New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

IAPP CIPT Exam - Topic 7 Question 89 Discussion

Actual exam question for IAPP's CIPT exam
Question #: 89
Topic #: 7
[All CIPT Questions]

SCENARIO

Please use the following to answer the next questions:

Your company is launching a new track and trace health app during the outbreak of a virus pandemic in the US. The developers claim the app is based on privacy by design because personal data collected was considered to ensure only necessary data is captured, users are presented with a privacy notice, and they are asked to give consent before data is shared. Users can update their consent after logging into an account, through a dedicated privacy and consent hub. This is accessible through the 'Settings' icon from any app page, then clicking 'My Preferences', and selecting 'Information Sharing and Consent' where the following choices are displayed:

* "I consent to receive notifications and infection alerts";

* "I consent to receive information on additional features or services, and new products";

* "I consent to sharing only my risk result and location information, for exposure and contact tracing purposes";

* "I consent to share my data for medical research purposes"; and

* "I consent to share my data with healthcare providers affiliated to the company".

For each choice, an ON* or OFF tab is available The default setting is ON for all

Users purchase a virus screening service for USS29 99 for themselves or others using the app The virus screening

service works as follows:

* Step 1 A photo of the user's face is taken.

* Step 2 The user measures their temperature and adds the reading in the app

* Step 3 The user is asked to read sentences so that a voice analysis can detect symptoms

* Step 4 The user is asked to answer questions on known symptoms

* Step 5 The user can input information on family members (name date of birth, citizenship, home address, phone number, email and relationship).)

The results are displayed as one of the following risk status "Low. "Medium" or "High" if the user is deemed at "Medium " or "High" risk an alert may be sent to other users and the user is Invited to seek a medical consultation and diagnostic from a healthcare provider.

A user's risk status also feeds a world map for contact tracing purposes, where users are able to check if they have been or are in dose proximity of an infected person If a user has come in contact with another individual classified as "medium' or 'high' risk an instant notification also alerts the user of this. The app collects location trails of every user to monitor locations visited by an infected individual Location is collected using the phone's GPS functionary, whether the app is in use or not however, the exact location of the user is "blurred' for privacy reasons Users can only see on the map circles

What is likely to be the biggest privacy concern with the current 'Information Sharing and Consent' page?

Show Suggested Answer Hide Answer
Suggested Answer: A

Having default settings for information sharing and consent can be problematic because it may not accurately reflect a user's preferences. Users may not be aware of these default settings or may not understand their implications. This could result in personal information being shared without the user's explicit consent.


Contribute your Thoughts:

0/2000 characters
Lorean
3 months ago
Why do they need my family members' info? That feels excessive.
upvoted 0 times
...
Vilma
4 months ago
I think sharing with healthcare providers is fine if it’s for better care.
upvoted 0 times
...
Tammara
4 months ago
Wait, they can track my location even when the app isn’t open?
upvoted 0 times
...
Halina
4 months ago
Totally agree, that’s sneaky!
upvoted 0 times
...
Tora
4 months ago
The default ON setting for consent is a huge red flag.
upvoted 0 times
...
Johana
5 months ago
I’m leaning towards option D because sharing data with healthcare providers could lead to privacy issues, especially if users aren't fully aware of what that entails.
upvoted 0 times
...
Lettie
5 months ago
I practiced a similar question about consent and marketing, and I think option C could raise eyebrows since users might not want to receive marketing info during a pandemic.
upvoted 0 times
...
Cristy
5 months ago
I’m not entirely sure, but I feel like the navigation to the consent page could confuse users, which might make option B a valid concern too.
upvoted 0 times
...
Micheline
5 months ago
I remember discussing how default settings can heavily influence user consent, so I think option A might be the biggest concern.
upvoted 0 times
...
Angella
5 months ago
Sharing user data with affiliated healthcare providers is a big privacy issue. The app should be more transparent about how that data will be used.
upvoted 0 times
...
Cherry
5 months ago
I'm a bit confused about the navigation to get to the consent page. It seems like a lot of steps just to manage your privacy preferences.
upvoted 0 times
...
Armanda
5 months ago
The default ON settings for the consent options are definitely a concern. Users may not realize they need to actively change those to protect their privacy.
upvoted 0 times
...
Jamal
5 months ago
Allowing users to consent to marketing information seems like a red flag for me. That's not really necessary for the core functionality of the app.
upvoted 0 times
...
Royal
5 months ago
Alright, let's see here. The key information seems to be the mention of Varnish for full page caching. I'm guessing the 111 attribute value is likely related to how Magento integrates with Varnish to manage caching. I'll need to carefully consider the options and try to identify the most plausible answer.
upvoted 0 times
...
Danilo
5 months ago
Hmm, I'm a little unsure about this one. I know Linux uses NFS for file sharing, but I'm not sure if that's the most appropriate protocol for connecting to a NAS. I'll have to think this through carefully.
upvoted 0 times
...
Marci
1 year ago
Wait, they're tracking our location even when the app isn't in use? That's just creepy, man. Where's the 'delete my data' button?
upvoted 0 times
...
Charolette
1 year ago
Ugh, the navigation to the consent page is a pain. They're really making it hard for users to manage their privacy.
upvoted 0 times
...
Tiera
1 year ago
Consent for marketing? Nah, I'm out. This app is trying to do way too much with my data.
upvoted 0 times
...
Sina
1 year ago
Whoa, sharing data with affiliated healthcare providers? That's a big red flag for me. We need more control over our personal info.
upvoted 0 times
Johnson
1 year ago
I wonder if we can opt out of sharing data with healthcare providers altogether.
upvoted 0 times
...
Bethanie
1 year ago
Definitely, we should have more control over who our information is shared with.
upvoted 0 times
...
Anissa
1 year ago
I think we should have the option to choose which healthcare providers can access our data.
upvoted 0 times
...
Golda
1 year ago
I agree, that does seem like a major privacy concern.
upvoted 0 times
...
...
Veronika
1 year ago
I see your point, Ardella. But for me, the information sharing with healthcare providers affiliated with the company is the biggest concern. It raises questions about data security and confidentiality.
upvoted 0 times
...
Ardella
1 year ago
I believe the option to consent to receive potential marketing information is also a concern. It may lead to unwanted spam or targeted ads.
upvoted 0 times
...
Dulce
2 years ago
That default ON setting is a bit sketchy, don't you think? Talk about 'privacy by design'!
upvoted 0 times
Nicolette
1 year ago
Yeah, it's definitely not ideal. Users should have more control over what data they are sharing.
upvoted 0 times
...
Nicolette
1 year ago
I agree, having the default setting ON for all choices does raise some privacy concerns.
upvoted 0 times
...
...
Murray
2 years ago
I agree with Edna. Having all options set to ON by default can lead to unintentional sharing of personal data.
upvoted 0 times
...
Edna
2 years ago
I think the biggest privacy concern is the default setting being ON for all options.
upvoted 0 times
...

Save Cancel