Live data from Hacker News

1,741 "informed" consents with one click? GDPR complaint filed

noyb.eu

21–30 of 110 posts

Re: 1,741 "informed" consents with one click? GDPR complaint filed

#21
post #17

My Samsung TV which I bought 8 years ago now suddenly asks me if it's okay they share data with their over 200 partners. They have the nerves to headline this with "protect your privacy". Generally not a big fan of EU policing but I wish somebody sued them over this. > Improving Your Experience and Protecting Your Privacy on Samsung TV Plus > Samsung and our 264 partners use information about you and your device in o…

I threw out a Samsung TV after they kept asking this shit. They'd provided a single button to accept but literally 200+ decline buttons, one for every partner, that I needed to scroll through a click with my remote. Fuck Samsung. Will never buy any Samsung product ever again.

Re: 1,741 "informed" consents with one click? GDPR complaint filed

#23
post #14
post #8

Still wondering how "freely given, informed, specific and unambiguous" is fulfilled by "sure you can opt-out of tracking - by buying a premium subscription. Also, here are our 589 'partners' that all claim legitimate interest" but here we are.

Legitimate interest does not exist and is a loophole in the law which should be killed. You can challenge it but the authorities who should handle that are grossly underfunded.

Legitimate interests exist, and the loophole exists because otherwise legitimate use cases like security audits or fraud detection would be impossible.

Most of EU laws are "these are sensible defaults and we expect you to behave like adults". As we've seen, digital services are anything but.

Re: 1,741 "informed" consents with one click? GDPR complaint filed

#24
post #18

Can someone who works in commercial web dev explain how companies even end up with this much crap pulled into their websites?

Likely has little relationship to what is actually in the page. They had to do GDPR, didn't or couldn't spend a lot of time on it -- or had an especially conservative corporate counsel -- and ended up just getting a list of every company they've ever worked with, for any reason, "to be safe".

For most companies this can easily be thousands of partners, and going through that list and figuring out exactly who might get data in reality, through every possible permutation of workflow, is a horrendously expensive proposition.

You might be surprised how many well-meaning regulations leave even the best-intentioned implementers in an impossible situation.

Re: 1,741 "informed" consents with one click? GDPR complaint filed

#25
post #12

Every law is made under some assumptions about the scale of things. For example, judiciary procedures were designed assuming certain number of active cases. Citizen services and bureaucracy around them is designed assuming some amount of work and staff size. Look at the US immigration / green card processes. The designers of GDPR would have not expected thousands of partners sharing the data collected in a single cli…

> The designers of GDPR would have not expected thousands of partners sharing the data collected in a single click.

The designers of GDPR (and most other EU regulations) expect businesses to behave like adults, not like petulant children.

Re: 1,741 "informed" consents with one click? GDPR complaint filed

#26
post #6

I've seen similar on some android apps I think, where it will ask you if you consent to sharing data with partners or something similar. When you say no there's a huge list of partners you have to disable one by one, it's probably 15 minutes of work to go through them all. I can't think of an example app right now, but usually it's on first install or something like that. Not sure GDPR applies to apps though.

GDPR is a General Data Protection Regulation. It applies to everything.

10 years. It's been in force for 10 years. The tracking/ad industry has really managed to brainwash everyone into thinking it's about cookies (even though GDPR doesn't even mention cookies except as an example of tracking)

Re: 1,741 "informed" consents with one click? GDPR complaint filed

#28
post #18

Can someone who works in commercial web dev explain how companies even end up with this much crap pulled into their websites?

two main sources

analytics: A/B testing, "if x does user click y"?, unique page visits, etc.

ads: integrating with an ad provider comes with hundreds of trackers, because they want to - know if you bought a product after clicking on an ad - show you targeted ads for shoes after you googled shoes - build a profile of you (age, gender, location, profession) to show relevant ads across different websites

Post reply on HN