3 ms·
Can you elaborate on why these are violations of GDPR? I presume Google handles the data for EU customers in a manner compliant with GDPR (one would think).
by sentientslug 2y ago
Can you elaborate on why these are violations of GDPR? I presume Google handles the data for EU customers in a manner compliant with GDPR (one would think).
- cess11 2y agoNo, they can't, because they're covered by the CLOUD Act.
- aziaziazi 2y agoWouldn’t GDPR compliance require to let user refuse third party cookies? If a user don’t accept cookies I guess reCaptcha won’t work. Do you either - block them access to your site - ask for recaptcha (use cookies so you just don’t give a poo of their choice - illegal) - open the doors without captcha resolution (don’t need captcha as it can be bypassed)
- anonzzzies 2y agoYes, but because recaptcha is often such a simple integration on 'some page somewhere' it is overlooked. Or people just think 'it is Google, they must have got it covered'.
- stavros 2y agoUsing reCaptcha to stop attacks might fall under legitimate concerns, as the site isn't using it to track visitors. If reCaptcha does track, that's Google breaking the law, not the website.
- anonzzzies 2y agoThe website has to inform its users that recaptcha does track and if they are ok with that. Many sites don't inform their users about this which is not Google's fault. You have to inform and ask consent. Same for analytics, google cdn fonts, embedded youtube videos etc. google sucks they track everything but they are not liable if you put this on your site; then it's you.
- LocalH 2y agoThe website chose to put reCaptcha on there. They don't get to pass the buck to Google.
- anonzzzies 2y agoThe website has to inform its users that recaptcha does track and if they are ok with that. Many sites don't inform their users about this which is a violation. You have to inform and ask consent before you show the page with recaptcha on it.