Thank you. The GPL violations are a long-term problem, most agreed, but the lack of a privacy policy is an immediate problem. What frustrates me is that I'm usually not complacent about such matters, but I purchased the device during a period of extreme time pressure so I never got around to checking that. In fact the device was specifically purchased to help me better reduce my cognitive load - which it does.
I just wrote to the company in the Feedback feature of the device, asking about where the privacy policy can be found and giving an example of where the privacy policy is found in my Samsung device.
Thank you for making me aware of the issue. I was vaguely aware that there were GPL concerns with Boox, but I did not realize that there is no stated privacy policy - technical potential for exploitation aside.
I think the accepted remedy is to root the device, then use a root-level firewall to prevent it from phoning home. But Boox can of course snap their fingers and undo that any time, and rooting comes with its own set of security concerns. In any case, you're strongly advised to never enter a password on the device using the on-screen keyboard, and rotate any credentials you may have already entered.
I just wrote to the company in the Feedback feature of the device, asking about where the privacy policy can be found and giving an example of where the privacy policy is found in my Samsung device.
Thank you for making me aware of the issue. I was vaguely aware that there were GPL concerns with Boox, but I did not realize that there is no stated privacy policy - technical potential for exploitation aside.