Feroot: CCPA for mobile apps (SDK tracking risks and the compliance gap)
A sharp reminder that ‘we passed App Store review’ is not a privacy program. Regulators increasingly expect publishers to actively govern SDK data flows, propagate opt-outs into SDK configs, and detect drift when vendors change runtime behavior.