The encyclopedia
Dark Pattern

The Forced Invite

The effect

"You shared the app with everyone in your contacts — without meaning to."

The method

Onboarding step that 'finds friends' by uploading the user's address book and either auto-sending invites or making 'skip' visually impossible.

Black hat
9/10
Most common usage on the angel→devil scale
The ethics spectrum

Same hack. Three very different choices.

White hat

Optional, opted-in friend-finding with explicit, per-message confirmation.

Grey hat

Aggregated 'do you know these people?' suggestions without auto-send.

Black hat

Address book uploaded silently and invites auto-sent in the user's name.

The template

A formula you can steal

Friend-find should require [EXPLICIT PERMISSION] + [PREVIEW] + [SEND BUTTON].
Spotted in the wild

Where you've already seen this

  • Path's notorious 2012 contact upload — became a Congressional hearing.
  • LinkedIn's class-action settlement over auto-sent connection invites.
  • Early growth-stage social apps timed to 'find friends' before the value prop lands.
When to use it

Never the silent version. Opt-in with clear preview is the only acceptable form.

When NOT to use it

Anywhere your TOS or privacy policy doesn't already document the upload.

The 5-minute practice

Try the trick today

Read your own onboarding's contact-import step end-to-end. If a non-technical user couldn't tell what they're agreeing to, redesign.

Don't get hacked
Want to avoid this trick being run on you? Take the AI Marketing Course →

Free Marketing Hacked module included. See more cautionary tales and learn the playbook from the inside.

See it in action

1 teardown use this trick