Pinterest 5.19.0 (Android / Google Play) on Jul 21, 2016
- privacymeteronline
- 23 июл. 2016 г.
- 9 мин. чтения

Our examination revealed total 33 items, where were 9 DAR items and 24 DIT items. Among DAR items 0 best items found and among DIT items 0 best items found. Also 0 worst DAR items found and 5 worst DIT items found.
This application is available for Android here. This app was designed to discover, search and save great content from across the web. Use it for inspiration or practical ideas for everyday life. The latest build was released on July 13, 2016.
Let's cite the description of this application below: ------------------------------------------- Pinterest is the world’s catalog of ideas. Find and save recipes, parenting hacks, style inspiration and other ideas to try! Just some of the things you can do with Pinterest: • Find everyday ideas you love—what to make for dinner, what to put on your walls, what to wear and more ideas for every part of your life. • Save ideas for later—organize ideas you save by topic, so they’re always easy to find. • Collaborate with friends—save ideas together for your next group trip, party or project. • Search for an idea even if you don’t know what it’s called—built-in search guides help point your search in the right direction. • Save ideas you find around the web—just use the Pinterest’s Save button on your mobile browser. -------------------------------------------
Protection levels.
Locally stored data (Data-at-Rest, DAR). Locally stored data groups include Credentials Information, Account Information, Social Information, Application Information. The average DAR value is 3.50 points (7.00 points of system protection and 0.00 points of own protection). It equals to a typical value (3.5 points, where's 7 points of system protection and 0 points of own protection).
Items with average value 3.50 points (7 points of system protection, 0 points of own protection) means data protection levels have following definitions. Frankly talking, extra data found that shouldn't be accessed where system protection case - root/jailbreak is required but not possible without wiping device data, and own protection case - stored as is. - Credentials (IDs) ('Credentials Information' Group) - Only account IDs like app or 3rd party user IDs incl. emails, phone number, usernames and etc. (depends on apps). This data item related to mentioned group meant to be any types of credentials incl. basic (ids only), passwords, tokens, etc., - Credentials (Tokens) ('Credentials Information' Group) - Different tokens used to get an access to your account except passwords but incl. app or 3rd party tokens, secret keys and etc. (usually give a full access to your account). This data item related to mentioned group meant to be any types of credentials incl. basic (ids only), passwords, tokens, etc., - Account Data ('Account Information' Group) - Basic info about account like name, list of sub-account (e.g. financial or other) and some linked data like a phone number. This data item related to mentioned group meant to be any info related to profiles, basic credential ids like email or username or phone number plus some more info depends on applications, - Credentials (IDs) ('Social Information' Group) - Only account IDs like app or 3rd party user IDs incl. emails, phone number, usernames and etc. (depends on apps). This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Account Data ('Social Information' Group) - Basic info about account like name, list of sub-account (e.g. financial or other) and some linked data like a phone number. This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Media URLs ('Social Information' Group) - URLs related to media info such as stream media or profile's media, etc. This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Address Data ('Social Information' Group) - Home, work or another type of owner address stored by apps. This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Address Data ('Account Information' Group) - Home, work or another type of owner address stored by apps. This data item related to mentioned group meant to be any info related to profiles, basic credential ids like email or username or phone number plus some more info depends on applications, - Application Configs ('Application Information' Group) - Different configuration files created by your app, perhaps app permissions. This data item related to mentioned group meant to be any kind of info related to app, app settings, incl. installed apps or installers
Keep in mind if you're using some Android devices such Samsung or LG that allow to root your device without user action, the system level equals 0 points instead of 7. It means your data can be stolen without involving your actions.
Transferred data (Data-in-Transit, DIT). Transferred data groups include Analytics 'n' Ads Information, Application Information, Credentials Information, Account Information, Documents Information, Social Information, Address Book 'n' Contact Information, Message Information, Personal 'n' Private Information. The average DIT value is 3.58 points (4.00 points of system protection and 3.17 points of own protection). It is less than a typical value (4 points, where's 4 points of system protection and 4 points of own protection).
Items #1 with average value 4.00 points (4 points of system protection, 4 points of own protection) means data protection levels have following definitions. Frankly talking, data available if it's allowed only and may require user action where system protection case - informs if fake certificate imported into a device, and own protection case - bypassed by fake/stolen root certificates (doesn't check certificate path). - Device Data ('Analytics 'n' Ads Information' Group) - Owner Device ID, Owner Device Name, Owner Device OS Name and Version. This data item related to mentioned group meant to be any kind of info related to analytics services like flurry, google analytics, etc. or advertisements, - Application Events ('Application Information' Group) - App events referred to user actions 'n' activities were done. This data item related to mentioned group meant to be any kind of info related to app, app settings, incl. installed apps or installers, - Credentials (IDs) ('Credentials Information' Group) - Only account IDs like app or 3rd party user IDs incl. emails, phone number, usernames and etc. (depends on apps). This data item related to mentioned group meant to be any types of credentials incl. basic (ids only), passwords, tokens, etc., - Credentials (Passwords) ('Credentials Information' Group) - Well known passwords or PINs you're using to get an access to your account (usually worse than tokens because gives a full access to your account). This data item related to mentioned group meant to be any types of credentials incl. basic (ids only), passwords, tokens, etc., - Credentials (Tokens) ('Credentials Information' Group) - Different tokens used to get an access to your account except passwords but incl. app or 3rd party tokens, secret keys and etc. (usually give a full access to your account). This data item related to mentioned group meant to be any types of credentials incl. basic (ids only), passwords, tokens, etc., - Account Data ('Account Information' Group) - Basic info about account like name, list of sub-account (e.g. financial or other) and some linked data like a phone number. This data item related to mentioned group meant to be any info related to profiles, basic credential ids like email or username or phone number plus some more info depends on applications, - Media URLs ('Account Information' Group) - URLs related to media info such as stream media or profile's media, etc. This data item related to mentioned group meant to be any info related to profiles, basic credential ids like email or username or phone number plus some more info depends on applications, - Stream ('Social Information' Group) - Any kind of social or another stream activity incl. posts, walls, etc. This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Media URLs ('Documents Information' Group) - URLs related to media info such as stream media or profile's media, etc. This data item related to mentioned group meant to be any kind of documents stored locally, uploaded, downloaded, synchronized in any file format, - Contact Short Profile ('Address Book 'n' Contact Information' Group) - Name, Email ID, Phone number of contacts. This data item related to mentioned group meant to be info stored locally, cached or transferred over the network and belong to this application if it's social even, - Media URLs ('Address Book 'n' Contact Information' Group) - URLs related to media info such as stream media or profile's media, etc. This data item related to mentioned group meant to be info stored locally, cached or transferred over the network and belong to this application if it's social even, - Bookmark Details ('Documents Information' Group) - Details of bookmarks like date and time, timezone, place, participants info, body, linked data. This data item related to mentioned group meant to be any kind of documents stored locally, uploaded, downloaded, synchronized in any file format, - Messages ('Message Information' Group) - Different types of messages, conversations except SMS, MMS but incl. recipient & sender IDs and attachments. This data item related to mentioned group meant to be all type of message, incl. SMS, MMS, social & IM messages with or without attachments, - Contact Short Profile ('Message Information' Group) - Name, Email ID, Phone number of contacts. This data item related to mentioned group meant to be all type of message, incl. SMS, MMS, social & IM messages with or without attachments, - Credentials (IDs) ('Social Information' Group) - Only account IDs like app or 3rd party user IDs incl. emails, phone number, usernames and etc. (depends on apps). This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Credentials (Passwords) ('Social Information' Group) - Well known passwords or PINs you're using to get an access to your account (usually worse than tokens because gives a full access to your account). This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Credentials (Tokens) ('Social Information' Group) - Different tokens used to get an access to your account except passwords but incl. app or 3rd party tokens, secret keys and etc. (usually give a full access to your account). This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Account Settings 'n' Configs ('Account Information' Group) - Information about your account settings and configurations. This data item related to mentioned group meant to be any info related to profiles, basic credential ids like email or username or phone number plus some more info depends on applications, - Personalization ('Personal 'n' Private Information' Group) - Info describes user preferences, favourites, tracked data, search requests, suggestions, etc. This data item related to mentioned group meant to be any kind of personal and private info not grabbed from the 3rd party social networks or your ids
Items #2 with average value 2.00 points (4 points of system protection, 0 points of own protection) means data protection levels have following definitions. Frankly talking, developers & vendors mistakes, no user action required where system protection case - informs if fake certificate imported into a device, and own protection case - transferred as is, perhaps protection mode turn off or doesn't exist or info revealed anyway. - Media Data ('Documents Information' Group) - Any kind of info like images, audios, videos, media notes, etc. This data item related to mentioned group meant to be any kind of documents stored locally, uploaded, downloaded, synchronized in any file format, - Media Stream ('Social Information' Group) - Any kind of info like images, audios, videos, media notes, etc. This data item related to mentioned group meant to be info grabbed from 3rd party social networks, - Media Data ('Account Information' Group) - Any kind of info like images, audios, videos, media notes, etc. This data item related to mentioned group meant to be any info related to profiles, basic credential ids like email or username or phone number plus some more info depends on applications, - Media Data ('Address Book 'n' Contact Information' Group) - Any kind of info like images, audios, videos, media notes, etc. This data item related to mentioned group meant to be info stored locally, cached or transferred over the network and belong to this application if it's social even, - Media Data ('Message Information' Group) - Any kind of info like images, audios, videos, media notes, etc. This data item related to mentioned group meant to be all type of message, incl. SMS, MMS, social & IM messages with or without attachments
Keep in mind if you're using out-of-dated Android < 5.0, the system level equals 2 points instead of 4. It means your data can be stolen without involving your actions.
Below you find two infographics summarizing what we described above.
First pic includes info about data items combined into groups and best protected items found.

Second pic includes info about data items separately from group and worst protected items found

Privacy Policy Full application privacy policy is available here http://pinterest.com/about/privacy/. You may find privacy policy details proceeding the link above to compare developer's vision on data protection with our results.
Comments