Earlier quoted context omitted.
Because I don't want to waste the time of people who aren't interested in my ad in seeing my ad. It's a waste of money for me. The ad network will not be able to make money from having them click the ad. The user's time will be wasted because they are not interested in what I am selling. It's a lose lose lose situation. I want to create more win win win situations where everyone benefits. Tracking and profiling is ne…
You could target the same people by buying ad space in like-minded “venues”. There’s a gaping hole in the market for good “content-linked” advertising, searching, aggregation and so on. Link to content, not people. Work with customers who’re already self selecting, rather than following people around all the time. As a side-line, this’d probably cut back on a lot of click-bait trash articles. It, likely, would help b…
Open letter: Ban surveillance-based advertising
51–60 of 271 posts
Re: Open letter: Ban surveillance-based advertising
#52Earlier quoted context omitted.
>No, you don't have to spy on users to do it. Assuming you are running an ad network you kind of have to in order to prevent ad fraud. Also by reducing that data you know about someone's interests is the knowledge that they have visited a site at least you will not be able to pick as good of an ad compared to if you had more data.
What's the fraud scenario? Page owners presenting fraudulent visitor/click-through numbers to advertisers? In that scenario, it seems like advertisers would pick up on that pretty quickly when they realize the conversion rate on that supposed traffic is terrible and doesn't warrant the inflated price. In the case they're using an ad network, the network could ban the page owner from their network if they see this pat…
Instead of selling space by impressions or clicks, we use length of time (monthly) and find it to be a good way to prevent ourselves from trying to game impressions with clickbait or clicks with fake users.
Re: Open letter: Ban surveillance-based advertising
#53Earlier quoted context omitted.
>No, you don't have to spy on users to do it. Assuming you are running an ad network you kind of have to in order to prevent ad fraud. Also by reducing that data you know about someone's interests is the knowledge that they have visited a site at least you will not be able to pick as good of an ad compared to if you had more data.
What's the fraud scenario? Page owners presenting fraudulent visitor/click-through numbers to advertisers? In that scenario, it seems like advertisers would pick up on that pretty quickly when they realize the conversion rate on that supposed traffic is terrible and doesn't warrant the inflated price. In the case they're using an ad network, the network could ban the page owner from their network if they see this pat…
1. Page owner / Ad network / Ad space auction market middleman fakes clicks to get click revenue
2. Page owner's rival fakes clicks to devalue ad spots
3. Advertiser's agency fakes clicks to make numbers go up
4. Advertiser's rivals fake clicks, to waste advertiser's budget
5. Ad networks 'accidentally' classifying legitimate clicks as fraud, to reduce payouts to page owners.
Re: Open letter: Ban surveillance-based advertising
#54Earlier quoted context omitted.
Let's say you run a website with a sign on page. In order to log in a user typically you will run the password through an algorithm like argon2. Verifying a password for an account consumes CPU resources. A malicious may decide to DOS your site by just spamming this endpoint with bogus password to make you waste your time. An easy fix with surveillance is to rate limit people based off their IP address. Without surve…
An IP address being used in the course of providing the service is not surveillance. That's like saying "Amazon knowing where to ship my package is surveillance." It's a bad argument, in my opinion. Regardless, consider a DDoS attack. If every new request is coming from a different IP address, how do you continue providing service to your legitimate customers while blocking that malicious attack? Knowing the attacker…
To complete the metaphor Amazon would use the address you gave them to help improve their business in some sense without asking you if it's okay. Similar to how web masters don't ask if it's okay if they write what pages we access into logs is okay.
>Knowing the attacker's IP addresses doesn't do you any good... because they can just keep using new IP addresses, and blocking the old ones doesn't do any good.
Then we should try to find any patterns with the traffic that we can use to try and filter it out. This is a place where fingerprinting is useful.
>friendlycaptcha
This just slows down bot spam instead of testing if someone is a bot. Someone posting spam to your site once a minute is still annoying.
Re: Open letter: Ban surveillance-based advertising
#55That would make businesses very quickly reassess how much data they need to keep, and how careful they need to be with it, without requiring any really radical legislation.
Re: Open letter: Ban surveillance-based advertising
#56Do we have a good proposed legal definition of surveillance-based advertising?
This is essentially what is going on in the internet. Metadata collection = Surveillance.
Re: Open letter: Ban surveillance-based advertising
#57Earlier quoted context omitted.
If it collects any data at all, it's surveillance. Anything else is a loophole.
> If it collects any data at all, it's surveillance Great, we just banned TCP.
I'd definitely consider a system which collects all information that are exposed in a TCP stream a surveillance tool
Re: Open letter: Ban surveillance-based advertising
#58Earlier quoted context omitted.
Let's say you run a website with a sign on page. In order to log in a user typically you will run the password through an algorithm like argon2. Verifying a password for an account consumes CPU resources. A malicious may decide to DOS your site by just spamming this endpoint with bogus password to make you waste your time. An easy fix with surveillance is to rate limit people based off their IP address. Without surve…
If someone abuses your doorbell the solution isn't to install a hidden DNA and body scanner in front of your door. Also suggesting that an IP based rate limiter is the same as the surveillance in question is very disingenuous. Pick a more sensitive area than your IDE, say medicine targeting erectile dysfunction, sexual or religious preferences, etc. You may find that being allowed to collect that data, especially cov…
The first thing I would do is look outside to collect information on who in outside thereby infringing their privacy.
>Also suggesting that an IP based rate limiter is the same as the surveillance in question is very disingenuous
Recording people's IPs is definitely surveillance.
>say medicine targeting erectile dysfunction, sexual or religious preferences, etc. We may be able to connect drug sellers or churches with people if we know that information.
>But surely I should be allowed to covertly collect any data about you if it enables some savings for me.
Sure you can. Go ahead.
Re: Open letter: Ban surveillance-based advertising
#59Earlier quoted context omitted.
> If I am trying to advertise an Elixer IDE, then I don't want my advertisements shown to any random person on the internet. The definition in the report is poor. Yes, you always need to advertise to a segment. No, you don't have to spy on users to do it. How? Make a website about something and select advertisements that are relevant to the sort of people who are probably interested in the topic of the website. ReadT…
>No, you don't have to spy on users to do it. Assuming you are running an ad network you kind of have to in order to prevent ad fraud. Also by reducing that data you know about someone's interests is the knowledge that they have visited a site at least you will not be able to pick as good of an ad compared to if you had more data.
Re: Open letter: Ban surveillance-based advertising
#60This expertise is commonly outsourced to physical marketing companies who dispatch "merchandisers" to your store to help optimise your layout to fall in line with the layouts they have designed based on the experience they have doing this for many different stores.
Some companies would actively seek out target customers, give them cash to conduct surveys for market research.
The barrier to retail taking this to an extreme is physical obstruction and money. It takes time to experiment with layouts, you have to pay people for their insight. It isn't practical to have a Moogle which has cameras analyzing most physical storefronts around the world.
It's a really complex issue as online retailers do make money from online advertising companies and it often matters to them, but the proliferation of the chosen advertising providers few means that everywhere you go they have a presence listening for your user actions.
With that said, these companies don't really want to know you, they just want to ensure they are able to serve relevant ads to someone like you. Collecting personal data is a consequence of there being no other way to group data into uniquely identifying profiles and get those insights on the interests of those profiles.
More often, these companies explicitly don't want to know you. Personal information is a massive liability.
Attempts to anonymise the data are difficult as you will need some kind of unique primary identifier, but you can infer a lot about an identity from seemingly unimportant things like browser resolution.