Live data from Hacker News

Only 9% of visitors give GDPR consent to be tracked

markosaric.com

291–300 of 457 posts

Re: Only 9% of visitors give GDPR consent to be tracked

#291

Earlier quoted context omitted.

> GDPR says they have to ask you first (usually in the form of a giant irritating banner as soon as you walk in the door) and that if you say no they have to let you buy your apple anyway. Can you link to source for this (the part that says you can't deny access)?

Perhaps I’ve oversimplified a bit. GDPR has a paragraph that’s often called the “coupling prohibition” - Article 7(4): > When assessing whether consent is freely given, utmost account shall be taken of whether, inter alia , the performance of a contract, including the provision of a service, is conditional on consent to the processing of personal data that is not necessary for the performance of that contract. It som…

This really shouldn't be left to interpretation, both Article 7(4) and Recital 42 define what is "freely given consent" and in no way limits the actions i can take as a site owner. It is clear that a "cookie wall" isn't considered a "freely given consent" so you can't process personal data based on that.

Re: Only 9% of visitors give GDPR consent to be tracked

#292

What really drives me crazy are prompts that start by showing two options: "Consent to all cookies", or "customize". If you click "customize", it opens a new modal window with a loading indicator that just doesn't seem to finish. I literally waited 60 seconds and then tried again by refreshing the page, ending up with another infinite loading indicator. This means that users are de-factor forced to click "consent to…

A dark pattern from Oracle? That's unexpected. That's why people are abandoning Java, by the way. But yes, isn't there on the GDPR that tracking must be opt-in? I don't see how the pop-up is legal, and making the opt-out inaccessible is probably a large violation.

The standard popups are 100% against the GDPR. In the GDPR, all consent must be explicit, uncoerced, and opt-in. If I recall correctly, there can be a request displayed to the user, but the "No tracking" option must be the default, and must not require any more user interaction than the "Yes tracking" option. If there is a "Yes tracking" button that immediately closes the banner and continues, then even having a "are you sure" dialog on the "no tracking" button breaks the GDPR.

The GDPR gets this exactly right, and advertising companies are flagrantly breaking it. I'm hoping that there is actually some enforcement on it as well.

Re: Only 9% of visitors give GDPR consent to be tracked

#293
post #96

I would say that it means 9% of visitors "click away" any banner they see without reading it. And usually clicking "yes" will do away the banner in the most hassle free way. I am surprised the number is so low. I surely click "Yes" on any banner immediately without reading it. My guess is that the number was so low because his banner (by its simplicity) looked unusual enough that many people read it. With the typical…

well, that is the article's point. i mean one of it's 2 main points. (the other being itself an ad/SEO).

Re: Only 9% of visitors give GDPR consent to be tracked

#294

Earlier quoted context omitted.

Incognito basically just means "doesn't show up in my history". There are many, many, ways to track users without needing cookies.

> doesn't show up in my history AND drop all cookies from all domains. > There are many, many, ways There probably are. I haven't ever seen it work though. If I get into incognito, my ads show something different my normal profile. In theory, they can track you from your OS/browser combination (and many more variables), but is there a way to test it?

Font enumeration is the big one.

Re: Only 9% of visitors give GDPR consent to be tracked

#295
post #157
post #67

Earlier quoted context omitted.

that should not matter, the obvious choice would be to ask every time until they say yes. It is also the simpler choice, if the user opts out of all tracking then you cannot track their choice.

1. opt out is not gdpr conform. 2. saving a cookie no_consent=true does not require consent by the user. that's the type of cookie easily classified as functional/necessary

if the users opts out of your opt-in pop up, then :)

> saving a cookie no_consent=true does not require consent by the user. that's the type of cookie easily classified as functional/necessary

It looks like an unusual choice for the website. Assuming that the intention of the website is to use all the trackers that it is asking to use going out of their way not to ask the user to be tracked seems counterproductive.

Sure the website is also interested in not annoying the users to death, but then it sounds a better idea to offer less invasive prompts and more informed choices than a blanket yes/no. Here again I feel like gitlab made fanstastic choices for their prompt.

Re: Only 9% of visitors give GDPR consent to be tracked

#296
post #155

Earlier quoted context omitted.

Needing ad revenue and needing to track visitors are different things. Structurally obviously we are now in a situation where “well targeted ads” can generate some revenue, and “well behaved ads” barely can. The future has to be one where dumber ads pay more because tracking isn’t technically possible and/or illegal.

"The future has to be one where dumber ads pay more because tracking isn’t technically possible and/or illegal." So you're inching closer to the reality. Read your statement again though: where is this 'magical ad tech' that enables newsies to make a decent dolllar? It's non existent. Ergo, they are out of business and you get severely limited content. So, either people can chose to share some basic information, pay,…

I would rather have the law lay the ground rules of what's acceptable in a society. "Free markets" (not totally free, but free enough) can adapt to the new terrain. IMO, most laws trying to get into the weeds and direct desirable business models end badly. They entrench current models, reward easily gamed metrics but not the intended results, or are written by lobbyists.

Re: Only 9% of visitors give GDPR consent to be tracked

#298
post #264

Earlier quoted context omitted.

> I'd even go so far as to try and transfer the debt to the individuals responsible if this causes the company to go bankrupt So who's liable in this scenario? Someone in the C suite? The coder monkey who implemented it? Someone in between? All of the above? Unless I'm mis-remembering, the maximum fine under GDPR is a % of the total revenue of the company, so depending on the size of the company, this could result in…

I'd say the stock owners.

So pension funds and teacher's unions? Grandpa's nest egg?

Re: Only 9% of visitors give GDPR consent to be tracked

#299
post #246

Earlier quoted context omitted.

Slow on purpose. All incentives for the site owners are against user interests. No one benefits from users clicking to No Consent.

> No one benefits from users clicking to No Consent. The user does. Or did you mean something else I am missing?

I meant the owners of the site and advertisers.

Re: Only 9% of visitors give GDPR consent to be tracked

#300

I signed up for a new account on a fitness website yesterday. They track health and food and diet you enter. anyway, during the sign up they had a opt out, I chose to do just that, however the opt out process then took over the screen with a modal window, which gave a loading bar and took about thirty seconds to complete... But guess what... There was a big CANCEL button. I couldn't perform any action during sign up…

I use "LoseIt" since MFP went overboard with having features and not a single UI/UX review.
Post reply on HN