Protect Data by Default
An HSNS should make personal profiles fully private by default without requiring a user’s action— an opt-in, maximum privacy approach. In other words, it should define a floor level of privacy protection, even if users don’t change their privacy settings. Furthermore, it should collect only the minimum amount of person-specific data to accomplish its intended business purposes. For example, it might adopt an architecture in which the user is anonymous from the perspective of not just other users but even the platform itself.