On Sat, Dec 4, 2010 at 1:34 PM, Chris Stratton <[email protected]> wrote: > I postulate that it is impossible to distinguish an application which > does custom license verification against a server from one which > steals private user data. > > Agree or disagree?
Disagree, though I suppose it depends on your definition of "private user data". A solid LVL implementation should not need READ_CONTACTS, for example. OTOH, if you define "private user data" as identifying information (e.g., MAC, IMEI, IMSI), then, yes, that's pretty much a given. -- Mark Murphy (a Commons Guy) http://commonsware.com | http://github.com/commonsguy http://commonsware.com/blog | http://twitter.com/commonsguy _The Busy Coder's Guide to Android Development_ Version 3.3 Available! -- You received this message because you are subscribed to the Google Groups "Android Discuss" group. To post to this group, send email to [email protected]. To unsubscribe from this group, send email to [email protected]. For more options, visit this group at http://groups.google.com/group/android-discuss?hl=en.
