You’re not anonymous. I know your name, email, and company (2012)
web.archive.org
web.archive.org
The fact that they're still in business and have business presence in Europe is quite telling about the incompetence of various EU data protection agencies.
I noticed recently on gmail with some XHR lookups they do when you hover over people's email addresses, it fetches their email, name and a couple of other datapoints. You can tweak the request to enter any other email address to discover those details about them.
Then there's the social networks. They do mitigate how easy it is to bulk upload contacts and correlate email addresses (or phone numbers) to profiles, but it's certainly not impossible- and people who are making it their business to data mine will exploit all these kinds of 'opportunities'.
Is this another case where startups plan to break the law until they’re big enough to influence it or they operate at a profit despite fines?
Considering the GDPR has yet to be effectively enforced against much bigger breaches like Google's and Facebook's activities, it seems like it's not that bad of an idea.
I used to work on a team that could match users between browsers. E.g. Do some browsing in Chrome. Switch to Firefox, or privacy mode, or whatever with NO shared cookies go browse some more sites, and we could match up the two sessions to the same human. And no, we didn't need IP address or browser fingerprinting or any of that. It just requires a sufficient amount of network visibility, a tiny bit of patience... and a lot of processing power and storage. ;)
Did this take place in the US? Could you share more details about the work, and the "why" that drove it?
Seems like the browsing patterns would be very different depending on browser.
Well, they claim to be privacy aware and won't let you map < 20 emails to cookie at a time but it's pretty easy to bypass that.