Live data from Hacker News

Google’s GDPR Workaround

brave.com

581–590 of 629 posts

Re: Google’s GDPR Workaround

#581

Earlier quoted context omitted.

Every company I've worked at has had an explicit policy of not commenting on that company's business on the internet.

There are regular comments by declared employees of quite a few companies including Google on HN. The commenting and vote/flag brigadeering around subjects that center on one of these companies is such that many subjects are either voted off the homepage entirely or the participants in the thread get downvoted/upvoted to better support the company position or narrative. This is all quite in the open.

What is the 'quite in the open' evidence you have of this?

Re: Google’s GDPR Workaround

#582
post #552

Earlier quoted context omitted.

Not that I support the ad-tech industry, but those consumers probably are interested in having their favorite websites being kept alive. Which implies that they might indeed be interested in "compromising" with ad-tech industry.

If consumers want it they will pay money, plus ads don't necessarily need to be targeted to readers.

More generally, if enough people (including the author) think the content has merit, they will choose to support it (by which I mean “collectively supply all the resources it needs to continue”).

The cost of running a basic website to publish text is modest. Tools like [dat][] and [scuttlebutt][] make it completely free (once you have a computer and any internet connection) to distribute content to people who actually want it.

[dat]: https://dat.foundation/

[scuttlebutt]: https://www.scuttlebutt.nz/

On the other hand, if you want to make a living out of producing content (rather than wanting to publish the content purely for its merit), that is harder — the content has to be that much more valuable to enough people.

As long as individuals can publish stuff, and others can see it and choose whether to support it financially (all without 3rd parties mediating/filtering), then I'm content. Our distributed tools make that possible; we just need to make them easier and more ubiquitous.

Re: Google’s GDPR Workaround

#583

Earlier quoted context omitted.

You are misreading the GDPR badly. A data controller can only pass on PII to a data processor. That is, any entity receiving PII from a data comtroller automatically is assigned this role by law. There are no alternative roles that could assumed instead. This means that a data processor must obey the rules laid out for it by the GDPR or it is in violation.

Oh, okay, I believe I understand your point and understand the misunderstanding. My point is that you can't just make everybody a data processor by signing a contract, share PII with them and be compliant (i.e. hospital sharing data with insurance companies). You're saying that by sharing PII with them, you're making them a data processor, but that says nothing about whether the DC or the DP are compliant.

Yup. That clears it up!

Re: Google’s GDPR Workaround

#584

I think the HN community, and most consumers, tend to look at things from only one angle. Imagine you start work at some small shop that manufacturers widgets for consumers. What would you do when you have to advertise your product? You'd have to turn to Google is a similar company. Are there any real alternatives? (I am asking because I really want to know) I say this because I am in this position now. I have to fig…

Surely Google has an obvious competitor, right? Because otherwise it would clearly be a monopoly.

Re: Google’s GDPR Workaround

#585

Earlier quoted context omitted.

Do you have to give consent for each individual third party your data gets shared with? I’d thought that if you give consent for some purpose, the company can use whatever processors it wants as long as it ensures they protect your privacy.

Yep, thats what those ridiculous pop up boxes with 400 (I counted one) "carefully select partners" of the websitd you visit are supposed to be. It is IMO just a mockery of the intent of the law and I wonder when this will be punished. I personally think GDPR might be a bit strict, but adtech have practically been begging for this for years so acting surprised now doesn't cut it.

I seem to recall (correct me if I'm wrong) that European courts ruled that “agreeing” to a very-long EULA for desktop software didn't constitute informed consent, because it's trivial to demonstrate that the users didn't actually read the entire agreement — even if they scrolled to the end, it's unreasonable to believe that most people read 10,000 words in 15 seconds.

So I assume that eventually these performances of consent-gathering will be legally judged meaningless.

Re: Google’s GDPR Workaround

#586

Earlier quoted context omitted.

> Will the EU actually fine Google ~6 billion dollars? Perhaps we will find out!) The EU already fined Google a total of $9 billion over the last two years.

Did Google pay all of it yet?

Of course not. Not even the regular people I know pay their fines so fast :)

Re: Google’s GDPR Workaround

#587

Earlier quoted context omitted.

That's pretty much a false dichotomy: a site must either support itself via ads, or cease to exist. There are other ways to get money to support your work, and if those ways are too painful right now, that's just an opportunity for disruption. Even better, it's an opportunity to prove that disruption doesn't have to be exploitative.

There are entire markets that cannot be accessed by publishers unless they subsidize content with ads. That is not a false dichotomy, that is a market requirement. Not every website is the WSJ or Bloomberg, which cater to markets that are willing to pay for content.

Then maybe markets are the wrong tool to organized this kind of publishing.

Re: Google’s GDPR Workaround

#588
post #77
post #58

Earlier quoted context omitted.

I get the feeling this is much more prevalent than any of us realize. Would explain why most comments seem ridiculous.

You mean how there are somehow always commenters in every topic ready to leap to the defense of China and major US tech companies?

You know it.

Re: Google’s GDPR Workaround

#589
post #333
post #303

Earlier quoted context omitted.

It seems to be 'an open ecosystem for privacy-preserving, AI-first computing'?

Legitimately a meaningless description. I find it very odd the README and repository description are completely devoid of any meaingful information.

Maybe they value their privacy :-) More seriously this article might shed some light: https://internetfreedomhack.org/re-decentralise-the-commerci...

Re: Google’s GDPR Workaround

#590

I'm an engineer who has worked on ad systems like this and I'm really struggling to make sense of this article - what hope does a layman have? Here's my understanding: Google runs real-time bidding ad auctions by sending anonymized profiles to marketers, who bid on those impressions. The anonymous id used in each auction was the same for each bidder, which is in violation of GDPR. If Google were to send different ids…

This is a problem because companies can use this ID to correlate private user data, without anyone's knowledge or consent. There are companies that specialise in sharing user information. Some of them work by only sharing data with companies that first share data with them (an exchange). If you got this Google ID, and you had a few other pieces of information about the user, you could share that data with an exchange…

> To participate, you send all this sensitive information, along with a Google ID

Isn't that also a GDPR violation?

Post reply on HN