5 ms·
I’m hoping that Apple will bring this reject all tracking cookies option to Safari so websites read that instead of asking all the time.
by blue_box 4y ago
I’m hoping that Apple will bring this reject all tracking cookies option to Safari so websites read that instead of asking all the time.
- JadeNB 4y agoWe've already encountered that with "Do Not Track"—as soon as you have anything that doesn't require user intervention, websites start arguing that it doesn't reflect the users' intention, and so they have to protect us from the nasty browsers by tracking us.
- guiambros 4y agoTo be fair, the DNT launch was botched from the beginning, starting more as hack than an industry-wide consensus [1]. While it eventually got implemented by browsers, it lacked adoption, and had risks with fingerprinting [2]. The nail in the coffin was when Internet Explorer 10 decided to enable it by default [3], completely disregarding user intent. [1] http://paranoia.dubfire.net/2011/01/history-of-do-not-track-header.html http://paranoia.dubfire.net/2011/01/history-of-do-not-track-... [2] https://www.macworld.com/article/232426/apple-safari-removing-do-not-track.html https://www.macworld.com/article/232426/apple-safari-removin... [3] https://en.wikipedia.org/wiki/Do_Not_Track#Internet_Explorer_10_default_setting_controversy https://en.wikipedia.org/wiki/Do_Not_Track#Internet_Explorer...
- nfoz 4y ago"Do not track me" IS the reasonable default expectation of user intent, to be fair.
- Macha 4y agoAnd is what the GDPR is trying to establish as the legal baseline, though things are moving slowly (this article is showing they _are_ moving though)
- ahtihn 4y ago> The nail in the coffin was when Internet Explorer 10 decided to enable it by default [3], completely disregarding user intent. User intent? Really? Because user intent is to allow tracking by default?
- Sargos 4y agoCertainly not at the near 100% level that the default setting suggests. Microsoft poisoned the well with DNT and worsened privacy on the web for everyone.
- JadeNB 4y agoI can believe that there are some people who don't care if they're tracked, but do you believe that there's anyone who wants to be tracked? Maybe someone out there somewhere does, but surely such people, who actively want to be tracked, are in the distinctly small minority. In that case, why should the onus be on everyone else to communicate their intent, rather than on the few users affected to communicate their intent?
- Sargos 4y ago>why should the onus be on everyone else to communicate their intent, rather than on the few users affected to communicate their intent? Because this effectively bans any kind of tracking cookies which, while most are kind of awful, there are legitimate reasons for their existence. Shifting the conversation from a user choice to an effective ban is a completely different conversation with pros and cons that must be considered separately.
- JadeNB 4y ago> Because this effectively bans any kind of tracking cookies which, while most are kind of awful, there are legitimate reasons for their existence. Shifting the conversation from a user choice to an effective ban is a completely different conversation with pros and cons that must be considered separately. It doesn't at all ban them—it just makes them only effective for users who explicitly opt in. And if that's too much of a burden to impose on those very few users, then why is it reasonable to impose the burden on the vast majority of users who don't want to be tracked?
- axg11 4y agoCookies are just completely broken. The EU should never have got involved in the way that it did. No matter how positive the intentions, the web is a worse experience as a result, with marginal privacy gains.
- zasdffaa 4y ago> Cookies are just completely broken In what way? > The EU should never have got involved in the way that it did Maybe, can you explain where it failed. > the web is a worse experience as a result That's debatable > with marginal privacy gains can you quantify that? Myself, I turn off all JS and nix all cookies (with about the only temporary exceptions being for posting on HN). WFM.
- dmitriid 4y ago> the web is a worse experience as a result, with marginal privacy gains. The web is a worse experience because of companies like Google and IAB willingly breaking the law. But sure, blame the law.
- hedora 4y agoI'm really hoping Do Not Track becomes legally binding. (Also, how is it not already treated like a piece of a contract negotiation? It is machine readable and sent on every request. Hidden website EULA's are already treated like contracts.)
- dmitriid 4y agoDNT is deprecated and now removed from all browsers because it was ironically used for fingerprinting and tracking.
- Jon_Lowtek 4y agoThe focus on cookies was always a bit off and more a result of too much technical detail resulting in laws missing their intent. The legislative moves slowly, over time, this will be fixed. However the legislative regulating how webservices have to handle data privacy was very necessary (and the people of the USA should really consider amending their constitution by also demanding a basic human right to data privacy). The key elements are "informed choice" and "consent to data gathering/processing" which have little to do with cookies. Let's say you buy a smartphone from china and it comes with a keyboard app that sends all your inputs to a chinese company so they can make predictions and offer autocompletion. You kind of want that app to display a banner asking you if that is okay. And you kind of want a privacy policy attached that explains they will create user specific profiles and sell them to advertisers and share them with the chinese ministry of state security. I think you want that banner. Now google analytics isn't much different. It tracks you all over the web, creates profiles of your browsing habits, sells those to advertisers and shares them with the american national security agency. Sure it also shows statistics to the website owners, the same way that keyboard app has an autocomplete function, but you kind of want to be informed about those other functions and have the option to say no, don't you? That is why 'consent management' is so important for data privacy.
- kemayo 4y agoI use a Safari extension for that: https://www.super-agent.com https://www.super-agent.com
- SebastianKra 4y agoI've seen them before. Do you have any idea what their game is? They claim to be completely free and completely privacy respecting. No mention of a business model. Do they hope to make some deal with advertisers later on?
- jpalomaki 4y ago”We make money by selling a snippet of code to websites that integrates with Super Agent. Essentially, websites can have a JS snippet unique to them so that when a user with Super Agent visits, cookie preferences are applied automatically without having to ask anything.” https://www.super-agent.com/faq https://www.super-agent.com/faq
- SebastianKra 4y agoThanks that 's the part I forgot: Why would website owners actually go for that? They need the annoying popup to get consent.