The cookie law is dead, you’re welcome
blog.silktide.com
The cookie law is dead, you’re welcome
1–10 of 54 posts
Re: The cookie law is dead, you’re welcome
#2Re: The cookie law is dead, you’re welcome
#3Re: The cookie law is dead, you’re welcome
#4If ever there was a bad case of Politicians trying to reach a noble goal (in this case caring about a users privacy) but not having a clue about the technological means to reach the goal this is it.
Maybe EU needs a technology commissioner.
Re: The cookie law is dead, you’re welcome
#5The EU cookie law is so stupid and full of holes that it's absolutely ridiculous. Also nobody seems to know how to implement it properly so most people just don't. This includes a lot of government websites and EU organisations, even the EU's main website http://europa.eu/ doesn't comply with the law. If ever there was a bad case of Politicians trying to reach a noble goal (in this case caring about a users privacy)…
> I think it was not so much that the community was ignored, but that the law was passed under unusual circumstances: usually the lobbyists inform the legislators, who defer to industry on the specifics. Here the lobbyists mostly hated the legislation, but legislators were more responsive to privacy activists because of widespread public concern. So the law is a triumph of democracy over technocracy.
> And I think that's reflected in the legislation. The principles are OK, but the detail does not match up with practice. Hence the law is some way from being something workable.
http://news.ycombinator.com/item?id=2587995
So I don't think this is really the politician's fault, so much as problems with parliamentary process. Your idea of a technology commissioner might be helpful, but the whole problem here is that the EU Commission did not guide the legislation, with the drafting being driven by parliament.
Re: The cookie law is dead, you’re welcome
#6If the law bans cookies, can't sites just switch to using WebStorage/IndexedDB/webkit FileSystem to achieve the same thing, but not using cookies? Thus actual bad guys have a workaround, and the good guys who keep using cookies because they're useful are apparently breaking the law.
Does the cookie law ban other technologies or can we just shift to a new tech not covered by the law?
Re: The cookie law is dead, you’re welcome
#7If the average user were to even understand what cookies were, I could see at least some reasoning behind the law, but as it stands, it's like having a prompt at the petrol pump that asks you if you consent to something in your fuel that's there to help your engine - most people don't know about it and don't want to be bothered being asked the question in the first place.
Re: The cookie law is dead, you’re welcome
#8I admit to not spending the time to read the actual law text (mainly because it seems so ridiculous), but can't it be worked around using other technologies? If the law bans cookies, can't sites just switch to using WebStorage/IndexedDB/webkit FileSystem to achieve the same thing, but not using cookies? Thus actual bad guys have a workaround, and the good guys who keep using cookies because they're useful are apparen…
Re: The cookie law is dead, you’re welcome
#9I admit to not spending the time to read the actual law text (mainly because it seems so ridiculous), but can't it be worked around using other technologies? If the law bans cookies, can't sites just switch to using WebStorage/IndexedDB/webkit FileSystem to achieve the same thing, but not using cookies? Thus actual bad guys have a workaround, and the good guys who keep using cookies because they're useful are apparen…
It is quite clear that it is the intent rather than the method that is being regulated.
Re: The cookie law is dead, you’re welcome
#10I admit to not spending the time to read the actual law text (mainly because it seems so ridiculous), but can't it be worked around using other technologies? If the law bans cookies, can't sites just switch to using WebStorage/IndexedDB/webkit FileSystem to achieve the same thing, but not using cookies? Thus actual bad guys have a workaround, and the good guys who keep using cookies because they're useful are apparen…
The law doesn't specifically say cookies either: it is deliberately vague to mean any data stored on a client's pc. So flash cookies, webstorage, etc all fall under this category. This is due to the law's original intent to fight malware / spyware.
A basic summary of the relevant parts of the law can be found here: http://www.aboutcookies.org/default.aspx?page=3