top | item 3456995

(no title)

mpk | 14 years ago

"And a Basecamp user uploaded the 100,000,000th file (It was a picture of a cat!)"

Aren't you supposed to treat user data as confidential and not examine the contents?

discuss

order

themcgruff|14 years ago

The file was named cat.jpg and that was logged, which was what we saw. We do not look at user’s files.

sunchild|14 years ago

Sorry, but that is just a huge blunder. I can see from your comment that you think it's no big deal, but I read that item and immediately blacklisted 37Signals as a vendor that looks at customer files.

Your explanation makes it worse, not better; you shouldn't even be looking at filenames.

mahyarm|14 years ago

You should of emailed the user that their picture was #100'000'000 and if they would give you permission to look at the picture to feature in their blog post. That would of been the ethical way to do it.

huggyface|14 years ago

Terribly bad judgment to post that. Like apparently numerous others, that bit caught my eye and made me pause and reflect on the downside of SaaS.

Even looking at the filename seems pretty suspect, as an aside. What if the filename was BankruptcyPreparation.docx, or TerminationOfBobDobbs.pdf, etc? The metadata about a file should be confidential as well.