top 50 comments

sorted by: hot top controversial new old
[–] 17 points 13 hours ago (5 children)

Another version being used on some news websites (forgot the names) - do you want us to track you or not?

Me: No

Website: Fair enough. Pay us 5 dollars in order for us to not track you. OR allow us to track you and you can get access to the article for free

  • source
  • hideshow 5 child comments
  • [–] 29 points 13 hours ago (3 children)

    I just don't believe that they will stop trying to track me, no matter how much i pay.

    In fact, the more i pay, the more valuable i am.

    Because the details of a rich sucker are very high value.

  • source
  • parent
  • hideshow 3 child comments
  • [–] 4 points 12 hours ago

    True. Same goes for "ad free" streaming platform subscriptions. These days literally almost every streaming platform has introduced additional charges for advert removal even for the top tier plans

  • source
  • parent
  • [–] 2 points 13 hours ago (1 child)

    Yeahhh that sucks that we've reached this point. I would actually consider paying some sites for my privacy. If they offer something that I value, then it's fair for them to be compensated somehow. However, if they offered that option, I still probably wouldn't trust it.

    Even if the site itself fully intends to stand by their offer, can I trust the payment processor(s), bank(s), etc. involved in the transaction?

    I'm not really a crypto guy, but I wish something like Monero (or whatever privacy-protecting alternative that might be "better" these days) could become more mainstream.

  • source
  • parent
  • hideshow 1 child comment
  • [–] 1 point 7 hours ago (2 children)

    Dumb question maybe, but do tuey have to track browser types to be able to serve phones vs desktops?

  • source
  • hideshow 2 child comments
  • [–] 1 point 4 minutes ago*

    The browser identifies itself with every request, so no, you are constantly volunteering that info and that's how you get sites your browser can render properly. You can change your browser's "user agent" value and sites will give you different pages based on that. For apps that demand you use their app on mobile but have a web site for PCs, you can make your browser pretend to be the desktop version so you don't have to install a spyware app, for example. Look up "user agent spoofing" if you're curious.

  • source
  • parent
  • No, websites use CSS for styling and layout, basically how elements should look, behave and how they are placed in relation to each other, CSS can query the browser for screen width and adjust the view in real time.

    As a result, if you resize your browser, it may switch to a taller display style, which is what you want on mobile devices.

    Note: there are many reasons you wouldn't want to check for device type, this is why display width is used.

  • source
  • parent
  • [–] 19 points 15 hours ago (1 child)

    “We value your privacy” (as a commodity that we can legally sell with or without your permission. Do you want to download tracking cookies now or should we play coy?)

  • source
  • hideshow 1 child comment
  • [–] 30 points 17 hours ago (2 children)

    We tested software at work once.

    It would show who visited your website, their socials, their phone number, e-mail and company they work for. You could also open a video that would show their mouse movement and clicks.

    All by clicking accept.

    And all of this assumes they even show that accept button properly. With all the vibe coders, I wouldn't even trust the button to do anything at all.

    The web is just fucked. Not leaking your fingerprint sounds like an impossible task to me.

  • source
  • hideshow 2 child comments
  • [–] 4 points 12 hours ago (1 child)

    Yep. It's also interesting to see teams have conversations about implementing these things without anyone mentioning how creepy it seems. I guess these things are just normalized now :/

  • source
  • parent
  • hideshow 1 child comment
  • [–] 6 points 10 hours ago

    Entirely depends on the group. I've been in meetings with developers where we agreed it was creepy and pushed back. I've also been in meetings with marketing where they said it was normal, and meetings with others who said it was the cost the user paid to use our website. Ignoring of course that we sold stuff on the website, and that part of it was a management system that the users actually paid us money to use.

    They stopped giving me those projects, which was a win for me but arguably a loss for the users.

    I did though for a bit convince people that it was worthwhile to fix the accept/reject not working right, but that it wasn't a top priority to fix the reject button disabling tracking for all users of the site for the duration of the cookie. (Cookie stored "be creepy" flag. When the user clicked the button it stored a flag in the session so we could statistics, and then read the flag to set the cookie. Someone used the wrong session value and stuck it in the global store used to cache sitewide data, so when it went to see if they opted out it would see if anyone had in the last month. They fixed it after the data was all fucky for a few months and they realized my argument of "who would opt out? It's just the way the Internet works" was extremely wrong and no one will ever complain about being opted out of tracking)

  • source
  • parent
  • [–] 16 points 18 hours ago

    "We value your privacy"

    Yeah, to sell it.

  • source
  • [–] 14 points 20 hours ago (24 children)

    This is created by someone who has no idea about websites, for an audience who has no idea about websites.

    You don't need cookies, trackers or any personal data to detect an adblocker.

    It's like accusing a store of spying for putting anti-theft gizmos on the merchandise.

  • source
  • hideshow 24 child comments
  • [–] 5 points 12 hours ago (1 child)

    It’s like accusing a store of spying for putting anti-theft gizmos on the merchandise.

    More like if you're trying to see how something fits and the anti-theft gizmo is getting in the way, so you try to move it off to the side. Then you hear a voice over the PA system asking you not to fiddle with the anti-theft device.

  • source
  • parent
  • hideshow 1 child comment
  • [–] 11 points 18 hours ago* (21 children)

    Of course it's spying. Site dishes out an ad-link and observes if it gets loaded (can be done server side). That's the easiest way that comes to my mind. I'd say closely monitoring the behavior of your customers is spying. Especially as the customer does not know that/if he is being monitored in this way.

    Putting "anti theft gizmos" in a store is also spying, at least if you mean cameras and not a locked cabinet for valuable goods.

    The question is, if we agree that the other party has the right to spy on their users, and if/how the users have to be informed. Here stores have to announce video surveillance with a sign to anyone who enters.

  • source
  • parent
  • hideshow 21 child comments
  • [–] 2 points 10 hours ago

    Eh, "did you ask to download something" is about the line where I would draw acceptability. You cannot use a website without them knowing if you made a download request for the content so I'm not bothered by them paying attention to the data to see what I downloaded.
    It's when you start sharing the data with others, or using that data from others, or adding things to collect information and send it back that I mind.

    If someone did everything on the up and up, they would see my browser request, information that says what it can do that the browser opts to send, and a cookie that identifies the browsing session.
    I'm fine with that because I can clear it or change it at will, and without sharing anything the capability information is less useful than the session cookie.

  • source
  • parent
  • [–] 7 points 17 hours ago

    This is pretty much never done server-side. It would unnecessarily increase server load by requiring callbacks and/or polling. It's always done in JavaScript or, for really simple setups, CSS.

    Nobody running ads is considering users who block JavaScript wholesale. Not only is it a trivially small percentage of users, but it's also a waste of time: those users aren't going to stop blocking JavaScript to display ads anyway. Instead, they'll just make it so the site fails to render at all if JavaScript is disabled.

    You've presented a solution looking for a problem.

    As for anti theft gizmos, they're talking about the alarm tags and ink packs that get attached to merchandise so it sets of an alarm when you try to leave with it, or the item is covered in ink when you forcibly remove the security tag. These are passive anti-theft security and do not constitute spying.

    Even if we were talking about video cameras, it's unreasonable to call that "spying". In order for something to be spying you need an expectation of privacy, which is not present when you're inside a private business. It would be like calling a security who observes customers a spy. It's absurd.

  • source
  • parent
  • load more comments (19 replies)
  • [–] 14 points 21 hours ago

    I have said it before and I'll way it again, an adblocker has gone from simply being a nuisance blocker to being an essential tool for not only privacy but also security.

    My counterpoint to any website whining about you blocking their ads is this:

    Untill website owners take full legal and financial responsibillity for any dammages the ads presented on their website causes my computer or property due to infected ads or an infected website, I won't even consider disabling my adblocker, I still probably won't, but I'll consider it.

  • source
  • [–] 33 points 1 day ago (6 children)

    ok ok ok ok look I use DNS level ad blockers, I'm big in favor of them, but this is the dumbest shit ever.

    Running client side JavaScript that detects when an advertisement failed to load and then popping a request to disable your ad blocker is in no way, shape, or form "spying".

    Don't get me wrong, plenty of sites absolutely spy on you, and the ads themselves definitely spy on you.

    But being able to detect that ads didn't load? It's completely client side and is not spying 😂

    That last line is just real bad logic.

  • source
  • hideshow 6 child comments
  • [–] 12 points 23 hours ago (2 children)

    yep for websites that's literally just checking if their ad element exists in the DOM tree.

    const myAdElementSelector = "#fuckingAd";
    const myAdElement = document.querySelector(myAdElementSelector);
    if (!myAdElement) return "yes user is using adblocker";
    

    simple as.

    or maybe not honestly i don't know i just wanted everyone to know i know javascript.

  • source
  • parent
  • hideshow 2 child comments
  • load more comments (1 reply)
  • load more comments (3 replies)
    [–] 3 points 16 hours ago (5 children)

    ublockorigin blocks the content and leaves them unable to see that you are using it.

    Pretty sure you can still download it directly from their website.

  • source
  • hideshow 5 child comments
  • [–] 7 points 13 hours ago (2 children)

    Are you sure about that? I only use ublock origin and still get "can you not block our ads" popups sometimes

  • source
  • parent
  • hideshow 2 child comments
  • [–] 87 points 1 day ago (4 children)

    "No no, I'm not a thief, but me and my 1200 paying friends would like to take a look around your house, may we come in?"

  • source
  • hideshow 4 child comments
  • load more comments (4 replies)
    [–] 94 points 1 day ago (1 child)

    A script that shows a modal box or whatever when something fails to load as expected need not spy on you to function, but maybe I'm reading into a funny post more than I should be.

  • source
  • hideshow 1 child comment
  • [–] 47 points 1 day ago

    You're technically correct (the best kind of correct).

    It's trivial to attempt a connection to an ad server and detect the failure and display a dialog.

    The problem is that (publishers don't want to acknowledge) there's no difference between advertising and malware.

  • source
  • parent
  • [–] 36 points 1 day ago (4 children)

    Site: We noticed you're using an ad blocker. Ads are how we pay for this site so it can be free for you

    Me: I'm using an ad blocker because without it your site is a barely functional jumbled mess

    Site: Please disable your ad blocker

    Me: Also the last time I visited the site without a blocker my antivirus caught a malicious ad injection.

    Site: 🤡

  • source
  • hideshow 4 child comments
  • load more comments (4 replies)
    load more comments
    view more: next ›