Openmind
Digital Sovereignty8 min read6 July 2026

Why Most People Have Already Lost Digital Control Without Realising It

Nobody experiences losing digital control as a single event. It happens in a thousand small defaults you never had reason to question, granted at the exact moment you were least likely to say no.

By Openmind Team
#data privacy#app permissions#dark patterns#digital control

Try this: without checking, name every company currently able to read your private messages, know your location history, and infer your mood from how fast you're typing. Most people can name two or three. The real number is usually closer to fifteen.

That gap — between the number you can name and the number that's real — is the actual subject of this article. Not because any single one of those fifteen is doing something monstrous with the access it has, but because nobody ever sat down and decided, deliberately, to grant fifteen separate parties that level of visibility into a life. It accumulated. One "Allow" at a time, each one reasonable in isolation, each one forgotten within the hour.

Loss of control doesn't arrive as an event

When people imagine losing control of their digital life, they tend to imagine a hack, a leak, a single dramatic breach with a headline attached. That does happen, and it's real. But it's not how most control is actually lost. Most of it is lost the boring way: gradually, consensually, in exchange for something that felt worth it at the time.

A location permission granted once, for a single delivery, that then applies forever. A microphone permission granted for a voice note, three years ago, on an app since forgotten but never uninstalled. An account created for a service used exactly once, its password reused from four other accounts, its data sitting somewhere indefinitely because deleting an account is always three more clicks than creating one.

None of these felt like a decision to give something up. Each one felt like a small, sensible step toward doing the thing you actually wanted to do. That's the mechanism worth naming plainly: consent architecture is designed to make granting access frictionless and revoking it effortful. This isn't an accident of bad design. Asymmetric friction is the design — a pattern well-documented enough to have its own name, dark patterns, and its own regulatory scrutiny.

The permissions you granted are not the permissions you remember granting

Here's a useful, slightly uncomfortable exercise. Open the settings on your phone and look at which apps have background location access — not "while using," but always. Look at which apps can access your contacts, your microphone, your photo library in full, not just the photo you picked. For most people, the list is longer than expected, and a meaningful fraction of it is for apps that had a legitimate one-time reason for the request and never had the permission revisited since.

This isn't a story about malicious apps. Most of these permissions were requested by ordinary, useful software, for reasons that made sense in the moment. The problem is structural, not individually sinister: permission requests happen at the point of highest motivation (you really want the feature right now) and lowest scrutiny (you're mid-task and just want to proceed), and there is almost never a natural moment afterward where anyone is prompted to reconsider.

Compare this to how physical-world permissions work. If you lend a neighbour your house key, there's a natural social moment to ask for it back — moving house, a falling out, simply not needing them to water your plants anymore. Digital permissions have no equivalent social trigger. The key just stays lent, indefinitely, until someone goes looking for it specifically. It's the same asymmetry explored from a systems angle in what digital sovereignty actually means — control lost one layer at a time, never as a single visible event.

Why this particular blind spot is so resistant to fixing

It would be easy to conclude that the fix is simply "be more careful" — read the permissions, audit them quarterly, say no more often. This isn't wrong, but it radically underestimates the asymmetry involved. On one side is a person with a finite amount of attention and a task they're trying to complete. On the other side is a well-resourced product team whose job, quite literally, is to make granting access feel as close to zero-friction as legally possible, because every point of friction measurably reduces conversion.

This isn't a fair fight, and framing it as a matter of individual vigilance quietly blames the person with less power in the interaction for losing to the person with more. The honest framing is structural: the average person is not losing control because they're careless. They're losing control because the system was built by people whose incentives point directly at that outcome, and built by people who are considerably better resourced to win that particular contest than any individual user trying to pay attention on a Tuesday afternoon.

What "regaining control" actually requires

Given that framing, the useful response isn't shame or hypervigilance — both are exhausting and neither scales. There are two more durable moves.

The first is periodic, deliberate audits rather than constant vigilance. Once a quarter, genuinely worth doing: go through app permissions and account lists and revoke what no longer has a clear, current reason to exist. This is boring, unglamorous, and more effective than almost anything else available to an individual, precisely because it doesn't depend on remembering to notice something in the moment — it's scheduled, like changing a smoke alarm battery.

The second, more structural move is choosing tools where the default already leans toward restraint, rather than tools where restraint is something you have to actively fight the interface to achieve. There's a meaningful, if under-discussed, difference between a company that could theoretically see everything you do and chooses, by policy, to be careful with it, versus a system built so that it structurally cannot see the content in the first place — where privacy isn't a promise being kept, but a property of how the thing works. It's part of why Openmind is building an encrypted messenger and a VPN on that second principle specifically — not because a policy commitment isn't real, but because a structural one doesn't need to be trusted, it just needs to be checked. Both are still early — more on them once there's something live to actually look at.

The uncomfortable, useful reframing

Here's the reframe worth sitting with: the fifteen companies that can currently see far more of your life than you'd consciously agreed to aren't a personal failing to be embarrassed about. They're the predictable output of a system engineered, over more than a decade, by people who study exactly this problem professionally and are extremely good at it.

Once that's clear, the goal stops being "never make a mistake again" — an impossible standard — and becomes something much more achievable: build a habit of periodic review, and where possible, choose defaults that don't require constant vigilance to be safe. Control lost gradually can be regained gradually too. It just requires noticing, once, that it was never really a single decision to begin with.

Frequently asked questions

How many apps typically have access to sensitive permissions like location or microphone?
It varies widely, but most smartphone users are surprised to find ten or more apps with standing access to at least one sensitive permission — often for features they used once and forgot about.

Is it realistic to review every app permission I've ever granted?
Not every one, and not constantly — that's the trap. A quarterly review of the apps with the most sensitive permissions (location, microphone, contacts, full photo access) catches most of what matters without becoming a full-time job.

Why do companies design permission requests to be so easy to accept?
Because friction at the point of requesting access measurably reduces how many people grant it, and granting access is usually tied to a feature or metric the product team is trying to improve. It's rarely malicious — it's just an optimisation with a side effect.

Is deleting an app enough to revoke the permissions it had?
Usually only partly. Deleting an app typically revokes its ongoing access to your device, but any data it already collected and stored on the company's own servers isn't affected by that — it stays until you separately request deletion, if that option even exists.

Does this mean every app that asks for permissions is acting in bad faith?
No — most permission requests come from genuinely useful features built by people with no bad intent. The problem is structural: a system optimised to minimise friction at the point of consent will always make granting access easier than the alternative, regardless of anyone's individual motives.

What's a practical first step if this feels overwhelming?
Pick one category — location, microphone, or contacts — and review just that across every app on your phone this week. A narrow, complete pass beats a broad, abandoned one.

Want to know more?

We're a small team building meaningful products. Have a look at what we're working on, or get in touch directly.