Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Apple removes ‘Fakespot’ app from iOS App Store following Amazon request (9to5mac.com)
362 points by basisword on July 16, 2021 | hide | past | favorite | 113 comments


Fakespot is one of the more atrocious extensions when it comes to data collection. It sends everything you look at, everything you add to cart, while you are logged out of everything it will also persistently track your viewed items with a unique identifier. I understand that the below may be in PP/ToS but come on, a normal user will not.

It does a lot of things completely opaque to the normal end user that are well above a "please tell me if item X's reviews are good or bad" - it practically sends Fakespot almost every single page interaction or click that you do on an Amazon property.

It does the same on every other site it supports - whether or not you want your item inspected, it will notify Fakespot about what products you viewed, what browser, what you clicked on, Add to Cart or Buy Now clicks, Sort clicks, every product visible on page (by ID and seller).

They also use the same unique session identifier across sites, so items you look at on eBay/Walmart/etc can be tied to the same person as items viewed on Amazon. If you choose to try to opt out of automatic item detection, that choice is also sent back to their servers (where it then returns a 4xx and tells you to sign up or sign in to fakespot with an account to save settings).

The extension itself is many megabytes of heavily packed and obfuscated JS. If you have it installed, I would recommend not doing so.


Some support, since nobody seems to read the privacy policy[0] (or the Chrome privacy practices page![1]):

> When you use our Services, we automatically collect the following information about you:

> User ID: ... User ID also includes your account password, other credentials, security questions, and confirmation codes.

And a cherry on top, first-party ads:

> Purchase Information: Your purchase history or purchase tendencies which we may use to recommend better products and sellers.

0: https://www.fakespot.com/privacy-policy#:~:text=User%20ID%20...

1: https://i.judge.sh/other/Derpy/f0usrlNfij.png


The full Chrome privacy page - this is absolutely nuts for a review comparator:

Fakespot Fake Amazon Reviews and eBay Sellers collects the following:

Personally identifiable information For example: name, address, email address, age, or identification number

Authentication information For example: passwords, credentials, security question, or personal identification number (PIN)

Location For example: region, IP address, GPS coordinates, or information about things near the user’s device

Web history The list of web pages a user has visited, as well as associated data such as page title and time of visit

User activity For example: network monitoring, clicks, mouse position, scroll, or keystroke logging

Website content For example: text, images, sounds, videos, or hyperlinks

In the year before the date this policy was issued, on the Services we may have collected the following categories of California Information:

Address and other identifiers -- such as name, postal address, zip code, email address, account name, payment card numbers, or other similar identifiers

Unique and online identifiers -- such as IP address, device IDs, or other similar identifiers

Characteristics of protected classifications -- such as race, ethnicity, or sexual orientation

Commercial information -- such as products or services purchased, obtained, or considered, or other purchasing or consuming histories or tendencies

Internet, gaming or other electronic network activity information -- such as browsing history, search history and information regarding an individual's interaction with an internet website, application, or advertisement

Professional or educational Information

Biometric information

Location information -- (e.g. if you access our Sites on your mobile device we may collect Information about your device's precise location.)

Online viewing activities (e.g. pages viewed)

Inferences drawn from California Information, such as individual profiles, preferences, characteristics, behaviors.


The bonus shit cherry on top: they claim they require your address, GPS coordinates, passwords, browsing history, purchase history, and personal information under "GDPR Legitimate Interest" in the privacy policy.

They process no payments and have no fraud to speak of, because it's not a thing.

This company should not exist.


So many people on HN complaining about privacy, but then come to the comments section to defend an extension that literally collects and sells everything you do. Seems a tad ironic.


I don't think it's ironic. We can be opposed to privacy-infringing apps/corporations and be opposed to centralization and censorship at the same time.

What this fakespot (i had no idea it existed until today) is doing is NOT different from what apple/google/facebook and other data brokers are doing. I'm horrified it exists and would gladly participate in setting those corporations on fire, but at the same time i'm even more horrified when they destroy their own competition in the name of protecting us users, because it's a shameful hypocrisy.

It's basically like the police killing random citizens (mostly not those who are white/rich) then saying they have a monopoly on legitimate violence. The first situation is already terrible, but that they fight competition in their crimes against humanity is all the more reason to dismantle these entities.


Still less than Amazon tracks ya


Why is everyone here just blaming Amazon? Of course they're going to ask Apple to do this. It's in their own self-interest.

The more interesting questions is, why is Apple complying? Are they afraid that Amazon will retaliate by pulling their apps out of the App Store? If so, are they really just going to keep prioritizing big tech connections in favor of it's own customers?

The rule cited is so vague that even a basic paid browser app would break it. All the app does is augment data available from any web browser with other data.

> 5.2.2 Third-Party Sites/Services: If your app uses, accesses, monetizes access to, or displays content from a third-party service, ensure that you are specifically permitted to do so under the service’s terms of use. Authorization must be provided upon request.


You have a multi billion monster on one side and a teeny tiny app on the other side.

I don’t think Apple is afraid of Amazon or anyone else. It just makes sense to side with a fellow Goliath than with some unknown app. There is no upside in siding with fakespot. It is highly unethical, but otherwise it is just business as usual


Bad Apple! Rotten From Inside.


This is so depressing. Fakespot is an amazing app, I never buy anything off of Amazon without using it. Actions like this caused me to trust Amazon significantly less.


I used it for a while until it got me wondering - what, exactly, is their business model? And why do I trust their judgement on how reliable reviews are?

This is not to say that Amazon reviews are generally good, just saying that Fakespot might have an incentive to... tune their reviews of reviews :) so where's the Fakespot of Fakespot?


Considering FS is free and they are hiring, they must have some sort of monetization roadmap. My bet is either they become paid, they do paid whitelisting, or they provide some sort of sales intelligence to sellers. The first option is the best case scenario. In the latter cases, akin to Facebook, the actual customer would be sellers, charged based on the number of active users FS promises.

ReviewMeta, on the other hand, is clearly donation based, and also seems more honest at the moment (e.g., not claiming to be some sort of “trusted advisor”, showing a big warning that it’s adjusted score is only an estimation).


Monetization could be selling training data to big Amazon sellers on sentiment analysis of products. Or they just start whitelisting products, kinda like adblock does the "acceptable ads" we now have acceptable garbageproducts.


There's always the monetization roadmap of acquisition, possibly even by Amazon to shut it down.


Could be similar to AdBlock


Well, they heavily promote their browser extension[1] (at least for me, when I hit their homepage). The addon gets access to your browser tabs and website data. Their privacy policy grants them access to serve you targeted ads based on information you share with the service, so that seems like it would be their monetization strategy.

[1]: https://addons.mozilla.org/en-US/firefox/addon/fakespot-fake...


They're excellent for curiosities now. I just bought linen bags with big dollar signs on them as props for a personal project. Amazon made it easy.

So basically any time you need something where the concept of fakes doesn't matter or is removed entirely.

Otherwise Amazon is a hulking pile of scams and garbage


Looks like they aren’t generating any revenue yet. According to crunchbase they received a 5.3m USD series A funding so far, which is gonna keep the company running for quite a while with less than ten employees.

They most likely are trying to get users first, and then look money printing opportunities later.

https://www.crunchbase.com/organization/fakespot/people


I used to use Best Buy to try items out before buying on Amazon.

Now, I shop on Amazon, using most helpful critical reviews only, and buy either local, or direct from manufacturers.

Most times shipping is comparable to Amazon’s “not really two day two day shipping”

Also, Streisand effect in play here for sure. Now I know about FakeSpot. Thanks!


One of Fakespot's indicators is number of reviews removed by Amazon. Amazon is weak on trust for me.


I've posted a similar comment before, but on what basis do you trust fakespot? If they were being paid to promote or even outright manipulate the analysis how would we know? Or how would they be immune to the same review manipulation by sellers that Amazon is prone to? Why do you think we don't need a fakespot for fakespot too?


Fakespot shows reviews it thinks are dubious and you can take a look and decide if it's right. Some are pretty blatant.


Idk is that very useful? There will dubious reviews on any popular product. Isn't the true utility in fakespot that it makes a decision on the credibility of the overall rating of the product for you based on some aggregation of the total reviews? That's what I'm questioning whether or not can be manipulated or tammpered with, in which case we'd be back at the same problem fakespot tries to solve requiring a fakespot for fakespot reviews


Amazon is behaving like a mafia. There is no way they are not able to spot fake reviews and scams in 2021.

They are either highly incompetent or unethical. Or both.


Have you used reviewmeta? If so how does it compare to Fakespot in terms of accuracy?

It was recommeded along with fakespot by some users for identifying fake amazon reviews when it was asked on my problem validation platform[1].

Amazon says,

> According to Amazon, the company already has the necessary tools to identify and stop fake reviews, suggesting that third-party services that claim to do this “are mostly wrong.”

If that was the case, People wouldn't be actively looking for solutions.

[1] https://needgap.com/problems/42-identifying-fake-reviews-in-...


> Actions like this caused me to trust Amazon significantly less.

Not Apple also?


Why doesn't it make you trust Apple significantly less? They took it down. They're another profit seeking organization not some natural phenomenon.


Fakespot is literal cancer that steals passwords, location data, purchase history etc etc.

Should never been in the app store to begin with!


Amazon and Apple.


These days it seems Apple is begging to be regulated. So much stuff where they either let through scams or boot off legitimate apps on a whim. If anyone followed the news in the EU, Vestager is openly discussing to do so. They should rather make a halfhearted step themselves to open up their platform or they will be forced to do a full step themselves. That's my prediction, as states start to realize the abusive practices Apple is currently using.


I feel notably unfree on an Apple product, which amazes me because my reference is Google products. The thing which struck me was when I tried to watch a film I've had on my PC hard drive for what must be 5 years now, but Apple won't let VLC ship the codec.


Is the codec and container available in MrMC or Infuse?

https://apps.apple.com/us/app/infuse-7/id1136220934

Video: 3GP AVI ASF BDMV DIVX DVDMEDIA DVR-MS FLV ISO/IMG M2TS M4V MKV MOV MP4 MPEG MTS MXF OGM OGV TS VIDEO_TS WEBM WMV WTV

I’d be curious what it is, if not. VLC is missing codecs on Windows store too:

https://itigic.com/normal-vlc-vs-microsoft-store-vlc-differe...


Good thing Windows lets you ""sideload"" a real copy of VLC instead of forcing you to use the neutered crap from their appstore.

For now.


I think I tried the free version of infuse and some other one, neither worked.

This is also ignoring that Apple don't deem it useful for you to be able to rename file extensions, which wouldn't have been a problem if I hadn't copied it as a .vkm instead of mkv


Everything you said about Apple seems more apt about Amazon.


In response I’ve cancelled my Amazon prime.

Fakespot was doing the job Amazon has failed to do for years and was the only thing keeping me there.

Thanks Amazon for finally making this breakup a done deal.


I've posted a similar comment before, but on what basis do you trust fakespot? If they were being paid to promote or even outright manipulate the analysis how would we know? Or how would the be immune to the same review manipulation by sellers that Amazon is prone to? Why do you think we don't need a fakespot for fakespot too?


Man that's extreme. I wish I had the guts to do that. Good on you!


If you look at my post history the quality of products has been going down, and we (as a fam) have reduced our AZ spend from 10k/yr (literally buying everything from there) a few years ago down to about 500-1000/yr in the past year. Prime Video was a sticky factor, but wife's come to grips with saying goodbye to that as well.

I just hadn't made the call. This is what radicalized me.


It's still usable in a web browser at: https://www.fakespot.com

Review Meta does a similar thing and its iOS app seems to be still available: https://reviewmeta.com


Note that reviewmeta was recently sold to a new operator, so we'll see how trustworthy it continues to be. Some interesting data on financials and revenue models here:

https://storecoach.com/products/for-sale-reviewmeta


I’m a bit confused here. ReviewMeta, the site that filtered review, was mostly making money by selling items as an Amazon seller ?

The business model was to find items people are browsing on Amazon and then find a drop shipping niche ?


They ask you to install an extension but the web lookup is still available here:

https://www.fakespot.com/analyzer


Another small slice of personal agency is lost. Still enjoying those walled gardens keeping you "safe?"


I wonder if Apple would have pulled the app if it were from a nonprofit organization that doesn’t track everything the user does on those websites.


Ultimately it's user choice. If they are grown up enough to trust Amazon, they should be allowed to trust Fakespot. It's these big companies 'keeping us safe' and making choices for us that's the problem. They only have your wallet in mind, everything else is BS


DRM manages freedom like jail manages freedom.


Surely Amazon feels safer now.


I wonder what's in it for Amazon. FS users would end up buying on Amazon anyway. It's just that they would choose another seller or alternative products. Why would Amazon want that gone?


They may not find a better seller and move to another store.


Stop calling it a "walled garden".

It's a "walled prison".


It’s not a prison because you’re welcome to leave whenever you want.


you can leave the phone ecosystem the same way you can leave society at will.


That's overly-dramatic. It's not that difficult to leave the iOS ecosystem. There's adequate tools for exporting data for emails+contact.

If you want to move to Android, you'll have to buy a new device and spend maybe $100 on apps, but most services support both platforms. Yes it'll suck to lose that one "killer app", but there's likely alternatives that are almost as good.

Changing ecosystems is always a viable option.


It's hard even for the HN audience.

How much more for the everyday person?


I'd wager it's harder for the HN audience. They'd have many more services they need to update account info with, or apps they'll need to find parallels for.

Most regular users use a small number of services (Facebook, reddit, whatever) and that will be available across both platforms.

Something like exporting email from one account to another will be more difficult for the regular user, but there's many guides available online. Or more realistically, a nephew to do it for them.


In fact I’d wager that a substantial number of regular people would move between iPhone and android without ever realising that they were convenience benefits in sticking with the same platform, other than basic familiarity with a particular user interface.

Similarly, I’m sure there are plenty of people who continue going to a McDonald’s drive-thru instead of a competitors’ because they are comfortable with and familiar with the menu. Yeah no one would accuse McDonald of having any amount of “platform” lock in.


   Mirrors on the ceiling / The pink champagne on ice
   And she said "We are all just prisoners here, of our own device"
   And in the master's chambers / They gathered for the feast
   They stab it with their steely knives But they just can't kill the beast

   Last thing I remember / I was running for the door
   I had to find the passage back to the place I was before
   "Relax," said the night man / "We are programmed to receive
   You can check-out any time you like / But you can never leave!"
https://music.amazon.com/albums/B00DAKW7Q2?trackAsin=B00DAKW...


That's kinda outrageous.

I know this is unrelated to reviews, but I got a product shipped by and from Amazon 2 weeks ago that was missing its original box but instead was in an unmarked box that still had a shipping label addressed to Amazon returns on it.

Amazon gives so few shits about product quality it's baffling


They give so few shits because we keep using them despite everything they do. The people need to put their money elsewhere for Amazon to get their act together.


I’m kinda confused about this. At Amazon’s size it’s easier for them to do this and then just fix mistake after the fact. Amazon has sent me the wrong items, lost them, had stuff damaged but always always fixed it immediately when I call support.

I can’t honestly blame them for errors when they do so much business that 1 in a million problems happen daily.


But you're going to buy from them again soon, aren't you?


Increasingly the answer is no.

Still though they have the best selection on certain things and a generous return policy.


The third-party API rule is the most baffling in all of Apple’s App Store regulations. It’s ridiculous that you can’t make and monetise alternative clients to popular services, as if the first party client is always going to be the best.


Related note: Apple is adding WebExtensions to iOS 15 (and iPadOS 15). Given that many extensions exist specifically to do exactly what this rule prohibits, I can imagine Apple's going to see a lot of user and developer protests as more and more extensions are brought over.


What? How does third party Reddit clients still exists on the App Store then?


"unauthorized": reddit has an official API for third-party clients.


So does Amazon's HTTP API for browser clients. Is Apple going to snuggle up with Amazon and get the Brave browser banned for nuking their ads, trackers, etc?


I mean it’s not really though. Access != Authorization and stopping bots and scraping is a whole industry.


What do you think? There's no love lost from either company toward Brave. (Which makes me love Brave more!)


Because Reddit hasn't asked Apple to remove them (or revoked API access themselves)


I'd just like to highlight this:

> According to Amazon, the company already has the necessary tools to identify and stop fake reviews, suggesting that third-party services that claim to do this “are mostly wrong.”

I am certainly willing to believe that Amazon has all the necessary tools, but it's very clear that they don't care to use them.


I was briefly in contact with folks in a team at Amazon who said they were working on fixing the fake review problem. I ultimately didn't pursue a role there because I just don't really trust Amazon as an employer. (I worked there previously and got burned badly.)

Incidentally, I had also been in contact with Facebook about a role "combatting abuse" across their services. That loop was a bait and switch for standard ML (eg, improve video recommendations for users to keep their eyeballs on FB).

I try to assume good intentions, but I'm constantly given evidence that there are no good intentions in these companies. I don't think Amazon really has any reason to combat fake reviews. And I know a good number of engineers and scientists there. It's a tractable problem.


Its so bewildering to me that Amazon doesn't do this.

People are catching on to the low quality of the reviews on amazon and once that credibility is gone, its never coming back.

Their supply chain is a pretty strong moat but its not insurmountable.


People have been saying this for a number of years, now, and Amazon only grows faster. Tools like this may have actually contributed to that growth, since they make shopping on Amazon safer, ironically.


Amazon has the same advantage that Microsoft had in the 90s: everybody else is even less competent.


I don’t agree. The advantage both had/have is a level of scale and brand inertia which makes it financially near-impossible for alternatives to grow large enough to compete.


I dont know how, but I assume that all the fake shit being sold on amazon is very profitable for them. I assume they have a strong motivation to protect and foster all the fake shit, cus that's what they appear to be doing to the best of their ability (Reminds me of 'content-farm' videos on youtube)

.

Also, If its not profit, there must be some 'perverse incentive' at some level of the company to act as they do.


It also raises the question, "Why can't there be substitute apps/services on the Apple App store?"

So what if Amazon can or even does do it? There should be multiple apps offering the same service available to Apple customers. This doesn't make sense.


That isn't their argument. They are arguing that any results that differ from their own ratings are false by definition because it is duplicative. If fakespot always gave the identical ratings, they'd have to make a different argument.


Amazon doesn't officially acknowledge that any specific product listings are fakes. An app that exposes the truth will naturally be different from what Amazon claims.


Product listing hijacks have been a known problem for years... and you can still do it today. A lot of the time I get something it comes with a business card offering a discount for a positive review... aliexpress reviews seem more reliable at this point.


I'm just done with Amazon. Haven't bought anything from them in at least a year. Between the counterfeits and their unwillingness to address that problem or the fake reviews, they are just not trustworthy.

Had they moved quickly and decisively I probably would have given them another chance.


Without this I wouldn't have been aware of the service. Thanks Amazon, enjoy your Streisand effect.


fuuuuck. I had it installed but iOS "archived" it and now I can't get it back. one of the best apps out there.


Can't archived apps still be restored as long as your iCloud account was used to install it?


[flagged]


Put it in quotes (:


Cool, I didn't know about this. Will download on Google Play!


Google Play has the same rule about accessing third party APIs and actually had it before Apple (I know because I’m perma banned from Google Play Development for violating this rule with an app I did)


Doesn't matter, you can still download APKs.


Oh my, it is good they don't know one of mine apps does, so it is not banned still after almost 10 years in Android Store.


I think they only care if it's the API for a popular app or the API owner has complained. I know they will flag for IG and Snapchat private APIs.


Might not be up there much longer either sadly


Then I am sure they will release the APK or put it on another store since I do not have to use Play, unlike iOS


You can always try the Amazon App Store :P


Good thing android let's users install whatever they want. I'm happily using fdroid and AdBlock.

Just downloaded fakespot.


Read the EULA before you use it. You’ll probably change your mind.


Never heard of this but will definitely give it a go now thats for sure. Amazons full of fakes


As is the App Store.


My small business manufactures the product in the link below and sells it on Amazon. It has over 1000 reviews and on my honor I have never purchased or posted a fake review anywhere including Amazon.

Out of curiosity can one or two readers with the Fakespot App go to my product page and see what the App reports. Preferably two people, just to see if there is randomness to the result. This assumes you can still use an app that has been removed from the App store. Or is it automatically deleted from your phone ?

https://www.amazon.com/dp/B01MCV1QZF/


With the extension, you get an A on one and a ? on another.

I don't believe Fakespot's ratings are useful, though, because for other sites I've gotten for a negative-feedback seller "seller is RELIABLE and APPROVED BY FAKESPOT" when the API response consists entirely of "Seller has a return policy" and nothing else.

If you go on eBay for example, any seller that says "accepts returns" will automatically be flagged trustworthy.


I've never used the app or extension, but someone in this thread mentioned they have a web version:

https://www.fakespot.com/product/garagemate-open-your-garage...

It gives an A rating.


Not that I use Amazon much, but I now know Fakespot is a thing that exists, and will aim to use it whenever I do shop there.

Thank you Amazon, for bringing this awesome service to my attention!


This has been a rule for a while. I believe it was added because of all the apps using the unofficial Instagram and Snapchat apis initially.


Curious to how this will play. Even more interesting if it ever goes to court. Both Apple and Amazon are under a lot of regulatory pressure these days and this arrow flies through the heart of both cases.


Is there a browser extension that does this?




They claim they have their own tools to combat fake reviews, etc. I'm not seeing it in action though.


FAANG is all one company with the appearance of competition.


Does anyone notice a pattern?


Has anyone actually realized that these companies will never change?

Even after these antitrust cases they still won’t change. They always find a way.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: