Marshini Chetty

dblp:c/MarshiniChetty · DBLP profile ↗
← Back
52ranked-venue papers
7as first author
22since 2021 · last 2026
0000-0003-0804-6110ORCID · verified

Domains — the database's venue-derived domains; a paper can count in several

Human-computer interaction and ubiquitous computing · 43 · 7 first-author · 17 since 2021Security and privacy · 8 · 3 since 2021Computer networks · 3 · 2 since 2021
YearPublicationVenuePosition
2026 Governance of AI-Generated Content: A Case Study on Social Media Platforms
abstract
Online platforms are seeing increasing amounts of AI-generated content—text and other forms of media that are made or co-created with generative AI. This trend suggests platforms may need to establish governance frameworks, including policies and enforcement strategies for how users create, post, share, and engage with such content to encourage responsible use. We investigate the governance of AI-generated content across 40 popular social media platforms. Just over two-thirds explicitly describe governance of AI-generated content spanning six themes. Most platforms focus on moderating AI-generated content that violates established content rules and discloses AI-generated content. Fewer platforms—those that are focused on creativity and knowledge-sharing—address other issues such as ownership and monetization. Based on these findings, we suggest stakeholders and policymakers develop more direct, comprehensive, and forward-looking AI-generated content governance, as well as tools and education for users about the use of such content.
Lan Gao 0001, Abani Ahmed, Oscar Chen, Margaux Reyl, Zayna Cheema, Nick Feamster, Chenhao Tan, Kurt Thomas, Marshini Chetty
CHI9
2026 A Systematic Review of User Experiments on the Effects of Dark Patterns
abstract
Deceptive/Manipulative Patterns (DMP) are interface designs, also known as “dark patterns,” that manipulate user behavior. While considerable attention has been paid to their ethical and legal implications, empirical evidence about their real-world effects remains diffuse. This review synthesizes up-to-date experimental studies, focusing on works that quantify how (or whether) DMPs influence users. We also aggregate findings on interventions aimed at reducing DMP effects. Our synthesis highlights the experimental agreement that DMPs do significantly alter user behavior (with large variance in effect size) and that external interventions have been mostly unsuccessful in mitigating their effects. Lastly, we show that significant correlations between DMP effects and personal characteristics (e.g., age or political affiliation) are uncommon, indicating DMPs similarly affected nearly all populations tested. By summarizing the experimental evidence, we clarify the effects of DMPs, highlight gaps and tensions in the existing experimental literature, and help inform ongoing research and policy directions.
Brennan Schaffner, Luis Heysen, Marshini Chetty
CHI3
2026 Water On My Block: Reflections on Building A Participatory Artificial Intelligence System For Precision Weather With Scientists and An Urban Community
abstract
Creating accurate hyper-local climate Artificial Intelligence (AI) models requires neighborhood-level weather measurements and community partnerships. In this paper, we describe a three year case study of using a participatory approach to support the creation of hyper-local climate AI models, or what we term “precision weather.” Using participatory design to involve stakeholders in the climate AI pipeline design process i.e., “participatory AI,” we collaborated with a national laboratory and a community organization in a major metropolitan area in the United States, working with community members and scientists. We held interviews, co-design workshops (“Community Cafes”), and created an app for the community to collect flood reports in their neighborhood for advocacy and to contribute data to the AI model pipeline. We discuss our findings, lessons learned, and implications for future participatory projects to support hyper-local climate AI.
Kelly B. Wagman, Kanchan Uday Naik, Madison Vanderbilt, Naeun Ko, John Rugemalila, Thomas Chang, Marshini Chetty
CHI7
2025 Dark Patterns in the Opt-Out Process and Compliance with the California Consumer Privacy Act (CCPA)
abstract
To protect consumer privacy, the California Consumer Privacy Act (CCPA) mandates that businesses provide consumers with a straightforward way to opt out of the sale and sharing of their personal information. However, the control that businesses enjoy over the opt-out process allows them to impose hurdles on consumers aiming to opt out, including by employing dark patterns. Motivated by the enactment of the California Privacy Rights Act (CPRA), which strengthens the CCPA and explicitly forbids certain dark patterns in the opt-out process, we investigate how dark patterns are used in opt-out processes and assess their compliance with CCPA regulations. Our research reveals that websites employ a variety of dark patterns. Some of these patterns are explicitly prohibited under the CCPA; others evidently take advantage of legal loopholes. Despite the initial efforts to restrict dark patterns by policymakers, there is more work to be done.
Van Hong Tran, Aarushi Mehrotra, Ranya Sharma, Marshini Chetty, Nick Feamster, Jens Frankenreiter, Lior Jacob Strahilevitz
CHI4
2025 Generative AI Uses and Risks for Knowledge Workers in a Science Organization
Kelly B. Wagman, Matthew T. Dearing, Marshini Chetty
CHI3
2025 "I Cannot Write This Because It Violates Our Content Policy": Understanding Content Moderation Policies and User Experiences in Generative AI Products
Lan Gao 0001, Oscar Chen, Rachel Lee, Nick Feamster, Chenhao Tan, Marshini Chetty
USENIX Security Symposium6
2025 Understanding User Privacy Concerns of Shared Smart TVs
abstract
As smart TVs gain popularity, they introduce significant privacy and security concerns due to their extensive data collection and multi-user contexts. This paper investigates user perceptions of privacy concerns regarding both service providers and the multi-user use case in the context of smart TVs. Through in-depth interviews with 22 smart TV users, we found that participants expressed uncertainty about the data collection practices of smart TVs and a desire for clearer communication of such practices. Participants reported discomfort with how their personal information is handled through their smart TVs but felt forced to accept it due to the lack of ability to opt out. Our study also highlights varied privacy concerns when smart TVs are shared in public versus private settings. While participants expressed significantly less concern when sharing smart TVs with acquaintances in private settings, concerns were more prevalent in public settings like hotels and Airbnbs. Based on the findings, we provide recommendations for designers, policymakers, and researchers to improve privacy protection and user experience around smart TVs.
Qia Wang 0001, Lan Gao 0001, Marshini Chetty, Nick Feamster
Proc. ACM Hum. Comput. Interact.3
2025 Creating and Evaluating Privacy and Security Micro-Lessons for Elementary School Children
abstract
The growing use of technology in K-8 classrooms highlights a parallel need for formal learning opportunities aimed at helping children use technology safely and protect their personal information. Even the youngest students are now using tablets, laptops, and apps to support their learning; however, there are limited curricular materials available for elementary and middle school children on digital privacy and security topics. To bridge this gap, we developed a series of micro-lessons to help K-8 children learn about digital privacy and security at school. We first conducted a formative study by interviewing elementary school teachers to identify the design needs for digital privacy and security lessons. We then developed micro-lessons--multiple 15-20 minute activities designed to be easily inserted into the existing curriculum--using a co-design approach with multiple rounds of developing and revising the micro-lessons in collaboration with teachers. Throughout the process, we conducted evaluation sessions where teachers implemented or reviewed the micro-lessons. Our study identifies strengths, challenges, and teachers' tailoring strategies when incorporating micro-lessons for K-8 digital privacy and security topics, providing design implications for facilitating learning about these topics in school classrooms.
Lan Gao 0001, Elana B. Blinder, Abigail Barnes, Kevin Song, Tamara L. Clegg, Jessica Vitak, Marshini Chetty
Proc. ACM Hum. Comput. Interact.7
2025 An Experimental Study Of Netflix Use and the Effects of Autoplay on Watching Behaviors
abstract
Prior work on dark patterns, or manipulative online interfaces, suggests they have potentially detrimental effects on user autonomy. Dark pattern features, like those designed for attention capture, can potentially extend platform sessions beyond what users would have otherwise intended. Existing research, however, has not formally measured the quantitative effects of these features on user engagement in subscription video-on-demand platforms (SVODs). In this work, we conducted an experimental study with 76 Netflix users in the US to analyze the impact of a specific attention capture feature, autoplay, on key viewing metrics. We found that disabling autoplay on Netflix significantly reduced key content consumption aggregates, including average daily watching and average session length, partly filling the evidentiary gap regarding the empirical effects of dark pattern interfaces. We paired the experimental analysis with users' perceptions of autoplay and their viewing behaviors, finding that participants were split on whether the effects of autoplay outweigh its benefits, albeit without knowledge of the study findings. Our findings strengthen the broader argument that manipulative interface designs can and do affect users in potentially damaging ways, highlighting the continued need for considering user well-being and varied preferences in interface design.
Brennan Schaffner, Yaretzi Ulloa, Riya Sahni, Jiatong Li 0010, Ava Kim Cohen, Natasha Messier, Lan Gao 0001, Marshini Chetty
Proc. ACM Hum. Comput. Interact.8
2024 "Community Guidelines Make this the Best Party on the Internet": An In-Depth Study of Online Platforms' Content Moderation Policies
abstract
Moderating user-generated content on online platforms is crucial for balancing user safety and freedom of speech. Particularly in the United States, platforms are not subject to legal constraints prescribing permissible content. Each platform has thus developed bespoke content moderation policies, but there is little work towards a comparative understanding of these policies across platforms and topics. This paper presents the first systematic study of these policies from the 43 largest online platforms hosting user-generated content, focusing on policies around copyright infringement, harmful speech, and misleading content. We build a custom web-scraper to obtain policy text and develop a unified annotation scheme to analyze the text for the presence of critical components. We find significant structural and compositional variation in policies across topics and platforms, with some variation attributable to disparate legal groundings. We lay the groundwork for future studies of ever-evolving content moderation policies and their impact on users.
Brennan Schaffner, Arjun Nitin Bhagoji, Siyuan Cheng 0018, Jacqueline Mei, Jay L. Shen, Marshini Chetty, Nick Feamster, Genevieve Lakier, Chenhao Tan
CHI7
2024 Measuring Compliance with the California Consumer Privacy Act Over Space and Time
abstract
The widespread sharing of consumers’ personal information with third parties raises significant privacy concerns. The California Consumer Privacy Act (CCPA) mandates that online businesses offer consumers the option to opt out of the sale and sharing of personal information. Our study automatically tracks the presence of the opt-out link longitudinally across multiple states after the California Privacy Rights Act (CPRA) went into effect. We categorize websites based on whether they are subject to CCPA and investigate cases of potential non-compliance. We find a number of websites that implement the opt-out link early and across all examined states but also find a significant number of CCPA-subject websites that fail to offer any opt-out methods even when CCPA is in effect. Our findings can shed light on how websites are reacting to the CCPA and identify potential gaps in compliance and opt-out method designs that hinder consumers from exercising CCPA opt-out rights.
Van Hong Tran, Aarushi Mehrotra, Marshini Chetty, Nick Feamster, Jens Frankenreiter, Lior Jacob Strahilevitz
CHI3
2024 Evaluating the Use of Hypothetical 'Would You Rather' Scenarios to Discuss Privacy and Security Concepts with Children
abstract
Children are exposed to technology at home and school at very young ages, often using family mobile devices and educational apps. It is therefore critical that they begin learning about privacy and security concepts during their elementary school years, rather than waiting until they are older. Such skills will help children navigate an increasingly connected world and develop agency over their personal data, online interactions, and online security. In this paper, we explore how a simple technique---a ''Would Your Rather'' (WYR) game involving hypothetical privacy and security scenarios---can support children in working through the nuances of these types of situations and how educators can leverage this approach to support children's privacy and security learning. We conducted three focus groups with 21 children aged 7-12 using the WYR activity and interviewed 13 elementary school teachers about the use of WYR for facilitating privacy and security learning. We found that WYR provided a meaningful opportunity for children to assess privacy and security risks, consider some of the social and emotional aspects of privacy and security dilemmas, and assert their agency in a manner typically unavailable to children in an adult-centric society. Teachers highlighted connections between privacy and security dilemmas and children's social and emotional learning and offered additional insights about using this WYR technique in and beyond their classrooms. Based on these findings, we highlight four opportunities for using WYR to support children in engaging with privacy and security concepts from an early age.
Elana B. Blinder, Marshini Chetty, Jessica Vitak, Zoe Torok, Salina Fessehazion, Jason C. Yip 0001, Jerry Alan Fails, Elizabeth M. Bonsignore, Tamara L. Clegg
Proc. ACM Hum. Comput. Interact.2
2023 Understanding Research Related to Designing for Children's Privacy and Security: A Document Analysis
abstract
Many children are growing up in a “digital-by-default” world, where technologies mediate many of their interactions. There is emerging consensus that those who design technology must support children's privacy and security. However, privacy and security are complex concepts that are challenging to design for, and centering the interests of children is similarly difficult. Through a document analysis of 90 HCI publications, we examine what problems and solutions designing for children's privacy and security addresses and how this research engages with children. Applying Solove's privacy taxonomy, we find that research addresses a range of problems related to information collection, processing, dissemination, and invasion at the organizational, system, and individual levels. Children's participation in this research is largely limited to providing feedback rather than helping to guide the research itself. Based on these findings, we offer recommendations for designers to sharpen their privacy and security contributions and center children in their work.
Priya Kumar 0001, Fiona O'Connell, Lucy Li, Virginia Byrne, Marshini Chetty, Tamara L. Clegg, Jessica Vitak
IDC5
2023 Uncovering Privacy and Security Challenges In K-12 Schools
abstract
Increased use of technology in schools raises new privacy and security challenges for K-12 students—and harms such as commercialization of student data, exposure of student data in security breaches, and expanded tracking of students—but the extent of these challenges is unclear. In this paper, first, we interviewed 18 school officials and IT personnel to understand what educational technologies districts use and how they manage student privacy and security around these technologies. Second, to determine if these educational technologies are frequently endorsed across United States (US) public schools, we compiled a list of linked educational technology websites scraped from 15,573 K-12 public school/district domains and analyzed them for privacy risks. Our findings suggest that administrators lack resources to properly assess privacy and security issues around educational technologies even though they do pose potential privacy issues. Based on these findings, we make recommendations for policymakers, educators, and the CHI research community.
Jake Chanenson, Brandon Sloane, Navaneeth Rajan, Amy Morrill, Jason Chee, Danny Yuxing Huang, Marshini Chetty
CHI7
2023 Vulnerability Discovery for All: Experiences of Marginalization in Vulnerability Discovery
abstract
Vulnerability discovery is an essential aspect of software security. Currently, the demand for security experts significantly exceeds the available vulnerability discovery workforce. Further, the existing vulnerability discovery workforce is highly homogeneous, dominated by white and Asian men. As such, one promising avenue for increasing the capacity of the vulnerability discovery community is through recruitment and retention from a broader population. Although significant prior research has explored the challenges of equity and inclusion in computing broadly, the competitive and frequently self-taught nature of vulnerability discovery work may create new variations on these challenges. This paper reports on a semi-structured interview study (N = 16) investigating how people from marginalized populations come to participate in vulnerability discovery, whether they feel welcomed by the vulnerability discovery community, and what challenges they face when joining the vulnerability discovery community. We find that members of marginalized populations face some unique challenges, while other challenges common in vulnerability discovery are exacerbated by marginalization.
Kelsey R. Fulton, Samantha Katcher, Kevin Song, Marshini Chetty, Michelle L. Mazurek, Chloé Messdaghi, Daniel Votipka
SP4
2023 Don't Let Netflix Drive the Bus: User's Sense of Agency Over Time and Content Choice on Netflix
abstract
Users often turn to subscription video on demand (SVOD) platforms for entertainment. However, these platforms sometimes employ manipulative tactics that undermine a user's sense of agency over time and content choice to increase their share of a user's attention. Prior research has investigated how interface designs affect a user's sense of agency on social media and YouTube. For example, YouTube's autoplay left users feeling like they had less control over their time. We extend this work by investigating the design elements of Netflix, the most used SVOD, for the impact they have on users' senses of agency. We conducted interviews with 20 participants that used Netflix regularly, asking about their experiences and perceptions of features in the Netflix platform design that may affect their sense of agency. We found that a user's sense of agency was at odds with the platform's design. Users, who were often seeking entertainment for mood management, were met with features that encouraged watching more than they originally planned to and watching content they may not otherwise watch. We discuss design recommendations that Netflix could employ to reaffirm their users' agency.
Brennan Schaffner, Antonia Stefanescu, Olivia Campili, Marshini Chetty
Proc. ACM Hum. Comput. Interact.4
2023 "We picked community over privacy": Privacy and Security Concerns Emerging from Remote Learning Sociotechnical Infrastructure During COVID-19
abstract
With the rapid shift to remote learning in the early days of the COVID-19 pandemic, parents, teachers, and students had to quickly adapt to what scholars have called "emergency remote learning" (ERL). This transition required increased reliance on digital tools, exacerbating privacy and security threats associated with expanded data collection and new vulnerabilities. In this study, we adopt a sociotechnical and infrastructural perspective to understand how these threats emerged through breakdowns and tensions in elementary school ERL. Through interviews with 29 US-based teachers and parents of elementary school students (grades PreK-6), we identify two core findings related to privacy and security. First, we detail three breakdowns in the ERL sociotechnical infrastructure: (1) reduced attention to privacy and security issues as parents and teachers cobbled together a patchwork of tools needed to make ERL work; (2) privacy and security risks that emerged from ambiguous and shifting school policies; and (3) the failure to adapt standard authentication mechanisms (e.g., passwords) to be usable by young children. Second, we identify tensions between parents' and teachers' desire to help children advance in their education and their desire for children's privacy and security in ERL, as well as tensions resulting from the collapse of home and school contexts. These findings collectively suggest that ERL exacerbated existing--and created new--privacy and security challenges for young students, and we argue these challenges will carry beyond the pandemic due to the increasing use of technology to supplement traditional education. In light of these findings, we recommend researchers and educators use a framework of care to develop social and technical approaches to improving remote learning in order to protect children's privacy and security.
Kelly B. Wagman, Elana B. Blinder, Kevin Song, Antoine Vignon, Solomon Dworkin, Tamara L. Clegg, Jessica Vitak, Marshini Chetty
Proc. ACM Hum. Comput. Interact.8
2022 How and Why People Use Virtual Private Networks
Agnieszka Dutkowska-Zuk, Austin Hounsel, Amy Morrill, Andre Xiong, Marshini Chetty, Nick Feamster
USENIX Security Symposium5
2022 Understanding Account Deletion and Relevant Dark Patterns on Social Media
abstract
Social media users may wish to delete their accounts, but it is unclear if this process is easy to complete or if users understand what happens to their account data after deletion. Furthermore, since platforms profit from users' data and activity, they have incentives to maintain active users, possibly affecting what account deletion options are offered. To investigate these issues, we conducted a two-part study. In Study Part 1, we created and deleted accounts on the top 20 social media platforms in the United States and performed an analysis of 490 deletion-related screens across these platforms. In Study Part 2, informed by our interface analysis, we surveyed 200 social media users to understand how users perceive and experience social media account deletion. From these studies, we have four main findings. First, account deletion options vary considerably across platforms and the language used to describe these options is not always clear. Most platforms offer account deletion on desktop browsers but not all allow account deletion from mobile apps or browsers. Second, we found evidence of several dark patterns present in the account deletion interfaces and platform policies. Third, most participants had tried to delete at least one social media account, yet over one-third of deletion attempts were never completed. Fourth, users mostly agreed that they did not want platforms to have access to deleted account data. Based on these results, we recommend that platforms improve the terminology used in account deletion interfaces so the outcomes of account deletion are more clear to users. Additionally, we recommend that platforms allow users to delete their social media accounts from any device they use to access the platform. Finally, future work is needed to assess how users are affected by account deletion related dark patterns.
Brennan Schaffner, Neha A. Lingareddy, Marshini Chetty
Proc. ACM Hum. Comput. Interact.3
2022 You, Me, and IoT: How Internet-connected Consumer Devices Affect Interpersonal Relationships
abstract
Internet-connected consumer devices have rapidly increased in popularity; however, relatively little is known about how these technologies are affecting interpersonal relationships in multi-occupant households. In this study, we conduct 13 semi-structured interviews and survey 508 individuals from a variety of backgrounds to discover and categorize how consumer IoT devices are affecting interpersonal relationships in the United States. We highlight several themes, providing exploratory data about the pervasiveness of interpersonal costs and benefits of consumer IoT devices. These results inform follow-up studies and design priorities for future IoT technologies to amplify positive and reduce negative interpersonal effects.
Noah J. Apthorpe, Pardis Emami Naeini, Arunesh Mathur, Marshini Chetty, Nick Feamster
ACM Trans. Internet Things4
2022 Alexa, Who Am I Speaking To?: Understanding Users' Ability to Identify Third-Party Apps on Amazon Alexa
abstract
Many Internet of Things devices have voice user interfaces. One of the most popular voice user interfaces is Amazon’s Alexa, which supports more than 50,000 third-party applications (“skills”). We study how Alexa’s integration of these skills may confuse users. Our survey of 237 participants found that users do not understand that skills are often operated by third parties, that they often confuse third-party skills with native Alexa functions, and that they are unaware of the functions that the native Alexa system supports. Surprisingly, users who interact with Alexa more frequently are more likely to conclude that a third-party skill is a native Alexa function. The potential for misunderstanding creates new security and privacy risks: attackers can develop third-party skills that operate without users’ knowledge or masquerade as native Alexa functions. To mitigate this threat, we make design recommendations to help users better distinguish native functionality and third-party skills, including audio and visual indicators of native and third-party contexts, as well as a consistent design standard to help users learn what functions are and are not possible on Alexa.
David J. Major, Danny Yuxing Huang, Marshini Chetty, Nick Feamster
ACM Trans. Internet Techn.3
2021 Understanding the Security and Privacy Advice Given to Black Lives Matter Protesters
abstract
In 2020, there were widespread Black Lives Matter (BLM) protests in the U.S. Because many attendees were novice protesters, organizations distributed guides for staying safe at a protest, often including security and privacy advice. To understand what advice novice protesters are given, we collected 41 safety guides distributed during BLM protests in spring 2020. We identified 13 classes of digital security and privacy advice in these guides. To understand whether this advice influences protesters, we surveyed 167 BLM protesters. Respondents reported an array of security and privacy concerns, and their concerns were magnified when considering fellow protesters. While most respondents reported being aware of, and following, certain advice (e.g., choosing a strong phone passcode), many were unaware of key advice like using end-to-end encrypted messengers and disabling biometric phone unlocking. Our results can guide future advice and technologies to help novice protesters protect their security and privacy.
Maia J. Boyd, Jamar L. Sullivan Jr., Marshini Chetty, Blase Ur
CHI3
2020 Is This An Ad?: Automatically Disclosing Online Endorsements On YouTube With AdIntuition
abstract
Undisclosed online endorsements on social media can be misleading to users who may not know when viewed content contains advertisements. Despite federal regulations requiring content creators to disclose online endorsements, studies suggest that less than 10% do so in practice. To overcome this issue, we need knowledge of how to best detect online endorsements, knowledge about how prevalent online endorsements are in the wild, and ways to design systems to automatically disclose advertising content to viewers. To that end, we designed, implemented, and evaluated a tool called AdIntuition which automatically discloses when YouTube videos contain affiliate marketing, a type of social media endorsement. We evaluated AdIntuition with 783 users using a survey, field deployment, and diary study. We discuss our findings and recommendations for future measurements of and tools to detect and alert users about affiliate marketing content.
Michael Swart, Ylana Lopez, Arunesh Mathur, Marshini Chetty
CHI4
2020 'I have too much respect for my elders': Understanding South African Mobile Users' Perceptions of Privacy and Current Behaviors on Facebook and WhatsApp
Jake Reichel, Fleming C. Peck, Mikako Inaba, Bisrat Moges, Brahmnoor Singh Chawla, Marshini Chetty
USENIX Security Symposium6
2019 Privacy and Security Considerations For Digital Technology Use in Elementary Schools
abstract
Elementary school educators increasingly use digital technologies to teach students, manage classrooms, and complete everyday tasks. Prior work has considered the educational and pedagogical implications of technology use, but little research has examined how educators consider privacy and security in relation to classroom technology use. To better understand what privacy and security mean to elementary school educators, we conducted nine focus groups with 25 educators across three metropolitan regions in the northeast U.S. Our findings suggest that technology use is an integral part of elementary school classrooms, that educators consider digital privacy and security through the lens of curricular and classroom management goals, and that lessons to teach children about digital privacy and security are rare. Using Bronfenbrenner's ecological systems theory, we identify design opportunities to help educators integrate privacy and security into decisions about digital technology use and to help children learn about digital privacy and security.
Priya Kumar 0001, Marshini Chetty, Tamara L. Clegg, Jessica Vitak
CHI2
2019 Dark Patterns at Scale: Findings from a Crawl of 11K Shopping Websites
abstract
Dark patterns are user interface design choices that benefit an online service by coercing, steering, or deceiving users into making unintended and potentially harmful decisions. We present automated techniques that enable experts to identify dark patterns on a large set of websites. Using these techniques, we study shopping websites, which often use dark patterns to influence users into making more purchases or disclosing more information than they would otherwise. Analyzing ~53K product pages from ~11K shopping websites, we discover 1,818 dark pattern instances, together representing 15 types and 7 broader categories. We examine these dark patterns for deceptive practices, and find 183 websites that engage in such practices. We also uncover 22 third-party entities that offer dark patterns as a turnkey solution. Finally, we develop a taxonomy of dark pattern characteristics that describes the underlying influence of the dark patterns and their potential harm on user decision-making. Based on our findings, we make recommendations for stakeholders including researchers and regulators to study, mitigate, and minimize the use of these patterns.
Arunesh Mathur, Gunes Acar, Michael Friedman, Eli Lucherini, Jonathan R. Mayer, Marshini Chetty, Arvind Narayanan
Proc. ACM Hum. Comput. Interact.6
2018 Co-designing online privacy-related games and stories with children
abstract
Children ages 8--12 spend nearly six hours per day with digital content, but they receive little formal instruction related to managing privacy online. In this study, we explore how games and storytelling can inform the development of resources to help children learn about privacy online. We present results from three co-design sessions with a university-based intergenerational design team that included eight children ages 8--11. During these sessions, we reviewed existing privacy resources with children and elicited design ideas for new resources. Our findings yield several recommendations for designers. Specifically, online privacy-focused educational resources should: (1) include relatable elements such as familiar characters and easily understandable storylines, (2) go beyond instructing children through "dos and don'ts" and equip children to make privacy-related decisions, and (3) expose children to a range of privacy consequences, highlighting the positive and negative outcomes that can result from disclosing and managing information online.
Priya Kumar 0001, Jessica Vitak, Marshini Chetty, Tamara L. Clegg, Jonathan Yang, Brenna McNally, Elizabeth M. Bonsignore
IDC3
2018 Understanding the Use and Impact of the Zero-Rated Free Basics Platform in South Africa
abstract
Companies are offering zero-rated, or data-charge free Internet services to help bring unconnected users online where Internet access is less affordable. However, it is unclear whether these services achieve this goal or how they shape Internet use. To inform evidence-based policy around and the design of zero-rated services, we show in this paper how mobile users are making use of Facebook's controversial Free Basics platform. We present findings from interviews of 35 Free Basics users in South Africa: current low-income users and non-regular student users. Our findings suggest that Free Basics does shape Internet usage, for instance, users spend more time online because of 'free' apps. Second, Free Basics saves users money but adoption of the platform depends on access to other 'free' Internet options. Finally, most users are confused about how zero-rated services work and what 'free' means. Based on our findings, we make recommendations for future work.
Julianne Romanosky, Marshini Chetty
CHI2
2018 How Do Tor Users Interact With Onion Services?
Philipp Winter, Anne Edmundson, Laura M. Roberts, Agnieszka Dutkowska-Zuk, Marshini Chetty, Nick Feamster
USENIX Security Symposium5
2018 Endorsements on Social Media: An Empirical Study of Affiliate Marketing Disclosures on YouTube and Pinterest
abstract
Online advertisements that masquerade as non-advertising content pose numerous risks to users. Such hidden advertisements appear on social media platforms when content creators or "influencers" endorse products and brands in their content. While the Federal Trade Commission (FTC) requires content creators to disclose their endorsements in order to prevent deception and harm to users, we do not know whether and how content creators comply with the FTC's guidelines. In this paper, we studied disclosures within affiliate marketing, an endorsement-based advertising strategy used by social media content creators. We examined whether content creators follow the FTC's disclosure guidelines, how they word the disclosures, and whether these disclosures help users identify affiliate marketing content as advertisements. To do so, we first measured the prevalence of and identified the types of disclosures in over 500,000 YouTube videos and 2.1 million Pinterest pins. We then conducted a user study with 1,791 participants to test the efficacy of these disclosures. Our findings reveal that only about 10% of affiliate marketing content on both platforms contains any disclosures at all. Further, users fail to understand shorter, non-explanatory disclosures. Based on our findings, we make various design and policy suggestions to help improve advertising disclosure practices on social media platforms.
Arunesh Mathur, Arvind Narayanan, Marshini Chetty
Proc. ACM Hum. Comput. Interact.3
2018 User Perceptions of Smart Home IoT Privacy
abstract
Smart home Internet of Things (IoT) devices are rapidly increasing in popularity, with more households including Internet-connected devices that continuously monitor user activities. In this study, we conduct eleven semi-structured interviews with smart home owners, investigating their reasons for purchasing IoT devices, perceptions of smart home privacy risks, and actions taken to protect their privacy from those external to the home who create, manage, track, or regulate IoT devices and/or their data. We note several recurring themes. First, users' desires for convenience and connectedness dictate their privacy-related behaviors for dealing with external entities, such as device manufacturers, Internet Service Providers, governments, and advertisers. Second, user opinions about external entities collecting smart home data depend on perceived benefit from these entities. Third, users trust IoT device manufacturers to protect their privacy but do not verify that these protections are in place. Fourth, users are unaware of privacy risks from inference algorithms operating on data from non-audio/visual devices. These findings motivate several recommendations for device designers, researchers, and industry standards to better match device privacy features to the expectations and preferences of smart home owners.
Serena Zheng, Noah J. Apthorpe, Marshini Chetty, Nick Feamster
Proc. ACM Hum. Comput. Interact.3
2017 Spiders in the Sky: User Perceptions of Drones, Privacy, and Security
abstract
Drones are increasingly being used for various purposes from recording footage in inaccessible areas to delivering packages. A rise in drone usage introduces privacy and security concerns about flying boundaries, what data drones collect in public and private spaces, and how that data is stored and disseminated. However, commercial and personal drone regulations focusing on privacy and security have been fairly minimal in the USA. To inform privacy and security guidelines for drone design and regulation, we need to understand users' perceptions about drones, privacy and security. In this paper, we describe a laboratory study with 20 participants who interacted with a real or model drone to elicit user perceptions of privacy and security issues around drones. We present our results, discuss the implications of our work and make recommendations to improve drone design and regulations that enhance individual privacy and security.
Victoria Chang, Pramod Chundury, Marshini Chetty
CHI3
2017 Impact of User Characteristics on Attitudes Towards Automatic Mobile Application Updates
Arunesh Mathur, Marshini Chetty
SOUPS2
2017 'No Telling Passcodes Out Because They're Private': Understanding Children's Mental Models of Privacy and Security Online
abstract
Children under age 12 increasingly use Internet-connected devices to go online. And while Internet use exposes people to privacy and security risks, few studies examine how these children perceive and address such concerns. To fill this gap, we conducted a qualitative study of 18 U.S. families with children ages 5-11. We found that children recognized certain privacy and security components from the contextual integrity framework, but children ages 5-7 had gaps in their knowledge. Children developed some strategies to manage concerns but largely relied on parents for support. Parents primarily used passive strategies to mediate children's device use and largely deferred teaching children about these concerns to the future. We argue that helping children develop strong privacy and security practices at a young age will prepare them to manage their privacy and security as adolescents and adults. We offer recommendations to scaffold children's learning on privacy and security.
Priya Kumar 0001, Shalmali Naik, Utkarsha Ramesh Devkar, Marshini Chetty, Tamara L. Clegg, Jessica Vitak
Proc. ACM Hum. Comput. Interact.4
2016 "They Keep Coming Back Like Zombies": Improving Software Updating Interfaces
Arunesh Mathur, Josefine Engel, Sonam Sobti, Victoria Chang, Marshini Chetty
SOUPS5
2015 uCap: An Internet Data Management Tool For The Home
abstract
Internet Service Providers (ISPs) have introduced "data caps", or quotas on the amount of data that a customer can download during a billing cycle. Under this model, Internet users who reach a data cap can be subject to degraded performance, extra fees, or even temporary interruption of Internet service. For this reason, users need better visibility into and control over their Internet usage to help them understand what uses up data and control how these quotas are reached. In this paper, we present the design and implementation of a tool, called uCap, to help home users manage Internet data. We conducted a field trial of uCap in 21 home networks in three countries and performed an in-depth qualitative study of ten of these homes. We present the results of the evaluation and implications for the design of future Internet data management tools.
Marshini Chetty, Hyojoon Kim, Srikanth Sundaresan, Sam Burnett, Nick Feamster, W. Keith Edwards
CHI1
2015 A mixed-methods study of mobile users' data usage practices in South Africa
abstract
With a shift towards usage-based billing, the questions of how data costs affect mobile Internet use and how users manage mobile data arise. In this paper, we describe a mixed-methods study of mobile phone users' data usage practices in South Africa, a country where usage-based billing is prevalent and where data costs are high, to answer these questions. We do so using a large scale survey, in-depth interviews, and logs of actual data usage over time. Our findings suggest that unlike in more developed settings, when data is limited or expensive, mobile Internet users are extremely cost-conscious, and employ various strategies to optimize mobile data usage such as actively disconnecting from the mobile Internet to save data. Based on these findings, we suggest how the Ubicomp and related research communities can better support users that need to carefully manage their data to optimize costs.
Arunesh Mathur, Brent Schlotfeldt, Marshini Chetty
UbiComp3
2014 Peering at the Internet's Frontier: A First Look at ISP Interconnectivity in Africa
Arpit Gupta, Matt Calder, Nick Feamster, Marshini Chetty, Enrico Calandro, Ethan Katz-Bassett
PAM4
2013 "I want to imagine how that place looks": designing technologies to support connectivity between africans living abroad and home
abstract
Uneven access to Information and Communication Technologies (ICTs) in parts of the African continent make it challenging for some Africans who migrate to the U.S. to communicate with family members in their countries of origin. However, Internet access is becoming more widespread throughout the continent and this development presents an opportunity to explore how future interactive systems can support exchanges between families with members living in developed and less developed countries. To investigate these design possibilities we interviewed 27 African-born students, currently living in Virginia, U.S., and asked them how they used ICTs to connect with family members in their home countries. Our findings informed the development of a low-fidelity prototype that eight students lived with for four to five months. Findings from this deployment study motivate a discussion regarding features to include in interfaces designed to support transnational family communication. Features include personally meaningful imagery, country specific content, and the ability to monitor the weather and changing currency rates in migrants' countries of origin.
Susan Wyche, Marshini Chetty
CHI2
2012 You're capped: understanding the effects of bandwidth caps on broadband use in the home
abstract
Bandwidth caps, a limit on the amount of data users can upload and download in a month, are common globally for both home and mobile Internet access. With caps, each bit of data consumed comes at a cost against a monthly quota or a running tab. Yet, relatively little work has considered the implications of this usage-based pricing model on the user experience. In this paper, we present results from a qualitative study of households living with bandwidth caps. Our findings suggest home users grapple with three uncertainties regarding their bandwidth usage: invisible balances, mysterious processes, and multiple users. We discuss how these uncertainties impact their usage and describe the potential for better tools to help monitor and manage data caps. We conclude that as a community we need to cater for users under Internet cost constraints.
Marshini Chetty, Richard Banks, A. J. Bernheim Brush, Jonathan Donner, Rebecca E. Grinter
CHI1
2011 Why is my internet slow?: making network speeds visible
abstract
With widespread broadband adoption, more households report experiencing sub-optimal speeds. Not only are slow speeds frustrating, they may indicate consumers are not receiving the services they are paying for from their internet service providers. Yet, determining the speed and source of slow-downs is difficult because few tools exist for broadband management. We report on results of a field trial with 10 households using a visual network probe designed to address these problems. We describe the results of the study and provide design implications for future tools. More importantly, we argue that tools like this can educate and empower consumers by making broadband speeds and sources of slow-downs more visible.
Marshini Chetty, David Haslem, Andrew Baird, Ugochi Ofoha, Bethany Sumner, Rebecca E. Grinter
CHI1
2011 A dive into online community properties
abstract
As digital communities grow in size their feature sets also grow with them. Different users have different experiences with the same tools and communities. Enterprises and other organizations seeking to leverage these communities need a straightforward way to analyze and compare a variety of salient attributes of these communities. We describe a taxonomy and tool for crowd-sourcing user based evaluations of enterprise relevant attributes of digital communities and present the results of a small scale study on its usefulness and stability across multiple raters.
Patrick Wagstrom, Jacquelyn Martino, Jürg von Känel, Marshini Chetty, John C. Thomas, Lauretta Jones
CSCW4
2011 Communicating with caps: managing usage caps in home networks
abstract
As Internet service providers increasingly implement and impose "usage caps", consumers need better ways to help them understand and control how devices in the home use up the available network resources or available capacity. Towards this goal, we will demonstrate a system that allows users to monitor and manage their usage caps. The system uses the BISMark firmware running on network gateways to collect usage statistics and report them to a logically centralized controller, which displays usage information. The controller allows users to specify policies about how different people, devices, and applications should consume the usage cap; it implements and enforces these policies via a secure OpenFlow control channel to each gateway device. The demonstration will show various use cases, such as limiting the usage of a particular application, visualizing usage statistics, and allowing users within a single household to "trade" caps with one another.
Hyojoon Kim, Srikanth Sundaresan, Marshini Chetty, Nick Feamster, W. Keith Edwards
SIGCOMM3
2010 Who's hogging the bandwidth: the consequences of revealing the invisible in the home
abstract
As more technologies enter the home, householders are burdened with the task of digital housekeeping-managing and sharing digital resources like bandwidth. In response to this, we created and evaluated a domestic tool for bandwidth management called Home Watcher. Our field trial showed that when resource contention amongst different household members is made visible, people's understanding of bandwidth changes and household politics are revealed. In this paper, we describe the consequences of showing real time resource usage in a home, and how this varies depending on the social make up of the household.
Marshini Chetty, Richard Banks, Richard Harper 0001, Tim Regan, Abigail Sellen, Christos Gkantsidis, Thomas Karagiannis, Peter B. Key
CHI1
2010 Deliberate interactions: characterizing technology use in Nairobi, Kenya
abstract
We present results from a qualitative study examining how professionals living and working in Nairobi, Kenya regularly use ICT in their everyday lives. There are two contributions of this work for the HCI community. First, we provide empirical evidence demonstrating constraints our participants encountered when using technology in an infrastructure-poor setting. These constraints are limited bandwidth, high costs, differing perceptions of responsiveness, and threats to physical and virtual security. Second, we use our findings to critically evaluate the "access, anytime and anywhere" construct shaping the design of future technologies. We present an alternative vision called deliberate interactions--a planned and purposeful interaction style that involves offline preparation and discuss ways ICT can support this online usage behavior.
Susan Wyche, Thomas N. Smyth, Marshini Chetty, Paul M. Aoki, Rebecca E. Grinter
CHI3
2009 It's not easy being green: understanding home computer power management
abstract
Although domestic computer use is increasing, most efforts to reduce energy use through improved power management have focused on computers in the workplace. We studied 20 households to understand how people use power management strategies on their home computers. We saw computers in the home, particularly desktop computers, are left on much more than they are actively used suggesting opportunities for economic and energy savings. However, for most of our participants, the economic incentives were too minor to motivate them to turn off devices when not in use, especially given other frustrations such as long boot up times. We suggest research directions for home computer power management that could help users be more green without having to dramatically change their home computing habits.
Marshini Chetty, A. J. Bernheim Brush, Brian Meyers, Paul Johns
CHI1
2009 Computer help at home: methods and motivations for informal technical support
abstract
Prior research suggests that people may ask their family and friends for computer help. But what influences whether and how a "helper" will provide help? To answer this question, we conducted a qualitative investigation of people who participated in computer support activities with family and friends in the past year. We describe how factors including maintenance of one's personal identity as a computer expert and accountability to one's social network determine who receives help and the quality of help provided. We also discuss the complex, fractured relationship between the numerous stakeholders involved in the upkeep of home computing infrastructures. Based on our findings, we provide implications for the design of systems to support informal help-giving in residential settings.
Erika S. Poole, Marshini Chetty, Tom Morgan, Rebecca E. Grinter, W. Keith Edwards
CHI2
2009 The ins and outs of home networking: The case for useful and usable domestic networking
abstract
Householders are increasingly adopting home networking as a solution to the demands created by the presence of multiple computers, devices, and the desire to access the Internet. However, current network solutions are derived from the world of work (and initially the military) and provide poor support for the needs of the home. We present the key findings to emerge from empirical studies of home networks in the UK and US. The studies reveal two key kinds of work that effective home networking relies upon: one, the technical work of setting up and maintaining the home network, and the other, the collaborative and socially organized work of the home which the network is embedded in and supports. The two are thoroughly intertwined and rely upon one another for their realization, yet neither is adequately supported by current networking technologies and applications. Explication of the “work to make the home network work” opens up the design space for the continued integration of the home network in domestic life and elaboration of future support. Key issues for development include the development of networking facilities that do not require advanced networking knowledge, that are flexible and support the local social order of the home and the evolution of its routines, and which ultimately make the home network visible and accountable to household members.
Rebecca E. Grinter, W. Keith Edwards, Marshini Chetty, Erika S. Poole, Ja-Young Sung, Jeonghwa Yang, Andy Crabtree, Peter Tolmie, Tom Rodden, Christopher Greenhalgh, Steve Benford
ACM Trans. Comput. Hum. Interact.3
2008 More than meets the eye: transforming the user experience of home network management
abstract
As computing migrates from the workplace to the home, householders must tackle problems of home network maintenance. Often they lack the technical knowledge or motivation to complete these tasks, making the user experience of home network maintenance frustrating. In response to these difficulties, many householders rely on handwritten reminders or interactive networking tools that are ill-suited for the home environment. In this paper, we seek to understand how to design better home network management tools through a study of sketches created by 40 people in 18 households. In our study, we obtained information about householders' knowledge, practices and needs with respect to home networking. Based on our results, we present guidelines for transforming the user experience of home network management.
Erika S. Poole, Marshini Chetty, Rebecca E. Grinter, W. Keith Edwards
Conference on Designing Interactive Systems2
2008 Getting to green: understanding resource consumption in the home
abstract
Rising global energy demands, increasing costs and limited natural resources mean that householders are more conscious about managing their domestic resource consumption. Yet, the question of what tools Ubicomp researchers can create for residential resource management remains open. To begin to address this omission, we present a qualitative study of 15 households and their current management practices around the water, electricity and natural gas systems in the home. We find that in-the-moment resource consumption is mostly invisible to householders and that they desire more real-time information to help them save money, keep their homes comfortable and be environmentally friendly. Designing for domestic sustainability therefore turns on improving the visibility of resource production and consumption costs as well as supporting both individuals and collectives in behavior change. Domestic sustainability also highlights the caveat of potentially creating a green divide by making resource management available only to those who can afford the technologies to support being green. Finally, we suggest that the Ubicomp community can contribute to the domestic and broader sustainability agenda by incorporating green values in designs and highlight the challenge of collecting data on being green.
Marshini Chetty, David Tran, Rebecca E. Grinter
UbiComp1
2007 Grow and know: understanding record-keeping needs for tracking the development of young children
abstract
From birth through age five, children undergo rapid development and learn skills that will influence them their entire lives. Regular visits to the pediatrician and detailed record-keeping can ensure that children are progressing and can identify early warning signs of developmental delay or disability. However, new parents are often overwhelmed with new responsibilities, and we believe there is an opportunity for computing technology to assist in this process. In this paper, we present a qualitative study aimed at uncovering some specific needs for record-keeping and analysis for new parents and their network of caregivers. Through interviews and focus groups, we have confirmed assumptions about the rationales parents have and the functions required for using technology for record-keeping. We also identify new themes, potential prototypes, and design guidelines for this domain.
Julie A. Kientz, Rosa I. Arriaga, Marshini Chetty, Gillian R. Hayes, Jahmeilah Richardson, Shwetak N. Patel, Gregory D. Abowd
CHI3
2007 How Smart Homes Learn: The Evolution of the Networked Home and Household
Marshini Chetty, Ja-Young Sung, Rebecca E. Grinter
UbiComp1