Live data from Hacker News

Europe is scaling back GDPR and relaxing AI laws

theverge.com

181–190 of 1001 posts

Re: Europe is scaling back GDPR and relaxing AI laws

#181
post #16

Incredible to see the 180 both from EU and also from the HN sentiment. HN was cheering on as EU went after Big Tech companies, especially Meta. Meta is no perfect company, but the amount of 'please stick it to them' was strong (I reckon that is still a bridge too far for a lot of folks here). Even extreme proponents of big tech villanery in the US (Lina Khan's FTC) is also facing losses (They just lost their monument…

What I really want to see is Meta getting irrelevant ON MERIT. People stop using Meta products, and then I want to see it die.

The problem is that with a nearly infinite amount of money, you are not going to get irrelevant on merit. You just buy up any company/talent that becomes a threat. They have done that with Instagram and WhatsApp (which was and is really huge in Europe etc.).

Re: Europe is scaling back GDPR and relaxing AI laws

#182
From Europe, I agree with big tech getting it. But i dont agree with random flower shop somewhere getting fined because they dont know how to deal with a fcking complicated, ever-changing law that is designed for megacorps who have the cash to just keep paying the fine and abusing everyone. I also dont agree with dealing with fcking cookie banners on every other website either.

The law got SO convoluted over 9 years of interpretation by the European courts that its now impossible to be 100% compliant. It now requires you to give an easy 'Accept' button to accept the listed cookies at the first pop up, but penalizes you if the user actually uses it to accept cookies because the user has to manually go through all the listed cookies and approve them by hand one by one.

So:

- If you dont provide the easy 'accept' button, you are in violation.

- If you do and the user actually clicks it, you are still in violation because you didnt make the user approve each cookie one by one

- If you give a list of cookies to the users and force the user to manually approve what he wants in the first pop up, you are still in violation because its not easy and your easy 'Accept' button is meaningless as a result

And this is just one of its contradictions. The more you dive, the more convoluted it gets. Its a sh*tty law that got more complicated over time and only helped megacorps.

People need to understand that the early days of the Pirate Party are gone and the current crop of tech-savvy politicians that remain from those days are those who made a career out of it. And like every politician who made a career out of something, the only way for those politicians to keep getting elected is by doing 'more' of what they have been doing. So they just keep bloating tech regulation to keep their career, making it difficult for everyone but the large corporations. It must also be noted that some of them sold out and are basically the tech lobbies' henchmen, pushing for American-style legislation to build regulatory moats for big corporations.

Re: Europe is scaling back GDPR and relaxing AI laws

#183
post #16

Incredible to see the 180 both from EU and also from the HN sentiment. HN was cheering on as EU went after Big Tech companies, especially Meta. Meta is no perfect company, but the amount of 'please stick it to them' was strong (I reckon that is still a bridge too far for a lot of folks here). Even extreme proponents of big tech villanery in the US (Lina Khan's FTC) is also facing losses (They just lost their monument…

> HN was cheering on as EU went after Big Tech companies HN is not a hive mind or a monoculture. Every time the EU goes after some company, some people always cheer, some people always boo, and some people will cheer some and boo others based on the impact/nuance of the particular policy or company.

[dead]

Re: Europe is scaling back GDPR and relaxing AI laws

#184

Earlier quoted context omitted.

The premise is that the intent of the law was good, so everyone should naturally change their behavior to obey the spirit of the law. That isn't how people work. The law was poorly written and even more poorly enforced. Attempts at "compliance" made the web browsing experience worse.

The law wasn't poorly written, most websites just don't follow the law. Yes, they're doing illegal things, but it turns out enforcement is weak so the lawbreaking is so ubiquitous that people think it's the fault of the law itself.

> [...] most websites just don't follow the law. Yes, they're doing illegal things, but it turns out enforcement is weak so the lawbreaking is so ubiquitous [...]

I just checked the major institutional EU websites listed here[0], and every single one (e.g., [1][2][3]) had a different annoying massive cookie banner. In fact, I was impressed I couldn't find a single EU government website without a massive cookie banner.

I don't know if it is due to the law enforcement being so weak (or if the law itself is at fault or whatever else). But it seems like something is not right (either with your argument or EU), given the EU government itself engages in this "lawbreaking" (as defined by you) on every single one of their own major institutional websites.

The potential reason you brought up of "law enforcement is just weak" just seems like the biggest EU regulatory environment roast possible (which is why I don't believe it to be the real reason), given that not only they fail to enforce it against third parties (which would be at least somewhat understandable), but they cannot even enforce it on any of their own first party websites (aka they don't even try following their own rules themselves).

0. https://guides.libraries.psu.edu/european-union/official-ser...

1. https://www.europarl.europa.eu/portal/en

2. https://www.consilium.europa.eu/en/

3. https://european-union.europa.eu/index_en

Re: Europe is scaling back GDPR and relaxing AI laws

#185
post #165

Earlier quoted context omitted.

In literally no place in the world are the rules the same for running a multinational or running a lemonade stand. I feel this should be obvious.

In almost every developed country the rules are exactly the same. No hairnet, no licence? Lemonade Stand Ltd can and will be shut down. The main difference is lenience in punishment which tends to tail off and disappear at the lemonade stand scale, and be stricter for large multinationals. I wish you were right though.

Seen house building regulations recently? Most countries will let the home owner do things they'd never let a contractor do without a permit. There's a lot of different laws for home or very small scale selling of various goods, brewing, canning, single person doing business as companies, etc.

Re: Europe is scaling back GDPR and relaxing AI laws

#186
post #16

Incredible to see the 180 both from EU and also from the HN sentiment. HN was cheering on as EU went after Big Tech companies, especially Meta. Meta is no perfect company, but the amount of 'please stick it to them' was strong (I reckon that is still a bridge too far for a lot of folks here). Even extreme proponents of big tech villanery in the US (Lina Khan's FTC) is also facing losses (They just lost their monument…

> What I really want to see is Meta getting irrelevant ON MERIT.

That's impossible. The network effects are too strong. Facebook may die, or even Instagram, but WhatsApp is so intermeshed with the majority of the world that it can only be taken out by a government.

Re: Europe is scaling back GDPR and relaxing AI laws

#187

Earlier quoted context omitted.

Those “cookie banners” are nonsense aimed at getting this outcome. This is a loss for European citizens and small businesses and a win for the trillion dollar ecosystem of data abuse.

How can you comply with the current requirements without cookie banners? Why would EU governments use cookie banners if they are just nonsense meant to degrade approval of GDPR?

Don’t track your site visitors.

No tracking, no banner.

Or respect the now deprecated DNT flag, no banner necessary.

Now we get DNT 2.0 and the website owner will once again maliciously comply.

Re: Europe is scaling back GDPR and relaxing AI laws

#188

> One change that’s likely to please almost everyone is a reduction in Europe’s ubiquitous cookie banners and pop-ups. Under the new proposal, some “non-risk” cookies won’t trigger pop-ups at all, and users would be able to control others from central browser controls that apply to websites broadly. Finally!

So they finally admit that it was a mistake. Even EU government websites had annoying giant cookie banners. Yet, some how the vast majority of HN comments defend the cookie banners saying if you don't do anything "bad" then you don't need the banners.

> if you don't do anything "bad" then you don't need the banners.

Because that’s how it is. For instance why does a site need to share my data with over 1000 "partners“?

And the EU uses the same tracking and website frameworks as others so they got banners automatically.

It wasn’t a mistake but website providers maliciously complied with the banners to shift the blame.

Seems you fell for it.

Re: Europe is scaling back GDPR and relaxing AI laws

#189

Earlier quoted context omitted.

How can you comply with the current requirements without cookie banners? Why would EU governments use cookie banners if they are just nonsense meant to degrade approval of GDPR?

By not putting a billion trackers on your site and also by not using dark patterns. The idea was a simple yes or no. It became: "yes or click through these 1000 trackers" or "yes or pay". The problem is that it became normal to just collect and hoard data about everyone.

> billion trackers ... dark patterns

Straw man argument.

The rule equally applies to sites with just one tracker and no dark patterns.

Re: Europe is scaling back GDPR and relaxing AI laws

#190
post #62

Earlier quoted context omitted.

Related ongoing thread: Europe's cookie nightmare is crumbling. EC wants preference at browser level - https://news.ycombinator.com/item?id=45979527 - Nov 2025 (80 comments)

The cookie thing sounds good at first but then it shows that they rant to reduce cookiewalls by making more things ok without asking :(

Yes. I don't think you should have to show a popup to track the user's language preferences, whether they want a header toggled on or off, or other such harmless preferences. Yet, the EU ePrivacy directive (separately from the GDPR) really does require popups to inform users of these "cookies".
Post reply on HN