Also requiring acceptance from EU users would be a GDPR violation, I think? But it didn't ask me at all so I can't evaluate it well.
But making me click an "accept" button is just dirty. I hate that.
This company needs to get paid. For that it uses ads and other means, just like everyone else does. Their list of ads, tracking and other partners happens to be around 200. They tell you and you either choose to accept that, read their content for "free" (like you use other content/apps for "free") or actually choose to say "No, if "free" costs me this, then I don't want it".
And some really aren't even to "sell your data" but just their own analytics to let their dev/SRE staff see what's going on. Nothing nefarious at all.
Nobody forces you to accept this and read their content.
Heck, your online banking/brokerage probably uses a bunch of trackers you probably aren't aware of, because they don't tell you. Go open the network tab in dev tools and check.
If they're acting like the GDPR applies, these choices are invalid. If they're not extending that courtesy, then I'd rather be left alone about it.
And they're allowed to have ads without getting consent. It's the tracking that's a problem.
And there's no chance in hell that data isn't being sold when there are hundreds of partners.
And heise.de has already gotten in trouble for this before.
> Consent is presumed not to be freely given if [...] the performance of a contract, including the provision of a service, is dependent on the consent despite such consent not being necessary for such performance.
As a user it's just odd to see German websites do this so differently from Dutch or British websites.
What should be made illegal is how all those German popups do this really grating 3D animation effect upon closing. Do you know what I mean? Not the one at heise.de, but most of these forms seem to have this built in.
and pretty much all of them are in GDPR violation
just due to long dragged out court proceeding and a lot of lobby power or lets be honest corruption there have been no wide spread consequences
btw. a lot of them have a very hidden 3rd "no tracking, no payment" option which might display non-targeted ads based on the content viewed and is the actual legal required alternative (instead of the "pure abo") this is still not quite legal but much easier to worm yourself through the legal system with
Basically GDPR says you have to make it as simple to use your site with and without "tracking".
The important part here is it says "without tracking" not "without ads", so the choice presented is intentional deceptive and misleading. There is no technical reason to not have GDPR complaint ads, it's just that web ad market is dominated by a few quasi monopolies (leading Google) and they don't like "not targeted" advertisement at all.
What they theoretically have to provide is the choice between "targeted ad, tracking", "untargeted ad, no tracking" or "no ad, no tracking, payment".
Heise is a bit nasty with technology, and it's a bit harder to get rid of their thing, but I can read everything without accepting anything.
Putting the "text" back into HTTP, hyper text transfer protocol.