Rapleaf and its problems

09.04.07

A long weekend after catching some bad PR (ZDNet) for selling user data to third party companies, reputation management startup Rapleaf now appears to be spamming the emails of long-ago registered users. It looks like a case study of what not to do from a company I've been hoping would prove a success.

Rapleaf's stated purpose is to serve as a cross-site system for tracking your reputation vis-à-vis interactions with other people around the web. It's like an Ebay reputation for the whole internet. It's a really interesting idea. It's also a business based on trust, a delicate matter in an emerging age of data portability.

To be fair, the site could have seen a huge influx of traffic, and thus real search queries, when the first bad news came out. It seems unlikely, though, that the 6 people who told me on Twitter that they also received emails from Rapleaf today were honestly searched-for in the past 2 days using this relatively obscure service. The company has also instituted some new email push features in the past week, though there's no mention of search subjects getting emailed on the company blog (come on guys). (It may be that all it takes to get an email from Rapleaf is for someone else who has you in their email contacts to try out the service. Small but very bad move on the company's part.)

If you've been following Facebook app development, for example, you know that the "when do I send a notification" question is one companies are wrestling with as much today as ever. Likewise, it's hip to ask users for their email usernames and passwords today - though it's not going to be the casual thing many companies are treating it as now for much longer. Emails are everywhere and many people are nervous. I don't see any public response to any of these questions and criticism by Rapleaf. Update: A couple of days later, Rapleaf has made a very long, thoughtful and encouraging post to their blog. Check it out.

The ZDNet story about selling data was so stirring that more than 5 readers braved the noxious ZDNet commenting requirements to reply. You want to talk about selling user data? Why do you think all these ZDNet/CNet blogs ask so much information when they require you to register to comment? If not to sell that data, then to "verify" the demographics of their readers to advertisers - or at least the handful of readers who comply. This ZDNet story is in fact one of the most reactionary pieces of trash I've read in awhile. Consumer control over data portability is great (see this, for example), but that kind of backlash against data portability all-together is just anti-innovation.

So the company was criticized last week for selling user data - but not email addresses - to third party companies. This, in and of itself, doesn't seem like a problem to me. I think that the monetization of aggregate, anonymous data is a powerful means of making money that I hope more companies will pursue in the future. Presuming, of course, that a legitimate marketplace emerges and there's parties other than pure scumbag companies to do the buying (subjective, I know.)

Update: after reading more about how the company works, marketers in fact come to them with email addresses and Rapleaf and allied companies fill in details about the people behind those addresses for more effective targeting. Any marketing company that buys more ads targeting me and my friends on Twitter than on MySpace, instead of just sending bulk spam into my Gmail spambox - that's a good step for a company to take, in my mind.

Data-mining can be a good thing. Twitter, for example, seems like a data-mining commodity just waiting to happen. If you're familiar with the UMBC project Twitterment, for example, that's a service I'd readily buy data from if it worked reliably. The serious problems experienced by all 3rd parties building on the Twitter API is another story, though, and one that threatens a pretty cool potential mini-economy imho. As someone who makes a living, in part, by being early in the news cycle - a system for putting a giant ear to the ground has value for me.

Nonetheless, data mining does have a bad name.

What do you do if you're Rapleaf in this situation? You do not send out scores of emails telling registered (non)users that "someone has searched for you on Rapleaf" with a link to click through to your profile. No one believes it. As a service whose value proposition to users is verification and trust - this email story is another PR crisis following the last one. I'm sure they know that.

Here's what I think they ought to do:

Institute OpenID login with a clear explanation that AIM screennames are sufficient and stop requiring people to register for a Rapleaf account in order to edit or delete their Rapleaf pages. (Good faith gesture towards the nerds and good policy.) Put a link on the top of every landing page from the emails sent out, linking to a post on the company's blog. Post to the blog an apology for being over-eager in who to contact and when. Email addresses fly all over the web all day long, but reputable business don't email those addresses unsolicited. Mea culpa. Then explain what Rapleaf does, why you have peoples' email addresses and what the value of the service is. Draw an explicit analogy to eBay and to Google. Make it short, enable comments to that post and reply to the comments with more comments. Do an Ask.com blogsearch (nearly spam free) for Rapleaf and privacy, sort by popularity and get to work apologizing for spam with a link to the blog post.

That's what they ought to do. Then they need to remake their reputation as the ultimate verification system and never abuse their access to emails again. Go ahead and keep selling the information that they are to marketers, they've created a unique tool to leverage data portability that I think is ok.

Good luck to us all in the stormy future that's now!

See other posts about:Reviews

13 Responses to “Rapleaf and its problems”

  1. Harold Jarche Says:

    Gee, I received a message from these guys today, and it was to an e-mail which I almost never give out. They’re now on my spam list - probably for good.

  2. Russell Says:

    They just spammed my entire gmail contact list for trying out upscoop .. I would never have used them had I known. I hate spam, and would never spam my contacts, especially to their private e-mails.

  3. Neville Hobson Says:

    I got just such an email from Rapleaf yesterday. Although my first reaction was to view it as spam, I did take a look at the site.

    Then I remembered: a friend introduced me to Rapleaf about a year ago. I didn’t do anything from that intro although I noted yesterday that I already have a profile there (I didn’t set it up).

    I’m not at all impressed with this. If they’re in the reputation business, they have some work to do on their own first.

  4. A View from Home » The Rapleaf problem Says:

    […] Like many, I got one of those emails from Rapleaf saying that someone had been looking for me. No, I didn’t believe it. But I clicked through anyway and they did know my hometown and on which social network sites I had a profile. […]

  5. frumiousb Says:

    You have to register to get yourself out of their damned public database and “claim” your email. Otherwise they’ll just keep collecting and publicizing data on me. If I do that, however, I become “confirmed” and my data becomes more valuable to sell in aggregate. Blackmail of any sort is actionable. I don’t wish them success. I wish them RBL’d into the next century.

  6. Marc Canter Says:

    Pssssst - Rapleaf is coming to the DataSharingSummit.

  7. Hitchhiker's Guide to 650 Says:

    RapLeaf+ UpScoop + TrustFuse

    When a company has multiple subsidiaries/company names and they have less than 100 employees . . . a red flag should go up. When a company spends way too much time trying to incorporate any combination of the words: “no evil” , “eth…

  8. Rapleaf Blog » Start-ups, privacy, and being wrong Says:

    […] We gather this information to allow users to control it. At least, that is what we want to do. But as many people - like Judi Sohn, Marshall Kirkpatrick, and others - pointed out, we definitely made a bunch of mistakes in this realm in the last few weeks. […]

  9. A View from Home » Scoble completely missed the point on Rapleaf Says:

    […] Shortly after I posted about Rapleaf, the company put out a long, involved explanation and apology on their blog. It was in direct response to this ZDnet article, but they also linked back to me and Marshall Kilpatrick (and at the end, everyone else who blogged about it…smart way to say, “look, we answered!”). […]

  10. Signal » Blog Archive » Rapleaf, aggrégateur marketing Says:

    […] Mise à jour : plus de détails ici sur ce qui se passe lorsqu’on se crée un « compte » Rapleaf. Rapleaf exploite également Upscoop, aggrégateur de réseaux sociaux, qui donne lieu à une autre application Facebook. […]

  11. Marketonomy Says:

    RapLeaf: Social Media’s Trojan Horse

    I’ve been watching the furor over the RapLeaf controversy for the past couple of days, really struggling over whether or not to weigh in. If you’ve already been following the controversy, drop down to the next subhead, “The RapLeaf Problem”

  12. Is RapLeaf getting a bad rap? | WinExtra Says:

    […] Since first announce RapLeaf has been getting a lot of attention from tech bloggers and most of it hasn’t been all that nice to the company; including myself. Then after posting a comment on a Robert Scoble post about RapLeaf I received an email from Auren Hoffman RapLeaf’s CEO suggesting we have a chat about my concerns over the company. […]

  13. Salesforce + Facebook = Potentially Lethal! | notes from across the pond Says:

    […] There has already been some controversy surrounding this issue, prompting this response. […]

Leave a Reply