A college is removing its vending machines after a student discovered they were using facial-recognition technology

MicroWave@lemmy.world to News@lemmy.world – 17 points –
A college is removing its vending machines after a student discovered they were using facial-recognition technology
businessinsider.com
  • The University of Waterloo is expected to remove smart vending machines from its campus.
  • A student discovered an error code that suggested the machines used facial-recognition technology.
  • Vending Services said the technology didn't take or store customers' photos.
19

I hope the company, Vending Services, lose more from the PR blowback than whatever they gained by incorporating this BS into their machines. One university is a start, where else does this company operate?

Is there any rational reason why vending machines need to be that complicated?

Card readers / contactless payment were easy enough to "bolt on" to existing models (they had them when I was in college back in the stone age). So that's not a sufficient reason.

There are some "new" features I find useful, such as detecting when an item fails to vend. But those are pretty much just IR "tripwires" that detect the falling product; if it doesn't trip, then you get refunded or can make another selection.

I just cannot fathom why vending machines need any of this extra crap.

Feel free to enlighten me if you're in the know.

It might be advertisements. Some newer gas stations/grocery stores have ads playing on the refrigerated section and when it detects someone on front of the door it will go clear or show a picture of what's behind the door.

It's completely ridiculous but it's where things are going now.

We desperately need a CALM Act, but for the visual medium. Ugh. Things have been out of hand for too long now.

I fully agree. We're bombarded with enough distractions throughout the day. We don't need more right in front of our faces while we're trying to do chores.

Accounts tied to school ID card? That way you can’t steal someone’s and use theirs, just polls a database and correlates your picture to your id image or something.

About the only use case I can think of for a school.

At least in the case covered by the article, they don't appear to be doing that:

... the director of technology services for Adaria Vending Services^[1]^ told MathNews that "an individual person cannot be identified using the technology in the machines."

Still possible if they're being less-than-perfectly-honest in that statement, they invest more into the technology or with another machine/company somewhere else.

::: spoiler 1

... the smart vending machines... [are] provided by Adaria Vending Services and manufactured by Invenda Group. :::

That statement sounds weasely as fuck.

The technology in that specific machine cannot identify a user, does not mean the machine does no store or transmit the footage to be processed on another machine or system that can.

"It does not engage in storage, communication, or transmission of any imagery or personally identifiable information,"...

The linked article includes this statement from Invenda, the manufacturer of the machines. Still have to rely on their truthfulness but they do address that specific point.

MathNews reported that Invenda Group's FAQ list said that "only the final data, namely presence of a person, estimated age and estimated gender, is collected without any association with an individual."

Makes sense why the machine owner would seek this information either for their own use or to sell to others in related fields. Maybe they can use it combined with records of product sales (vs. a very literal form of window-shopping) to identify areas more likely than others to bring consistent returns on the investment of placing, stocking and servicing the machines based on the age/gender statistics of nearby population centers.

Doesn't mean I'd want to be part of their dataset or would be comfortable allowing their installation in a facility where that decision was up to me though.

Need? No. It sounds like it did two things: light up when it sensed a person, and also collect age, gender, and other demographic data and send it back to the company.

"What's most important to understand is that the machines do not take or store any photos or images, and an individual person cannot be identified using the technology in the machines," the statement said. "The technology acts as a motion sensor that detects faces, so the machine knows when to activate the purchasing interface — never taking or storing images of customers."

The statement said that the machines are "fully GDPR compliant," referring to the European Union's General Data Protection Regulation. The regulation is part of the EU's privacy legislation that determines how corporations can collect citizens' data.

You gotta read through the carefully worded line toeing bullshit though; fingerprint readers on timeclocks no longer store fingerprint images but they can sure as fuck identify your finger. If operating similarly, it likely stores your face as a unique value, and can track unique purchases. Importantly, this can be sent to other machines to identify customers anywhere, and then of course, if that same technology is used in other machines, well shoot, any purchase you make at a vending machine is tracked to your face.

The statement says individual purchases cannot be tracked to the individual but could be wordsmithing this with implication of anonymity but in actuality you're tracked by a value. Also, if this were true why was this done so surreptitiously? They will claim I'm court an individual can't be identified but of course once the technology is commonplace it would be only too easy for corps to join a data broker orgy and find out who's who.

I don't know what is in the GDPR related to the above, but Cameras and storing pictures are old hat. Could be that carefully worded shit was because it's not technically a picture of you and also because they'll delete it upon request.

So facial recognition in this case means that it can recognize that a face exists? No particular details but just a face? That's a lot less egregious than I assumed from the headline. With all the AI stuff going on these days, I assumed it was some kind of data mining operation

But then, why? Is there a problem with birds and dogs making purchases at these machines that they need to identify a face?