The Macrosite for News, Analysis and Opinion about the Future of the Internet
Joe Stanganelli

Employers Should Pass on Password Sharing

Written by Joe Stanganelli
4/4/2012 33 comments
no ratings
DISCUSS     Email This

"You will not share your password, ...let anyone else access your account, or do anything else that might jeopardize the security of your account," says Facebook's Terms of Service.

Aside from discouraging account-sharing (i.e., requiring anyone who wants to poke around (pun unintended) on Facebook to register), one purpose of this boilerplate is to minimize Facebook's legal liability in case you do something ill advised (such as taking nude pictures of yourself with your unsecured smartphone, and then losing said smartphone while it is still logged in to your Facebook account). Regardless, a contract is a contract. Give someone else full access to your Facebook account, and you may technically be in breach.

Nonetheless, schools, employers, and even government agencies are compelling people to give up their Facebook passwords so as to rifle through their accounts. (Creepy, no?)

The issue attracted media attention in March, when an adolescent girl and her mother filed suit against her public school district. According to the complaint, middle school officials allegedly punished the girl repeatedly for complaining on her privacy-enabled Facebook account about an adult hall monitor being "mean" to her.

Adding insult to injury, school officials and a law enforcement officer allegedly required the girl to reveal her Facebook password -- under threat of punishment -- after a parent complained that the girl had talked about sex outside of class with the parent's son on Facebook. Allegedly, the school officials then thoroughly searched through, commented on, and took notes on the girl's Facebook content -- including her private communications -- while the girl sat there and sobbed. (There is no indication in the complaint that the son, who allegedly initiated the cybersexual discussion, was subjected to the same search.)

The case is reminiscent of an incident in Concord, New Hampshire, that I wrote about for Internet Evolution nearly a year ago. There, a public middle school suspended a 13-year-old girl after she posted on her Facebook wall a wish that only her math teacher had died in the September 11 attacks. The case attracted a flurry of media attention. According to the girl's mother, the school has since conceded that its actions were unconstitutional; she reports that the local high school's civics class now teaches the incident "as an example of what a school system can not do."

Some colleges and employers also request Facebook login information as part of their application processes. This practice has raised several privacy concerns -- not least of which being that full, unfettered access to an applicant's social media profile data may reveal protected information that the organization is not allowed to ask or use in making a decision (e.g., age, ethnicity, religion, et cetera). Sadly, few are in a position to refuse such password requests in today's job market.

This is not a recent trend. As Alan Reiter wrote for Internet Evolution nearly three years ago, the City of Bozeman, Montana, asked for job applicant's social network passwords as early as 2009. (The city reportedly discontinued the practice in 2011.)

Also in 2009, the Florida Board of Bar Examiners (the august group that decides who gets to be a lawyer in the State of Florida) promulgated a rule that certain applicants may be required to reveal their social network passwords and allow the Examiners to search through their accounts.

Coincidentally, it may be just a matter of time before the lawyers put this practice to bed. At least two states are considering legislation banning employers from requesting online passwords. A similar bill is also soon to come before the US Senate. Additionally, a lawsuit could potentially crop up down the line, given the right circumstances (although Facebook, for its part, apparently has no immediate desire to sue the interferers).

True, every sizeable organization needs to establish a good social media policy -- particularly one that prevents employees from embarrassing or creating liability for the organization, or otherwise interfering with the organization's goals. (I've discussed some examples previously here.) One can go too far, though -- as a matter of law, and as a matter of good will.

Related posts:

— Joe Stanganelli is a writer, attorney, and communications consultant. He is also principal and founding attorney of Beacon Hill Law in Boston. Follow him on Twitter at @JoeStanganelli.

DISCUSS     Email This
Current display:       newest comments first       display in chronological order
< Previous   Page 2 of 4   Next >
KMT568
IQ Crew
Friday April 6, 2012 10:23:03 AM
no ratings

I too find all this somewhat apalling and I would like to think that I would tell any company who was interviewing me to deny me employment should I not share my FB password, email password, or any other password. Potential employees don't have the right to ask to get access to the company's intranet or servers to see how things run, but for some reason it's become more and more common to poke around the online lives of potential employees. The only way this will stop going on is if there is a law passed or more people refuse to give in.

mhhfive
IQ Crew
Thursday April 5, 2012 9:03:29 PM
no ratings

I wonder how many people will create a fake facebook account as a decoy... or how many people give a password that doesn't actually work. Given that people will give fake references, it wouldn't be too surprising if people also lied about their FB activities.

Kurtkeys
IQ Crew
Thursday April 5, 2012 4:34:33 PM
no ratings
1 saves

Steve,

I can't understand the amount of sheer gaul it must take for a company to even consider this level of intrusion. Implications of privacy aside, giving this sort of information to another person gives that person the full ability to become you online(Identity thief by coersion). And in every company I have ever worked for had a written policy that specifically forbids sharing login information with any other party, for any reason what-so-ever. It is past time for trhis to be done away with. But our federal congress has refused to pass a bill that would out law such practice. So may I say it's time to put on your activist helmet and fire off a letter to your local, state and federal elected representatives?

-Kurt

Kim Davis
Thinkernetter
Thursday April 5, 2012 4:20:03 PM
no ratings

Maybe you could "unfriend" them once you're hired.  I don't know if it's possible to change your Facebook password?

Nicole Ferraro
IQ Crew
Thursday April 5, 2012 4:04:38 PM

Gary, thanks for weighing in on this one. I was thinking the same, that -- while still controversial and probably unwanted -- asking to "Friend" people is much less distasteful than asking for access to their accounts. It's actually shocking to me that there's any debate or discussion going on about this at all. It's so obviously wrong.

Mary Jander
Thinkernetter
Thursday April 5, 2012 11:36:36 AM
no ratings

What a mare's nest. Hopefully, that argument alone will silence proponents.

Are there any proponents?

smkinoshita
Thinkernetter
Thursday April 5, 2012 11:25:48 AM
no ratings

"Between this any several other similar stories I've written about, I get the sense that there is a pervasive societal belief that electronic data 'doesn't count.'"

Wouldn't take me very long to demonstrate otherwise.  It seriously sounds like all these people need is a dose of their own medicine and they'd smarten up.

Joe Stanganelli
Thinkernetter
Thursday April 5, 2012 11:16:45 AM
no ratings

Compelling point, dlavie.  If a would-be employee is so lackadaisical about his own privacy and security, what might that say about the employee's protectiveness of his employer's privacy and security?

On the other hand, the "don't do what I tell you to do" test has its logical limits.

Joe Stanganelli
Thinkernetter
Thursday April 5, 2012 11:14:33 AM
no ratings

Hi, mhhfive.

At least there's a difference between voluntarily shooting yourself in the foot as part of some marketing gimmick and being coerced or forced into doing so as a matter of your education or livelihood.

Joe Stanganelli
Thinkernetter
Thursday April 5, 2012 11:13:04 AM
no ratings

Interesting, Michael.  What school districts?  Where did you hear this?

< Previous   Page 2 of 4   Next >
The ThinkerNet does not reflect the views of TechWeb. The ThinkerNet is an informal means of communication to members and visitors of the Internet Evolution site. Individual authors are chosen by Internet Evolution to blog. Neither Internet Evolution nor TechWeb assume responsibility for comments, claims, or opinions made by authors and ThinkerNet bloggers. They are no substitute for your own research and should not be relied upon for trading or any other purpose.
previous posts from Joe Stanganelli
Joe Stanganelli
At last month's Bio-IT World Conference, speakers and attendees alike wrung their hands at one of the biggest impediments to collaboration -- getting employees to adopt collaboration systems.
Joe Stanganelli
In the wake of the Boston Marathon bombing, armchair detectives on Reddit and 4chan tried to "crowdsolve" the case by analyzing photographs of the scene. Reactions were mixed -- as were results.
Joe Stanganelli
While you were sleeping, the Boston area transformed into a Michael Bay movie -- with Twitter users writing the script.
Joe Stanganelli
Joe Stanganelli   4/11/2013   9 comments
Leaders in the health and life sciences industry called for more collaboration and new big-data search technologies as this year's Bio-IT World Conference began earlier this week.
Joe Stanganelli
Yahoo's acquisition of Summly this week points the direction for the future of the Internet giant: It's about mobile, sure, but also about personalization. It's also part of a bold plan to swoop in and reclaim the search crown from Google.
5
of
Singer at C-Level
Enterprise Org Chart Meets Hollywood

5|11|11   |   1:48   |   10 comments


The future of your executive organizational chart is being influenced by Hollywood and crowdsourcing. This may not be as frightening as it sounds.
The Incredible Hultquist
Social Networks & Hiring Pitfalls

10|16|09   |   2:16   |   5 comments


More companies are trolling social networks to find and vet potential job candidates. Beware the pitfalls of blurring the line between personal and professional lives.
Kim Davis
Employees Can Speak Freely on Social Media

1|23|13   |   1:52   |   16 comments


US regulators are sympathetic to employees who use Facebook and Twitter to air their grievances.
Mitch Wagner
Even Jerks Need Jobs

10|23|12   |   3:56   |   26 comments


Michael Brutsch, a.k.a. Reddit's Violentacrez, is a creep who posted borderline kiddie porn to the Internet anonymously, and got fired when outed by a media outlet. It's a cautionary tale even for people who aren't jerks and predators.
Mary E. Shacklett
Scrum Brings Social MediaThinking to Projects

7|30|12   |   2:12   |   8 comments


The very low-tech "scrum" project technique introduces "crowd talking" to projects and also sets the entire crowd to problem solving. So far, these new social-media-style meetings appear to have supercharged project execution.
Second Shooter
Open Letter to Marissa

7|18|12   |   2:11   |   13 comments


Yahoo's new CEO can't go back to what Yahoo was; that's how it got to what it is! Instead she has to look at something that Yahoo has always rejected, which is a relationship with the telcos and cablecos. They'd love a partner in creating service applications.
what.the.ferraro
Abusing the Facebook Files

3|30|12   |   2:35   |   21 comments


Some employers are asking potential hires for their Facebook passwords so they can investigate their accounts. This is insane.
Mary E. Shacklett
Doing Social Networking Right

3|19|12   |   2:31   |   9 comments


Companies are still getting their feet wet with social networking and what employees should and shouldn't broadcast. But they don't always involve HR and PR. Here's why they should, and what they risk when they don't.
Reiter's Block
The Web Needs National Grammar Day

2|29|12   |   2:59   |   56 comments


March 4 is National Grammar Day, and you enterprise and consumer bloggers need to pay attention.
Kim Davis
Facebook's European Nightmare

2|10|12   |   2:12   |   14 comments


Max Schrems, an Austrian law student, has been hauling Facebook over the coals for its data protection practices.
IETV: the thinkerNet on film
5
of
Paul J. Fleuranges
Digital Signage Keeps NYC Subway Straphangers on Track

5|6|13   |   3:51   |   No comments


New York's Metropolitan Transit Authority is conducting a pilot test of digital kiosks to guide subway users to where they want to go more efficiently and at lower cost.
Kim Davis
Fast Forward to the Future

4|23|13   |   2:29   |   20 comments


A look back at tech writing in the 90s makes us wonder where enterprise IT will be 20 years from now.
Mitch Wagner
Google Launches Its Most Depressing Service Yet

4|15|13   |   2:59   |   10 comments


Google's new Inactive Account Manager lets you control how Google disposes of your accounts when you die.
Second Shooter
Argument Over Top-Level Domains Is 'Stupid'

4|11|13   |   2:07   |   3 comments


The whole Amazon.reader debate is a double-stupid. It's stupid to think that there's any e-book buyer who doesn't know Amazon's URL, and it was stupider to let ICANN launch the whole free-form TLD initiative to start with.
Kim Davis
Ladies, Your Tablet Awaits

3|21|13   |   2:22   |   37 comments


ePad Femme is the world’s first tablet “made exclusively for women.”
Wisdom of the Big Chair
NFC Moves Into the Mainstream

3|20|13   |   2:16   |   No comments


While NFC's original goal was to enhance mobile commerce applications, it is finding its way into a number of other uses, which is creating both opportunity as well as challenges for IT departments.
Wisdom of the Big Chair
Integrating Security Into Your Cloud Contract

3|19|13   |   3:35   |   No comments


Enterprises would like to move to cloud computing but are hesitant because they are concerned about providers’ ability to secure company data. Here are some tips that help to ensure that if breaches occur, the business is not left holding the bag.
Brian Baron
How Edmunds.com Collects Customer Information

3|18|13   |   1:15   |   No comments


Edmunds separates customers into segments based on the info it collects on its site and from partners, and uses that to push out custom content, said Brian Baron, director of business analytics for Edmunds.com, at Predictive Analytics Innovation Summit.
Brian Baron
How Edmunds.com Uses Analytics to Customize Site

3|14|13   |   0:47   |   No comments


The automotive website uses propensity modeling to target ads and customer registration forms, said Brian Baron, director of business analytics for Edmunds.com, at Predictive Analytics Innovation Summit.
Second Shooter
Locked Handsets Aren't the Problem – Subsidies Are the Problem

3|13|13   |   2:09   |   10 comments


Subsidized handsets, rather than locked handsets, should be the focus of regulators. We're not getting good deals, not fostering innovation, and weakening our power as buyers.
an IBM information resource
sponsored content
big blue blog
Todd Watson
Todd Watson   5/17/2013   1 comment
It's been 17 years since I've visited the city of Dublin, but I still have some very distinct impressions from my one and only visit.
an IBM information resource
sponsored content
Expert Integrated Systems: Changing the Experience & Economics of IT
In this e-book, we take an in-depth look at these expert integrated systems -- what they are, how they work, and how they have the potential to help CIOs achieve dramatic savings while restoring IT's role as business innovator.

READ THIS eBOOK
your weekly update of news, analysis, and
opinion from Internet Evolution - FREE!

REGISTER HERE
Wanted! Site Moderators
Internet Evolution is looking for a handful of readers to help moderate the message boards on our site – as well as engaging in high-IQ conversation with the industry mavens on our thinkerNet blogosphere. The job comes with various perks, bags of kudos, and GIANT bragging rights. Interested?

Please email: moderators@internetevolution.com
Internet Evolution – not for thickies
Keep Critical Data With a Knowledge Management System
Taimoor Zubair
Fortune 500 companies lose at least
$31.5 billion a year by failing to share knowledge. A Knowledge Management System (KMS) can help companies significantly reduce these costs.

CLICK FOR MORE
IT Suffers From Obama Admin's Jekyll & Hyde Approach to Privacy Rights
Ron Miller
Recently, the Obama administration has been of two minds where privacy rights are concerned. On one hand, you have an administration that vowed to
veto CISPA and mandated open data for government websites. On the other hand, you have an increasingly out-of-control Department of Justice on a fishing expedition at AP and demanding legislation to let the FBI wiretap private, encrypted communications and levy fines if a company fails to comply.

CLICK FOR MORE
Websites Should Consider Tougher ID Verification Policies
Alan Reiter
The apartment and house sharing service,
Airbnb, now requires members to verify their identities by demonstrating a presence on the web, and by either scanning a government ID or entering detailed personal details. Other enterprises should take a close look at Airbnb's verification policies.

CLICK FOR MORE