Forced disclosure

DEFINITION

Users are forced to provide information beyond the scope of the task or service.

DEFINITION

Users are forced to provide information beyond the scope of the task or service.

DEFINITION

Users are forced to provide information beyond the scope of the task or service.

1

Purpose

The purpose of forced disclosure is to collect sensitive information to further a business goal like selling information to third parties or profiling.

2

Psychological principles

This pattern uses the psychological principles of immediate gratification and the commitment principle.

3

Prevention

To protect yourself against this pattern, use a dummy email address or fake information (when not legally required).

Forced disclosure depends on the context

This pattern tricks users into giving up more information than they need to under the illusion that it is necessary for the function of a product or service.


When opening a camera app, it makes sense it would need access to your camera, or even your microphone if taking video. However, if that same app demanded your contact list, to would veer into forced disclosure.

Behind the pattern

This deceptive pattern relies on the psychological concept of instant gratification and the commitment principle.


Instant gratification. When we find an app or service that will make our lives easier we want to use it as soon as possible. When a product requires more information than it should, we may overlook the questionable practice to gain the ease that the product promises.


The commitment principle. People tend to behave in a way that matches their previous behavior. If they have already committed to downloading the app, they are more likely to commit to sign up and try it out, even if it means giving up more personal information than usual.

How to protect yourself

Ask yourself, does this company need this information? If the answer is no, the information may be used to your disadvantage.


Share as little information as possible. Use a different name, create a new email address, or a fake birthday—when not legally required.

Davishedrick.com

Davishedrick.com

Davishedrick.com