Live data from Hacker News

Things to know about the GDPR, Mozilla and Firefox

blog.mozilla.org

31–40 of 103 posts

Re: Things to know about the GDPR, Mozilla and Firefox

#32
post #21

Earlier quoted context omitted.

Show me case law where an EU government fined a US company and how they enforced payment of that fine.

When did I mention case law? Shouldn't you be asking me for proof of the accords I mentioned, which is what I'm actually talking about?

So where is the evidence of the accords? How will they enforce it?

Re: Things to know about the GDPR, Mozilla and Firefox

#33
post #14

That's interesting as what it's website privacy policy actually says looks the exact opposite of GDPR compliant. From https://www.mozilla.org/privacy/websites/ which is linked from as Privacy link from https://addons.mozilla.org . >We may use cookies, clear GIFs, third party web analytics, device information, and IP addresses for functionality and to better understand user interaction with our products, services, and…

If the data collected is not personally identifying data, then GDPR is not interested in it. Maybe it is PII, but the quoted policies don't say that. > We may also use cookies, device information and IP addresses, along with clear GIFs, cookies and third party services to help us understand in the aggregate how users engage with our products, …

One of the most common interpretation I've heard is that IP address is PII according to GDPR. Even if not combined with other PII.

So based on this description they are doing PII.

Re: Things to know about the GDPR, Mozilla and Firefox

#34
post #12

Earlier quoted context omitted.

You are wrong. This is a misconception that has thankfully died down a bit over the past week or so, but apparently it is still a bit alive. There are accords in place between (for example) the US and the EU, which allows the EU to hand out fines overseas. The reverse is also true (the US can and does litigate in the EU).

Show me case law where an EU government fined a US company and how they enforced payment of that fine.

Microsoft for antitrust violations more than once is just an example, but that's the EU itself.

Re: Things to know about the GDPR, Mozilla and Firefox

#35
post #14

That's interesting as what it's website privacy policy actually says looks the exact opposite of GDPR compliant. From https://www.mozilla.org/privacy/websites/ which is linked from as Privacy link from https://addons.mozilla.org . >We may use cookies, clear GIFs, third party web analytics, device information, and IP addresses for functionality and to better understand user interaction with our products, services, and…

If the data collected is not personally identifying data, then GDPR is not interested in it. Maybe it is PII, but the quoted policies don't say that. > We may also use cookies, device information and IP addresses, along with clear GIFs, cookies and third party services to help us understand in the aggregate how users engage with our products, …

They’re using Google Analytics, by default, in the browser UI and on their Websites, without opt-in or visible opt-out (it’s hidden in the tracking prevention settings of the browser itself, and chained to the DNT setting).

That’s about as violating as it gets.

Re: Things to know about the GDPR, Mozilla and Firefox

#36
post #23

Great, so about:addons doesn’t use tracking Google Analytics cookies anymore? Or has a visible way to disable it (you need to enable DNT to get rid of this). And Firefox Nightly does not track personally identifiable telemetry anymore? No. Mozilla still tracks every step I take. What the fuck, Mozilla? EDIT: Example. Go to If you go to view-source: https://addons.mozilla.org/en-US/firefox/ — In the code you’ll find G…

> Go to If you go to view-source:https://addons.mozilla.org/en-US/firefox/

Good catch!

Re: Things to know about the GDPR, Mozilla and Firefox

#37

Earlier quoted context omitted.

If the data collected is not personally identifying data, then GDPR is not interested in it. Maybe it is PII, but the quoted policies don't say that. > We may also use cookies, device information and IP addresses, along with clear GIFs, cookies and third party services to help us understand in the aggregate how users engage with our products, …

One of the most common interpretation I've heard is that IP address is PII according to GDPR. Even if not combined with other PII. So based on this description they are doing PII.

If they _store_ IP. You will see an IP with every single connection to a service. If you don't store it - but say, you store a country level geolocation instead - it's not PII.

Re: Things to know about the GDPR, Mozilla and Firefox

#39
post #35

Earlier quoted context omitted.

If the data collected is not personally identifying data, then GDPR is not interested in it. Maybe it is PII, but the quoted policies don't say that. > We may also use cookies, device information and IP addresses, along with clear GIFs, cookies and third party services to help us understand in the aggregate how users engage with our products, …

They’re using Google Analytics, by default, in the browser UI and on their Websites, without opt-in or visible opt-out (it’s hidden in the tracking prevention settings of the browser itself, and chained to the DNT setting). That’s about as violating as it gets.

If Google is collecting the data, not Mozilla, who's violating?

Re: Things to know about the GDPR, Mozilla and Firefox

#40

Earlier quoted context omitted.

If the data collected is not personally identifying data, then GDPR is not interested in it. Maybe it is PII, but the quoted policies don't say that. > We may also use cookies, device information and IP addresses, along with clear GIFs, cookies and third party services to help us understand in the aggregate how users engage with our products, …

One of the most common interpretation I've heard is that IP address is PII according to GDPR. Even if not combined with other PII. So based on this description they are doing PII.

[deleted]
Post reply on HN