Live data from Hacker News

Visa Advertising Solutions (VAS) Opt Out

marketingreportoptout.visa.com

151–160 of 253 posts

Re: Visa Advertising Solutions (VAS) Opt Out

#151

Earlier quoted context omitted.

Haven't people been sent to jail for doing this much or less? I recall something happening to a guy who probed AT&T's phone number registry or something?

How is this illegal? You make a form that says “XYZ” and buy a domain “abc.com” and if someone enters a random submission they go to jail for it? Maybe I’m misunderstanding.

If something is sufficiently scary to the lay person, you have a good chance of going to jail. I wouldn't make the mistake of thinking that laws are interpreted and applied fairly.

Re: Visa Advertising Solutions (VAS) Opt Out

#152

Here's an equivalent form for MasterCard: https://www.mastercard.us/en-us/vision/corp-responsibility/c...

Is it just me, or is the wording hugely misleading? > To opt-out from our anonymization of your personal information to perform data analyses, please provide your Mastercard or Maestro payment card number What we're opting out from is the use of the data, right? I guess the charitable interpretation is that this was written by somebody incompetent, not by someone trying to be deliberately obfuscatory...

Even Apple makes opting out of sharing data with advertisers (IDFA) confusing[0]

> Allow apps to ask permission to track you across apps and websites owned by other companies.

[0] https://blog.gingerlime.com/2020/does-ios-14-protect-your-pr...

Re: Visa Advertising Solutions (VAS) Opt Out

#153
post #151

Earlier quoted context omitted.

How is this illegal? You make a form that says “XYZ” and buy a domain “abc.com” and if someone enters a random submission they go to jail for it? Maybe I’m misunderstanding.

If something is sufficiently scary to the lay person, you have a good chance of going to jail. I wouldn't make the mistake of thinking that laws are interpreted and applied fairly.

You wouldn't go to jail for 1 submission. But if courts could prove that you created a bot that tried many combinations, in my opinion you should.

It's like lockpicking a door lock. Even if you don't get in, I'm sure it's still a crime.

Re: Visa Advertising Solutions (VAS) Opt Out

#154
post #63
post #61

Earlier quoted context omitted.

Are you suggesting to just block the ads? What I find more annoying is the fact that the data is collected in the first place, as well as the opt-out vs opt-in by default. Your pi-hole won't protect you from that, since the moment you swipe that baby, Visa knows.

I try to opt-out whenever I can but I’m pretty sure there are several other blind-spots I haven’t blocked. Pi-hole does that for both the US and worldwide. I just need to figure out how to proxy my phone web requests home through VPN or WireGuard.

I've found it easier to use NextDNS rather than maintaining a Pi-hole and routing everything through my home connection.

Re: Visa Advertising Solutions (VAS) Opt Out

#155
post #145

Earlier quoted context omitted.

I would easily pay 0.0005 per solve if it meant I don't have to deal with a captcha again when browsing.

There is buster: https://github.com/dessant/buster Wasn't something I mentioned earlier but using the reCAPTCHA audio is also another solution for gcap. I haven't ever used it personally but always seemed like a cool idea.

I use it all the time and it works very well. I got my own tts api token so that I don’t run into overquota errors from the shared default token.

It’s also very satisfying to know I’m not an unpaid mechanical Turk for google anymore and that it’s a machine solving another machine’s challenge.

Re: Visa Advertising Solutions (VAS) Opt Out

#156

To verify that this is a legit site: Go to: https://usa.visa.com/legal/global-privacy-notice/additional-... Then click on: “Visa Products & Services: How does Visa use personal information to benefit consumers and businesses?” Then scroll to the bottom of that section and you’ll see the VAS link: ”U.S. cardholders can opt out of Visa using their card transaction data for VAS.” where you can opt out. iPhones will auto…

You are suggesting people do something that is completely unnecessary. It's a subdomain of visa.com. If your concern was valid, you could put your comment disclaimer on every single link ever posted on hackernews.

Re: Visa Advertising Solutions (VAS) Opt Out

#157

The form doesn't require any sort of authentication, so I imagine someone could write a script to submit all (or a large portion of) the set of card numbers to this API. Might need to work around rate limiting and so on, but seems feasible?

But then you are giving VISA a perfect reason to throw out all optouts and start fresh. Stuff like this happened during FTC net neutrality debate

Re: Visa Advertising Solutions (VAS) Opt Out

#158
post #77
post #56

Earlier quoted context omitted.

The site is already marketingreportoptout. visa.com . How would your random link add anything?

The "random link" is on a domain that the Wayback machine has back to 2001. Whereas the marketingreportoptout subdomain doesn't appear to be there at all. I could certainly imagine a compromise where somebody who doesn't have access to the main sites still manages to sneak in a plausible-sounding subdomain.

This is not realistic or even probable.

Re: Visa Advertising Solutions (VAS) Opt Out

#159
post #136

Earlier quoted context omitted.

So all credit card numbers submitted by the form are viewable by Cloudflare? That does not inspire confidence

Does it matter? I really feel like I am missing some key knowledge about why people care that their credit card number might be stolen—especially when compared to much more immutable private information like your email address, home address, or phone number. Cardholder agreements for credit cards typically say that you aren’t liable for any fraudulent charges so long as you report them within a couple of billing cycl…

I think part of it is successful brainwashing from banks to make people believe credit card number theft === identity theft === the individuals responsibility, not the banks.

Otoh, it can be pretty time consuming and annoying to charge back transactions and get a new card. In Switzerland for instance I have to print out a multi page form, fill it in, send it back by physical mail (yup) then my bank follows up after a few weeks a a few more phone calls. And I have to pay a fee to get the card replaced. So yeah the transactions aren’t on me but the hassle and fees are... This was much more straightforward in North America though.

Re: Visa Advertising Solutions (VAS) Opt Out

#160

The form doesn't require any sort of authentication, so I imagine someone could write a script to submit all (or a large portion of) the set of card numbers to this API. Might need to work around rate limiting and so on, but seems feasible?

Why would you want to make an option intended to give some semblance of privacy useless?

The net result of submitting all card numbers will not be "oh, well, I guess all card numbers are private now.." it will instead be "clear that table and start over."

Post reply on HN