FTC Reaches Settlement with Myspace for Misleading Statements in Privacy Policy
Time 2 Minute Read

On May 8, 2012, the Federal Trade Commission announced a settlement agreement with the social networking service Myspace LLC (“Myspace”). The FTC alleged that Myspace’s practice of sharing users’ personal information with unaffiliated third-party advertisers conflicted with representations the company made in its privacy policy, and could allow those advertisers to obtain users’ names, publicly available information and information about their online browsing habits.

According to the FTC’s complaint, Myspace’s privacy policy stated that it would not share personal information except as described in the privacy policy without first giving notice to users and receiving permission for the sharing. The privacy policy indicated that the information included in cookies used to customize advertisements did not identify users to third parties, and that only “[a]nonymous click stream, number of page views calculated by pixel tags, and aggregated demographic information may also be shared with MySpace’s advertisers and business partners.” Myspace also represented that it complies with the U.S.-EU and U.S.-Swiss Safe Harbor Frameworks.

The FTC’s complaint alleged that, contrary to its representations, Myspace (1) provided users’ personal information to unaffiliated third-party advertisers without first giving users notice or obtaining users’ permission; (2) allowed advertisers to access personally identifiable information via the means through which Myspace customizes ads; (3) shared non-anonymized web-browsing activity with advertisers; and (4) did not adhere to the U.S. Safe Harbor privacy principles of Notice and Choice. According to the FTC, these activities constituted deceptive acts or practices in violation of the FTC Act.

The proposed settlement order prohibits Myspace from misrepresenting the manner in which it maintains and protects the privacy and confidentiality of its users’ personal information, and requires the company to establish and maintain a comprehensive privacy program subject to biennial, independent, third-party audits for 20 years.

You May Also Be Interested In

Time 2 Minute Read

On March 3, 2026, the Virginia Attorney General appealed a federal court’s grant of a preliminary injunction barring the enforcement of a new Virginia law requiring age verification and a time limit on social media use by minors under the age of 16 pending a final determination on the merits.    

Time 2 Minute Read

On March 5, 2026, the California Privacy Protection Agency announced that the agency had reached a settlement with Ford Motor Company resolving an enforcement action against the company that alleged noncompliance with the California Consumer Privacy Act’s opt-out of sale/sharing rights.

Time 3 Minute Read

The Federal Trade Commission has issued a new Policy Statement encouraging the adoption of robust age‑verification technologies by pledging not to bring enforcement actions under the COPPA Rule against operators of general‑ or mixed‑audience sites that collect, use or disclose personal information solely to determine users’ ages, so long as long as they follow strict safeguards.

Time 2 Minute Read

On February 23, 2026, a Joint Statement on AI-Generated Imagery was published by 61 data protection authorities. The Joint Statement addresses concerns regarding AI systems capable of generating realistic images and videos depicting identifiable individuals without their knowledge or consent.

Search

Subscribe Arrow

Recent Posts

Categories

Tags

Archives

Jump to Page