๐Ÿ‘ฅStalecollected in 30m

Meta Updates Controls for Activity From Other Businesses

Meta Updates Controls for Activity From Other Businesses
PostLinkedIn
๐Ÿ‘ฅRead original on Meta Newsroom

๐Ÿ’กUnderstand how Meta's evolving data privacy controls impact ad-targeting signals and model personalization.

โšก 30-Second TL;DR

What Changed

Enhanced transparency regarding data shared by third-party businesses

Why It Matters

These changes reflect tightening privacy regulations and Meta's shift toward more transparent data handling. For developers, this may affect the quality of signals used for ad targeting and personalization models.

What To Do Next

Review your Conversions API implementation to ensure compliance with the updated data usage and privacy controls.

Who should care:Developers & AI Engineers

Key Points

  • โ€ขEnhanced transparency regarding data shared by third-party businesses
  • โ€ขUpdated user controls for managing off-platform activity data
  • โ€ขRefined personalization settings based on external business interactions

๐Ÿง  Deep Insight

Web-grounded analysis with 36 cited sources.

๐Ÿ”‘ Enhanced Key Takeaways

  • โ€ขThe updates are largely a response to the European Union's Digital Markets Act (DMA) and General Data Protection Regulation (GDPR) rulings, particularly impacting users in the EU, EEA, and Switzerland.
  • โ€ขMeta is now offering users in these European regions specific choices, such as managing Facebook and Instagram accounts separately, opting for a standalone Messenger experience, and tailoring Facebook Marketplace and gaming interactions with enhanced privacy.
  • โ€ขA significant shift in Meta's data processing involves moving away from relying on 'legitimate interest' as a legal basis, now requiring explicit user consent before utilizing off-platform data for targeted advertising, especially within the EU.
  • โ€ขMeta has implemented new restrictions on data sharing for sensitive categories, including health and wellness, financial services, and political data, which impacts advertisers using Meta Business Tools.
  • โ€ขUsers in the EU and UK now have the option to submit a 'Right to Object' form via the Privacy Center to prevent Meta from using their public content for training its future AI models.
๐Ÿ“Š Competitor Analysisโ–ธ Show
Feature/ApproachMetaAppleGooglePrivacy-Focused Social Media (e.g., Signal, MeWe)
Off-Platform Activity ControlGranular user controls via 'Your activity off Meta technologies' to clear history and disconnect future data sharing from third-party businesses.App Tracking Transparency (ATT) requires apps to ask user permission before tracking across other apps and websites.Privacy Sandbox (though third-party cookie deprecation was reversed, still focuses on privacy-preserving ad tech).Generally, no off-platform tracking for advertising purposes; focus on user control and data minimization.
Data Sharing & ConsentShifting to explicit user consent for targeted ads in the EU, moving away from 'legitimate interest.' Restrictions on sharing sensitive data categories for advertisers.Strict opt-in requirements for tracking, significantly impacting ad revenue for other platforms.Developing privacy-preserving APIs and technologies within its ecosystem; Ads Data Hub for privacy-safe advertiser analytics.Often no ads or subscription-based models, ensuring user data is not shared or sold without explicit permission.
Cross-Service Data UseAccounts Center allows users to manage connected experiences and settings across Facebook, Instagram, WhatsApp, and Meta accounts, with new options for unbundling services in the EU.Strong separation of data across services, with ATT limiting cross-app tracking.Efforts to limit cross-service data combination without user consent, particularly under regulatory pressure.Decentralized architectures (e.g., Diaspora) or strict data silos between different functionalities.
AI Data TrainingEU/UK users can object to public content being used for AI model training. Meta AI conversation data is integrated into ad targeting models.Generally, user data for AI training is subject to strict privacy policies and user consent.User data for AI training is typically governed by specific privacy policies and consent mechanisms.Focus on local processing or explicit opt-in for any AI-related data use.
EncryptionDiscontinued end-to-end encryption for Instagram DMs (as of May 2026), citing low adoption, while WhatsApp retains default E2EE.iMessage uses end-to-end encryption by default.Google Messages offers end-to-end encryption for RCS chats.Signal offers end-to-end encryption by default for all communications.
Regulatory Compliance FocusSignificant efforts to comply with GDPR and DMA in the EU, leading to major policy and feature changes. Also addresses CCPA in the US.Compliance with global privacy regulations, often setting higher internal standards (e.g., ATT).Compliance with global privacy regulations, including GDPR, DMA, and CCPA.Designed with privacy-by-design principles to inherently comply with stringent data protection laws.

๐Ÿ› ๏ธ Technical Deep Dive

  • Off-Platform Activity Management: Meta's 'Your activity off Meta technologies' (formerly 'Off-Facebook Activity') allows users to review and control data shared by third-party apps and websites that integrate Meta's tracking technologies, such as the Facebook Pixel, SDKs, and Facebook Login.
  • Data Disconnection: Users can clear their past off-platform activity history and disconnect future activity, which prevents Meta from linking new data from these external sources to their account. However, Meta may still receive the data in an aggregated form.
  • Accounts Center: This centralized hub enables users to manage connected experiences and account settings across various Meta platforms, including Facebook, Instagram, WhatsApp, and Meta Quest devices. It facilitates managing ad preferences and activity off Meta technologies.
  • Third-Party Oversight: Meta has established a dedicated third-party oversight and management program, alongside an assessment process for service providers, to mitigate privacy risks associated with data exchange with external entities.
  • Conversions API (CAPI): To address limitations of browser-based pixels due to ad blockers and privacy settings, Meta promotes the use of Conversions API. This server-to-server connection allows advertisers to send conversion data directly to Meta, ensuring more reliable data delivery for campaign optimization.
  • AI Data Integration: Meta is integrating data from user interactions with Meta AI (e.g., conversations, questions) into its advertising targeting models to extract interests, purchase intent, and product preferences.
  • Private Processing for AI: For certain optional Meta AI features on WhatsApp, Meta employs 'Private Processing' technology. This ensures that user requests are processed in a secure, private cloud environment where messages are not stored after the response is generated, enhancing privacy for AI interactions.

๐Ÿ”ฎ Future ImplicationsAI analysis grounded in cited sources

Meta's advertising revenue in the European Union will likely face continued pressure and potential decline.
The shift from 'legitimate interest' to explicit user consent for targeted ads under GDPR and DMA, combined with increased user opt-outs, will reduce the volume and granularity of data available for ad personalization, thereby impacting ad effectiveness and revenue.
The Digital Markets Act (DMA) will continue to drive Meta towards offering more unbundled and privacy-centric user experiences, particularly in the EU.
The DMA specifically prohibits combining data from different core platform services without user consent, which has already led to Meta offering options for separate Facebook/Instagram accounts and standalone Messenger.
Meta will increasingly invest in and rely on first-party data strategies and advanced privacy-preserving technologies like data clean rooms and Conversions API (CAPI) to maintain its ad targeting capabilities globally.
With ongoing regulatory pressure, consumer privacy demands, and the impact of platform changes like Apple's ATT, Meta needs alternative methods to gather and utilize data for advertising beyond traditional third-party tracking.

โณ Timeline

2019
Meta (then Facebook) launches 'Off-Facebook Activity' feature
2020-01-01
California Consumer Privacy Act (CCPA) goes into effect
2022-12-05
EDPB rules Meta's consent for behavioral advertising violates EU law
2023-05-22
Meta fined โ‚ฌ1.2 billion by EDPB for GDPR violations related to EU-US data transfers
2023-09
Meta designated as a 'gatekeeper' under the EU Digital Markets Act (DMA)
2025-01-01
Meta implements restrictions on data sharing for sensitive categories by advertisers
2025-12-08
European Commission acknowledges Meta's commitment to offer EU users choice on personalized ads under DMA
2026-03-03
Final judgment entered in $50M California settlement over Cambridge Analytica-related data sharing
2026-05-08
Meta discontinues end-to-end encryption for Instagram direct messages
2026-06-04
Meta rolls out new data control options for European users to comply with DMA
๐Ÿ“ฐ

Weekly AI Recap

Read this week's curated digest of top AI events โ†’

๐Ÿ‘‰Related Updates

AI-curated news aggregator. All content rights belong to original publishers.
Original source: Meta Newsroom โ†—