Live data from Hacker News

Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

brave.com

171–180 of 238 posts

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#171

Earlier quoted context omitted.

Counterpoint: be annoyed at GDPR. If a new regulation insisted that on entering a hotel room, a member of the hotel staff had to use a blacklight and you needed to explicitly approve every illuminated mark larger than a quarter, then you would be annoyed at that regulation. There are supposed to be all sorts of other GDPR protections, about rights to be forgotten, about being able to access and selectively remove per…

>If a new regulation insisted that on entering a hotel room, a member of the hotel staff had to use a blacklight and you needed to explicitly approve every illuminated mark larger than a quarter, then you would be annoyed at that regulation. How about this. For the past 25 years every hotel that you checked into has kept a record of: - How often did you visit? - How much money did you spend? - What type of CC do you…

>GDPR gives you this vote.

>GDPR says: if you want to resell data you harvest you HAVE to get their consent, in clear and understandable terms. Can't bury it in your TOS.

>GDPR says: you cannot make your website / app / service unavailable if people refuse this.

>GDPR says: you can ask companies how much and which data they got on you and they have to provide it.

>GDPR protects you from an invisible industry many people don't even know exists.

And it does it by in effect forbidding you from interacting with parties that don't follow EU mandated criteria for what needs to happen for a packet to go from A to B. I don't care about what the EU thinks is good for me, I want to interact with server X whether or not it is GDPR compliant and whether or not it's over a protocol that lends itself to this nonsense; my data is supposedly mine, so fucking let me.

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#173

Earlier quoted context omitted.

> Don't be annoyed at GDPR: be annoyed at all the companies who have spent the last decades building an entire web-infrastructure with zero respect for user privacy. Actually, I think we should be annoyed at browser vendors for letting the problems with cookies get to this point. They're obsessed with backwards compatibility, but sometimes you need to break things to fix a problem. This is one of those times. Conside…

Isn't this kinda what Brave/Brendan are doing?

Looks interesting, I'll have to dig into the details further. Annoying that the home button on my keyboard appears broken on the Brave site.

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#175
post #119

Earlier quoted context omitted.

I really hope it doesn't take the EU over 4 full months to prove a cookie banner is in violation. That seems like a straight forward infraction if the way people have interpreted the law is accurate.

sigh.. the cookie banner has nothing to do with GDPR..

Not the old one. The new ones asking for your preferences on where your information can be sold.

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#176
post #72

Earlier quoted context omitted.

This is how unintended consequences happen. Complaining how rational actors work around roadblocks has no practical effect. Who someone blames has no practical effect. The downside of looking at the intent of the law and assigning blame towards the market is that it encourages doubling down on these negative actions. Why not make popups illegal, they'll say. Why not make it illegal for you to optionally trade your da…

There is also the aspect that apparently there are plenty of people who are completely happy with exchanging data for free services. For example: "No Cash Needed At This Cafe. Students Pay The Tab With Their Personal Data" https://www.npr.org/sections/thesalt/2018/09/29/643386327/no...

The students can't buy coffee from that joint even if they want to: Their money's no good, they only take data. Wow.

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#177
post #90

Earlier quoted context omitted.

Just a few hours ago there was an article on the front page about yet another tech giant getting hacked and losing contact info on hundreds of millions of users [1]. A GDPR in the US should have the power to audit companies and ensure compliance, just like the FDA does with health-tech companies. On the user side you might only see the effects of GDPR in the form of cookies that were added as a quick-and-dirty soluti…

> GDPR in the US should have the power to audit companies and ensure compliance, just like the FDA This is wanton overregulation. All we need is strict liability for data loss. After a few years of watching cases play out in the courts, we can revisit to see if more onerous regulation is required.

I think auditing needs to be part of it too. Otherwise what's to stop companies from just never disclosing data loss? The way I understand it, right now companies intentionally don't look for data breaches so they can claim ignorance if anything comes to light.

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#178
post #72

Earlier quoted context omitted.

This is how unintended consequences happen. Complaining how rational actors work around roadblocks has no practical effect. Who someone blames has no practical effect. The downside of looking at the intent of the law and assigning blame towards the market is that it encourages doubling down on these negative actions. Why not make popups illegal, they'll say. Why not make it illegal for you to optionally trade your da…

There is also the aspect that apparently there are plenty of people who are completely happy with exchanging data for free services. For example: "No Cash Needed At This Cafe. Students Pay The Tab With Their Personal Data" https://www.npr.org/sections/thesalt/2018/09/29/643386327/no...

Risky. If you ever run for political office the media will find out how much alcohol you REALLY drank at university.

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#179
post #30

Earlier quoted context omitted.

> These are very real, very concrete negative effects of GDPR Your annoyance is misplaced. Don't be annoyed at GDPR: be annoyed at all the companies who have spent the last decades building an entire web-infrastructure with zero respect for user privacy. We built massive amounts of technology infrastructure that just assumed that privacy and tracking wasn't an issue. Why do these websites need all these cookies in th…

Counterpoint: be annoyed at GDPR. If a new regulation insisted that on entering a hotel room, a member of the hotel staff had to use a blacklight and you needed to explicitly approve every illuminated mark larger than a quarter, then you would be annoyed at that regulation. There are supposed to be all sorts of other GDPR protections, about rights to be forgotten, about being able to access and selectively remove per…

> If a new regulation insisted that on entering a hotel room, a member of the hotel staff had to use a blacklight and you needed to explicitly approve every illuminated mark larger than a quarter, then you would be annoyed at that regulation.

This analogy doesn't work because a) the vast majority of illuminated marks aren't harmful, b) the ones that are harmful aren't revealed by a blacklight, and c) you can take a shower after you leave to deal with the gross ones.

If, however, the light revealed signs of bed bugs we would be in the right ballpark.

Because:

a) everybody should want to minimize how much they deal with bedbugs

b) if you regularly sleep in places that have bedbugs you risk bringing bedbugs along with you to the other places you go

c) because of education and time constraints, people typically do not manually inspect each and every place in a hotel room that bed bugs could be. So if hotel staff could force the user to click a dialog that says, "This hotel room uses bedbugs for the following purposes..." that would be extremely useful for public health and sanity.

Re: Brendan Eich Writes to the US Senate: We Need a GDPR for the United States

#180

The practical effect of GDPR seems to me that I have to click away about half a dozen consent popups every day. Sometimes a cookie warning in addition to that. If I use Private Browsing (to protect my privacy) I am punished with more popups. If I open a website within a browser shell on mobile that doesn't have my cookies (some kind of webview of an app), I am punished with more popups. Am I expected to look at every…

I haven't looked, but is there a browser plugin to auto agree to these cookie and GDPR popups?
Post reply on HN