Live data from Hacker News

Statement on 4 Years of GDPR

noyb.eu

171–180 of 195 posts

Re: Statement on 4 Years of GDPR

#171

Earlier quoted context omitted.

https://gdpr.eu/cookies/ Cookie compliance To comply with the regulations governing cookies under the GDPR and the ePrivacy Directive you must: Receive users’ consent before you use any cookies except strictly necessary cookies. Provide accurate and specific information about the data each cookie tracks and its purpose in plain language before consent is received. Document and store consent received from users. Allow…

Lucky for me it is "strictly necessary" that I track you. /s

Online privacy is an illusion. At the basic level, your IP is getting logged all over the place.

Re: Statement on 4 Years of GDPR

#172

Is anyone maintaining some custom NoScript or anything like that I could use to block GDPR/cookie law popups and such EU nonsense? I'm not even a subject of Brussels

In my experience, the annoyances list in ublock orogin (and possibly others), which is disabled by default, drastically reduces the amount of such pop-ups. The only remaining ones are unfortunately among the worst, which is to be expected since they went through the trouble to setup anti-adblock measures ...

Re: Statement on 4 Years of GDPR

#173

I don't think the law has done much at all. I operate a business that serves as a data broker / processor under GDPR. I have had a total of 66 data requests in 4 years. I handle data requests and follow the laws, but I also understand the EU/UK has zero grounds to enforce anything against my business if I were to flat out reject all requests. They can't fine me, I don't have a physical or business presence in Europe,…

[deleted]

Re: Statement on 4 Years of GDPR

#174

Earlier quoted context omitted.

Lots of people on HN work for advertising companies such as Google, Facebook etc, tech savvy or not has little to do with it.

I don't work for an adtech company and I think GDPR has made the web demonstrably worse for everyone. I'd rather void EU clients altogether than put up a cookie banner/popup.

Here's a genius hack around the GDPR: don't abuse people's data and you don't need a banner at all!

Re: Statement on 4 Years of GDPR

#175
post #26

Cookie banner has ruined the whole web. - Does not protect people (99% are just fake. If you reject cookies you keep get them) - Cost money to company (so cost to customers). A simpler browser extension where you manage your preference once far all (default) with the possibility to personilize x site (think like you do for camera permission) would have solved the problem in a real way and without all the hussle.

GDPR notices are obnoxious, but they are not the only source of popups, not even the most annoying (most of them are converging to standard patterns, so you can dismiss them quickly). These days many sites have a constant barrage of all kind of popups, browser notifications requests, registration nags, adverts and so on, often on a delayed trigger.

> GDPR notices are obnoxious,

They're not obnoxious because GDPR made them that way, they're obnoxious because companies who think they have a right to unfettered and undisclosed abuse of people's data (because that's what they were used to) are trying to pretend that the law is the problem and not their malfeasance.

A fully compliant GDPR banner has two buttons, of equal prominence: reject all, and accept all. That's it. Any obnoxiousness is on thy implementor, and it's likely illegal.

Another fully compliant solution is to only collect the data you actual need and then you don't even need a banner at all.

Re: Statement on 4 Years of GDPR

#176
post #164

Earlier quoted context omitted.

The EU's ePrivacy Regulation[1] has (or had - it seems to fluctuate) a goal to move cookie consent into the user's browser settings. There has (perhaps predictably) been significant lobbying against that by entrenched industry players, so we'll see what emerges as a result. (I have to admit I'm not up-to-date on the latest happenings regarding this regulation) [1] - https://en.wikipedia.org/wiki/EPrivacy_Regulation

I meant not bothering with it at all. I, and many others, don't care about cookie tracking. These "cookie warnings" waste users' time, and, to a lesser extent, developer time (but at least we get paid to implement pointless stuff.) Every time I see one of those pop ups, it raises my blood pressure.

Sorry, I was unclear: that's what I meant, too.

You would find cookie consent options in your browser settings (for example, near "Privacy Settings"), and you would configure your rules there (with sensible defaults).

You shouldn't see any cookie consent pop-ups while browsing the web, as a result of that -- your browser would communicate your preferences for you.

As I said though: I'm unclear on the status of the ePrivacy Regulation.

Re: Statement on 4 Years of GDPR

#177
post #15

GDPR is a good idea, but it seems to be top-down and pushing against megacorp and user alike. As it stands, the law is only making it more expensive to be in the data harvesting business. These extra risks and requirements raise the barrier to entry for new firms and so just ends up cementing the market position of existing players. If people start caring enough to actually cancel services that harvest their data, th…

> pushing against megacorp and user alike

No, it's pushing against megacorps (and corps) and they're trying to gaslight everyone into thinking it's pushing against users by annoying the users on purpose and telling them the GDPR forced them do it (while also breaking the law and still hovering up as much data as they can while they think they can get away with it).

Re: Statement on 4 Years of GDPR

#178
post #176

Earlier quoted context omitted.

I meant not bothering with it at all. I, and many others, don't care about cookie tracking. These "cookie warnings" waste users' time, and, to a lesser extent, developer time (but at least we get paid to implement pointless stuff.) Every time I see one of those pop ups, it raises my blood pressure.

Sorry, I was unclear: that's what I meant, too. You would find cookie consent options in your browser settings (for example, near "Privacy Settings"), and you would configure your rules there (with sensible defaults). You shouldn't see any cookie consent pop-ups while browsing the web, as a result of that -- your browser would communicate your preferences for you. As I said though: I'm unclear on the status of the eP…

Agreed! A working "do not track" option would be ideal for everyone... I doubt that will ever happen.

Re: Statement on 4 Years of GDPR

#179

I don't think the law has done much at all. I operate a business that serves as a data broker / processor under GDPR. I have had a total of 66 data requests in 4 years. I handle data requests and follow the laws, but I also understand the EU/UK has zero grounds to enforce anything against my business if I were to flat out reject all requests. They can't fine me, I don't have a physical or business presence in Europe,…

The one in GDPR trouble wouldn't be your company anyway, since you're a data processor. The data controller is the one who needs to make good on the data requests.

Re: Statement on 4 Years of GDPR

#180

Earlier quoted context omitted.

Lots of people on HN work for advertising companies such as Google, Facebook etc, tech savvy or not has little to do with it.

I don't work for an adtech company and I think GDPR has made the web demonstrably worse for everyone. I'd rather void EU clients altogether than put up a cookie banner/popup.

If that is your response then you haven't begun to understand the reason why the GDPR exists in the first place. You don't have to put up a cookie banner/popup. Have a look at my website: jacquesmattheij.com , no banner, no popup and yet 100% GDPR compliant.
Post reply on HN