You can disable all cookies altogether in at least Firefox and Chrome. You can make them only last for the current session.
You can disable all cookies altogether in at least Firefox and Chrome. You can make them only last for the current session.
Power users, upon request, should be presented with and asked to accept/reject/blacklist/whitelist cookies.
Interestingly the only browser I know of that does this is Lynx, which is text-only and does not support Javascript.
What is your workflow when visiting a new site and figuring out what cookies to allow?
With browsers you can of course default to blacklisting all cookies and add exceptions as you go. I did this privately in Firefox until I was sent to work from home during the pandemic, after which figuring out what cookies I needed to enable to get Teams to work proved too much of a hassle.
The political is in trying to limit the options to either party like the Computer Fraud Abuse Act charging someone for entering in every possible phone number into a phone directory. The extreme unlimited (il)logical extreme is "If the user is capable of exploiting several 0 day escalation of priveledge attacks to download all of the credit card information and then delete the website that is on the designers for making a shoddy website" being legal. That would be a pure "no politics" UX system with many obvious and inobvious side effects.