No, Safari 14 does not block Google Analytics
simoahava.com
simoahava.com
Yeah, this part really needs some cleaning up. It's hard to explain exactly how ITP works, but it is important to note that Safari is not trying to block the tracker from loading but instead detect its ability to track you and take appropriate action.
You can't make a great product without analytics (in vast majority of cases). It just should collect only required data for improving product, not marketing purposes.
If you start blocking all analytics then expect that you will have to use garbage products.
The whole analytics/spyware era properly started in the last decade, and the last decade is surprisingly also when most software started going to shit, like Windows 10, iOS or even macOS.
I'm not convinced that analytics leads to better software in any way, and all the information I've got so far leads me to believe the opposite.
Perhaps, perhaps not. Analytics can definitely guide developers along the wrong path. A typical example is that it leads to simplification to cater to 80% of their userbase at the expense of the power users. After all, analytics tells us all these extensive options are only used by 20% of the people, why offer them at all?
But then the power users become frustrated and leave, and the remaining 80% who were mostly beginners on their way to becoming power users now find that the software lacks the in-depth options they needed later on. Then they don't stick around either because you just gutted your own product.
I agree with you that analytics is a tool; it can be useful, but often it is not and often it hurts more than it helps. I also claim that it is definitely not essential to modern software development.
.. Woopsies, if there are 200 bugs that happen once a month, that means that there's only a 13% chance of making it through a month without experiencing at least one of those bugs..
"If you torture the data enough, it will confess to anything".
I have to admit that I ended up in this situation with one of my posts earlier this year—I just find it interesting that it seems to be happening more frequently lately.
https://www.tumfatig.net/20190405/blocking-ads-using-unbound...
And what do you mean by "SSL without proper hostname"?
Get firefox + umatrix and just see how much stuff goes on.
* Actually, you can't just disable it. You have to select the "custom" preset and then disable all the "protections".
ETP doesn't block resource loads by default, unless they are known fingerprinting libraries or cryptomining sources. Only in Strict / Private Windows ETP mode is content actually being blocked, and in those cases most Google services won't work at all (as the domains have been blocklisted).
Facebook doesn't generally leverage third-party cookies anymore, as it uses the &fbclid parameter to enable first-party cross-site tracking. Thus ETP is somewhat weaponless against this behavior (except in Strict / Private Windows mode) because, as stated above, ETP doesn't block resource loads in default mode.
There's actually a lot that Firefox blocks in strict mode. On iOS for example it works like a poor man's ad blocker as it breaks ad exchanges. And it blocks Google Analytics too.
That’s too bad. Wish apple had the guts to stand up and do the right thing for end-users.
[citation needed]
The IP address & user-agent combination alone is enough to track a home user (whose IP doesn't change that often) with a high degree of accuracy, and even more so if you happen to be logged into a Google account in another tab/browser which will allow them to attribute any new IPs to you.
> That doesn't mean there might not be cookies set on google-analytics.com. I would imagine there are some that are used for debugging and monitoring purposes, for example.
Google links GA data to their DoubleClick and Adwords cookies. So it's not just "debugging", they're collecting data and using it to create audiences in Adwords and the DoubleClick products. As a user it's only available if you pay for Analytics 360, but Google gets the data either way even if you don't get to use it.
He is not speaking about "GA data", but is discussing the very precise issue of whether HTTP 3rd party cookies, set on cross-domain requests to google-analytics.com, being blocked has an impact on the the functionality of GA.
Those cookies being in contrast to 1st party cookies set by GA's javascript code.
While he knows full well that GA uses third party cookies to support their audience creation features, not "debugging and monitoring". And from the other comments it sounds like he did that on purpose because he has a vested interest in GA.
This can also be controlled on tracker- and tag-level on the site itself.
What you're misunderstanding is that google-analytics.com doesn't leverage this behavior. The third-party cookies are written on doubleclick.net, to which GA's analytics.js library sends a payload of data if advertising features have been enabled.
So everything I wrote in the article stands. google-analytics.com is not being used for cross-site tracking. Any third-party cookies written on that domain are not involved in either first-party tracking by analytics.js, or the audience building efforts by doubleclick.net.
Your insults are completely unnecessary, especially when they're based on a complete misunderstanding of how Google's advertising and analytics stack works.
If the site has advertising features enabled, a task in analytics.js named "displayFeaturesTask" fires after the /collect hit to Google Analytics has been sent.
This task compiles a small payload of information and ships it to https://stats.g.doubleclick.net/.
This payload includes, among other things, the UA ID of the Google Analytics property, and the Client ID of the user (same UA ID and Client ID that's sent with the GA hits).
When you go into Analytics 360 and build those audiences, you are essentially building a dataset of Client IDs that should be included in the audience. When that data set is passed to DoubleClick, DC can then link those Client IDs to the third-party cookie written on doubleclick.net and assigned to the same Client IDs. That's how it can leverage both your GA data and its cross-site tracking network to target the audiences.
As I wrote, any possible 3P cookies written on google-analytics.com are not used in this process. The request to google-analytics.com only leverages the GET/POST payload sent with the request itself.
As others have noted, Simo is the go-to resource for anything technical and nuanced with GA and GTM.
When I'm troubleshooting some issue with them, I know if I see his site pop up at the top that he's either solved the problem, or confirmed it is a much bigger issue that is going to ruin my day.
GA places both first and third party cookies but only needs first party cookies to do basic reporting.
Also the publisher has to willingly share that data for use by Adwords. And in Europe at least sharing that data is illegal without user consent due to GDPR.
Create a new Google account, go to Google Analytics, register a new domain and you'll see those options off.
https://www.eff.org/deeplinks/2019/07/sharpening-our-claws-t...
https://twitter.com/BraveSampson/status/1266034313142861824?...
I've been using firefox with Privacy Badger and NoScript.
"No, <thing being said by a group I want to smear> is not <doing thing>"
At best it's patronizing, at worst it's used as cover for outright lying.