← Shopping Apps
F

Target App / Circle

Fail
Target · 🇺🇸 United States
PolicyApp PermissionsNetwork TrafficFirmwareRegulatory
Technical details
App: Target
Manufacturer: Target Corporation

⚠️ The bottom line

40 million credit cards stolen because a heating contractor had network access. The CIO and CEO resigned. $18.5 million in settlements. The company that knows you're pregnant from your shopping patterns couldn't stop hackers who came in through the air conditioning. Target knew a teenager was pregnant before her father did. Their algorithm figured it out from her purchases — lotion, supplements, cotton balls. Now with Circle and Bluetooth beacons, Target tracks where you walk in the store, what you linger near, and what you buy. The company that predicted pregnancy from shopping patterns is now watching your feet.

Legal jurisdiction
🇺🇸 United States (headquarters)
CLOUD Act read more →
US govt can demand your data from this company even if stored overseas
FISA §702 / PRISM read more →
NSA collects stored emails, photos, messages without individual warrants
Geofence warrants read more →
Police can demand location data for everyone near a crime scene
Spying
0/4 N/A
Is someone spying on me?
Data Sharing
2/4 MODERATE
Who gets my data?
Security
3/4 HIGH
Is it actually secure?
Kids at risk
Honesty
2/4 MODERATE
Can I trust what they say?
Kids at risk
CONFIGURE High-risk areas that can be partially mitigated with settings changes.
2Contradictions
1Critical
1High
0Medium
4Sources
Findings by concern
Security 3/4 HIGH 2 findings
⚠️ criticalmarketing vs regulatory
40 million credit cards stolen because a heating contractor had network access. The CIO and CEO resigned. $18.5 million in settlements. The company that knows you're pregnant from your shopping patterns couldn't stop hackers who came in through the air conditioning.

What they claim: Target promotes secure shopping and data protection

What we found: The 2013 Target data breach — 40 million credit cards and 70 million personal records stolen — entered through an HVAC vendor's network credentials. Target paid $18.5 million in settlements. The CIO and CEO both resigned. The breach demonstrated that retail loyalty programmes create massive data honeypots.

⚡ highmarketing vs third party research
Target knew a teenager was pregnant before her father did. Their algorithm figured it out from her purchases — lotion, supplements, cotton balls. Now with Circle and Bluetooth beacons, Target tracks where you walk in the store, what you linger near, and what you buy. The company that predicted pregnancy from shopping patterns is now watching your feet.

What they claim: Target promotes Circle rewards as a way to save money on everyday purchases

What we found: Target famously identified a teenager's pregnancy before her father knew, based on purchase patterns (unscented lotion, supplements, cotton balls). The company's predictive analytics assigns a "pregnancy prediction score" to shoppers. Target's 2013 data breach exposed 40 million credit card numbers and 70 million customer records — the breach that entered through the HVAC system. Target Circle now tracks in-store movement via Bluetooth beacons in the app.

Sources