Viewing profile — privacylawthrow
privacylawthrow
HN member- Joined
- Fri, Sep 18, 2020, 3:42 PM UTC
- HN karma
- 120
- Public activity
- 34 items
- HN profile
- View on Hacker News ↗
About privacylawthrow
No profile information was provided.
Recent public activity
-
comment
Comment #35481893
This is factually incorrect. The "Cookie Directive" wasn't from 2003, it was an amendment to the ePrivacy Directive. The ePrivacy Directive came into effect in 2002, and it was ame…
-
comment
Comment #35481805
This is not true. The national implementation of the ePrivacy Directive are still law. You are correct that GDPR does not require cookie banners, but the law that does was not repl…
-
comment
Comment #35373381
The FTC has been begging the complain-for-profit sector to give it a formal path to regulate AI. The FTC's only enforcement hook in this area is that it can take action against com…
-
comment
Comment #34262797
It's very much how most privacy laws work. According to Revue's platform privacy policy[0], Revue processes subscriber emails as a data processor. Each newsletter publisher owns th…
-
comment
Comment #30760256
You asked the wrong lawyers, at least for the US. The FTC's case against Sears in 2009 made it clear that consent to a privacy notice isn't valid if the privacy notice is buried de…
-
comment
Comment #30759905
No. You need consent to store data on an end user's machine, regardless of whether you later track that data or not, unless such storage is strictly necessary for the operation of …
-
comment
Comment #30759597
You're wrong. The ePrivacy Directive does require that a website get consent before storing information on the end-user's device. Prior to GDPR, the local country implementations o…
-
comment
Comment #30759254
I'm a privacy lawyer that has worked on cookie consents for a number of commercial websites. Everything you said here is all too true. The real legal answer in a lot of cases is "D…
-
comment
Comment #27354474
EU governments are exempt from the requirements of GDPR. In some countries police can access large amounts of data without the need for a warrant. For example German police do not …
-
comment
Comment #27233573
6 months is not compliant. Employees have to be made aware of the posting on the same calendar day the job is posted. For jobs that are in constant demand, the company has to eithe…
-
comment
Comment #27233351
The law also requires that Colorado employees be informed of all promotional opportunities. A promotional opportunity is "a vacancy in an existing or new position that could be con…
-
comment
Comment #27106458
I am a privacy lawyer that has spent far too many hours on cookie issues. It is disappointing that your correct answer was downvoted. It goes to show just how much misinformation i…
-
comment
Comment #27020357
If it's the TrustArc Ads Compliance Manager, it makes a call to all the ad networks requesting the network's opt out cookie. The opt out cookie prevents the user from being tracked…
-
comment
Comment #26822028
Data scientists would rather buy data to work with big data sets than sell their own data for money. It's the marketers and people with P&L obligations that usually want to sell.
-
comment
Comment #26821583
>It was never going to be the privacy savior Google billed it as, so why push forward with the concept? Because these users are still anonymous to companies using Google services. …
-
comment
Comment #26779008
The law cares about intent and outcome. If you intended to publish Bill Gates' credit card number and did so, and if doing so was a crime, you'd be guilty of that crime. This is tr…
-
comment
Comment #26673810
These were already violations of the TCPA in the 9th Circuit under the 9th Circuit's previous ruling in Marks where the court found that an autodialer is any equipment that dials a…
-
comment
Comment #25915798
The opt out cookie was created by ad networks prior to GDPR when many EU countries allowed for opt in by default. The opt out cookie was the tool to allow users to opt out. It stil…
-
comment
Comment #25915763
>Not to mention that if there were any hypothetical API calls those could be made asynchronously after closing the modal. If you did that, users wouldn't be able to see whether the…
-
comment
Comment #25915412
Some tools call APIs from a whole bunch of ad networks. That 60 seconds is likely spent getting opt out cookies from dozens of different ad network domains.
-
comment
Comment #25583153
Facebook, as a data controller, is required to provide all information specified in GDPR Article 13 regardless of whether its legal basis for processing that data is consent or con…
-
comment
Comment #25582678
Consent is not, and has never been, the only legal means by which personal data can be processed. When the article says: >This would mean that the company does not have to give use…
-
comment
Comment #25488736
>One issue is that anti-trust has moved from being concerned about harm to consumers (great!) to being focused on harm to other businesses (not so great). The first thing listed in…
-
comment
Comment #25458954
Much of the statements about cookie requirements in this thread are wrong. The rule is simple: If a website uses non-essential cookies, it must inform users and, in most EU jursidc…
-
comment
Comment #25458808
>Fun fact: the e privacy directive (which defines the cookie rules) isn't actually passed yet and technically you don't need cookie banners how they are now. Purely informational b…