How we built a GDPR-compliant website analytics platform without using cookies
1–10 of 129 posts
Re: How we built a GDPR-compliant website analytics platform without using cookies
#2Re: How we built a GDPR-compliant website analytics platform without using cookies
#3We are incredibly open to any ideas, comments or concerns on how we're doing this. This is a big step up from what we had previously, but there’s always room for improvement. Happy to hear thoughts in the comments.
Re: How we built a GDPR-compliant website analytics platform without using cookies
#4Re: How we built a GDPR-compliant website analytics platform without using cookies
#5We are incredibly open to any ideas, comments or concerns on how we're doing this. This is a big step up from what we had previously, but there’s always room for improvement. Happy to hear thoughts in the comments.
How do you guard against hash collision?
Re: How we built a GDPR-compliant website analytics platform without using cookies
#6Re: How we built a GDPR-compliant website analytics platform without using cookies
#7Looks decent, but pricing is insanely high for the extremely limited set of stats.
Re: How we built a GDPR-compliant website analytics platform without using cookies
#8Re: How we built a GDPR-compliant website analytics platform without using cookies
#9We are incredibly open to any ideas, comments or concerns on how we're doing this. This is a big step up from what we had previously, but there’s always room for improvement. Happy to hear thoughts in the comments.
ICO, the agency in charge of enforcing GDPR and related legislation in England, released guidance earlier this month on the topics of cookies. One of the most notable parts of this guidance is that "device fingerprinting" is treated the same as a cookie[1]. And also that website analytics requires consent to use cookies or similar technologies[2] ("similar technologies" including device fingerprinting).
Now, the above guidance is related to PECR rather than GDPR, which is what your post is about. But, given the above, do you think that your software is compliant/exempt from PECR or do you think that organizations will still have to take extra steps to be compliant with privacy legislation?
[1] https://ico.org.uk/for-organisations/guide-to-pecr/guidance-...
[2] https://ico.org.uk/for-organisations/guide-to-pecr/guidance-...
Re: How we built a GDPR-compliant website analytics platform without using cookies
#10I'm not sure this is a good idea.