← the record
AIAAIC-1065

Ryanair customer facial recognition slammed as "invasive"

The use of live facial recognition during Ireland-based budget airline Ryanair's external online booking process to verify the identities of its customers has been labelled 'invasive' and 'unjustified'. A legal complaint lodged in Spain in the name of Spanish customer by privacy group NYOB alleges that Ryanair failed to provide customers with informed or 'comprehensible information about the purpose' of the process, and that it is illegal under the EU's General Data Protection Regulation (GDPR). Ryanair defended the system as necessary due to third-party sellers miss-selling flights, providing incorrect contact details, or hiking up fares. 'Ryanair has no commercial relationship with any OTA nor are they authorised to sell our flights. OTAs scrape Ryanair’s inventory and in many cases miss-sell our flights and ancillary services. As a result, and in order to protect customers, any customers who book through an OTA are required to complete a simple customer verification process,' it explained. System 🤖 Ryanair 🔗 Operator: Ryanair Developer: Country: Spain; EU Sector: A erospace Purpose: Verify customer identity Technology: Facial recognition; Computer vision; Machine learning Issue: Privacy; Transparency Legal, regulatory 👩🏼‍⚖️ NYOB (2023). Complaint (pdf) NYOB (2023). Booking a Ryanair flight through an online travel agent might hold a nasty surprise

Date it happened
2023-07-01
Organisation involved
Ryanair
Where this came from
Share this incident
XLinkedInFacebookWhatsAppEmail
Attribution

This incident was imported from AIAAIC and is used under CC BY-SA 4.0. Our additions to it — the structured fields, the translation, the checks against other reports — are published under the same licence.

This is a record of what was reported, not a finding that anyone broke the law. If it names your organisation and you believe it is wrong, the corrections process is free and open to everyone.