Are Fitbit, Nike, and Garmin Planning to Sell Your Personal Fitness Data?

These popular fitness companies say they aren’t selling your info, but privacy advocates and the FTC worry that might change.

<a href="http://www.flickr.com/photos/64876287@N05/9024726633/in/photolist-eKu5P4-bdhLQt-gweiJh-gwdzvN-gwdqMh-gwev2z-gwer1P-gwegCU-gwdvsY-gwdoBW-gwdVP4-gwetq8-enSnKZ-eose1h-enSbe4-enS8ir-enSDJR-eorXZu-drDS76-7ZYoV2-iwte2K-acvEG1-a7mVD7-iwsCrK-fJE12M-fmcDcd-fbvhSw-fbg1Sz-fbg38X-eKFu6y-eKu5wc-9BiSqj-dnBRGe-gwcJaJ-gwdrqj-gwehkq-gwdpxw-gwdu6t-gwdoGz-gwdys7-gwdkUa-gwdmD7-gwdRKa-gwdsrg-gwedLS-gwe2Pa-eorL7u-enSd4e-enSeW2-bxsJpR-bxsJq8">Insert Magazine</a>/Flickr

Fight disinformation: Sign up for the free Mother Jones Daily newsletter and follow the news that matters.


Lately, fitness-minded Americans have started wearing sporty wrist-band devices that track tons of data: Weight, mile splits, steps taken per day, sleep quality, sexual activity, calories burned—sometimes, even GPS location. People use this data to keep track of their health, and are able send the information to various websites and apps. But this sensitive, personal data could end up in the hands of corporations looking to target these users with advertising, get credit ratings, or determine insurance rates. In other words, that device could start spying on you—and the Federal Trade Commission is worried. 

“Health data from [a woman’s] connected device, may be collected and then sold to data brokers and other companies she does not know exist,” Jessica Rich, director of the Bureau for Consumer Protection at the Federal Trade Commission, said in a speech on Tuesday for Data Privacy Day. “These companies could use her information to market other products and services to her; make decisions about her eligibility for credit, employment, or insurance; and share with yet other companies. And many of these companies may not maintain reasonable safeguards to protect the data they maintain about her.” 

Several major US-based fitness device companies contacted by Mother Jones—Fitbit, Garmin, and Nike—say they don’t sell personally identifiable information collected from fitness devices. But privacy advocates warn that the policies of these firms could allow them to sell data, if they ever choose to do so.

Let’s start with the popular Fitbit. When you buy one of these bracelets or clip-on devices, you have the option of automatically sending fitness data to the Fitbit website. And the site encourages you to also submit other medical information, such as blood pressure and glucose levels. According to Fitbit’s privacy policy, “At times Fitbit may make certain personal information available to strategic partners that work with Fitbit to provide services to you.” Stephna May, a Fitbit spokesperson, says that the company “does not sell information collected from the device that can identify individual users, period.” However, she says that the company would consider marketing “aggregate information” that cannot be linked back to an individual user—which is outlined in the privacy policy as aggregated gender, age, height, weight, and usage data. (This is similar to what Facebook does.)

Nike, which makes the Nike + Fuel Band, says in its privacy policy that the company may collect a host of personal information, but doesn’t say that it can be shared with advertising companies. Joy Davis Fair, a Nike spokesperson, says that the company, “does not share consumer data” with outside advertisers, but selectively shares it with other companies under the Nike’s corporate umbrella, including Converse and Hurley. Garmin’s policy says that users have to consent in order for the company to sell personal information. A Garmin spokesman says the company doesn’t sell personal or aggregated information to advertisers, and doing so isn’t part of the company’s business model. (Polar Flow, which makes the Polar Loop band, is the only company with a privacy policy that explicitly says it won’t sell personally identifiable data for advertising. It is based in Finland and subject to stringent European Union privacy laws.) 

Jeffrey Chester, executive director for the Center for Digital Democracy, says that these privacy policies are so broad that they could allow the companies to sell health data—even if they aren’t doing so now. “When companies promise that they aren’t selling your data, that’s because they haven’t developed a business model to do so yet,” Chester says.

Scott Peppet, a University of Colorado law school professor, agrees that companies like Fitbit will eventually move toward sharing this data. “I can paint an incredibly detailed and rich picture of who you are based on your Fitbit data,” he said at a FTC conference last year. “That data is so high quality that I can do things like price insurance premiums or I could probably evaluate your credit score incredibly accurately.” 

Even if the companies that make these devices aren’t selling the data, there is another potential privacy concern. Users can send their data to dozens of third-party fitness apps on their phone. Once users do that, the data becomes subject to the privacy policies of the app companies, and these policies do not afford much protection, according to the Privacy Rights Clearinghouse. The group examined 43 popular health and fitness apps last year, and found that, “there are considerable privacy risks for users.” A spokesperson for the FTC told Mother Jones that “fitness devices often work by having apps associated, and [Privacy Rights Clearinghouse’s] analysis here may be relevant.” 

If there’s one entity that knows the value of the health data uploaded to these devices, it’s the CIA. Last year, at a data conference in New York, the CIA’s chief technology officer, Ira Hunt, gave a talk on big data. During the discussion, he told the crowd that he carries a Fitbit. “We like these things,” he said. “What’s really most intriguing is that you can be 100% guaranteed to be identified by simply your gait—how you walk.”

WE'LL BE BLUNT

It is astonishingly hard keeping a newsroom afloat these days, and we need to raise $253,000 in online donations quickly, by October 7.

The short of it: Last year, we had to cut $1 million from our budget so we could have any chance of breaking even by the time our fiscal year ended in June. And despite a huge rally from so many of you leading up to the deadline, we still came up a bit short on the whole. We can’t let that happen again. We have no wiggle room to begin with, and now we have a hole to dig out of.

Readers also told us to just give it to you straight when we need to ask for your support, and seeing how matter-of-factly explaining our inner workings, our challenges and finances, can bring more of you in has been a real silver lining. So our online membership lead, Brian, lays it all out for you in his personal, insider account (that literally puts his skin in the game!) of how urgent things are right now.

The upshot: Being able to rally $253,000 in donations over these next few weeks is vitally important simply because it is the number that keeps us right on track, helping make sure we don't end up with a bigger gap than can be filled again, helping us avoid any significant (and knowable) cash-flow crunches for now. We used to be more nonchalant about coming up short this time of year, thinking we can make it by the time June rolls around. Not anymore.

Because the in-depth journalism on underreported beats and unique perspectives on the daily news you turn to Mother Jones for is only possible because readers fund us. Corporations and powerful people with deep pockets will never sustain the type of journalism we exist to do. The only investors who won’t let independent, investigative journalism down are the people who actually care about its future—you.

And we need readers to show up for us big time—again.

Getting just 10 percent of the people who care enough about our work to be reading this blurb to part with a few bucks would be utterly transformative for us, and that's very much what we need to keep charging hard in this financially uncertain, high-stakes year.

If you can right now, please support the journalism you get from Mother Jones with a donation at whatever amount works for you. And please do it now, before you move on to whatever you're about to do next and think maybe you'll get to it later, because every gift matters and we really need to see a strong response if we're going to raise the $253,000 we need in less than three weeks.

payment methods

WE'LL BE BLUNT

It is astonishingly hard keeping a newsroom afloat these days, and we need to raise $253,000 in online donations quickly, by October 7.

The short of it: Last year, we had to cut $1 million from our budget so we could have any chance of breaking even by the time our fiscal year ended in June. And despite a huge rally from so many of you leading up to the deadline, we still came up a bit short on the whole. We can’t let that happen again. We have no wiggle room to begin with, and now we have a hole to dig out of.

Readers also told us to just give it to you straight when we need to ask for your support, and seeing how matter-of-factly explaining our inner workings, our challenges and finances, can bring more of you in has been a real silver lining. So our online membership lead, Brian, lays it all out for you in his personal, insider account (that literally puts his skin in the game!) of how urgent things are right now.

The upshot: Being able to rally $253,000 in donations over these next few weeks is vitally important simply because it is the number that keeps us right on track, helping make sure we don't end up with a bigger gap than can be filled again, helping us avoid any significant (and knowable) cash-flow crunches for now. We used to be more nonchalant about coming up short this time of year, thinking we can make it by the time June rolls around. Not anymore.

Because the in-depth journalism on underreported beats and unique perspectives on the daily news you turn to Mother Jones for is only possible because readers fund us. Corporations and powerful people with deep pockets will never sustain the type of journalism we exist to do. The only investors who won’t let independent, investigative journalism down are the people who actually care about its future—you.

And we need readers to show up for us big time—again.

Getting just 10 percent of the people who care enough about our work to be reading this blurb to part with a few bucks would be utterly transformative for us, and that's very much what we need to keep charging hard in this financially uncertain, high-stakes year.

If you can right now, please support the journalism you get from Mother Jones with a donation at whatever amount works for you. And please do it now, before you move on to whatever you're about to do next and think maybe you'll get to it later, because every gift matters and we really need to see a strong response if we're going to raise the $253,000 we need in less than three weeks.

payment methods

We Recommend

Latest

Sign up for our free newsletter

Subscribe to the Mother Jones Daily to have our top stories delivered directly to your inbox.

Get our award-winning magazine

Save big on a full year of investigations, ideas, and insights.

Subscribe

Support our journalism

Help Mother Jones' reporters dig deep with a tax-deductible donation.

Donate