Live data from Hacker News

ToS;DR — TL;DR for Terms of Service and Privacy Policy

tos-dr.info

111–120 of 131 posts

Re: ToS;DR — TL;DR for Terms of Service and Privacy Policy

#111
post #88
post #57

Earlier quoted context omitted.

Yes. Differences between legislations is one thing that's making the task harder. I think it's better to focus to what the terms actually state. But I always keep in mind the jurisdiction under which the company operates as it can influence the meaning of the terms. However I'd fear to get to the other extreme and to end up making a rating system saying which legislation is better than the other. It's not the scope.…

Shouldn't "Defending your privacy in US Congress" be out of scope as well, then? It certainly isn't part of a website's terms and conditions. Plus, it's hard to judge how well those activities are going, and how committed the company is in pursuing those activities in the future.

You're right. I was actually unsure at the time. The data comes from the EFF.

Re: ToS;DR — TL;DR for Terms of Service and Privacy Policy

#114

Given the purpose of the site and it's broad potential reach (and the fact that it's not a domain that requires pushing the envelope in terms of rich user experience), I was pretty suprised to see that the entire 'Rated Services' section was a giant white block in Internet Explorer 9. I could understand lack of support for IE7 (or perhaps crappy formatting), would raise an eyebrow at lack of support for IE8 (given th…

that's my fault, and was definitely not intended, sorry. thanks for reporting it, i'll make sure it gets fixed somehow.

it should be fixed now hopefully

Re: ToS;DR — TL;DR for Terms of Service and Privacy Policy

#115
post #18

Great concept and smart execution. A suggestion - rather than rating "A" through "E" why not change to the more recognizable (for US audience at least) scale of "A through F" (A/B/C/D/F) which we're all mercilessly trained to recognize through years of school grades? "E" as your worst rating confused me at first glance - could be interpreted as "Excellent"

> why not change to the more recognizable (for US audience at least)

Because most internet users aren't in the US.

Re: ToS;DR — TL;DR for Terms of Service and Privacy Policy

#116

Earlier quoted context omitted.

would it be possible to add ixquick and webchat.freenode you suggest?

What do you mean?

To have ixquick privacy policies reviewed next to duckduck, and contact us via IRC (the #tosdr irc channel on freenode) ->

  #tosdr irc channel on freenode
thanks!

Re: ToS;DR — TL;DR for Terms of Service and Privacy Policy

#117
post #77

I'd be very careful counting the requirements for cookies as a bad thing (as seen in the github section): First-Party session cookies are a totally valid use of cookies and actually help improving the security in that a session-id in a cookie will never be copy & pasted by accident (it happens to URL-based session-id's at times) and cookies can be marked as both httponly and secure, making it more difficult to imposs…

Thanks for your feedback. The whole explanation can be found about cookies can be found here. Tell us what you think! http://tos-dr.info/topics.html#cookies > 5 GitHub requires cookies 5: means it's a low score. So it's considered bad, but it doesn't influence very much the whole class of GitHub. > GitHub requires cookies to work and misleads you to > believe that you remain anonymous while cookies contain > “unique…

Not to be a stickler, just trying to help, but persistant is misspelled (persistent).

Re: ToS;DR — TL;DR for Terms of Service and Privacy Policy

#118
post #77

I'd be very careful counting the requirements for cookies as a bad thing (as seen in the github section): First-Party session cookies are a totally valid use of cookies and actually help improving the security in that a session-id in a cookie will never be copy & pasted by accident (it happens to URL-based session-id's at times) and cookies can be marked as both httponly and secure, making it more difficult to imposs…

Url based session ids led to me finding a quite substantial security hole in a popular games mod website that allowed me to modify and delete my mods without being logged in. Also was able to view my own download history, potentially very embarrassing for some people.

So yes, I can testify that in this websites case their use of session ids in the url during a website renovation (where people were posting their urls on the forums to help fix bugs) led to a lot of people being made vulnerable.

I just wish they'd at least thanked me for informing them of the vulnerability...

Re: ToS;DR — TL;DR for Terms of Service and Privacy Policy

#119
post #73
post #51

Earlier quoted context omitted.

Wait the US doesn't have an 'E'? (Is 'F' short for Fail? I thought it was just the continuation of the sequence). Regardless, at least A is best, B is worse than that, etc. which makes sense.

Well I think "it Depends." At my school we had E's both E's and F's where failing, but the difference was that with E's you could make up the class in summer school, with F's you had to repeat the class the next year, multiple F's would mean you had to repeat the grade.

If what you are saying is correct then it seems like the British a-level system is almost exactly the same in terms of grades.

A* to E, and then an actual failure is a U, so as to not just be a continuation from E I assume.

Post reply on HN