Ranks Explained

Good

Categories with the rank "good" are defined as services that respect the user data, take measures to protect PII, and and allow the user control over their privacy.

Average

Categories with the rank "average" are defined as services that take limited measures to respect the user data, take measures to protect PII, or and allow the user control over their privacy.

Bad

Categories with the rank "bad" are defined as services which do not protect user data (especially in regard to PII), and/or do not allow the user control over the treatment of the data they disclose.

Not Enough Information

This icon represents a category which does not have enough information provided for an accurate answer to be formed.

Categories explained

Policy Changes

Does the service give users adequate notification prior to updating ToS/PP documents?
Good: Gives users email notification to ALL policy changes
Bad: Only notifies users to "significant" changes OR only posts notification to the service webpage

Data security

What level of security does the service provider offer the user in regards to their PII? Do they guarantee this information is protected? Do they monitor their system regularly? Do they mantion any measures they take for ensuring protection?
Good: Encryption; Regular monitoring of systems that protect PII; "elaborate PII protection"
Average: Protect from unauthorised access (but no mention of any encryption)
Bad: nothing mentioned; no guaranteed PII protection; allows international transfer to countries with less strict data protection rules

3rd Party Sharing

Does the service sell user information to third party trackers and/or allow them access to user tracking while on the service?
Yes: Allows 3rd parties to track users across the site AND/OR sells user information to 3rd parties
No: Anti-track; no tracking by third parties

Privacy Settings

How easy is ti for users to manage their privacy settings?
Good: Easy user management of privacy settings; Clearly stated process for managing privacy
Average: Opt-out options for email offers, promotions, 3rd party trackers; DO NOT TRACK support
Bad: PII settings ambiguous; users advised to keep PII offline if they want to protect it; default sharing of PII

User Control of Data

Ability to access, update, and delete PII
Good: user can contact service to change, update, or delete PII
Average: Request a copy of information; can update information
Bad: cannot access or update user info

Account Deletion

Can the user delete their account? And if so, can they also delete all their information if they so wish?
Full: The user can delete their account AND delete their info
Partial: Delete account, but not all user info
None: Not mentioned; User cannot delete their account