Google Blocking Web Privacy Proposals at W3C (2019)
cpomagazine.com
cpomagazine.com
Second:
> Concerned that web privacy issues were being routinely ignored by many working groups of the W3C, the Privacy Interest Group sought to expand its charter, such that it would have the ability to block any new technical specification that it felt would have negative implications for web privacy.
This wasn't just that Google "vetoed" a new privacy standard, they actually just vetoed the group's ability to "veto" future standards.
Everyone voted for it, except Google. And that was enough to block it.
To Google engineers: https://www.youtube.com/watch?v=VImnpErdDzA
"Specifies the URL to be notified if the user follows the hyperlink. Must be a space separated list of one or more valid URLs"
currently used by Google for tracking
W3C has repeatedly shot itself in the foot with sweeping mandates that major vendors oppose and which are then ignored; that's the reason we now have the separate WHATWG org and the reason W3C no longer leads much in terms of browser standards. Adding more mandates from tiny players (e.g. Brave) doesn't feel super useful, even if the group is supposedly focused on privacy — although the article even notes that at least part of the desire of the group was for "rivals to limit or handicap the ability of Google to compete against them."
You hit on it right there. There is no more such a thing as "web standards" that the W3C can agree on and push forward. There are "web standards" that Google wants and that's it. If the W3C ratifies them, great. But really it doesn't matter at all.
That said, its a standards body. If you arent standardizing what the majority of the marketshare web browser vendors want, you're not creating standards, just pipe dreams. Consensus is what a standard is. It is not the same thing as regulation.
Google profits from this in two ways. Because they own the largest browser by market share, the ... is usually that, making other browsers less viable. But in addition to that, this significantly raised the barrier to entry for any competing browsers - remember what happened to Edge?
Was it though? At a minimum i think a "standard" is a document detailing the behaviour of at least two competiting implementations sufficiently that you could use it to make a new implementation that was interopable. I don't think that was true of W3C standards in the pre WHATWG days. Compare it to say the HTTP rfcs, which i think did meet that standard.
It has to, because such implementations would be extensions that standard compliant code can't rely on.
It was a fairly brief period, unfortunately - roughly between IE losing definitive market dominance, and Chrome acquiring the same.
Google definitely plays a big role in this, but the others should not be left off the hook.
Love that piece!
Doesn't surprise me given how neutered it is. I wonder whether google considered the alternative (government intervention) when the vetoed this.
It is open to the public and there is actually a PING conference call scheduled for tomorrow (link to agenda below).
From the PING Charter:
"Participation
Participation in PING is open to the public. Participants who do not represent a W3C Member should join as Invited Experts. Invited Experts in this group are not granted access to Member-only information.
Anyone may subscribe to the group's public mailing list and engage in discussion. Those who intend to contribute to deliverables will be asked to join the group.
Communication
This group conducts its work on the public mailing list public-privacy and in periodic teleconferences, typically 1-2 times per month. Additionally, the group meets face to face at TPAC. PING is experimenting with using a free Slack workspace - interesting discussions from Slack will be called out to the mailing list, and decisions will not be finalized based solely on Slack discussions.
Information about the group (deliverables, participants, face-to-face meetings, teleconferences, etc.) is available from the PING home page.
Decision Policy
As explained in the Process Document (section 3.3), this group will seek to make decisions by consensus. When the Chairs put a question and observe dissent, after due consideration of different opinions, the Chairs should record a decision (possibly after a formal vote) and any objections, and move on."
PING mailing list archive:
https://lists.w3.org/Archives/Public/public-privacy/
Agenda for next meeting 21 Jan 2021:
https://lists.w3.org/Archives/Public/public-privacy/2021JanM...
W3C's "Privacy Threat Model"
https://w3cping.github.io/privacy-threat-model/
W3C's "Fingerpringinting Guidance":
https://www.w3.org/TR/fingerprinting-guidance/
It's still probably bad, I'm quite prepared to believe the spirit of the headline (that google is anti-privacy), but it doesn't seem like this is a case of google directly hurting privacy in web standards.
Google's issue with China has never really been human rights. Google's issue with China is that it insists on access to data and algorithms, and while Google does not care about your privacy, Google cares a great deal about it's own privacy.
Blind google hate is just as bad as blind google fanboyism. Google does plenty for internet privacy, especially in the parts that don't affect its underlying business model, which is a big part of the privacy space.
Considering that the cost of getting CT was the removal of RFC 7469 HTTP-based PKP "dynamic pins" (aka HPKP), I am not sure if there was a net benefit to privacy - without hate or love for Google.
I can't fail to notice that intent to removal was to also remove "static pins" (i.e. pins harcoded into the browser) after CT requirement for all certificates was implemented [0], Chrome started checking CT for new certificates [1] and CA Forum has limited the maximum validity of certificates issued to 39 months (2016) -> 825 days (2018) -> 398 days (2020) [2] (which means pretty much all certs from 2017 would have been reissued by now!), yet static pins for certain "favoured" organisations remain in the Chromium code [3].
That list of favoured orgs? Google, Tor project, Twitter, Dropbox, Facebook, Spideroak, Yahoo and Swehack.
CT is great for transparency and tracking rogue certs - but privacy could have used a stronger model than current blind trust in the CAs (and only acting afterwards if the trust proves misplaced).
[0] https://groups.google.com/a/chromium.org/g/blink-dev/c/he9tr...
[1] https://chromium.googlesource.com/chromium/src/+/master/net/...
[2] https://cabforum.org/wp-content/uploads/CA-Browser-Forum-BR-...
[3] https://raw.githubusercontent.com/chromium/chromium/master/n...
They had a chance to go forward and implement HPKP protocol in parallel with CT, they didn't. They had a chance to go with other proposals - e.g. checking the CAA records (a proposal they themselves have made in the deprecation post, especially as CA certs are also well-known and pinned), they didn't. They chose an option that works best for Google (and by extension: Facebook, Dropbox, etc), but not so much for everyone else.
This means is there is no way to spot a mis-issued certificate before it has been used - and you need to trust that the specific CA that issues it both adheres to transparency (pinky promise!) and obeys CAA (also, pinky promise - LetsEncrypt got in hot water when it didn't). That is: unless you are Google or Dropbox or Twitter - then your browser will actually save you from connecting to any counterfeit site, as that is what was important for Google.
End result? Privacy is enhanced if you are lucky enough to be on the list of statically pinned sites (see my parent comment, and see the Mozilla version as well), everyone else only gets more transparency, but not stronger privacy.
[0] https://hg.mozilla.org/mozilla-central/file/tip/security/man...
Furthermore, Google's been utilizing that stewardship of Chrome to set up a situation where they dictate terms to the entire PKI industry, including their ability to unilaterally terminate certificate authorities... while conveniently setting up their own root CA as well.
Which is to say, yes, TLS is just another strategy Google has to take over complete control of the Internet from formerly decentralized approaches, and it should be considered a direct threat to everyone.
Google is the big shark, and all the other fish have an economic interest to impede Google in addition to philosophical and other business model differences.
So the situation isn’t quite the same as if you would have dozens of members of more similar size, power and influence.
On the web in large parts of the world it’s increasingly becoming Google against everyone else in a war for survival.
Is there a well written article that describes what PING is and formal specification of this proposal?
Not saying that's neccesarily happening here, but surely we could come up with a better argument than "it has privacy in the name therefore is good."
For some reason people treat Apple as if offering grouped ad targeting is the same as being private, but when Google does the same, it's treated as a fundamental sin
The central error is only a first order analysis can lead to the conclusion that Google doesn't care about user privacy - it's probably it's most fundamental value
Submitters: please follow the site guidelines, which ask "Please use the original title, unless it is misleading or linkbait; don't editorialize."
At least will still have Firefox and WebKit to prevent Google from having total reign over user piracy on the web.
It does not foreclose downstream Chromium users' ability to strip out or restrict features they believe to be harmful to user privacy; as all the code is provided under a variety of Free licenses that are specifically designed to allow removing unwanted functionality.
This is a perspective that's often missing from discussions surrounding web APIs. These APIs aren't just about what cool new things legitimate developers can do with them. They're also about what they'll enable bad actors to do. APIs must be designed defensively, otherwise we risk users feeling [even more] unsafe on the web.
Having said that - MS seems exactly the same or worse on privacy issues, they just suck at executing with their services so they don't get as much traffic and aren't in the spotlight. I don't really follow the logic - if I was interested in privacy I would probably avoid Microsoft just as much as Google.
And Microsoft working on Chromium/Blink just gives more credibility to it being an OSS project - they've made substantial contributions and probably have a team working on it - if Google decides to close off the development - Microsoft has the resources to continue development.
2. Doesn't the same apply to every other Chromium based browser/application? All Election apps, Opera, Brave, Vivaldi, etc?
Google pays mozillas bills. Right now there is no major browser that is free from googles influence.
We have lost the www.
Coupled with their recent pro-deplatforming stance, Firefox's death will accelerate and it's a good thing. Mozilla has been consumed by greed (Google deal), incompetence (Firefox mobile) and politics ('deplatform our ideological enemies' blogpost).
On sites that do not ever play audio, the browser leaks sensitive highly personalized audio information to any ad network that wants it. That's not a 'feature', it's a spyware backdoor for ad networks.
Their veto being interpreted as anti-privacy is one thing, but their reasoning for the veto is, in my view, even worse. In attempting to steer the conversation away from their anti-privacy stance, they drove straight into a wall of "any kind of ethics in software should be an afterthought". Not good.
But they can leverage this control and make it legitimate by making their POV the main POV in the web standards working group, and this is what they are doing right now (removing veto powers from other concerns in the group).
There's a lot to like about their approach to things but consensus is difficult to deal with. Unreasonable people cause great stress on people who are trying to get simple things done.
There are different flavors of Quakers: my wife attends an "unprogrammed meeting" which means that there's not a minister. Instead, members sit in a circle (pre-COVID) and those who are moved to speak do so. But there's also programmed meetings, which have a minister. There's probably more variations.
Around the time the US was founded the Quakers were seen as good people to do business with, since they strove for honesty and transparency in business. There were many prosperous Quaker merchants. These days they seem to be more anti-capitalist.
There is nothing preventing any member from considering privacy issues as blocking. Since consensus is required, why require another round of review and approvals?
Unless members don't all have people on the PWG and are looking to offload review expenses on the organisations that are?
Apple's been kneecapping the web for years with the dual argument "you cant have WebUSB/Bluetooth and be private, permission dialogs don't count." After allowing iOS to make the opposite trade-off while confusingly marketing their phones as "what happens on your phone stays on your phone", and making Facebook a central authentication mechanism in iOS 4 and pushing devs to use it to "hurt Google", allowing them to obfuscate their vetoes via an exclusive smaller group seems blinkered.
EDIT: It's funny how the votes switch between +5 and -5 every minute. I wanted to add that I did not say Firefox is a bad browser. I was just presenting an alternative.
Supporting Brave is supporting a future monoculture of the web with fancy browser reskins and no matter how good Braves added features are it doesn't change the fundamental problem but becomes a part of it, working for instead of against the good of users.
I'd much rather have some sponsored images than have my data being sold or turned into advertisements.
The article is perhaps poorly titled, and the modern age headline-skimmers will take it at face value. The article isn't calling for more extreme action or censorship... It's saying that deplatforming isn't the solution and what we should do is have transparency of advertisers & algorithms and support / fund research into studies on disinformation. I'm not sure how anyone can disagree with the substance of the article.
Ok, so no political issues... Still waiting on the privacy argument.
Also, Brave doesn't phone home as much as Firefox: https://www.zdnet.com/article/brave-deemed-most-private-brow...
Everything I hear is just hollow words- "I just disagree with some of Mozilla's business decisions" / "it's more privacy-focused than Mozilla Firefox" / "it's less politically focused than Mozilla Firefox" / "Brave seems to be a little bit better in some aspects"
Even small things being better in one or another browser are still arguments if both browsers are good.
Also, for me, the company behind the browser matters too, especially since donations to mozilla barely go to the Firefox dev team.
I get that those are not good arguments for everybody, but just dismissing them just because you do not care about them that much seems a little bit harsh.
I'm not being harsh, you just haven't presented anything beyond empty words.
The panopticlick test (now renamed to coveryourtracks) is not a study, but a test you can actually do yourself with different browsers: https://coveryourtracks.eff.org/
Also, I presented an article from zdnet (backed by a study), about the phoning home of the different browsers: https://www.zdnet.com/article/brave-deemed-most-private-brow...
And at this point I don't think it is worth it for me to invest more time arguing anymore, since you seemingly did not read my comments. There are plenty of other comments addressing all the "issues" you were talking about.
I will indeed test both browsers, if Brave is objectively better obviously I want to use it... However, I wish there was just stats on both browsers we could see side by side.
I did find this, https://www.mozilla.org/en-US/firefox/browsers/compare/brave...
Obviously biased because it's from Mozilla, however- I think this argument is moot. They're both better than what else is out there.
I find the claim that Firefox is less privacy focused than Brave a bit questionable. Brave certainly seems to have good and probably better defaults in that regard, but remember that Firefox is basically developed in collaboration with the Tor project and as a result has various significant (mainly non-default) privacy features architected in such as first party isolation, containers, and Tor-project-approved fingerprint resistance. Easily-disabled telemetry seems like a small hassle compared to such concrete privacy features which do not exist elsewhere.
And for example with something like first party isolation, it is unclear whether Brave would even want or be able to to maintain such a patch set on top of Chromium when it requires quite deep integration with the browser engine.
There’s also the manifest v3 stuff which will presumably end up in Brave at some point.
[1] https://2019.www.torproject.org/projects/torbrowser/design/#...
Everyone in that thread knows what the article says. You’re just rehashing arguments here that they’ve already responded to there. And you’re not even addressing any of their points.
It's saying deplatforming is not going far enough to be the solution. And it advocates (among other things) "amplifying factual voices", which for a browser platform can mean only one thing - abandoning neutrality and privileging certain type of content - one that the gatekeepers agree with and thus call "factual" - while excluding other types of content, that they disagree with and thus call "misleading". To remove all doubt, they bring Facebook - which exercises clear viewpoint-driven editorial control over the content, even if unconsistently, haphazardly and ineffectually - as an example of what they're looking for. For a browser platform, advocating such approach means they plan to install themselves as the gatekeepers of the Internet, choosing what information you are and aren't allowed to see. While once currently can route easily around Facebook censorship, once browsers join the game, it won't be so easy. And of course, for anybody who values unrestricted access to information as much as privacy, it is the reason to avoid using platforms that advocate such principles.
It seems that this Mozilla article is too vague, open-ended, and short to be processed correctly. I personally interpreted the article differently than you did, which doesn't mean either of us interpreted it incorrectly.
If you equate being factual with abandoning neutrality, you're not being political nor apolitical. That's just anti-intellectualism.
> one that the gatekeepers agree with and thus call "factual"
And the fact you're putting the word factual in scare-quotes only emphasises this further.
Your comment then veers into some vague Facebook comparison which I frankly couldn't parse: I'm not sure if you're making out that Facebook is benign or not?
That's why the quotes are there - because it's literally what the quotes are for, to emphasize it's not my definition and not may decision - it's gatekeeper's, and I have no control and no input on it. If you think eating up pre-filtered and pre-digested information is "intellectualism", you definition of it is very different than mine.
> you're making out that Facebook is benign or not?
That's what using pre-digested information does for you - you become unable to parse things that aren't pre-digested. I will help you to make it clear - Facebook is evil, but the major point is not whether it's evil or not, but the role of information gatekeeper that it performs. Applied to a browser platform, this approach is dangerous and unacceptable to anybody who values their own intellect and is not scared of actually using it once in a while instead of outsourcing this function to a gatekeeper body.
Do you have a link to this definition that doesn't match your own? I'd be curious to see varying definitions of "factual"; it might make this issue easier to discuss.
> it's no longer my choice, the gatekeeper chooses for me what is "fact" and what is not, and I have no option of applying my own intellect and make my own choice - the choice is made for me, the conclusions are prepared in advance for me and the information is pre-filtered and pre-arranged to push me into accepting whatever vision of the world the gatekeeper privileges
You use two words here: "pre-filtered" and "pre-arranged"
Pre-filtering is not what's been proposed in the article. We've already covered that above, so lets not reiterate... any implied pre-filtering here is imagined.
Pre-arrangement is the world we live in and the very definition of the modern internet. What's been proposed is to introduce an improvement to how things are pre-arranged. I'd love to live in your utopia where we have the time to read everything in Google's index one-by-one and select which ones we value individually, but here in the real world, things are pre-arranged. This is about trying to find the best way to ensure that that pre-arrangement is not horribly skewed and corrupt.
Go to any "fact checking" site, they regularly "fact check" opinions and predictions about the future, which can't be "factual". Ask any of the current gatekeepers, which regularly block people expressing controversial opinions (about things like how to handle the beer bug or riots or any other current issue) for "misinformation" - completely ignoring the idea that opinions and facts are different things. The definition of "fact" in "fact checking" is basically "fact is something you don't get deplatformed for saying", more or less. Of course there's no better definition - why would they commit to any definition if "fact is what we say it is" works so well?
> Pre-filtering is not what's been proposed in the article
It is. That's what "amplifying factual voices" is - that is the only thing it could be - a filter. It doesn't have to be 100% block - but to be of any efficiency, it has to privilege one viewpoint and suppress another, and the choice will be made by the gatekeeper. It's not imagination - it's a basic requirement without which any mechanism like that would be useless. It has to make privileged opinion easy to reach, and excluded opinion hard to reach, otherwise there's no amplification.
> What's been proposed is to introduce an improvement to how things are pre-arranged
"Improvement" is a tricky word. When you define what is better for me, and "improve" things according to your definition, what happens if I disagree about what is better for me? Then your "improvements" are actually obstacles for me. But what if you're so sure you know what is better for me that you are determined to force it on me regardless of my opinion? That makes any such "improver" my enemy - they may think they are helping, but they are not, they are hurting.
> This is about trying to find the best way
When the "best way" is determined unilaterally by the oligarchy of the gatekeepers, it's usually the way that is best for them, not for me. I didn't ask for their help, and yet they are determined to force their "best way" onto me, whether I want it or not, whether I consider it best or not. This is a very common pattern that is repeated in human history again and again. Being on the receiving end of it is never fun, and rarely improves anything for the people being "helped" against their will.
https://www.zdnet.com/article/brave-deemed-most-private-brow...
It isn't.
It's a zombie org that only exists because google needs to have a patsy to point to if there is ever an anti-trust case against it.
So much freedom.
https://www.computerworld.com/article/3600206/mozilla-report...
[0] Yes, there's Lynx and some hobby browsers and yes, there are people who use them as dailys. But you can not reasonably expect anyone to work with them or get a non-technical person to live with those.
Google has more control over Mozilla than they do over organizations that have forked Chromium because about 90% of Mozilla's revenue comes from Google.
But this just isn’t true - just like Linux (which dominates the web server space) there are multiple parties working on and forking chromium - if google introduced something someone didn’t like they can maintain their own fork and plenty of people are.
Additionally there are other alternatives that enjoy 5x+ the market share of Firefox, most notably, safari/WebKit.
That's funny, because they did that literally six days ago: https://blog.chromium.org/2021/01/limiting-private-api-avail...
(I'm not sure whether Brave actually used Google account syncing, but Chromium surely did and this move clearly shows the dependence)
I've never personally used Brave -- my only interaction with it was when one of my profs in university invited a guy for a talk who then basically proceeded to shill Brave for half the talk. It left an awful taste in my mouth and continues to do so.
[1] https://blog.mozilla.org/blog/2021/01/08/we-need-more-than-d...
Commit to meaningful transparency of platform algorithms so we know how and what content is being amplified, to whom, and the associated impact.
Turn on by default the tools to amplify factual voices over disinformation.
Work with independent researchers to facilitate in-depth studies of the platforms’ impact on people and our societies, and what we can do to improve things.
---
Nothing here sounds unreasonable?
Considering that, in the Firefox article, this links to an article [1] by The New York Times lamenting with no self-awareness whatsoever that Facebook reversed its temporary signal-boosting of The New York Times... I'm really not comfortable with how "factual" is being defined.
Like, I'm all for researching new ways to share and promote information and fact-checking.
I just don't want them to stop at "We should all listen to what the mainstream center-left media says".
[1]: https://www.nytimes.com/2020/12/16/technology/facebook-rever...
I've seen a few people on HN objecting to it too but they didn't seem to have read the actual post.
There's nothing in the post that condones (or condemns) deplatforming. TL;DR of the article is: "Deplatforming happened, but here are 4 additional/different things that are needed that would be more impactful than deplatforming"
Much of my paycheck ultimately depends on ad-tracking cookies. My employer might well not survive their elimination. Still, this sounds to me more like an enticement than a warning. Yes, please, let's rebuild the web with only opt-in tracking.
Never mind. I was able to get the info from comments here. It makes sense to No this. Creation of these But First We Must Stamp things on proposals always stalls technical proposals. I'm on Google's side here.
The point I'm making - GOOGLE, not these standards bodies decides what is a standard.
We're now seeing the same process play out with Chrome. I agree that Chrome became dominant for better reasons than IE, but the outcome is harmful either way.
"Google was the only member of the W3C to vote “No” to a proposed charter change for the Privacy Interest Group (PING), a working group of the W3C dedicated to web privacy matters. Concerned that web privacy issues were being routinely ignored by many working groups of the W3C, the Privacy Interest Group sought to expand its charter, such that it would have the ability to block any new technical specification that it felt would have negative implications for web privacy. "
The proposed charter is at [0]. Google raised an objection to the charter in [1]. Chris Wilson posted some clarifications in [2] and Daniel Glazmen posted a response/comment in [3].
As far as I can tell, an objection was raised in a consensus-based discussion. I didn't see any evidence of support from the "other 23" or of any actual vote taking place. I'd assume that others would know more about any such details.
[0] https://github.com/w3cping/administrivia/blob/process-change...
[1] https://lists.w3.org/Archives/Public/public-privacy/2019JulS...
[2] https://lists.w3.org/Archives/Public/public-privacy/2019JulS...
[3] https://lists.w3.org/Archives/Public/public-privacy/2019JulS...
(Disclosure: Googler - drawing only from public record, speaking only for myself)
One of the W3C TAG Ethical Web Principles[0] is that "Security and privacy are essential". This suggests that Google disagrees.
[0]: https://www.w3.org/2001/tag/doc/ethical-web-principles/#priv...
Wait did anyone in the world actually believe this? Their primary business model relies on the opposite. The only privacy aspect they would naturally care about is keeping user data private from competitors.
I'm not saying "Veto is evil" but I am unsure this was a wise decision for a policy forum to take. Arguably it is, only fully mutually agreed positions should emerge, but that really is a defence of the status quo, in almost all cases.
Posted using a de-Googled Moto G4 Play running e/OS.
(Disclosure: I work for Google, speaking only for myself)
I was asking why do they get a veto?
The fact that it requires unanimous consent to get anything moved forward shows the problem with the organization, and it is something that Google Enjoys
They have their market dominance, if w3c does what they want great, if not Google will do it anyway and if w3c takes up something Google dislikes they will block if even if every other members wants it done.
I am still shocked by the number of Google Defenders there are ... 2021 Google's mantra may as well be "Always do evil"
WHATWG is a cooperation between Apple, Google, Mozilla, Microsoft as far as control goes.
The Web is controlled by Google, Full Stop.
There is no "standards" there is Google. This has been shown more than a few times with things that Google Wanted, others opposes but some how the w3c always sides with google... hmmmm I wonder why that is
Nothing will replace it because 85ish Percent of the Browser Market is Chrome or Chromium Based. Chrome, Edge, Brave, <<insert name of your fav chrome clone here>>
I fully expect to see FireFox become chromium based with in the next 5 years.
While everyone was beating IE and Microsoft we surrendered the web to Google and Chrome
it will take a generation to win that back, if ever
Why do you expect Firefox to go Chromium-based? It seems a large part of Firefox's success is that it is an alternative to Google code.