4 ms·
Another striking conclusion is that even browsers that value privacy need to have some level of understanding about what features their users are using and what
by Tagbert 3y ago
Another striking conclusion is that even browsers that value privacy need to have some level of understanding about what features their users are using and what they are not.
- freediver 3y agoNothing wrong with that, it just needs to be opt-in or otherwise you can not claim to be a privacy-respecting browser by default.
- insanitybit 3y agoThat assumes an objective definition of "privacy respecting". I am of the opinion that telemetry can be privacy respecting.
- freediver 3y agoSure, but only if you opt-into it. If a browser sends your private information like IP address to a third party, without your consent, that is by default opposite of privacy-respecting. (there is no privacy being respected there).
- insanitybit 3y agoI disagree. 1. I don't think an IP is particularly identifiable information for a browser vendor - the information they have is "this device currently associated with this IP uses our browser", which is not significant. 2. Just because the IP is sent doesn't mean it's collected and stored. They may drop it as soon as the data gets to the server - meaning that the IP may have been transferred but it in no way is analyzed to attribute any information to you. That is entirely respectful of user privacy.
- deafpolygon 3y agoAnd I disagree. - If it's not opt-in, it's not privacy respecting. - IP is a significantly identifiable piece of information. - Regardless, we have seen that as few as 4 pieces of individual data collected about a user is enough to identify someone 90% of the time (https://archive.nytimes.com/bits.blogs.nytimes.com/2015/01/29/with-a-few-bits-of-data-researchers-identify-anonymous-people/ https://archive.nytimes.com/bits.blogs.nytimes.com/2015/01/2...) - Browsers collect far more than 4. User privacy is no longer something you can tiptoe around - it *has* to be informed and opt-in; i.e. if you slipped into someone's bed at night and had sex with them without consent, was it okay?
- insanitybit 3y agoThe point is that we disagree, not that one of us is right. Mozilla isn't using some objective term, they're using one that's highly subjective. You didn't address the major point I had, which is that they can just drop your IP and not store it. Soooooo, anyway, I'm ignoring the rest of your post because I don't care about the debate, I was just trying to explain that telemetry is privacy respecting.
- eska 3y agoYou didn't address the major point I had, which is that they can just drop your IP and not store it. The point is that you don’t know that and you cannot guarantee it. You just assume the best case. As analogy: is sending your bank password a privacy problem? You argue no, because they could just throw it away immediately, instead of going on a Christmas shopping spree. That's an insane argument to make.