot;&gt;&lt;script src=&quot;https://gist.github.com/nhfruchter/ac4284e3dfd96e5e7f3ac17897910f34.js&quot;&gt;&lt;/script&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Technically, this is a bot. Run it in a terminal and you can file a comment.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;e896&quot; id=&quot;e896&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;The FCC’s API has very few limitations and a very light amount of internal rate limiting. Because of this, we’re working in a different space than Facebook or Counter-Strike where the platform was designed for humans first. It’s often said that a system’s design shapes the behavior of its users. In this case, FCC’s decision to tilt towards frictionless comment has enabled a whole host of unforeseen, automated uses of the system.&lt;/p&gt;&lt;h4 name=&quot;4ac5&quot; id=&quot;4ac5&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Not all bots are bad.&lt;/h4&gt;&lt;p name=&quot;cbae&quot; id=&quot;cbae&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;It’s no surprise that there are bots filing comments because that’s what the FCC wanted. In fact, it’s hard to argue that the open design of the ECFS &lt;em class=&quot;markup--em markup--p-em&quot;&gt;hasn’t &lt;/em&gt;been good for advocates on both sides of the debate. &lt;a href=&quot;https://www.battleforthenet.com/july12/&quot; data-href=&quot;https://www.battleforthenet.com/july12/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Interest groups have created numerous websites that automatically file comments&lt;/a&gt; with the FCC creating an unprecedented level of engagement. You wouldn’t be seeing the explosion of “make your voice heard!” campaigns and sites without the underlying ECFS infrastructure.&lt;/p&gt;&lt;p name=&quot;1e4b&quot; id=&quot;1e4b&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Of course, the ECFS’ open design has also allowed researchers and other interested parties to download, analyze, and understand the comment process at a very deep level. This is a good thing.&lt;/p&gt;&lt;h4 name=&quot;eef3&quot; id=&quot;eef3&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;…but they can be, depending on intent.&lt;/h4&gt;&lt;p name=&quot;2119&quot; id=&quot;2119&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Remember the mention of the &lt;a href=&quot;http://thehill.com/policy/technology/363988-fcc-rejects-ny-ags-probe-into-net-neutrality-comments&quot; data-href=&quot;http://thehill.com/policy/technology/363988-fcc-rejects-ny-ags-probe-into-net-neutrality-comments&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;New York Attorney General’s Office&lt;/a&gt; and their investigation into fake comments? That came about because several researchers discovered a disturbing pattern: many individuals’ names and identities were being &lt;a href=&quot;http://money.cnn.com/2017/12/04/technology/net-neutrality-fake-comments-eric-schneiderman/index.html&quot; data-href=&quot;http://money.cnn.com/2017/12/04/technology/net-neutrality-fake-comments-eric-schneiderman/index.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;attached to comments that they did not make&lt;/a&gt;. This is undeniably a Bad Thing. Individuals’ names should not be on the public record attached to opinions that they did not state.&lt;/p&gt;&lt;p name=&quot;3287&quot; id=&quot;3287&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;It’s important to remember: &lt;em class=&quot;markup--em markup--p-em&quot;&gt;there is no technical difference between a “good bot” and a “bad bot” here. &lt;/em&gt;The same code that a developer uses to automatically file comments from an EFF or AT&amp;amp;T campaign could also be used to file fake comments with fake identities attached. It’s just a matter of switching out the database or spreadsheet.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;&lt;section name=&quot;3274&quot; class=&quot;section section--body section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;abff&quot; id=&quot;abff&quot; class=&quot;graf graf--h3 graf--leading&quot;&gt;Part 3: What’s Next?&lt;/h3&gt;&lt;p name=&quot;066d&quot; id=&quot;066d&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;The frictionless comment infrastructure that the FCC built has enabled bad actors to stuff that infrastructure with fake identities and &lt;a href=&quot;https://qz.com/1067007/people-are-uploading-memes-and-fake-documents-to-the-fcc-website-using-api-keys-the-agency-gave-out/&quot; data-href=&quot;https://qz.com/1067007/people-are-uploading-memes-and-fake-documents-to-the-fcc-website-using-api-keys-the-agency-gave-out/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;fake documents&lt;/a&gt;. That’s not a sustainable path for public comment; I don’t believe so, the New York Attorney General doesn’t think so, and &lt;a href=&quot;https://www.hassan.senate.gov/imo/media/doc/171204.Pai.Ltr.NN.Bots.pdf&quot; data-href=&quot;https://www.hassan.senate.gov/imo/media/doc/171204.Pai.Ltr.NN.Bots.pdf&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;neither do dozens of Senators&lt;/a&gt;. At the same time, we don’t want to throw away the civic benefits of a platform that allows for open engagement.&lt;/p&gt;&lt;p name=&quot;3d59&quot; id=&quot;3d59&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;We need to think about a core question: How do we disincentivize these bad-faith acts on the comment system while still maintaining an open-enough infrastructure to enable the good?&lt;/strong&gt;&lt;/p&gt;&lt;figure name=&quot;4cdf&quot; id=&quot;4cdf&quot; class=&quot;graf graf--figure graf--layoutOutsetLeft graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;0*E4RN4lmCg-yMAgF8.&quot; data-width=&quot;800&quot; data-height=&quot;687&quot; src=&quot;https://cdn-images-1.medium.com/max/600/0*E4RN4lmCg-yMAgF8.&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;&lt;strong class=&quot;markup--strong markup--figure-strong&quot;&gt;Good bot, bad bot?&lt;/strong&gt; There were 7.5 million identical comments stating “I am in favor of strong net neutrality under Title II of the Telecommunications Act.” Those under the True column used a throwaway email domain. &lt;em class=&quot;markup--em markup--figure-em&quot;&gt;(log scale)&lt;/em&gt;&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;9adf&quot; id=&quot;9adf&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;Striking the right incentive balance is a design and policy question that the FCC — and likeminded agencies — need to strongly consider as they create systems for public engagement. Should known bad comments be discarded, de-ranked, or ignored? Should there be a burden of proof for claimed identities attached to comments? How about not-good-but-not-bad grey areas, like the 7.5 million identical comments that used throwaway emails?&lt;/p&gt;&lt;p name=&quot;8634&quot; id=&quot;8634&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;We may want to augment the existing comment process by equipping the FCC with the tools and expertise it needs to characterize the massive amount of comments it has received. This works towards the current “deluge of data” problem and embeds extra, necessary capabilities within the FCC’s institutional structure. It would also equip the FCC with the tools it needs to begin addressing the issue of stolen identities mentioned above.&lt;/p&gt;&lt;p name=&quot;cd6b&quot; id=&quot;cd6b&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;On the other hand, augmentation presents a short-term solution to a long-term problem: we should be thinking more holistically about interaction with agencies like the FCC. Expert commentary and analysis is invaluable during the rulemaking process, we should make the effort to understand how the public can and should provide input into the process. Whether this is through existing mechanisms like public hearings and listening tours or through a more elaborate process, tweaks to the process deserve some thought.&lt;/p&gt;&lt;figure name=&quot;6d99&quot; id=&quot;6d99&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*xJ7enMA0M_K-D8JAIH4XKQ.png&quot; data-width=&quot;1324&quot; data-height=&quot;766&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*xJ7enMA0M_K-D8JAIH4XKQ.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;This doesn’t sound familiar at all.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;affe&quot; id=&quot;affe&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;We also need to think about what lessons we might draw from the net neutrality comment process. A recent &lt;a href=&quot;https://www.wsj.com/articles/many-comments-critical-of-fiduciary-rule-are-fake-1514370601&quot; data-href=&quot;https://www.wsj.com/articles/many-comments-critical-of-fiduciary-rule-are-fake-1514370601&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;Wall Street Journal&lt;/em&gt; investigation&lt;/a&gt; found a large number of comments on a Department of Labor rulemaking were attributed to individuals whose identities were “borrowed” for the comment. These Labor proceedings aren’t on the scale of the net neutrality ones and contain thousands, instead of millions, of comments. However, the article lets us revisit the idea of incentives and system design. Someone was sufficiently motivated to file fake comments and the frictionless nature of the system’s design allowed them to with a minimum amount of fuss.&lt;/p&gt;&lt;p name=&quot;3543&quot; id=&quot;3543&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;What about the comment system’s technical design allowed this to happen? What incentives were at play? Why did the commenter think that “stuffing the ballot box” with comments would help their position, either in the regulatory world or in the broader public discourse? As with the ECFS, these questions should be thought and investigated.&lt;/p&gt;&lt;p name=&quot;c717&quot; id=&quot;c717&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;To wrap up, though: whatever the future of public comment holds, all of this drama surrounding the net neutrality comment process is quite telling. Whether it’s the FCC, Department of Labor, or something else, we’re not going to be going back to a world where these niche policy debates will be conducted on purely technical or legal terms. We — both as individuals and as our government — need to be prepared for that new reality.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Tue, 02 Jan 2018 00:00:00 -0600</pubDate>
        <link>http://nathanielfruchter.com/notes/2018/net-neutrality-retrospective.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2018/net-neutrality-retrospective.html</guid>
      </item>
    
      <item>
        <title>The FCC is still getting a lot of automated net neutrality comments</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;07fd&quot; class=&quot;section section--body section--first section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;5562&quot; id=&quot;5562&quot; class=&quot;graf graf--h3 graf--leading graf--title&quot;&gt;The FCC is still getting a lot of automated net neutrality comments&lt;/h3&gt;&lt;blockquote name=&quot;810f&quot; id=&quot;810f&quot; class=&quot;graf graf--blockquote graf-after--h3&quot;&gt;Part 1 is here: &lt;a href=&quot;https://medium.com/@nhf/whats-up-with-all-of-those-identical-comments-on-the-fcc-net-neutrality-docket-105835f59c3e&quot; data-href=&quot;https://medium.com/@nhf/whats-up-with-all-of-those-identical-comments-on-the-fcc-net-neutrality-docket-105835f59c3e&quot; class=&quot;markup--anchor markup--blockquote-anchor&quot; rel=&quot;nofollow&quot; target=&quot;_blank&quot;&gt;https://medium.com/@nhf/whats-up-with-all-of-those-identical-comments-on-the-fcc-net-neutrality-docket-105835f59c3e&lt;/a&gt;&lt;/blockquote&gt;&lt;p name=&quot;7f77&quot; id=&quot;7f77&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;A quick update: &lt;a href=&quot;https://github.com/nhfruchter/fcc-spam-comments-17108&quot; data-href=&quot;https://github.com/nhfruchter/fcc-spam-comments-17108&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;I have pulled down more data, including &lt;em class=&quot;markup--em markup--p-em&quot;&gt;all&lt;/em&gt; comments as of 6PM EDT on May 15th.&lt;/a&gt; If you’re feeling adventurous, data about real-vs-automated comparisons are welcome!&lt;/p&gt;&lt;p name=&quot;0080&quot; id=&quot;0080&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;We can see that the FCC is still getting hit by the same automated comments &lt;em class=&quot;markup--em markup--p-em&quot;&gt;(“…unprecedented regulatory power the Obama Administration…”).&lt;/em&gt;&lt;/p&gt;&lt;p name=&quot;dfd7&quot; id=&quot;dfd7&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;There are now roughly 3.5 times more, about&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt; 440,000 / 1.48 million total&lt;/strong&gt;, as compared to 128,000 on May 11th.&lt;/p&gt;&lt;p name=&quot;77dd&quot; id=&quot;77dd&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Here is an updated version of my heatmap. Compared to May 11th (the last time I gathered data), we can see not much as changed… except there isn’t a large hole around Maryland any more.&lt;/p&gt;&lt;figure name=&quot;3523&quot; id=&quot;3523&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*JD0QpKms8cJF58KGH9uR0Q.png&quot; data-width=&quot;2050&quot; data-height=&quot;1536&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*JD0QpKms8cJF58KGH9uR0Q.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Obviously, the magnitude of comments that aren’t automated is still larger, hence the denser heatmap. (Bottom: identical anti net-neutrality comments; top: all others)&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;2907&quot; id=&quot;2907&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;The batch posting of comments is also more clear now.&lt;/p&gt;&lt;figure name=&quot;b325&quot; id=&quot;b325&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*R-5ub63UEjHQvvrPRO2Txg.png&quot; data-width=&quot;3195&quot; data-height=&quot;1840&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*R-5ub63UEjHQvvrPRO2Txg.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Top: automated comments. Bottom: other comments.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;f75b&quot; id=&quot;f75b&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;This unconventional scatterplot shows that automated comments were posted in large batches over time. Other comments are distributed more evenly (with the exception of site outages).&lt;/p&gt;&lt;p name=&quot;a134&quot; id=&quot;a134&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Still, crucial questions remain:&lt;/p&gt;&lt;p name=&quot;8ec4&quot; id=&quot;8ec4&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;1. Who did the filings and why?&lt;/p&gt;&lt;p name=&quot;a5db&quot; id=&quot;a5db&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;2. Where did they acquire the identities used?&lt;/p&gt;&lt;p name=&quot;4e38&quot; id=&quot;4e38&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;3. Did people consent to the use of their identity?&lt;/p&gt;&lt;p name=&quot;fa31&quot; id=&quot;fa31&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;a. Was use of the identities proper or legal?&lt;/p&gt;&lt;p name=&quot;98c4&quot; id=&quot;98c4&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;4. Did the FCC foresee abuse of their comment system?&lt;/p&gt;&lt;p name=&quot;d2f3&quot; id=&quot;d2f3&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;5. Will the FCC handle the impacts of comment system abuse on their decision making process?&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Tue, 16 May 2017 00:00:00 -0500</pubDate>
        <link>http://nathanielfruchter.com/notes/2017/public-comment-update.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2017/public-comment-update.html</guid>
      </item>
    
      <item>
        <title>What’s up with all of those identical comments on the FCC net neutrality docket?</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;edc8&quot; class=&quot;section section--body section--first&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;88de&quot; id=&quot;88de&quot; class=&quot;graf graf--h3 graf--leading graf--title&quot;&gt;What’s up with all of those identical comments on the FCC net neutrality docket?&lt;/h3&gt;&lt;p name=&quot;cea7&quot; id=&quot;cea7&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;&lt;a href=&quot;https://github.com/nhfruchter/fcc-spam-comments-17108&quot; data-href=&quot;https://github.com/nhfruchter/fcc-spam-comments-17108&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;I don’t want to bury the good stuff, so click here for all 128,946 identical comments&lt;/em&gt;&lt;/a&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt; in a GitHub repository.&lt;/em&gt;&lt;/p&gt;&lt;p name=&quot;07fa&quot; id=&quot;07fa&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;[5/16] I guess this is a series now. See part 2 for more data: &lt;/em&gt;&lt;a href=&quot;https://medium.com/@nhf/the-fcc-is-still-getting-a-lot-of-automated-net-neutrality-comments-c7dff56d2563&quot; data-href=&quot;https://medium.com/@nhf/the-fcc-is-still-getting-a-lot-of-automated-net-neutrality-comments-c7dff56d2563&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;nofollow&quot; target=&quot;_blank&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;https://medium.com/@nhf/the-fcc-is-still-getting-a-lot-of-automated-net-neutrality-comments-c7dff56d2563&lt;/em&gt;&lt;/a&gt;&lt;/p&gt;&lt;p name=&quot;0e24&quot; id=&quot;0e24&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;——————&lt;/p&gt;&lt;p name=&quot;26fb&quot; id=&quot;26fb&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;a href=&quot;https://arstechnica.com/tech-policy/2017/05/net-neutrality-comments-are-being-spammed-with-anti-obama-boilerplate/&quot; data-href=&quot;https://arstechnica.com/tech-policy/2017/05/net-neutrality-comments-are-being-spammed-with-anti-obama-boilerplate/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Ars Technica says&lt;/a&gt;:&lt;/p&gt;&lt;blockquote name=&quot;e2bd&quot; id=&quot;e2bd&quot; class=&quot;graf graf--blockquote graf-after--p&quot;&gt;The FCC this week has received hundreds of thousands of new comments on its proposal to dismantle net neutrality rules, and more than 128,000 of them are identical comments calling for the reversal of the Obama administration’s “power grab.” It seems likely that the influx of anti-net neutrality identical comments is coming from a bot, but the FCC hasn’t addressed the matter publicly yet.&lt;/blockquote&gt;&lt;p name=&quot;6f3e&quot; id=&quot;6f3e&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;The FCC’s electronic comment filing system (ECFS) has been going up and down like a rollercoaster ever since John Oliver encouraged viewers to file comments in support of net neutrality. However, if it is up, you can verify this statement for yourself:&lt;/p&gt;&lt;figure name=&quot;9d38&quot; id=&quot;9d38&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*wsrzRcFaJEXKh81xndrDLw.png&quot; data-width=&quot;2216&quot; data-height=&quot;1792&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*wsrzRcFaJEXKh81xndrDLw.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Yes, those are all the same.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;7d89&quot; id=&quot;7d89&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;The words themselves &lt;a href=&quot;http://gizmodo.com/can-john-oliver-s-pro-net-neutrality-commenters-compete-1795095982&quot; data-href=&quot;http://gizmodo.com/can-john-oliver-s-pro-net-neutrality-commenters-compete-1795095982&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;may have come from a conservative think tank&lt;/a&gt;, but the group denies filing comments under the names of others. At this point, I was itching to find out more about this. Where did all the fake identities come from? Some of them have email addresses; all of them have postal addresses. Was the phrasing identical in all of the docket filings? Could there be another explanation?&lt;/p&gt;&lt;p name=&quot;164c&quot; id=&quot;164c&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;Luckily, &lt;a href=&quot;https://www.fcc.gov/ecfs/public-api-docs.html&quot; data-href=&quot;https://www.fcc.gov/ecfs/public-api-docs.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;the ECFS has an API&lt;/a&gt; (thanks, Obama!) that I could use to search the docket and grab all filings that matched the boilerplate. &lt;a href=&quot;https://github.com/nhfruchter/fcc-spam-comments-17108/blob/master/process.py&quot; data-href=&quot;https://github.com/nhfruchter/fcc-spam-comments-17108/blob/master/process.py&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Here’s the code for doing it.&lt;/a&gt; (You’ll need your own API key, which is free.)&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;&lt;section name=&quot;4938&quot; class=&quot;section section--body section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;1b41&quot; id=&quot;1b41&quot; class=&quot;graf graf--h3 graf--leading&quot;&gt;Let’s answer some questions&lt;/h3&gt;&lt;h4 name=&quot;13fd&quot; id=&quot;13fd&quot; class=&quot;graf graf--h4 graf-after--h3&quot;&gt;Are all the filings identical?&lt;/h4&gt;&lt;p name=&quot;26be&quot; id=&quot;26be&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Pretty much. There are 30 unique filings that contain the boilerplate within a larger text (most of them were, not surprisingly, complaining about spamming of the boilerplate). The rest are substantively the same. If you want to get technical, there are 128830 with the boilerplate and 120 with the boilerplate with added newlines.&lt;/p&gt;&lt;h4 name=&quot;4622&quot; id=&quot;4622&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Was the bot dumb enough to file thousands of comments in alphabetical order by first name?&lt;/h4&gt;&lt;figure name=&quot;d3a3&quot; id=&quot;d3a3&quot; class=&quot;graf graf--figure graf--layoutOutsetLeft graf-after--h4&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*9XrrgJHgGXWAVAdCjjdRlw.png&quot; data-width=&quot;1248&quot; data-height=&quot;628&quot; src=&quot;https://cdn-images-1.medium.com/max/600/1*9XrrgJHgGXWAVAdCjjdRlw.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Yes.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;995d&quot; id=&quot;995d&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;A substantial chunk were filed alphabetically by first name on May 9th within milliseconds of each other. They even sorted out uncapitalized names from capitalized names!&lt;/p&gt;&lt;p name=&quot;c2e9&quot; id=&quot;c2e9&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;This consists of roughly 53,000 filings (40%).&lt;/p&gt;&lt;h4 name=&quot;014f&quot; id=&quot;014f&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Were there multiple “waves” of filings?&lt;/h4&gt;&lt;p name=&quot;8a2a&quot; id=&quot;8a2a&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Yes. I can eyeball about 8, but I’m not sure how distinct they are. If you look at the CSV file on GitHub, you can see that the “alphabetical by first name” filings stretch from 2017–05–09 5:32PM up to about 04:00 AM the next day. A very non-scientific histogram over time gives you a sense.&lt;/p&gt;&lt;figure name=&quot;52b9&quot; id=&quot;52b9&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*UcT318SaEvEsrfsQUVT43w.png&quot; data-width=&quot;1974&quot; data-height=&quot;1224&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*UcT318SaEvEsrfsQUVT43w.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Sorry about the lack of axes. My software is horrible.&lt;/figcaption&gt;&lt;/figure&gt;&lt;h4 name=&quot;9387&quot; id=&quot;9387&quot; class=&quot;graf graf--h4 graf-after--figure&quot;&gt;Are these real people?&lt;/h4&gt;&lt;p name=&quot;6707&quot; id=&quot;6707&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Most are, almost certainly. However, it’s also pretty certain that most didn’t send comments (&lt;a href=&quot;http://www.zdnet.com/article/a-bot-is-flooding-the-fccs-website-with-fake-anti-net-neutrality-comments/&quot; data-href=&quot;http://www.zdnet.com/article/a-bot-is-flooding-the-fccs-website-with-fake-anti-net-neutrality-comments/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;ZDNet corroborates&lt;/a&gt; by contacting a few of the people). The question becomes: where did the data come from? The short answer is “I don’t know”, but here are a few thoughts.&lt;/p&gt;&lt;ul class=&quot;postList&quot;&gt;&lt;li name=&quot;a357&quot; id=&quot;a357&quot; class=&quot;graf graf--li graf-after--p&quot;&gt;Commercial or public marketing lists are possible: All the addresses seem to be real. A quick Google of some names and addresses seems to agree. For example, someone with a listed university address seems to go to that university.&lt;/li&gt;&lt;li name=&quot;4f77&quot; id=&quot;4f77&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;Black market lists of identities: Checking a small sample of emails from the filings on &lt;a href=&quot;https://haveibeenpwned.com/&quot; data-href=&quot;https://haveibeenpwned.com/&quot; class=&quot;markup--anchor markup--li-anchor&quot; rel=&quot;nofollow noopener&quot; target=&quot;_blank&quot;&gt;https://haveibeenpwned.com/&lt;/a&gt; shows about 90% are on a list of some sort. Maybe this is just a high base rate, though.&lt;/li&gt;&lt;li name=&quot;705b&quot; id=&quot;705b&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;Preprocessed, bought list: Almost certainly. All of the addresses are nice and clean, all the email addresses are uppercased, and the filer names seem to be all formatted properly (with a few notable cases that could be data entry errors). In addition, all street addresses seem to be standardized according to USPS convention (Road -&amp;gt; Rd, etc).&lt;/li&gt;&lt;/ul&gt;&lt;h4 name=&quot;4de3&quot; id=&quot;4de3&quot; class=&quot;graf graf--h4 graf-after--li&quot;&gt;How do I make my own FCC spamming bot?&lt;/h4&gt;&lt;p name=&quot;96de&quot; id=&quot;96de&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;It seems to be pretty easy, &lt;a href=&quot;https://www.fcc.gov/ecfs/public-api-docs.html&quot; data-href=&quot;https://www.fcc.gov/ecfs/public-api-docs.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;seeing as there’s an API call for that&lt;/a&gt;. A simple Python script or curl command could send off your own thousands of filings. &lt;em class=&quot;markup--em markup--p-em&quot;&gt;[updated: 5/20] &lt;/em&gt;There are no publicly stated authentication or rate limiting provisions whatsoever besides the API key requirement. (&lt;a href=&quot;https://twitter.com/adelevie/status/865662512166993920&quot; data-href=&quot;https://twitter.com/adelevie/status/865662512166993920&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Tweets from the FCC’s CIO indicate&lt;/a&gt; there may be internally-determined limits which are not disclosed to developers.)&lt;/p&gt;&lt;figure name=&quot;ebd7&quot; id=&quot;ebd7&quot; class=&quot;graf graf--figure graf--iframe graf-after--p&quot;&gt;&lt;script src=&quot;https://gist.github.com/nhfruchter/deea9f31379f8afa97f89485d2440d17.js&quot;&gt;&lt;/script&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Go forth and create your own bot! It’s that easy.&lt;/figcaption&gt;&lt;/figure&gt;&lt;h3 name=&quot;8223&quot; id=&quot;8223&quot; class=&quot;graf graf--h3 graf-after--figure&quot;&gt;What should we make of this?&lt;/h3&gt;&lt;p name=&quot;8f9e&quot; id=&quot;8f9e&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;A net neutrality opponent, or someone working for them, got their hands on a list of people. They took advantage of the FCC’s no-friction comment filing API to blast hundreds of thousands of comments over the last few days. Almost all of them were automated and used false identities. They were sloppy about it, but it worked anyways.&lt;/p&gt;&lt;p name=&quot;d71f&quot; id=&quot;d71f&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;I’d be interested in tracking down who did the bot spamming and where they sourced their identities from, but I have no idea where to start with that unfortunately.&lt;/p&gt;&lt;h3 name=&quot;96d3&quot; id=&quot;96d3&quot; class=&quot;graf graf--h3 graf-after--p&quot;&gt;Now what?&lt;/h3&gt;&lt;p name=&quot;c359&quot; id=&quot;c359&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;&lt;a href=&quot;http://www.gofccyourself.com&quot; data-href=&quot;http://www.gofccyourself.com&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Go file your own comment&lt;/a&gt; or &lt;a href=&quot;https://www.vox.com/cards/network-neutrality&quot; data-href=&quot;https://www.vox.com/cards/network-neutrality&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;get informed&lt;/a&gt; about the debate. Play with the data if you want.&lt;/p&gt;&lt;h4 name=&quot;2906&quot; id=&quot;2906&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Bonus content!&lt;/h4&gt;&lt;p name=&quot;5adc&quot; id=&quot;5adc&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Location of all the ZIP codes of supposed filers.&lt;/p&gt;&lt;figure name=&quot;0d33&quot; id=&quot;0d33&quot; class=&quot;graf graf--figure graf-after--p graf--trailing&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*WBF2_haTZ4EbGrryoFc7dA.png&quot; data-width=&quot;2818&quot; data-height=&quot;1720&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*WBF2_haTZ4EbGrryoFc7dA.png&quot; /&gt;&lt;/figure&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Thu, 11 May 2017 00:00:00 -0500</pubDate>
        <link>http://nathanielfruchter.com/notes/2017/fcc-comments.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2017/fcc-comments.html</guid>
      </item>
    
      <item>
        <title>Pro-Trump Twitter bots tweet about… Ambassador Vitaly Churkin?</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;166f&quot; class=&quot;section section--body section--first section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;4e03&quot; id=&quot;4e03&quot; class=&quot;graf graf--h3 graf--leading graf--title&quot;&gt;Pro-Trump Twitter bots tweet about… Ambassador Vitaly Churkin?&lt;/h3&gt;&lt;p name=&quot;594e&quot; id=&quot;594e&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;On Twitter, &lt;a href=&quot;https://twitter.com/EliotHiggins/status/833729147604234240&quot; data-href=&quot;https://twitter.com/EliotHiggins/status/833729147604234240&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Eliot Higgins&lt;/a&gt; astutely noted that a bunch of pro-Trump Twitter bots all sent out the same tweet about Russia’s UN Ambassador passing away today.&lt;/p&gt;&lt;figure name=&quot;9dc3&quot; id=&quot;9dc3&quot; class=&quot;graf graf--figure graf--iframe graf-after--p&quot;&gt;&lt;blockquote class=&quot;twitter-tweet&quot;&gt;&lt;a href=&quot;https://twitter.com/EliotHiggins/status/833729147604234240&quot;&gt;&lt;/a&gt;&lt;/blockquote&gt;&lt;script async=&quot;&quot; src=&quot;https://platform.twitter.com/widgets.js&quot; charset=&quot;utf-8&quot;&gt;&lt;/script&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;This is the worst game of Connect Four I’ve ever played.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;c422&quot; id=&quot;c422&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;It’s not really a big conspiracy that there exists a large, pro-Trump bot network out there. However, this presents an interesting excuse for me to play with the Twitter API and find some basic info about these bots. This is an elaborated version of my personal notes.&lt;/p&gt;&lt;p name=&quot;ff34&quot; id=&quot;ff34&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;I used &lt;a href=&quot;http://tweepy.readthedocs.io&quot; data-href=&quot;http://tweepy.readthedocs.io&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;tweepy&lt;/em&gt;&lt;/a&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt; &lt;/em&gt;and Python to search for the headline, which was cribbed from Russia Today (RT). Notably, the tweets never mentioned RT or @mentioned the RT Twitter account, making filtering a bit easier. I gathered about 1200 tweets in total.&lt;/p&gt;&lt;h3 name=&quot;ff0f&quot; id=&quot;ff0f&quot; class=&quot;graf graf--h3 graf-after--p&quot;&gt;A bit about the bots&lt;/h3&gt;&lt;figure name=&quot;0de7&quot; id=&quot;0de7&quot; class=&quot;graf graf--figure graf-after--h3&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*w6f11vRb8U_2hk8YdTgqoQ.png&quot; data-width=&quot;1286&quot; data-height=&quot;740&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*w6f11vRb8U_2hk8YdTgqoQ.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Histogram of tweet times. Each bar is a 15 second bin. The spike is n = 66 accounts.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;0289&quot; id=&quot;0289&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;Here’s a histogram of tweet times from the first tweet to 45 minutes after (times in UTC). It’s easy to see the spike at left (around 5:13PM), followed by the long tail of organic user activity. It’s obvious there’s some coordination behind that.&lt;/p&gt;&lt;p name=&quot;351a&quot; id=&quot;351a&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Twitter client: &lt;/strong&gt;Given the larger number, there are one or two real accounts caught in the spike. These can be easily differentiated because they use consumer clients, such as Twitter’s iPhone or web app. Every other tweet in the spike was sent from &lt;em class=&quot;markup--em markup--p-em&quot;&gt;dlvr.it&lt;/em&gt;, a piece of corporate social media management software.&lt;/p&gt;&lt;p name=&quot;1d01&quot; id=&quot;1d01&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Handles:&lt;/strong&gt; They are almost all obviously pro Trump, with references to Trumpian phrases like “deplorable”, “MAGA”… and, well, “Trump”. Other common references include “conservative” and “America”.&lt;/p&gt;&lt;p name=&quot;3cec&quot; id=&quot;3cec&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Profile appearance: &lt;/strong&gt;Profiles are also formulaic. Names usually reference similar themes to the handles. Many contain emoji, such as &lt;a href=&quot;https://twitter.com/Daniel_MAGA_&quot; data-href=&quot;https://twitter.com/Daniel_MAGA_&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;🇺🇸Daniel 🇺🇸MAGA&lt;/a&gt;. Pictures are usually stolen from somewhere else (easy to reverse image search). Many are scantily clad women.&lt;/p&gt;&lt;p name=&quot;89dc&quot; id=&quot;89dc&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Location and language:&lt;/strong&gt; Most of the accounts list random states or cities. Curiously, Twitter’s API returns a user’s timezone, and most are listed as Pacific Time. A few are listed as Caracas, though. The API also returns the user’s default language and most are listed as &lt;em class=&quot;markup--em markup--p-em&quot;&gt;es&lt;/em&gt;, or Spanish. Huh.&lt;/p&gt;&lt;h4 name=&quot;41b1&quot; id=&quot;41b1&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Bot outliers&lt;/h4&gt;&lt;p name=&quot;968b&quot; id=&quot;968b&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Four accounts don’t fit this mold, which are “Anonymous News, SVN Magazine, Russia Today News” and “Web Guru”. SVN and Web Guru are linked to &lt;a href=&quot;http://svnmagazine.blogspot.nl/&quot; data-href=&quot;http://svnmagazine.blogspot.nl/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;nofollow noopener&quot; target=&quot;_blank&quot;&gt;http://svnmagazine.blogspot.nl/&lt;/a&gt;, a spammy looking news site that mostly reposts stuff from Russia Today and Alex Jones’ Infowars. A page on the site links to a Facebook group called “‎Samensterkvoornederland”, or “Together for the Netherlands”.&lt;/p&gt;&lt;p name=&quot;d311&quot; id=&quot;d311&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Anonymous news links to another news site which has much the same content, except it’s plastered with the 4chan/Anonymous logo. Russia Today News has no site, but tweets out many of the same articles as the other three outliers. All four outliers tweet the same material with few exceptions.&lt;/p&gt;&lt;h3 name=&quot;98b9&quot; id=&quot;98b9&quot; class=&quot;graf graf--h3 graf-after--p&quot;&gt;Who’s doing it?&lt;/h3&gt;&lt;p name=&quot;6f1e&quot; id=&quot;6f1e&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;I didn’t start with the aim of finding out, but a few clues did pop up. Most accounts are a stream of auto-posted news stories. Some like &lt;a href=&quot;https://twitter.com/varela_maga&quot; data-href=&quot;https://twitter.com/varela_maga&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;this account&lt;/a&gt; link to news through a &lt;em class=&quot;markup--em markup--p-em&quot;&gt;xxx.twittcloud.com&lt;/em&gt; domain, which seem to be an advertising-serving redirect using adf.ly, a link monetization service.&lt;/p&gt;&lt;p name=&quot;ffb6&quot; id=&quot;ffb6&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Twittcloud’s site is currently a placeholder page in Spanish, but Googling for Twittcloud turns up a Facebook page which advertises &lt;a href=&quot;https://www.facebook.com/TwittCloud-1799171947037371/&quot; data-href=&quot;https://www.facebook.com/TwittCloud-1799171947037371/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;“Easy Control, Quick response, fast followers”&lt;/a&gt;. My guess is Twittcloud is one of many Twitter follower or account-buying services. The WHOIS data for Twittcloud shows it’s registered to “Day Torin” in Barquisimeto, Venezuela. That would explain the Caracas thing.&lt;/p&gt;&lt;h3 name=&quot;1de0&quot; id=&quot;1de0&quot; class=&quot;graf graf--h3 graf-after--p&quot;&gt;Questions&lt;/h3&gt;&lt;p name=&quot;6792&quot; id=&quot;6792&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;Is it simple spam and monetization using popular, controversial topics? Is it a giant propaganda conspiracy? (If so, they’re pretty sloppy about it.) Why is there a guy in Venezuela involved with this? Is this a bot network hired by pro-Russia forces, or is this a byproduct of autotweeting RT?&lt;/p&gt;&lt;p name=&quot;5cfa&quot; id=&quot;5cfa&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;I wish I had the data to find out.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Tue, 21 Feb 2017 00:00:00 -0600</pubDate>
        <link>http://nathanielfruchter.com/notes/2017/twitter-bots.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2017/twitter-bots.html</guid>
      </item>
    
      <item>
        <title>Some thoughts on Confide</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;4272&quot; class=&quot;section section--body section--first&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;08c2&quot; id=&quot;08c2&quot; class=&quot;graf graf--h3 graf--leading graf--title&quot;&gt;Some thoughts on Confide&lt;/h3&gt;&lt;p name=&quot;d4bd&quot; id=&quot;d4bd&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;Secrecy in the White House has always been a hot topic. However, a recent &lt;a href=&quot;https://www.washingtonpost.com/politics/upheaval-is-now-standard-operating-procedure-inside-the-white-house/2017/02/13/d65dee58-f213-11e6-a9b0-ecee7ce475fc_story.html&quot; data-href=&quot;https://www.washingtonpost.com/politics/upheaval-is-now-standard-operating-procedure-inside-the-white-house/2017/02/13/d65dee58-f213-11e6-a9b0-ecee7ce475fc_story.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Washington Post article&lt;/a&gt; highlights use of the &lt;a href=&quot;https://getconfide.com/&quot; data-href=&quot;https://getconfide.com/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Confide app&lt;/a&gt;:&lt;/p&gt;&lt;blockquote name=&quot;6d43&quot; id=&quot;6d43&quot; class=&quot;graf graf--blockquote graf-after--p&quot;&gt;Staffers, meanwhile, are so fearful of being accused of talking to the media that some have resorted to a secret chat app — Confide — that erases messages as soon as they’re read.&lt;/blockquote&gt;&lt;p name=&quot;73e3&quot; id=&quot;73e3&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;Some have expressed concern about how this &lt;a href=&quot;https://twitter.com/TVietor08/status/831312419142017024&quot; data-href=&quot;https://twitter.com/TVietor08/status/831312419142017024&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;could be a breach of the Presidential Records Act&lt;/a&gt;, or how the use of Confide means that national secrets could end up flowing through Confide’s servers and/or the public Internet. I’m not here to make claims about legality though (although I do have strong opinions on this, and many other things). The following attempts to answer a few simple questions about Confide that I hope helps you draw your own conclusions.&lt;/p&gt;&lt;figure name=&quot;233b&quot; id=&quot;233b&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*ZcGBw0Mg6j7Ll_nt6Zp2NA.png&quot; data-width=&quot;3282&quot; data-height=&quot;1874&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*ZcGBw0Mg6j7Ll_nt6Zp2NA.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;It’s a web app!&lt;/figcaption&gt;&lt;/figure&gt;&lt;h3 name=&quot;193e&quot; id=&quot;193e&quot; class=&quot;graf graf--h3 graf-after--figure&quot;&gt;So, what’s up with Confide?&lt;/h3&gt;&lt;p name=&quot;3e72&quot; id=&quot;3e72&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;I go into more technical detail below, but here’s the quick version:&lt;/p&gt;&lt;ol class=&quot;postList&quot;&gt;&lt;li name=&quot;0159&quot; id=&quot;0159&quot; class=&quot;graf graf--li graf-after--p&quot;&gt;Confide is decently confidential and secure for a certain threat model: casual intrusion, over-the-shoulder snooping, and other things of that level. It’s a definite upgrade from unencrypted email.&lt;/li&gt;&lt;li name=&quot;d858&quot; id=&quot;d858&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;&lt;strong class=&quot;markup--strong markup--li-strong&quot;&gt;Of course, all bets are off if an attacker has access to your machine.&lt;/strong&gt; It’s trivial to disable “screenshot protection”, secretly record messages before they are deleted, and find a conversant’s private key.&lt;/li&gt;&lt;li name=&quot;8741&quot; id=&quot;8741&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;An attacker with network access will be able to see some metadata, but might not be able to access conversation contents.&lt;/li&gt;&lt;li name=&quot;a3d6&quot; id=&quot;a3d6&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;Finally, I don’t have enough knowledge to say what happens to messages once they hit Confide’s servers. There are no guarantees of deletion.&lt;/li&gt;&lt;/ol&gt;&lt;p name=&quot;c37b&quot; id=&quot;c37b&quot; class=&quot;graf graf--p graf-after--li graf--trailing&quot;&gt;So, to sum up: better than Snapchat. Good for sharing personal secrets, or maybe even sharing some sensitive material in the corporate world. Certainly not ideal for government secrets. &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;But that should have been obvious.&lt;/strong&gt;&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;&lt;section name=&quot;81c6&quot; class=&quot;section section--body section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h4 name=&quot;bbf1&quot; id=&quot;bbf1&quot; class=&quot;graf graf--h4 graf--leading&quot;&gt;Why do this?&lt;/h4&gt;&lt;p name=&quot;5100&quot; id=&quot;5100&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Well, I was bored. But also—Confide is a for-profit company which makes claims about security, but their methods and application source code have not been audited. On the other hand, the Signal protocol which underpins WhatsApp, Signal, and a few other applications, &lt;a href=&quot;https://eprint.iacr.org/2016/1013.pdf&quot; data-href=&quot;https://eprint.iacr.org/2016/1013.pdf&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;has undergone a formal audit (PDF)&lt;/a&gt;. This doesn’t necessarily mean that Confide is good or bad. I’m not a cryptographer and I’m not doing protocol analysis. It’s just that we know basically &lt;em class=&quot;markup--em markup--p-em&quot;&gt;nothing&lt;/em&gt; about the app at this point.&lt;/p&gt;&lt;h3 name=&quot;3be9&quot; id=&quot;3be9&quot; class=&quot;graf graf--h3 graf-after--p&quot;&gt;Looking at Confide’s claims&lt;/h3&gt;&lt;p name=&quot;f979&quot; id=&quot;f979&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;I’ve highlighted a few phrases from the Confide home page that I’ll examine.&lt;/p&gt;&lt;h4 name=&quot;aabe&quot; id=&quot;aabe&quot; class=&quot;graf graf--h4 graf--startsWithDoubleQuote graf-after--p&quot;&gt;“Protecting your messages from screenshot attempts”&lt;/h4&gt;&lt;figure name=&quot;5088&quot; id=&quot;5088&quot; class=&quot;graf graf--figure graf-after--h4&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*rIsty0WKymN15c99eB7cxQ.png&quot; data-width=&quot;3186&quot; data-height=&quot;1310&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*rIsty0WKymN15c99eB7cxQ.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Look, it’s a screenshot.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;6024&quot; id=&quot;6024&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;This is done through a piece of native “helper” code which interfaces with the macOS graphics system to draw a grey rectangle on top of the window when a screenshot event is detected. However, the helper code interfaces with JS through a JS module. &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Judicious editing of the module’s exported functions completely disables this protection.&lt;/strong&gt; You could also just take a picture of the actual screen with your camera.&lt;/p&gt;&lt;h4 name=&quot;65af&quot; id=&quot;65af&quot; class=&quot;graf graf--h4 graf--startsWithDoubleQuote graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--h4-strong&quot;&gt;“Messages disappear forever”&lt;/strong&gt;&lt;/h4&gt;&lt;p name=&quot;a129&quot; id=&quot;a129&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;The fancy “redacted” effect is all done in CSS / JavaScript. Data remains in the app page’s DOM tree as HTML elements. This isn’t bad — it’s good UX and effective against “shoulder surfing” and so on.&lt;/p&gt;&lt;p name=&quot;1b18&quot; id=&quot;1b18&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Like I mentioned earlier, all bets are off if you have machine access. Since the UI is a web page, a few lines of JavaScript are all that’s needed to preserve messages as they pass through the app after decryption. This is made doubly easy by the fact that the app doesn’t check the integrity of its own files, meaning edits could go unnoticed.&lt;/p&gt;&lt;h4 name=&quot;5463&quot; id=&quot;5463&quot; class=&quot;graf graf--h4 graf--startsWithDoubleQuote graf-after--p&quot;&gt;“Military-grade end-to-end encryption” and “Transport Layer Security”&lt;/h4&gt;&lt;p name=&quot;b3bc&quot; id=&quot;b3bc&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Military grade&lt;/strong&gt;: What does this even mean? It sounds good in marketing material, so I guess I’ll give them a pass on this.&lt;/p&gt;&lt;p name=&quot;a731&quot; id=&quot;a731&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;End to end&lt;/strong&gt;: Messages are encrypted using the node.js “crypto” library’s functions, which is good—they’re not rolling their own software. The nitty gritty: messages are represented as a JS &lt;em class=&quot;markup--em markup--p-em&quot;&gt;Object&lt;/em&gt;, turned into JSON and base64 encoded, encrypted with a private key with the &lt;em class=&quot;markup--em markup--p-em&quot;&gt;aes-256-cbc &lt;/em&gt;cipher and a 32 bit initialization vector.&lt;/p&gt;&lt;p name=&quot;583e&quot; id=&quot;583e&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Looks like they’re doing some sort of standard key exchange based on ECDH, with ephemeral keys. Beyond that, I can’t tell much.&lt;/p&gt;&lt;p name=&quot;1b02&quot; id=&quot;1b02&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;Transport security: &lt;/strong&gt;The app does indeed use TLSv1.2, a secure and accepted standard for encrypting data in transit. Communication with the server happens over HTTPS and SSL WebSockets with certificate pinning. To get specific, the cipher suite is &lt;em class=&quot;markup--em markup--p-em&quot;&gt;TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256. &lt;/em&gt;This is all reasonable.&lt;/p&gt;&lt;p name=&quot;578d&quot; id=&quot;578d&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Now, what if you man-in-the-middle yourself? (Or get man-in-the-middled by an adversary, or White House IT?) Well, without the private key, you can’t look at the goods—but you can see some metadata from the WebSocket, including &lt;em class=&quot;markup--em markup--p-em&quot;&gt;who a new message is to/from &lt;/em&gt;and whether the user &lt;em class=&quot;markup--em markup--p-em&quot;&gt;is using the app at that moment. &lt;/em&gt;There does seem to be some basic MITM detection based on comparing fingerprints of the WebSocket server with a hardcoded hash, but it’s not quite HSTS / certificate pinning.&lt;/p&gt;&lt;h4 name=&quot;365b&quot; id=&quot;365b&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Other stuff: API, etc&lt;/h4&gt;&lt;figure name=&quot;20a7&quot; id=&quot;20a7&quot; class=&quot;graf graf--figure graf-after--h4&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*KjgP3q-3lDNoVI322HANaQ.png&quot; data-width=&quot;1896&quot; data-height=&quot;236&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*KjgP3q-3lDNoVI322HANaQ.png&quot; /&gt;&lt;/figure&gt;&lt;p name=&quot;fe1b&quot; id=&quot;fe1b&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;There’s a big cipher password just hanging around in the source. I don’t know what it’s for, but it doesn’t really inspire confidence. Probably innocuous though.&lt;/p&gt;&lt;p name=&quot;f06e&quot; id=&quot;f06e&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;The application’s API seems pretty simple and looks to be based on JSON through WebSockets, with a HTTPS GET/POST based fallback (or alternate). Key exchange, message-getting, notifications, and all app communication happen through this API. There is also some sort of “access token” tied to each session, which renews. Keys seem to be ephemeral and look to be tied to this access token. Tokens are refreshed on request from the server and at the start of each session.&lt;/p&gt;&lt;h4 name=&quot;f947&quot; id=&quot;f947&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Note on analysis&lt;/h4&gt;&lt;p name=&quot;6730&quot; id=&quot;6730&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Confide is closed source and I have no access to its source code. Luckily, the desktop client is written using the &lt;a href=&quot;http://electron.atom.io&quot; data-href=&quot;http://electron.atom.io&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Electron&lt;/a&gt; stack with HTML, CSS, and JavaScript/React. In other words, it’s a really fancy web page wrapped in a stripped down browser. Unlike compiled programs, web pages are pretty hard to hide or scramble beyond a certain point. I won’t post any code here for copyright reasons, but it’s safe to say that if you know your way around a &lt;a href=&quot;https://en.wikipedia.org/wiki/Bundle_%28macOS%29&quot; data-href=&quot;https://en.wikipedia.org/wiki/Bundle_(macOS)&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;macOS app bundle&lt;/a&gt; and the &lt;a href=&quot;https://github.com/electron/asar&quot; data-href=&quot;https://github.com/electron/asar&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Electron archiving format&lt;/a&gt;, you will *quickly* find what you’re looking for. That’s that.&lt;/p&gt;&lt;p name=&quot;981d&quot; id=&quot;981d&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;The rest of my information has been gleaned from monitoring network traffic off my computer. To get at some of the encrypted traffic, I used the wonderful &lt;a href=&quot;https://www.charlesproxy.com/documentation/proxying/ssl-proxying/&quot; data-href=&quot;https://www.charlesproxy.com/documentation/proxying/ssl-proxying/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Charles debugging proxy&lt;/a&gt; to man-in-the-middle myself.&lt;/p&gt;&lt;h3 name=&quot;765c&quot; id=&quot;765c&quot; class=&quot;graf graf--h3 graf-after--p&quot;&gt;So, where does this leave us?&lt;/h3&gt;&lt;p name=&quot;ce8a&quot; id=&quot;ce8a&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;Maybe their marketing is overreaching a bit. Confide is good for hiding stuff from your boss or keeping a certain type of low value secret hush-hush. However, we don’t have information on their full client or server implementation (not open source), and since all data is going into Amazon’s (US-East-1), we have no guarantees on the confidentiality or integrity of information passing through the app.&lt;/p&gt;&lt;p name=&quot;9ae8&quot; id=&quot;9ae8&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Confide is a cool app with good UX. The engineers were obviously competent, they didn’t roll their own crypto, and they have a few weaknesses.&lt;/p&gt;&lt;p name=&quot;fe23&quot; id=&quot;fe23&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;I don’t think it’s good enough for sharing information in the White House, though.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Thu, 16 Feb 2017 00:00:00 -0600</pubDate>
        <link>http://nathanielfruchter.com/notes/2017/some-thoughts-on-Confide.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2017/some-thoughts-on-Confide.html</guid>
      </item>
    
      <item>
        <title>Is there a right way to assess the impact of fake news?</title>
        <description>&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;fe27&quot; class=&quot;section section--body section--first section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;p name=&quot;9f2b&quot; id=&quot;9f2b&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;A new working paper from the National Bureau of Economic Research has been released and is titled &lt;a href=&quot;http://www.nber.org/papers/w23089.pdf&quot; data-href=&quot;http://www.nber.org/papers/w23089.pdf&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;“SOCIAL MEDIA AND FAKE NEWS IN THE 2016 ELECTION”&lt;/a&gt; (Allcott and Gentzkow, 2017).&lt;/p&gt;&lt;p name=&quot;144f&quot; id=&quot;144f&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;The authors use survey data, web browsing data, and a simple statistical model of voter persuasion to draw five main conclusions:&lt;/p&gt;&lt;blockquote name=&quot;7664&quot; id=&quot;7664&quot; class=&quot;graf graf--blockquote graf-after--p&quot;&gt;A. Social media had an impact, but was “not dominant” in being a source of election news (14% of their survey called it their most important source).&lt;/blockquote&gt;&lt;blockquote name=&quot;a922&quot; id=&quot;a922&quot; class=&quot;graf graf--blockquote graf-after--blockquote&quot;&gt;B. Drawing from the sample of fake news stories archived on fact-checking websites, there were 30 million Trump-positive shares and 8 million Clinton-positive shares.&lt;/blockquote&gt;&lt;blockquote name=&quot;8ef9&quot; id=&quot;8ef9&quot; class=&quot;graf graf--blockquote graf-after--blockquote&quot;&gt;C. An average American from their sample remembered 0.92 Trump-positive fake stories and 0.23 Clinton-positive fake stories.&lt;/blockquote&gt;&lt;blockquote name=&quot;8010&quot; id=&quot;8010&quot; class=&quot;graf graf--blockquote graf-after--blockquote&quot;&gt;D. A little over half who recalled seeing fake stories believed them.&lt;/blockquote&gt;&lt;blockquote name=&quot;64ba&quot; id=&quot;64ba&quot; class=&quot;graf graf--blockquote graf-after--blockquote&quot;&gt;E. One piece of fake news would have needed the persuasiveness of 36 campaign TV ads to have swayed the election.&lt;/blockquote&gt;&lt;p name=&quot;680f&quot; id=&quot;680f&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;I’m really happy to see work like this being done. However, I think fake news may have had more sway — it’s just a question of how to use empirical methods like these to correctly quantify it. Why?&lt;/p&gt;&lt;p name=&quot;188f&quot; id=&quot;188f&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;This is not a rigorous critique or an academically sound paper review, but I’d take these conclusions with more than a few grains of salt.&lt;/p&gt;&lt;p name=&quot;dbe8&quot; id=&quot;dbe8&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;The authors use Alexa and comScore to measure “the share of traffic on news websites that come from social media vs. other sources.” Notably, both “do not include mobile browsers and do not include news articles viewed within social media sites.” This provides a flawed view of the sharing ecosystem.&lt;/p&gt;&lt;h4 name=&quot;0f09&quot; id=&quot;0f09&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Mobile browsers&lt;/h4&gt;&lt;p name=&quot;d216&quot; id=&quot;d216&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;As of Q1 &amp;#39;16, Facebook reported 894 million &lt;em class=&quot;markup--em markup--p-em&quot;&gt;mobile-only monthly active users&lt;/em&gt;, indicating that, theoretically, more than half of the service’s user base hasn’t been observed in this sample.&lt;/p&gt;&lt;p name=&quot;6e8e&quot; id=&quot;6e8e&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;There are also confounding issues as a lot of external Facebook links are routed through the &lt;a href=&quot;http://thenextweb.com/facebook/2016/01/16/facebook-is-testing-a-new-browser-that-will-make-sure-you-never-leave-the-app/&quot; data-href=&quot;http://thenextweb.com/facebook/2016/01/16/facebook-is-testing-a-new-browser-that-will-make-sure-you-never-leave-the-app/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;app’s in-app browser&lt;/a&gt; which can mess with &lt;a href=&quot;http://oko.uk/blog/tracking-inapp-browsers&quot; data-href=&quot;http://oko.uk/blog/tracking-inapp-browsers&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;many existing trackers and browsing metrics&lt;/a&gt;.&lt;/p&gt;&lt;h4 name=&quot;fb6f&quot; id=&quot;fb6f&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Unmeasured engagement&lt;/h4&gt;&lt;p name=&quot;911d&quot; id=&quot;911d&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Anecdotal evidence from 2014 and 2016 indicate that embedded &lt;em class=&quot;markup--em markup--p-em&quot;&gt;newsfeed advertisements &lt;/em&gt;have a &lt;em class=&quot;markup--em markup--p-em&quot;&gt;clickthrough ratio &lt;/em&gt;in the 1% to 5% range depending on whether the ad is seen in the mobile or desktop feed (&lt;a href=&quot;https://www.wolfgangdigital.com/blog/facebook-ad-ctr-study-newsfeed-v-display-from-the-wolfgang-lab/&quot; data-href=&quot;https://www.wolfgangdigital.com/blog/facebook-ad-ctr-study-newsfeed-v-display-from-the-wolfgang-lab/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;1&lt;/a&gt;, &lt;a href=&quot;http://boostlikes.com/blog/2016/02/average-click-rate-ads-facebook&quot; data-href=&quot;http://boostlikes.com/blog/2016/02/average-click-rate-ads-facebook&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;2&lt;/a&gt;). Let’s assume that engagement on “real”, non-advertising content is much higher than ads—even 10x higher. Even still, it’s entirely in the realm of possibility that less than half of the fake news links shared on Facebook were clicked through and viewed in a mobile or desktop browser.&lt;/p&gt;&lt;p name=&quot;89ae&quot; id=&quot;89ae&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;However, a large proportion of engagement with Facebook stays within Facebook’s &lt;a href=&quot;https://adexchanger.com/data-driven-thinking/facebook-and-google-are-bringing-walled-gardens-back/&quot; data-href=&quot;https://adexchanger.com/data-driven-thinking/facebook-and-google-are-bringing-walled-gardens-back/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;“walled garden”&lt;/a&gt;, making measurement notoriously difficult. This is somewhat addressed by the use of Facebook share data, but ignoring the mobile and newsfeed segment is still a rather large hole.&lt;/p&gt;&lt;h4 name=&quot;8c1c&quot; id=&quot;8c1c&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;Twitter&lt;/h4&gt;&lt;blockquote name=&quot;ce0c&quot; id=&quot;ce0c&quot; class=&quot;graf graf--blockquote graf--startsWithDoubleQuote graf-after--h4&quot;&gt;“…we do not record shares on these other sites because the number of Facebook shares is orders of magnitude larger.”&lt;/blockquote&gt;&lt;p name=&quot;8ec0&quot; id=&quot;8ec0&quot; class=&quot;graf graf--p graf-after--blockquote&quot;&gt;While it’s hard to map alternative forms of engagement on Twitter onto this link-sharing based approach, it’s important to note that a lot of fake news engagement happens on Twitter.&lt;/p&gt;&lt;p name=&quot;2847&quot; id=&quot;2847&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;&lt;a href=&quot;https://www.nytimes.com/2016/11/20/business/media/how-fake-news-spreads.html&quot; data-href=&quot;https://www.nytimes.com/2016/11/20/business/media/how-fake-news-spreads.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Here is an example of Clinton-negative fake news which was organically created and shared within the Twitter ecosystem.&lt;/a&gt; Its conclusions spread to other sources (perhaps including some of the fake news articles measured and shared on Facebook), but tens of thousands of engagements occurred solely on Twitter.&lt;/p&gt;&lt;p name=&quot;f981&quot; id=&quot;f981&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;This also bypasses the issue of emotional and incidental engagement with &lt;a href=&quot;http://www.thedailybeast.com/articles/2016/11/17/how-pro-trump-twitter-bots-spread-fake-news.html&quot; data-href=&quot;http://www.thedailybeast.com/articles/2016/11/17/how-pro-trump-twitter-bots-spread-fake-news.html&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;Trump-positive “troll” accounts&lt;/a&gt; and &lt;a href=&quot;https://qz.com/869344/theres-a-new-tool-to-visualize-how-fake-news-is-spread-on-twitter/&quot; data-href=&quot;https://qz.com/869344/theres-a-new-tool-to-visualize-how-fake-news-is-spread-on-twitter/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;unsourced snippets of fake news which take the form of tweets&lt;/a&gt;.&lt;/p&gt;&lt;p name=&quot;8dfb&quot; id=&quot;8dfb&quot; class=&quot;graf graf--p graf-after--p graf--trailing&quot;&gt;In conclusion: I think this work is a step in the right direction, but the conclusion it makes are too strong for the data underpinning the work. Many forms of influence and engagement aren’t likely to be solely captured using desktop Alexa data, comScore, and Facebook-only shares. I think this might understate the effects found in the paper.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Wed, 25 Jan 2017 00:00:00 -0600</pubDate>
        <link>http://nathanielfruchter.com/notes/2017/Is-there-a-right-way-to-assess-the-impact-of-fake-news.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2017/Is-there-a-right-way-to-assess-the-impact-of-fake-news.html</guid>
      </item>
    
      <item>
        <title>Why is the Red Line delayed?</title>
        <description>&lt;section data-field=&quot;subtitle&quot; class=&quot;p-summary&quot;&gt;
Every city loves to pick on their transit agency, but that’s doubly true for the T here in Boston. (Look no further than the wonderful MBTA…
&lt;/section&gt;

&lt;section data-field=&quot;body&quot; class=&quot;e-content&quot;&gt;
&lt;section name=&quot;c05e&quot; class=&quot;section section--body section--first&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h3 name=&quot;f514&quot; id=&quot;f514&quot; class=&quot;graf graf--h3 graf--leading graf--title&quot;&gt;Why is the Red Line delayed?&lt;/h3&gt;&lt;p name=&quot;3d93&quot; id=&quot;3d93&quot; class=&quot;graf graf--p graf-after--h3&quot;&gt;Every city loves to pick on their transit agency, but that’s doubly true for the T here in Boston. (Look no further than the wonderful &lt;a href=&quot;http://www.mbtaexcuses.com/&quot; data-href=&quot;http://www.mbtaexcuses.com/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;MBTA Excuses&lt;/a&gt; page.) These past few weeks have been especially bad for the Red Line, one of the most heavily used transit corridors in the Boston area. Just go ask Reddit.&lt;/p&gt;&lt;figure name=&quot;5fb0&quot; id=&quot;5fb0&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*KwEvT9YmWyd4lQ7RlxfwKw.png&quot; data-width=&quot;899&quot; data-height=&quot;599&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*KwEvT9YmWyd4lQ7RlxfwKw.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Given the weather lately, I think all bets are off for the sun rising in the east too.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;c4b6&quot; id=&quot;c4b6&quot; class=&quot;graf graf--p graf-after--figure graf--trailing&quot;&gt;Anyways, with the recent uptick in Red Line issues, I got to wondering: are there any interesting underlying patterns in the failures? While I didn’t have time to do anything fancy with the data, I did manage to assemble some and do a bit of basic poking around.&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;&lt;section name=&quot;4501&quot; class=&quot;section section--body section--last&quot;&gt;&lt;div class=&quot;section-divider&quot;&gt;&lt;hr class=&quot;section-divider&quot; /&gt;&lt;/div&gt;&lt;div class=&quot;section-content&quot;&gt;&lt;div class=&quot;section-inner sectionLayout--insetColumn&quot;&gt;&lt;h4 name=&quot;8064&quot; id=&quot;8064&quot; class=&quot;graf graf--h4 graf--leading&quot;&gt;&lt;strong class=&quot;markup--strong markup--h4-strong&quot;&gt;The Data&lt;/strong&gt;&lt;/h4&gt;&lt;p name=&quot;0a1b&quot; id=&quot;0a1b&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;The first order of business is obtaining information about delays. I wasn’t able to find a comprehensive database of the &lt;a href=&quot;http://www.mbta.com/rider_tools/transit_updates/&quot; data-href=&quot;http://www.mbta.com/rider_tools/transit_updates/&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;MBTA’s Alerts&lt;/a&gt; archived anywhere. There is a “&lt;a href=&quot;http://www.mbtabackontrack.com/performance/index.html#/detail/reliability///&quot; data-href=&quot;http://www.mbtabackontrack.com/performance/index.html#/detail/reliability///&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;noopener&quot; target=&quot;_blank&quot;&gt;MBTA Performance Dashboard”&lt;/a&gt;, but they only provide data on an abstract metric of &lt;em class=&quot;markup--em markup--p-em&quot;&gt;reliability&lt;/em&gt;, which isn’t as granular as I was hoping. My solution was to scrape the last month or so from their Twitter feed. I filtered out everything except Red Line related tweets. I then used a combination of automatic and manual tagging to note:&lt;/p&gt;&lt;ol class=&quot;postList&quot;&gt;&lt;li name=&quot;91d1&quot; id=&quot;91d1&quot; class=&quot;graf graf--li graf-after--p&quot;&gt;The &lt;strong class=&quot;markup--strong markup--li-strong&quot;&gt;&lt;em class=&quot;markup--em markup--li-em&quot;&gt;action&lt;/em&gt;&lt;/strong&gt;: a DELAY or a RESUME in normal service&lt;/li&gt;&lt;li name=&quot;3308&quot; id=&quot;3308&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;The &lt;strong class=&quot;markup--strong markup--li-strong&quot;&gt;&lt;em class=&quot;markup--em markup--li-em&quot;&gt;reason&lt;/em&gt;&lt;/strong&gt;: such as “disabled train” or “police action”&lt;/li&gt;&lt;li name=&quot;2bb1&quot; id=&quot;2bb1&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;The &lt;strong class=&quot;markup--strong markup--li-strong&quot;&gt;&lt;em class=&quot;markup--em markup--li-em&quot;&gt;station&lt;/em&gt;&lt;/strong&gt;&lt;em class=&quot;markup--em markup--li-em&quot;&gt; &lt;/em&gt;or &lt;strong class=&quot;markup--strong markup--li-strong&quot;&gt;&lt;em class=&quot;markup--em markup--li-em&quot;&gt;range of stations&lt;/em&gt;&lt;/strong&gt; affected&lt;/li&gt;&lt;/ol&gt;&lt;p name=&quot;5db6&quot; id=&quot;5db6&quot; class=&quot;graf graf--p graf-after--li&quot;&gt;I also noted &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;time of day,&lt;/em&gt;&lt;/strong&gt; whether the alert was an &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;update &lt;/em&gt;&lt;/strong&gt;to a previous issue, and whether the alert was what I’m calling a &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;&lt;em class=&quot;markup--em markup--p-em&quot;&gt;“hangover” &lt;/em&gt;&lt;/strong&gt;(delays due to a previous delay).&lt;/p&gt;&lt;p name=&quot;3c37&quot; id=&quot;3c37&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;This got me 175 entries from October 14th to December 9th (56 days). There were &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;85 initial delay actions&lt;/strong&gt;, with &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;20 hangovers &lt;/strong&gt;and &lt;strong class=&quot;markup--strong markup--p-strong&quot;&gt;90 updates.&lt;/strong&gt; That’s 1.51 initial delays per day (not counting updates).&lt;/p&gt;&lt;h4 name=&quot;7262&quot; id=&quot;7262&quot; class=&quot;graf graf--h4 graf-after--p&quot;&gt;So What’s Going On?&lt;/h4&gt;&lt;p name=&quot;f047&quot; id=&quot;f047&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;I’m not drawing any strong conclusions from this data. Here’s some fun stuff to look at though.&lt;/p&gt;&lt;figure name=&quot;334b&quot; id=&quot;334b&quot; class=&quot;graf graf--figure graf--layoutOutsetLeft graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*0XaO4TitpEHXJYHlgXzEwg.png&quot; data-width=&quot;170&quot; data-height=&quot;344&quot; src=&quot;https://cdn-images-1.medium.com/max/600/1*0XaO4TitpEHXJYHlgXzEwg.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Vice Presidential motorcade? Thanks, Joe.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;8d03&quot; id=&quot;8d03&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;Here’s the initial distribution of reasons. Not surprisingly, disabled trains and signal problems head up the count. Emergency services, power, track problems, and Joe Biden round out the list.&lt;/p&gt;&lt;p name=&quot;d579&quot; id=&quot;d579&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;Next question: are there issues that are more common depending on the location? Looks like disabled trains are pretty common throughout, but signal problems are concentrated on the Red Line’s northern few stops.&lt;/p&gt;&lt;figure name=&quot;887d&quot; id=&quot;887d&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*BvV4CWLwyXiKr2yxeRAlsw.png&quot; data-width=&quot;959&quot; data-height=&quot;736&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*BvV4CWLwyXiKr2yxeRAlsw.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Harvard used to be the north end of the line before the extension to Alewife in the ‘80s.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;caf7&quot; id=&quot;caf7&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;Delays can also occur on stretches of track that span multiple stations. I calculated the number of stops between each station for these instances. Not surprisingly, delays from disabled trains propagate through a wide range a large stretch of stations up and down the line.&lt;/p&gt;&lt;figure name=&quot;0cda&quot; id=&quot;0cda&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*-4saPFmPVyHaQShiOdA0Eg.png&quot; data-width=&quot;534&quot; data-height=&quot;453&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*-4saPFmPVyHaQShiOdA0Eg.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;If an alert says “between Alewife and Porter”, the delay span would be three stations.&lt;/figcaption&gt;&lt;/figure&gt;&lt;h4 name=&quot;f839&quot; id=&quot;f839&quot; class=&quot;graf graf--h4 graf-after--figure&quot;&gt;Time of Day&lt;/h4&gt;&lt;p name=&quot;ad0e&quot; id=&quot;ad0e&quot; class=&quot;graf graf--p graf-after--h4&quot;&gt;Does time of day have anything to do with it? The short answer: probably not. A delayed train can strike at any time! There seem to be more issues in the afternoon and evening rush, but maybe that’s just a consequence of more trains being run.&lt;/p&gt;&lt;figure name=&quot;108a&quot; id=&quot;108a&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*gH8nIuY20rLFAKfiPqdyVg.png&quot; data-width=&quot;447&quot; data-height=&quot;384&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*gH8nIuY20rLFAKfiPqdyVg.png&quot; /&gt;&lt;/figure&gt;&lt;p name=&quot;732e&quot; id=&quot;732e&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;Looking at station by time of day, we can also see that afternoons and evenings are more problematic.&lt;/p&gt;&lt;figure name=&quot;140c&quot; id=&quot;140c&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*__w6I9uGgJLhWkgl9t51RA.png&quot; data-width=&quot;526&quot; data-height=&quot;445&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*__w6I9uGgJLhWkgl9t51RA.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;We can see that Harvard is most problematic during mid-day. This is a good excuse to never go to Harvard.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;404d&quot; id=&quot;404d&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;Finally, did things get worse after a certain date? It looks like we had more signal problems lately, but the trains have been pretty uniformly abysmal. Also, there have been only two weeks in the past two weeks where there &lt;em class=&quot;markup--em markup--p-em&quot;&gt;hasn’t&lt;/em&gt; been an issue at Alewife!&lt;/p&gt;&lt;figure name=&quot;e9cc&quot; id=&quot;e9cc&quot; class=&quot;graf graf--figure graf-after--p&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*ZnJ65gBENlT_bLNubHUidg.png&quot; data-width=&quot;823&quot; data-height=&quot;386&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*ZnJ65gBENlT_bLNubHUidg.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Left: week and station. Right: week and delay reason.&lt;/figcaption&gt;&lt;/figure&gt;&lt;h4 name=&quot;514d&quot; id=&quot;514d&quot; class=&quot;graf graf--h4 graf-after--figure&quot;&gt;Other Miscellaneous Thoughts&lt;/h4&gt;&lt;ul class=&quot;postList&quot;&gt;&lt;li name=&quot;89cc&quot; id=&quot;89cc&quot; class=&quot;graf graf--li graf-after--h4&quot;&gt;What incidents cause the most delay hangovers? Disabled trains (7), followed by track work (5).&lt;/li&gt;&lt;li name=&quot;2ac7&quot; id=&quot;2ac7&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;Which week sucked the most? The one before Halloween with 16 delay actions. Worst single day? 11/15 with 5 separate delay actions.&lt;/li&gt;&lt;li name=&quot;23c5&quot; id=&quot;23c5&quot; class=&quot;graf graf--li graf-after--li&quot;&gt;There were 52 “minor” delays, 24 “moderate” delays, and 7 “severe” delays.&lt;/li&gt;&lt;/ul&gt;&lt;figure name=&quot;e4d3&quot; id=&quot;e4d3&quot; class=&quot;graf graf--figure graf-after--li&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*wvS6_8ls2JUwXxPuvIFcSg.png&quot; data-width=&quot;725&quot; data-height=&quot;611&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*wvS6_8ls2JUwXxPuvIFcSg.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;Not all incidents were given a severity by the MBTA.&lt;/figcaption&gt;&lt;/figure&gt;&lt;ul class=&quot;postList&quot;&gt;&lt;li name=&quot;8927&quot; id=&quot;8927&quot; class=&quot;graf graf--li graf-after--figure&quot;&gt;Have we had a week with no delays? Of course not! :(&lt;/li&gt;&lt;/ul&gt;&lt;figure name=&quot;ef67&quot; id=&quot;ef67&quot; class=&quot;graf graf--figure graf-after--li&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*Fn0kcD6EKW2dc7RYc7gFxw.png&quot; data-width=&quot;627&quot; data-height=&quot;539&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*Fn0kcD6EKW2dc7RYc7gFxw.png&quot; /&gt;&lt;figcaption class=&quot;imageCaption&quot;&gt;That little spike is 11/15 with 5 delays.&lt;/figcaption&gt;&lt;/figure&gt;&lt;p name=&quot;fb87&quot; id=&quot;fb87&quot; class=&quot;graf graf--p graf-after--figure&quot;&gt;Want to play with the data? I’m seeing if I can get a larger set from the MBTA, but until then: &lt;a href=&quot;https://gist.github.com/nhfruchter/ba0a4bd17da54c743e3c83f5912b2533&quot; data-href=&quot;https://gist.github.com/nhfruchter/ba0a4bd17da54c743e3c83f5912b2533&quot; class=&quot;markup--anchor markup--p-anchor&quot; rel=&quot;nofollow noopener&quot; target=&quot;_blank&quot;&gt;https://gist.github.com/nhfruchter/ba0a4bd17da54c743e3c83f5912b2533&lt;/a&gt;&lt;/p&gt;&lt;p name=&quot;2e5a&quot; id=&quot;2e5a&quot; class=&quot;graf graf--p graf-after--p&quot;&gt;EDIT: Bonus content by Reddit request.&lt;/p&gt;&lt;figure name=&quot;4a0a&quot; id=&quot;4a0a&quot; class=&quot;graf graf--figure graf-after--p graf--trailing&quot;&gt;&lt;img class=&quot;graf-image&quot; data-image-id=&quot;1*ha2aiBVIOf2rilhkmGjinw.png&quot; data-width=&quot;708&quot; data-height=&quot;446&quot; src=&quot;https://cdn-images-1.medium.com/max/800/1*ha2aiBVIOf2rilhkmGjinw.png&quot; /&gt;&lt;/figure&gt;&lt;/div&gt;&lt;/div&gt;&lt;/section&gt;
&lt;/section&gt;
</description>
        <pubDate>Sun, 11 Dec 2016 00:00:00 -0600</pubDate>
        <link>http://nathanielfruchter.com/notes/2016/Why-is-the-Red-Line-delayed.html</link>
        <guid isPermaLink="true">http://nathanielfruchter.com/notes/2016/Why-is-the-Red-Line-delayed.html</guid>
      </item>
    
  </channel>
</rss>
