Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos EULA for consumers is why I do not use Sophos Anti-Virus for Mac Home Edition

I considered using Sophos Anti-Virus for Mac Home Edition many months ago, but decided against using Sophos, as I did, again, today, when I read:

"7.1 You acknowledge and agree that we may and the Licensed Product may, directly and remotely communicate with your computer for the purposes of, without limitation, verifying your credentials, issuing reports and alerts."

in the http://www.sophos.com/legal/consumer-eula.html.

The wording of 7.1 is far too imprecise(ambiguous) and makes me feel very uncomfortable about what the Sophos software may do on my computer after I have been obliged to give it administrator level privileges in order to install it. Wording in 7.1, such as "without limitation", is very troubling to me and, similarly, "verifying credentials" could be legally interpreted to mean, literally, any credentials, even for other software on my computer, especially since 7.1 does not, specifically, refer to Sophos credentials. In fact, "Credentials", because of the wording in 7.1, could mean any of my credentials, including my occupation or driving credentials.

I reviewed the EULA of a few other products, some including antivirus and some that I am currently running, and they do not contain such "scary" wording in their EULAs.

http://securityresponse.symantec.com/avcenter/reference/dangers.of.spyware.pdf , in the "User Notification" section, conveys, in large part, the manner of concern I have with Sophos' EULA for consumers.

Ultimately, I feel that such vague EULA wording is not by accident when it comes from a company of the caliber of Sophos.

I also find it very peculiar that http://www.sophos.com/legal/ contains a http://www.sophos.com/legal/eula.html at the very top of the page that is easy to mistake for the only Sophos Eula, unless you read further and find the 2nd Sophos Eula, which is the one with the "scary" wording in 7.1.

I find myself asking why there are two EULAs and, even if there is good reason for two EULAs, why are they not listed one above the other, or directly adjacent to one another, on the "Legal Details" page.

Obviously, I have wanted to try Sophos Anti-Virus for Mac Home Edition for some time, but I think I will continue to resist that temptation for the time being.

:1004625


This thread was automatically locked due to age.
Parents
  • Hi 112911,

    So our legal folks were helpful enough to explain that this language is contained in all of our EULAs (not just the home edition) and their intent is to be both legally correct and broad enough to cover multiple products. We are not extracting personal or confidential information, that is not our business. They will look to improve the language in future revisions.

    Our legal department maintains separate "Data Sharing Documents" for each of our products, available upon request (the EULA itself contains contact information). The document for Sophos Anti-Virus for Mac is very thin, it states we don't collect any information from your computer. We do record (as well as validate) the credentials presented by the software when updating, but if you were to disable updates then there is no further contact between your computer and Sophos.

    Hope that helps.

    :1004667
Reply
  • Hi 112911,

    So our legal folks were helpful enough to explain that this language is contained in all of our EULAs (not just the home edition) and their intent is to be both legally correct and broad enough to cover multiple products. We are not extracting personal or confidential information, that is not our business. They will look to improve the language in future revisions.

    Our legal department maintains separate "Data Sharing Documents" for each of our products, available upon request (the EULA itself contains contact information). The document for Sophos Anti-Virus for Mac is very thin, it states we don't collect any information from your computer. We do record (as well as validate) the credentials presented by the software when updating, but if you were to disable updates then there is no further contact between your computer and Sophos.

    Hope that helps.

    :1004667
Children
No Data