Google tracks individual users per Chrome installation ID
311–320 of 642 posts
Re: Google tracks individual users per Chrome installation ID
#312Re: Google tracks individual users per Chrome installation ID
#313Earlier quoted context omitted.
Don't be evil... Until we are deployed enough that users don't have a choice... Now that Google has cornered the market for Internet browsing, they're using that foothold to change how it works to suit their dominance. This is why they are not concerned about per-site tracking that Google Analytics does, as long as THEY as a company have direct browser-based tracking, they no longer need to provide tracking services…
Why do people still dredge up Google's historical "don't be evil"? It's not been applicable for half a decade now, and even in 2015 when it was officially removed from the last company documents, it was already a dead phrase. Google had already cornered the market back in 2012, when it surpassed every other browser, with an absolute majority dominance (>50% market share) achieved way back in 2015. Google has been in…
wikipedia.org/wiki/Don't_be_evil
Re: Google tracks individual users per Chrome installation ID
#314I don't understand why Google and some other tech companies use their users as involuntary, unpaid guinea pigs. No consent. No opt-out. What's the motivation? Is it simple laziness because they don't want to deal with wetware? Is it afraid that if people knew what was happening they wouldn't be happy? Google has eighty brazillion employees it can test new features on.
> involuntary, unpaid guinea pigs.
I don't see how this is involuntary. You are choosing to use the product. If you choose to use the product, yes, you may be exposed to features that the product has. If you don't want to be exposed to those features, the way to opt out is to not use the product.
> What's the motivation?
It lets the company incrementally roll out and test features in real-world network configurations at scale. As far as I know, almost all tech companies do this.
Let's say you're Fapplebooglezon and you have an idea to put kitten emojis on the "Buy Now" button. Before you ship that, you want to make sure that:
1. The feature works correctly. It doesn't crash or have significant performance problems.
2. Users, in aggregate, like the change. No one wants to ship a "New Coke" debacle. It's bad for the company (they lose money) and bad for users (they don't like the product).
3. Your servers and network can handle the consequences of that change. Maybe users will be so excited that they all click "Buy Now" twice as much. You need to make sure your servers don't crumble under the increased load.
These are reasonable things that benefit both the company and users. So the way features and changes are usually shipped is like:
1. The feature is implemented behind some kind of flag. [0]
2. "Fishfooding" [1]: The team developing the feature starts using it. This gives you some feedback on "does the feature work correctly" but that's about it. The team owns the feature, so they are biased in terms of its usability. And they are on a privileged network and not a large enough population to verify how this affects the distributed system.
3. "Dogfooding": The entire company starts using it. This starts to give you some usability feedback because now people who don't have a stake in the feature are being exposed to it. But it's still skewed since employees are likely not a representative user population.
4. "Canary": The feature is enabled for a randomly selected small population of external users. Now you start getting feedback on how the feature performs in the wild on real-world machines and networks. The percent of users is kept small enough to not crush the servers in case anything goes awry, but you can start getting some performance data too.
5. "A/B testing": Now you start collecting data to see how behavior of users with the feature compares to users without it. You can actually start to get data on whether the feature is good or not.
6. Assuming everything looks OK, you start incrementally rolling it out to a larger and larger fraction of users. All the while, you watch the servers to make sure the load is within expected bounds.
7. Once you get to 100% of users and things look good, you remove the flag and the feature is now permanently enabled.
> Is it simple laziness because they don't want to deal with wetware?
Google, like most other companies, also does lots of user testing and user surveys too. But that doesn't give you insight into the technical side of the question — how the feature impacts the behavior of your distributed system.
You may not be aware of this, but this kind of in-the-wild product testing is something almost all businesses do, all the time. Food companies test new products in grocery stores in selected cities [2]. Car manufacturers drive camoflaged prototypes on the road [3]. Restaurant chains tinker with recipes to see how sales are affected. There is absolutely no guarantee that the Coke you're drinking today has the same ingredients as the one you had yesterday.
You seem to think this is some nefarious scheme, but it's just basic marketing. You want to make a thing people like, so you make two things and measure which one people like more. People "opt in" and "consent" by using the product. If you don't want to be a "guinea pig" when McDonald's changes their French fry recipe, don't buy the fries. If you don't want to test out new Chrome features, don't use Chrome.
[0]: https://martinfowler.com/articles/feature-toggles.html
[1]: https://www.reddit.com/r/google/comments/3qpdnn/anyone_knows...
[2]: https://smallbusiness.com/product-development/best-u-s-citie...
[3]: https://www.cnbc.com/2017/01/20/camouflage-the-incognito-way...
Re: Google tracks individual users per Chrome installation ID
#315Earlier quoted context omitted.
They have an actual anarcho-communist star in their logo and their website features revolutionary imagery and policy statements like "all labor is valued equally" and "the means of production should be placed in the hands of the people".[0] I'm sure it's a fine organization if you subscribe to their views. I do not, and I'd rather not fund them, directly or indirectly. [0] https://riseup.net/en/about-us/politics
I don't share their views, but I'm thrilled that their project exists and very happy with Mozilla donating to help improve their email client security, since it's a major player in the pro-privacy ecosystem. If I had to agree with the philosophical beliefs of everyone I gave money to, I'd starve.
Re: Google tracks individual users per Chrome installation ID
#316Earlier quoted context omitted.
Riseup is absolutely with Mozilla's mission statement, though, and all things considered pretty good: "Riseup provides online communication tools for people and groups working on liberatory social change. We are a project to create democratic alternatives and practice self-determination by controlling our own secure means of communications."
They have an actual anarcho-communist star in their logo and their website features revolutionary imagery and policy statements like "all labor is valued equally" and "the means of production should be placed in the hands of the people".[0] I'm sure it's a fine organization if you subscribe to their views. I do not, and I'd rather not fund them, directly or indirectly. [0] https://riseup.net/en/about-us/politics
Re: Google tracks individual users per Chrome installation ID
#317I don't understand why Google and some other tech companies use their users as involuntary, unpaid guinea pigs. No consent. No opt-out. What's the motivation? Is it simple laziness because they don't want to deal with wetware? Is it afraid that if people knew what was happening they wouldn't be happy? Google has eighty brazillion employees it can test new features on.
Re: Google tracks individual users per Chrome installation ID
#318Earlier quoted context omitted.
Happily! 2.5 million, 2018: https://assets.mozilla.net/annualreport/2018/mozilla-2018-fo... 2.3 million, 2017: https://assets.mozilla.net/annualreport/2017/mozilla-2017-fo... 1 million, 2016: https://assets.mozilla.net/annualreport/2016/2016_Mozilla_Fo... https://static.mozilla.com/moco/en-US/pdf/2015_Mozilla_Found... Firefox market share has been in decline (30% to https://upload.wikimedia.org/wikipedia/commons/6/61…
That's not "tied", which would imply a contractual relationship...
Re: Google tracks individual users per Chrome installation ID
#319Earlier quoted context omitted.
Happily! 2.5 million, 2018: https://assets.mozilla.net/annualreport/2018/mozilla-2018-fo... 2.3 million, 2017: https://assets.mozilla.net/annualreport/2017/mozilla-2017-fo... 1 million, 2016: https://assets.mozilla.net/annualreport/2016/2016_Mozilla_Fo... https://static.mozilla.com/moco/en-US/pdf/2015_Mozilla_Found... Firefox market share has been in decline (30% to https://upload.wikimedia.org/wikipedia/commons/6/61…
That's not "tied", which would imply a contractual relationship...
https://www.dictionary.com/browse/tied?s=ts
https://www.thesaurus.com/browse/correlated?s=t
But in this context:
> Baker's compensation has been inversely tied with performance
No reasonable person would assume that a person's comp structure from Company would be contractually bound to increase as Company's performance decreases. At which point, the interpretation of "tied" would swing towards generally accepted usage, i.e. "there's a potential relationship between these two things."
ameister14 suggested "associated with" would've worked better, and that's true. But "tied" isn't technically wrong.
Re: Google tracks individual users per Chrome installation ID
#320If you strace chrome on linux it also picks up /etc/machine-id (or it did back when I looked), which is a 32 byte randomly generated string which uniquely identifies you and on some systems is used as the DHCP ID across reboots.
And in a sick twist they have this comment for it:
std::string BrowserDMTokenStorageLinux::InitClientId() {
// The client ID is derived from /etc/machine-id
// (https://www.freedesktop.org/software/systemd/man/machine-id.html). As per
// guidelines, this ID must not be transmitted outside of the machine, which
// is why we hash it first and then encode it in base64 before transmitting
// it.