The excess permissions in Android Apps – Adobe Reader, Dragon, Evernote, Groupon, Hipmunk, LinkedIn

Via Sebastian Porst circa 2012-04-27.

Each one deserves treatment on its own

  • Adobe Reader: Full Internet Access (+Adobe)
  • AppAware: Retrieve running applications (+AppAware)
  • Dragon, Fly! Free: Modify/delete USB storage contents
  • Evernote: Read calendar events, plus confidential information (+Evernote)
  • Groupon: Automatically start at boot + Modify/delete USB storage contents (+Groupon)
  • Hipmunk: Read calendar events, plus confidential information (+Hipmunk)
  • LinkedIn: Read contacts, calendar events, plus confidential information (+LinkedIn)
  • Uber: Read contacts, Take pictures and videos without confirmation,
  • Xing: Read contacts, Your Accounts, Take pictures and videos without confirmation, Control Near Field Communication

These apps don’t work on your behalf.  As such, all of these earn the coveted Poisonous App.  Avoid.

  • There’s some argument that perhaps a travel scheduling app needs to see your calendar.  Maybe.
  • But why a social networking app needs to see your calendar+confidential is unclear.