Live data from Hacker News

Stop whining about “The EU Cookie Policy” and improve your ways

social.wildeboer.net

171–180 of 272 posts

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#171

>So stop blaming "the EU" and ask yourself if this is the internet we want. ...Yes, thats exactly the internet "we" want. I don't get why it so hard to accept that people simply dgaf about privacy, and much prefer free products online paid for by ads. And there is nothing wrong with that, because for those that actually care about privacy, there are plenty of tools.

It's hard to accept because many, many people won't agree with you and do give a fuck.

Yet here we are. People know what facebook is and still use it.

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#172

Earlier quoted context omitted.

> get around anything GDPR Nitpick: none of those dark patterns "get around" the GDPR - they merely get away with it due to a (hopefully temporary) lack of enforcement. GDPR explicitly disallows annoying the user into accepting and tricks such as hiding the decline button, etc. > So the banner is pretty much irrelevant technologically That's why the GDPR doesn't explicitly target cookies or a specific means of tracki…

The point is to allow someone the option to defeat all fingerprinting if they want to. The consequences of that are up to the companies - if they don't want to sell you something because you are anonymous, they have the right to reject your browser requests. Thats an important cornerstone of capitalism. Even with limits on collection/processing of personal data, because the legislation was made by non technical peopl…

> if they don't want to sell you something because you are anonymous, they have the right to reject your browser requests. Thats an important cornerstone of capitalism.

Maybe in a perfect world where healthy competition is a thing. But (potentially due to under-regulation elsewhere) that's not what we have in practice - for a lot of services, you only really have a choice between a handful of providers, and you're out of luck if they all decide to stalk and spam you.

Competition is not currently an effective solution to data protection, so something else was needed. The GDPR's approach to it is to outlaw personal data and spam as a payment method - you can't make non-functionally-required data processing mandatory for using a given service or product. I think it's a good approach - less spam, tracking and incentives for hoarding personal data is always a good thing.

> They can train that model and throw away the training data, and then hand that model off to any regulator that is going to have no idea what to do with a bunch of floats in matrices, and claim that there is no user data stored in there, and nobody could prove otherwise.

At least in theory, the regulator should be able to see through that scheme. But even if let's assume they actually did train an ML model and got away with it, the GDPR mandates that users should be able to decide how their personal data is processed, so they can just not opt into targeted advertising, and their personal data must not be processed using that model. The model can be there, it'll just sit unused.

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#173

Earlier quoted context omitted.

To anyone that doesn't agree with me, please show me your rooted android phone that has no popular apps installed that collect any data, and doesn't use a sim card. Because if you say you give a fuck about privacy, and use a modern android phone with OEM rom or an iPhone, you either don't understand what privacy is and shouldn't be talking about it in the first place, or you are a hypocrite.

I don't live in a heavily fortified home only accessible through a drawbridge but still give a fuck about the privacy of my little city flat that you could probably enter with a heavy kick. Modern society enables miracles.

Privacy or security?

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#174

Earlier quoted context omitted.

Ah the French. In the great words of Samuel L Jackson "English motherfucker do you speak it".

It's not only the French, would be the same for the Portuguese, for example. English is an official language of only two EU countries, if I'm not mistaken.

Cyprus and Ireland

French is official language of France, Belgium, Luxembourg and parts of Italy.

Reality of course is that English is (ironically) the Lingua Franca of the world.

(I was watching Iron Man 2 the other day, Tony Stark had a fairly lengthy scene of him speaking French which was quite nice)

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#175
post #131

The problem with the GDPR is that it is a monster of a legalese text: https://eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELE... Which nobody understands. Which, depending on how you read it, might make participating on the internet practically impossible. An IP is considered personal data, so in theory you cannot use foreign infrastructure like a CDN. Which certainly makes the internet as we know it impossoble.…

>An IP is considered personal data,

Is or can?

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#177

Earlier quoted context omitted.

Businesses: want to track users and collect their data with reckless abandon Businesses: implement rampant dark patterns to trick people into accepting tracking and data collection Businesses: flood the internet with inane, obnoxious and blatantly illegal cookie dialogs ... 4ad: I blame the EU (Hint: show me where GDPR says anything about cookies)

Superficially, the banners appeared due to how the law was made and how it's implemented. The noble intention is one thing and the pragmatic reality is another. It's correct to blame the businesses for creating the banners but also unfair to treat the matter as if the businesses and the EU are on a level playing field. The EU makes laws - it has cheat codes to achieve what it wants. It's like defensive driving. You m…

> Superficially, the banners appeared due to how the law was made

So stop being superficial and read this 7-year old law. I wonder if you could point to me where it talks about cookie banners

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#178

Earlier quoted context omitted.

I have given my landlord a key recently so that he can check the smoke alarm and take the water meter reading while I'm at work. I trust that he didn't install a hidden camera even though nothing could have stopped him apart from "being a decent human being" and "not wanting to commit a crime". Not every protection needs to on a technological level. I'd rather live in a society where we have other tools available tha…

Your analogies are really poor. Not only do you not you understand the level to which Apple or Google or your carrier can read the things you do on your devices, and how little control you have over that, but you are ignoring things like the big celebrity iCloud hacks. For the sake of not playing an analogy war, let me just say this: if you use a modern device with OS made by Microsoft, Google or Apple (or derivative…

I do understand. That's why I also understand that the only solution to that is on a political and not on an individual level.

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#179

Ideally browsers would have an API to handle GDPR requests natively, the way they do for hardware access, and users would be able to set the default level of access, as well as lists of exceptions for some domains. Of course, Google will never provide such API in Chrome as it would be bad for their core business of spying on people in order to sell them more stuff.

It exists, and it's called the DNT header. It was deprecated because ironically, it was used for user fingerprinting.

Re: Stop whining about “The EU Cookie Policy” and improve your ways

#180
post #163

Earlier quoted context omitted.

There is no "areas" here. What you do online is tracked if you use windows, mac os on laptop or phone, or android. Who is tracking that is irrelevant. Claiming that its ok that Apple gets your data, a company who literally allowed the iCloud photo hacks to happen, but not 3d party advertisers is like olympic level mental gymnastics.

> Who is tracking that is irrelevant. It is absolutely relevant; it is arguably the most relevant question. It lies at the basis of the entire concept of "threat model" in security. The police wants to track you to investigate you as a suspect in a crime. Facebook wants to track you to know who you are talking to. Amazon wants to track you to learn what you might want to buy. The Chinese government wants to track you…

I don't buy the argument that you don't want Amazon or Facebook to track you, but you are ok with Apple or Google tracking you.

In case its not clear, because Im really doubting that people have a good grasp of privacy here, when you buy an Iphone, it phones home quite a bit collecting pieces of data about you that Apple can and does use internally for their advertising purposes, and you cannot opt out of it.

Post reply on HN