On Sat, Dec 4, 2010 at 1:34 PM, Chris Stratton <[email protected]> wrote:
> I postulate that it is impossible to distinguish an application which
> does custom license verification against a server from one which
> steals private user data.
>
> Agree or disagree?

Disagree, though I suppose it depends on your definition of "private
user data". A solid LVL implementation should not need READ_CONTACTS,
for example.

OTOH, if you define "private user data" as identifying information
(e.g., MAC, IMEI, IMSI), then, yes, that's pretty much a given.

-- 
Mark Murphy (a Commons Guy)
http://commonsware.com | http://github.com/commonsguy
http://commonsware.com/blog | http://twitter.com/commonsguy

_The Busy Coder's Guide to Android Development_ Version 3.3 Available!

-- 
You received this message because you are subscribed to the Google Groups 
"Android Discuss" group.
To post to this group, send email to [email protected].
To unsubscribe from this group, send email to 
[email protected].
For more options, visit this group at 
http://groups.google.com/group/android-discuss?hl=en.

Reply via email to