Show HN: Re:consent – View and change the consent you have given to websites
github.com
github.com
My best solution so far is using two Chrome extensions. "I don't care about cookies" and "Vanilla Cookie Manager".
The first one will accept GDPR consent, the second one auto delete cookies from non-whitelisted domain after a certain period (eg. 30 minutes).
Additionally, I have uBlock Origin blocking tracking domains.
Some sites will hijack the page, take you to another page, and if you reject then they will take you to a page saying you must leave if you do not consent.
Firefox Add-on: https://addons.mozilla.org/en-US/firefox/addon/re-consent/ Chrome Store: https://chrome.google.com/webstore/detail/reconsent/djcdlbbf...
Keep in mind that re:consent isn't just about consent cookies - it's also about educating users what they allowed services such as Google & Facebook to know about them.
Welcome to more privacy control
re:consent allows you to view and change the consent you have given to websites for data processing. It works for websites that adhere to the IAB's Transparency & Consent Framework, as well as for Google and Facebook. re:consent offers more control over your direct interaction with websites making it a smart addition to third-party tracking protection powered by Cliqz. Learn more on https://cliqz.com/magazine/re-consent
Please be careful getting involved with legal matters if you're not sure what you're doing. You could cause real trouble for all involved if people think they have rights they don't and start trying to make a big deal of it.
For the email, I'd suggest fine-tuning a few things. Numerical dates in European countries are typically given in D/M/Y order rather than the US-style M/D/Y, but the ambiguity could be avoided entirely by writing the month out in full, for example. Also, I wouldn't invite contact by methods where you haven't provided the necessary details, but IIRC your email template mentioned calling but without giving a phone number. If nothing else, these sorts of mistakes make such an email look less credible, which surely isn't going to encourage a positive response.
I trust my AdBlocker more than any consent options/frameworks.
There should be more layers of defense for your privacy. ad blockers only really target third party trackers. While this method also helps for webapps that track you directly (facebook, google, etc).
I know, I will not be able to block everything. Especially if it is done in the backend. But at least I can kill most 3rd party crap that way.
* opt-out by default
* dismissing means opt-out
* users need to be able to dismiss banners (at least per session)
Along with a lenient interpretation of consent-by-default for "normal" use (i.e. serving the content, anonymized logging and anonymized analytics) I think this would make the most sense from a user perspective while still serving basic business interests.
Take this from Bloomberg - https://i.imgur.com/A8xSnRA.png
I can't work out if that's set to allow functional and disallow advertising cookies or the other way around. And that's Bloomberg who presumably think they're somewhat reputable.
Still, I'm sure there's a UX guy somewhere swimming in material for a talk on dark patterns. Every cloud, but ffs.
I agree. But, I have nothing against ads, just poorly behaved nuisance ads. I want content providers to get paid, I just don't want to surrender my privacy and eyeballs for that to occur.
So, I'm trying to think of some rules for well behaved ads, that I would allow to come through my AdBlocker.
1) privacy - hosted on neutral, log-free and audited website so no tracking information gained and no additional information in the URL query parameters 2) image - ad image is an appropriate size in kb, has no animation and is a strait img tag (i.e. no javascript to do funny things on hover, click or over time). 3) render - image size is included in page html (avoid annoying layout shifts as the page renders)
Anything i'm missing? I think this would be an interesting check-box for an AdBlocker app/plugin.
Missing: * some way to stop an advertiser from uploading the same image 50k times with a slightly different name to do tracking. could probably be covered easily with the way billing is done so this would be cost prohibitive.
This would be preferred. More careful vetting of advertisers/ads, more targeted without personally identifying info, and less malware being served by ad networks, intentionally or otherwise.
And as a small website I update on the weekend how can I go find these advertisers consistently and easily.
Not really sure how we got here but we did..
If sites hosted their own ads, those ads would still be blocked by almost everyone as soon as the blacklists were updated.
Not everyone will have the ability to do that effectively, or even have a platform for it, and users can simply avoid sites where native advertising is obvious.
If some advertising just becomes unobtrusive, and most of it disappears, then that may still be a win-win for a lot of people. This isn't a fight site owners can win with technical measures or deception - unlike every other form of mass media, the web is designed to put as much control over content presentation in the hands of the consumer as the producer, and users are now aware that advertising is something they can opt in to.
If sites offer content with high enough quality, they might be able to convince people to let their ads through, assuming those ads don't interfere with user experience too much. But just trying to sneak it past people isn't going to work forever, any more than ad banners did.
That would only Experience sports, training, shopping and everything else that's new at Nike from any country in the world your content unreadable.
[0]: https://en.wikipedia.org/wiki/Do_Not_Track
[1]: https://www.w3.org/blog/2018/06/do-not-track-and-the-gdpr/
I just block it all.