It turns out, as a car audio dealer, you should be aware of what kind of data today’s cars are collecting from drivers.
If you have a loaner car at your shop, listen up. You could be collecting data from your customers without their consent if they plug their phone into the car’s infotainment system and you don’t erase that data. This could leave you open to hefty fines, reports JD Supra in an article reprinted from CounselorLibrary.
Let’s backup a little and first answer the question, what kind of data can cars collect?
Rappler.com says cars can learn your Twitter handle or your Facebook handle and from there, they may know your calendar entries. Cars know what data was downloaded to your phone recently, and which photos you took recently. They know what music you listen to. Syncing your phone to your car over Bluetooth or WiFi or through CarPlay or Android Auto will reveal this kind of information. Even just driving with the car’s GPS reveals information, according to Privacy4Cars.
“For example, whenever you connect your cell phone to a car’s infotainment center, you are giving that car access to such things as your personal and business contacts, call logs, text messages, navigation history, home and work addresses, garage codes, passwords, IDs, health and other biometric information, credit information, user profiles, and third-party apps.”
Some states levy penalties in the $500-$7,500 range per VIN.
CounselorLibrary suggests you, as a business, ask yourself questions such as:
- Do you have a vehicle loaner, rental, or car sharing program?
- Do you serve customers with sensitive information/special privacy considerations, such as customers in the government, military, or law enforcement or who otherwise have security clearance? What about high net worth individuals, C-level executives, those who work in HR, IT, or security departments? What about customers who may have been victims of a crime or harassment or who are in a protected class?
- Do you sell (and upsell) vehicles with telematics/connected services?
- Have you sold or will you sell at least one vehicle to one California resident in 2021?
- Are you sure that no employees/contractors would help themselves to the personal information captured by a vehicle?
- Do you have a policy on how to handle personal information that may be stored or processed by vehicles’ systems?
It suggests your business have a written policy regarding the collection, and deletion of captured vehicle data and that you tell consumers what information you collect. If you require customers to sign legal documents on a loaner car or for other reasons, you may want to consult a lawyer and revise your statement to address data privacy.
Photo: Toyota of Clermont