7 ms·
Help me figure out whether I invented tracking cookies in 1995
My name is Gary Robinson (https://www.garyrobinson.net; there's a much more complete version of this story there).
In 1995 I had put together a collaborative filtering algorithm and was looking for applications. One thought I came up with was: target ads according to the viewer's interests. But where to get data? Ideally, it would involve seeing what their interests were, as exhibited in their web browsing choices. But how to do that?
At first blush, browser cookies didn't appear like they could help because they can only be written or read from the internet domain from which they were written. So for example, if a cookie is written by a CGI at golfing.com, it can't be accessed by a CGI at boating.com. It followed that the idea of having the servers for golfing.com and boating.com both accessing a central server at some other location to track user activity wouldn't work; there was no way to know that the same user had visited both sites because any cookies written at one site would be inaccessible to the other.
But as I looked further into the general topic of Web programming, I noticed that a Web site running on one domain could invoke a CGI running on another domain. And there seemed to be no reason why that CGI, running on that other domain, couldn't write its own cookie to the local computer. So, if Web pages running on golfing.com and boating.com each invoked a CGI running at adserver.com, then that CGI could know that the user had visited both sites. The cookie might be inaccessible to gofling.com and boating.com servers, but that didn't matter, because it would be accessible to adserver.com.
I asked about this possible use in Netscape-related forums. One response said: "You could, in theory, if you had source for your server, hack in someway for it to send the cookie somewhere. There is no existing protocol for doing so." So, while most web programmers probably know this is doable now, that apparently wasn't the case in 1995. But some testing showed that it could indeed be done.
I wrote a patent application, "Collaborative Filtering in World Wide Web Advertising," [1] which was focused on my CF algorithm and didn't have claims that existed independently of it, but did discuss the idea of tracking cookies as an implementation detail.
Google owns it now. This year, there's a patent troll attacking Google and Twitter, where, in a legal brief representing both companies, Google and Twitter refer to the tracking cookie "Robinson's Cookie." [2]
Why am I posting about this today? Well, I've noticed the fact that people have been selling NFTs for all manner of things. Maybe someone would like to buy an NFT representing the original conception of tracking cookies for advertising? If so, it seemed I should do more due diligence before offering it for sale. The patent priority date is Dec. 27, 1995. But discussion group messages I've saved for the last 25+ years show that I had come up with the cookie idea, but not yet confirmed that it would actually work, by Nov. 15 of that year.
My thought is to create a video in which I tell the story for the purchaser. I think it may make for an interesting story, involving such facets as the president of a traditional direct-mail marketing company getting down on his knees in front of me in the atrium for a conference venue, raising his hands into the air, and repeatedly bowing all the way to the ground, chanting "You are Big Brother! You are Big Brother!" (Such sentiments led to my adding a lot of privacy-related features to the patent, which resemble those actually in use decades later.) Of course, I'd throw in a signed hardcopy of the patent for good measure. :)
I'd be very interested in any information or thoughts the HN community may have about this.
[1] https://patentimages.storage.googleapis.com/c3/d4/40/239073914fa7fc/US5918014.pdf
[2] https://s3-us-west-1.amazonaws.com/ptab-filings/IPR2021-00485/3
- 1vuio0pswjnm7 5y agoWell, thanks for ruining the www and selling patent rights to Google. (Imagine if those rights were owned by the EFF.) Its not so much the tracking of www users concept that is so annoying, its the need for web pages to trigger all these extraneous requests. A gazillion unnecessary requests to tracking servers returning no useful content to the user. Even the simplest of pages with minimal content transformed into dumpster fires of ad and tracking-related cascades of Javascript-triggered requests. What a mess. Honestly, I do not understand how anyone except scumbags, e.g., the guy on his knees in the atrium, would think this is cool. Good luck.
- garyrob 5y agoYeah, I can't say I'm defending where it's gone, at all. But I did think it was cool at the time and could result in people being shown ads they'd be interested in. And, it was inevitable; I'm sure it was thought of entirely independent of me by other people later (if not before, which is what I'm trying to find out). And as I mentioned, I DID put a lot of privacy stuff into the patent. But I didn't foresee, at all, the crazy degree to which it would affect loading times, etc.!!!
- deleted 5y ago[deleted]
- garyrob 5y agoAlso, I want to stress that while the patent "taught" how to use browser cookies for tracking, the specification was written in such a way that claims for the cookie tracking mechanism by itself couldn't be created. The specification was about a specific technique for recommending ads that would (hopefully) be in line with their interests. Accordingly, I don't believe the ad has, or can, be used offensively because I don't think that recommendation technique is being used. Rather, Google is using it to protect itself against patent trolls. (And a small additional piece of clarification, the ad was sold to DoubleClick, which itself was bought by Google.)
- 5y ago