메뉴
BL
Wired AI 13일 전

제발 더 이상 AI '수동 거부'하게 만들지 마세요

IMP
7/10
핵심 요약

빅테크 기업들이 신규 AI 기능을 도입할 때 이를 기본값으로 설정하고 사용자가 일일이 설정을 찾아 비활성화(Opt-out)해야 하는 관행이 비판받고 있습니다. 사용자들은 개인정보 침해 우려와 귀찮음 속에서 스스로를 보호해야 하는 부담을 느끼며, 기본적으로 개인정보 보호에 동의(Opt-in)하는 방식의 규제와 시스템 구축이 필요하다는 목소리가 커지고 있습니다.

번역된 본문

7월 초, 메타(Meta)는 자사 AI 앱 사용자가 공개된 인스타그램 계정을 태그하고 이들의 초상을 활용해 이미지를 생성할 수 있는 새로운 기능을 선보였다. 인스타그램 사용자가 직접 이 기능을 비활성화(opt-out)하도록 기본적으로 활성화해 놓은 메타의 결정은 논란을 불러일으켰다. 여러 인스타그램 크리에이터들이 기능을 끄는 방법을 설명하는 조회수 수백만의 영상을 올리며 불만을 토로했다. 3일간의 강력한 반발 끝에 메타는 성명에서 "이 기능이 기대에 미치지 못했다"고 밝히고 AI 챗봇의 인스타그램 태그 기능을 철회했다.

크리에이터 샘 수인 양(Sam Sooin Yang)은 조회수 300만 회 이상의 인스타그램 영상에서 "사용자가 원하지 않을 경우 직접 거부하게 만드는 대신, 동의(Opt-in)할 수 있는 옵션을 제공했어야 했다. 우리가 이런 AI 기능을 원하지 않을 때 기업들이 일방적으로 강요하는 것에 정말 지쳐가고 있다"고 말했다.

생성형 AI에 대한 대중의 정서가 계속 악화됨에도 불구하고, 실리콘밸리 기업들은 이러한 기능과 관련 설정을 기본값으로 켜두는 방식에 의존하고 있다. 해당 AI 기능의 '기본 활성화' 방식에 대한 대중의 반응은 그 속도가 무척 빨랐다는 점에서 주목할 만했다. 전자프론티어재단(EFF)의 수석 프라이버시 활동가인 토린 클로소스키(Thorin Klosowski)는 "분명하고 즉각적인 반발이었다"며 "솔직히 이렇게 빨리 철회되는 모습을 보니 정말 다행이었다"고 말했다. 생성형 AI 기능이 출시된 지 단 3일 만에 불이 꺼진 것은 일종의 기록일 것이다.

최근 나는 구글 독스(Google Docs)의 'Gemini에게 물어보기' 바를 껐다. 어느 날 아침 문서 하단에 팝업으로 떠올라 일상적인 글쓰기 워크플로우의 일부로 구글 챗봇을 사용하라는 메시지를 보낸 것이다. 나는 즉시 설정을 뒤져 이 기능을 비활성화했다. 이는 최근 몇 년 동안 드롭박스(Dropbox)나 링크드인(LinkedIn) 같은 다른 플랫폼에서도 안타깝게도 수없이 반복해온 익숙한 의식이다.

이러한 기능을 넘어서도, 메타는 프라이버시 토글 게임에 깊이 매몰되어 있다. 미국소비자연맹의 AI 및 프라이버시 책임자인 벤 윈터스(Ben Winters)는 "이러한 유형의 행동은 메타에만 국한된 것이 아니다. 미국 내에 적절한 프라이버시 규제가 없는 상황에서, 그들은 우리가 처해 있는 '수동 거부(opt-out)' 중심의 현 상태를 관리하는 인물들"이라고 말했다. 사용자가 비활성화를 고려해봐야 할 또 다른 메타 설정으로는 모바일 환경에서 앱 내 방문 웹사이트를 추적하는 페이스북의 '향상된 브라우징(Enhanced Browsing)' 기능이 있다.

메타 대변인 다니엘 로버츠(Daniel Roberts)는 WIRED에 보낸 이메일 성명에서 "우리는 사람들이 자신에게 맞는 프라이버시 선택을 하고 플랫폼 경험을 형성할 수 있도록 돕는 폭넓은 설정 및 제어 기능을 구축했다. 또한 TTC Labs와 같은 산업 간 협력 조직을 통해 사용자가 쉽게 사용하고 이해할 수 있는 제어 및 데이터 활용 방식을 개발하기 위해 광범위한 연구를 수행하고 자금을 지원하고 있다"고 밝혔다.

기업이 사용자를 새로운 AI 도구나 데이터 학습에 자동으로 참여시키도록(opt-in) 결정할 때 이는 매우 중요한 문제이다. 보스턴 대학교 로스쿨의 우드로 하조그(Woodrow Hartzog) 교수는 "사람들은 대체로 기본 옵션이 무엇이든 그대로 유지하는 경향이 있다. 따라서 기본 옵션이 가입으로 되어 있다면, 십중팔구 가입된 상태로 남게 될 것"이라고 말한다.

하조그 교수는 사용자를 더 잘 보호하는 예로 유럽연합의 개인정보보호법인 GDPR(General Data Protection Regulation) 제25조를 지적한다. 그는 "핵심 아이디어는 시스템을 구축할 때 필요한 데이터만 수집하고 그 이상은 수집하지 않도록 해야 한다는 것이다. 그리고 선택지 중 하나가 다른 하나보다 프라이버시를 더 잘 보호한다면, 기본적으로 더 보호적인 옵션이 미리 선택되어 있어야 한다"고 설명한다.

일부 프라이버시 전문가들은 실제 적용되는 방식에 대해 GDPR의 한계를 지적하기도 하지만, 나는 더 보다 개인정보 보호 친화적인 접근 방식이 기본값이 되어야 한다는 아이디어에 강한 매력을 느낀다. 그래야만 온라인 상호작용에 대해 더 큰 안심을 할 수 있을 것이다. 내 데이터를 더 잘 보호하기 위해 숨겨진 복잡한 메뉴 화면을 뒤져가며 수수께끼를 풀 듯 고생하는 개인적 책임감을 느낄 필요가 없기 때문이다. 캘리포니아나 메릴랜드 같은 곳의 파편화된 주 단위 법률들이 더 나은 보호를 향한 확실한 발걸음으로 평가받고 있다.

원문 보기
원문 보기 (영어)
Comment Loader Save Story Save this story Comment Loader Save Story Save this story In early July, Meta rolled out a new feature where anyone using its AI app could tag public Instagram accounts and generate images using their likenesses. Meta’s decision to turn the feature on by default, so that Instagram users had to actively opt out, was controversial. Multiple Instagram creators posted viral videos explaining how to opt out and expressed frustration. After three days of outcry, Meta said in a statement that “this feature missed the mark” and rolled back Instagram tagging for its AI chatbot. “They should have given you the option to opt in rather than opt out. But I am really getting tired of these companies pushing this AI stuff on us when we don’t want to use it,” said creator Sam Sooin Yang in an Instagram video with over 3 million views. As public sentiment has continued to sour on generative AI , Silicon Valley companies have leaned into enabling these features and related settings by default. The public reaction to Instagram’s “opt-out” default for that AI feature was notable for its swiftness. “That was a clear and immediate pushback,” says Thorin Klosowski, a senior security and privacy activist at the Electronic Frontier Foundation . “Honestly, it was great to see how quickly that happened.” Three days from lights on to lights off for a generative AI feature has to be some kind of record. Recently, I turned off the “ Ask Gemini ” bar in my Google Docs. It popped up at the bottom of my documents one morning and prompted me to use Google's chatbot as part of my regular writing workflow. Immediately, I started digging in the settings to disengage this feature. It's a ritual I’ve also performed an unfortunate number of times in recent years on other platforms, like Dropbox and LinkedIn. Even beyond this feature, Meta is deeply entrenched in the privacy toggle game. “This type of behavior is not unique for Meta,” says Ben Winters, director of AI and privacy at the Consumer Federation of America . “They are stewards of the opt-out status quo that we find ourselves in, without adequate privacy regulation in the States.” Another Meta setting you might want to opt out of is Facebook’s “Enhanced Browsing” roundup that tracks in-app visited websites on mobile. “We've built a wide array of settings and controls to help people make the privacy choices that are right for them and shape their experiences across our platforms,” Meta spokesperson Daniel Roberts wrote in an emailed statement to WIRED. “We also conduct and fund extensive research to develop controls and data practices that are easy for people to use and understand, including through cross-industry organizations like TTC Labs ." It really matters when companies decide to opt users into a new AI tool or data training. “People tend to stick with whatever the default option is,” says Woodrow Hartzog, a professor at Boston University’s law school. “So, if the default option is that you're enrolled, you're probably going to stay enrolled.” Hartzog points to Article 25 of the European Union’s privacy law, called the General Data Protection Regulation (GDPR) , as an example of better protections for users. “The idea is that you have to build your systems to collect only what you need and nothing more,” he says. “And, if one of the options is more privacy protective than the other one, then by default, the more privacy protective option needs to be pre-selected.” While some privacy experts have taken issue with how the GDPR works in practice, I find the idea of a more privacy-preserving approach as the default powerful. That would give me better peace of mind about my online interactions. No need to feel personally responsible for digging through esoteric menu screens, solving three limericks before I better protect my data. While regulatory experts highlight scattered state laws in places like California and Maryland as solid steps toward better personal data protections, a more centralized set of standards would benefit consumers who are often overwhelmed by the sheer number of privacy-impacting settings they are automatically enrolled in. “It is the perfect recipe for something that needs federal government intervention,” Winters says. “That's what legislatures and governments are there for: to protect people where they are unable to protect themselves and constrain companies from doing things that are particularly abusive and deceptive at scale.” While past attempts have failed at the national scale, Winters is optimistic that public sentiment is putting us closer to federal regulation than we were a decade ago. When a company chooses to opt you into an AI feature, they are making decisions with real-world consequences. “People say technology is just a tool that you can do good things or bad things with. That often is said to hide the ways in which technology makes certain realities more or less likely,” Hartzog says. “So when you design tools in particular ways, there are foreseeable uses of those tools.” If a company automatically opts millions of users into a deepfake tool , then a world filled with even more deepfakes becomes more possible. And that's a reality I’d love to opt out of.