Caption

More than 3,300 Android apps are improperly tracking kids, study finds

Thousands of family-friendly apps from the Google Play Store are potentially violating federal law, according to a new large-scale study from North American and European universities and organizations.

» RELATED: How to keep your kids safe on social media

The research, recently published in the journal Proceedings on Privacy Enhancing Technologies, showed that 3,337 Android apps on Google Play were improperly collecting children's data and potentially violating the United States Children’s Online Privacy Protection Act (COPPA), which limits data collection for kids under age 13.

COPPA gives parents control of any online entity that collects personally identifiable information (PII) from kids. Collecting PII from children under age 13 without explicit parental permission is illegal.

» RELATED: More about COPPA laws

Recommended for you

Recommended for you

Recommended for you

Most read

  1. 1 Gun deaths at highest level in 40 years, CDC says
  2. 2 Pete Davidson appears on 'SNL' after concerning Instagram post, deleti
  3. 3 Four years ago: DeKalb mom charged in house fire that killed her kids

“We identified several concerning violations and trends,” study researchers  from the International Computer Science Institute at the University of California, Berkeley, said. “Overall, roughly 57% of the 5,855 child-directed apps that we analysed are potentially violating Coppa.”

Using an automated analysis tool to examine app privacy on more than 80,000 apps between November 2016 and March 2018,  the researchers determined when private data was accessed and where the data was then sent.

They narrowed it down to 5,855 child-directed apps. These were in 63 different Play Store categories, with 60 percent in the Casual Games, Brain Games, and Educational Games categories.

» RELATED: Facebook alerts users if their data was compromised by Cambridge Analytica

They found that only a small number (4.8 percent) of the apps had “clear violations when apps share location or contact information without consent.”

But 40 percent shared personal data without reasonable security measures and 18 percent shared individual identifiers with parties for unlawful purposes, such as ad targeting.

Thirty-nine percent, the team found, displayed “ignorance or disregard for contractual obligations aimed at protecting children’s privacy.”

With Google’s Designed for Families initiative, the company had taken steps to enforce COPPA compliance, but the researchers said, “as our results show, there appears to not be any (or only limited) enforcement.

“The researchers are adamant that they're not showing ‘definitive legal liability,’” Engadget reported. “These apps may be running afoul of the law, but it's up to regulators at the FTC to decide if they are.”

Read the full study at petsymposium.org.

More from AJC