5

Google 在歐盟的服務將提供 Reject All Cookies 的按鈕

 2 years ago
source link: https://blog.gslin.org/archives/2022/04/26/10677/google-%e5%9c%a8%e6%ad%90%e7%9b%9f%e7%9a%84%e6%9c%8d%e5%8b%99%e5%b0%87%e6%8f%90%e4%be%9b-reject-all-cookies-%e7%9a%84%e6%8c%89%e9%88%95/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

Google 在歐盟的服務將提供 Reject All Cookies 的按鈕

看到「Google gives Europe a ‘reject all’ button for tracking cookies after fines from watchdogs」這篇,在講 Google 在歐盟的服務開始提供 Reject All Cookie 的按鈕,其中 Google 官方的公告可以在「New cookie choices in Europe」這邊看到。

Reject All Cookies 的按鈕是像這樣的設計:

照報導說的,今年初的時候法國罰了 Google 一億五千萬歐元,因為 Accept All Cookies 只要一個按鍵,但 Reject All Cookies 需要按很多選單才能達成,而法國認為這樣非對稱式的設計是違法的:

Earlier this year, France’s data protection agency CNIL fined Google €150 million ($170 million) for deploying confusing language in cookie banners. Previously, Google allowed users to accept all tracking cookies with a single click, but forced people to click through various menus to reject them all. This asymmetry was unlawful, said CNIL, steering users into accepting cookies to the ultimate benefit of Google’s advertising business.

Google 的說明裡面也有提到法國的事情,但當然沒有提到罰款:

Based on these conversations and specific direction from France’s Commission Nationale de l’Informatique et des Libertés (CNIL), we have now completed a full redesign of our approach, including changes to the infrastructure we use to handle cookies.

另外就是這個功能目前只在法國啟用,後續會放到整個歐盟區:

We’ve kicked off the launch in France and will be extending this experience across the rest of the European Economic Area, the U.K. and Switzerland.

Related

WebKit 對 HSTS Super Cookie 提出的改法

Twitter 上看到 WebKit 對 HSTS 所產生的 Super Cookie 提出的改善方案: How WebKit crumbles the "Super Cookie". https://t.co/iwOpjM8p9f— WebKit (@webkit) March 16, 2018 拿原文的例子來說明,先指定一個隨機數給 user,像是 8396804 (二進位是 100000000010000000000100),所以就存取下面的網址: https://bit02.example.com https://bit13.example.com https://bit23.example.com 在存取這些 HTTPS 網址時都會指定 HSTS,所以之後連到這三個網址的 HTTP request 就不會觸發到 HTTP 版本,會因為 HSTS 被轉到 HTTPS 版本。於是就可以用 32 個 HTTP request 測試 32bits 而判斷出身份。(當然你可以用更多) WebKit…

March 17, 2018

In "Browser"

網路隱私權問題

在 Bruce Schneier 的 blog 看到「Flash Cookies」這篇才想到要紀錄 Firefox 要裝哪些套件才能維持一定的隱私。 首先是 Firefox 3.5 內建的 Privacy 設定,先選擇 "Use custom settings for history" (這樣才能自訂),把 "Accept cookies from sites" 的 "Keep until" 改成 "I close Shiretoko" (我用的版本叫做 "Shiretoko",你在自己的電腦應該會看到 "Firefox")。接著設定 Exceptions,把常去而且會需要以 cookie 登入的站台設到白名單。 然後是安裝 RefControl,預設設定成 Block 或是 Forge 都可以,避免 Referer 透漏資訊。有很多站台 (尤其是中國大陸的) 因為 Referer 檢查過嚴格而無法使用時可以另外手動加上網域設為…

August 19, 2009

In "Browser"

就算關掉 Google 的定位服務也還是會蒐集位置資訊...

就如標題所寫的,Quartz 獨家刊出來的新聞,即使你關掉 Google 的定位服務,Google 還是會蒐集你的位置 (而且跟 Google 發言人確認後也證實):「Google collects Android users’ locations even when location services are disabled」。 而且是全背景作業,在你沒有開定位服務,沒有插 SIM 卡,也沒有跑任何 app,他就會將定位資訊傳出去: Many people realize that smartphones track their locations. But what if you actively turn off location services, haven’t used any apps, and haven’t even inserted a carrier SIM…

November 23, 2017

In "Computer"

a611ee8db44c8d03a20edf0bf5a71d80?s=49&d=identicon&r=gAuthor Gea-Suan LinPosted on April 26, 2022Categories Computer, Murmuring, Network, Privacy, ServiceTags accept, all, cookie, cookies, fine, google, law, legal, privacy, reject, youtube

Leave a Reply

Your email address will not be published. Required fields are marked *

Comment *

Name *

Email *

Website

Notify me of follow-up comments by email.

Notify me of new posts by email.

To respond on your own website, enter the URL of your response which should contain a link to this post's permalink URL. Your response will then appear (possibly after moderation) on this page. Want to update or remove your response? Update or delete your post and re-enter your post's URL again. (Learn More)

Post navigation


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK