SlideShare une entreprise Scribd logo
1  sur  15
Télécharger pour lire hors ligne
Tracking Protection
    Working Group
    Aleecia M. McDonald

    3 May, 2012
                          1

Friday, May 4, 12
Introduction of the W3C

    ✤    World Wide Web Consortium
         creates international standards
         for the Internet

    ✤    Sir Tim Berners-Lee

          ✤     Created the World Wide Web,
                1989

          ✤     Created the W3C, 1994

    ✤    Successful track record with standards for HTML, XML, CSS, etc.

    ✤    Hundreds of billions of dollars of commerce runs on W3C standards   2

Friday, May 4, 12
Introduction of co-chairs

    ✤    Aleecia M. McDonald                   ✤   Matthias Schunter

          ✤     Half-time Mozilla Senior           ✤   IBM Research in Switzerland
                Privacy Researcher
                                                   ✤   Focus on cloud computing,
          ✤     Half-time Stanford                     security, and privacy
                Resident Fellow
                                                   ✤   P3P standards experience
          ✤     Prior: PhD privacy; software
                start ups



                                                                                   3

Friday, May 4, 12
Approach for Do Not Track

    ✤    User agent expresses a preference not to be tracked


                                                         HTTP header of
                                                            DNT:1



    ✤    Shipping today; standards work answers “what does tracking mean?”

    ✤    Websites / applications choose to honor DNT, confirm with response

    ✤    Adoption is entirely voluntary; W3C cannot compel members to act
                                                                             4

Friday, May 4, 12
Diverse TPWG Membership

    ✤    70+ group participants, plus observers

    ✤    Browser companies: Apple, Google, Opera, Microsoft, Mozilla

    ✤    Wide membership range including Alcatel-Lucent; Adobe; AdTruth;
         Article 29 Working Party; AT&T; CDD; CDT; Chapell & Associates;
         Deutsche Telekom; EFF; ESOMAR; Facebook; IAB Europe; Nielsen;
         Nokia; Online Publishers Association; TRUSTe; Yahoo!; The Walt
         Disney Company




                                                                           5

Friday, May 4, 12
Writing Standards Documents

    1. Definitions & Compliance                     2. Tracking Preference Expression

          ✤     Chair: Aleecia M. McDonald           ✤   Chair: Matthias Schunter (IBM)
                (Mozilla)
                                                     ✤   Editors: Roy Fielding (Adobe),
          ✤     Editors: Justin Brookman & Erica         David Singer (Apple)
                Newland (CDT); Sean Harvey &
                Heather West (Google)              3. Tracking Selection Lists

                                                     ✤   Chair: Matthias Schunter

                                                     ✤   Editors: Karl Dubost (Opera);
                                                         Andy Zeigler (Microsoft)

                                                                                          6

Friday, May 4, 12
Three Types of Parties

    1. First party                                2. Service provider

          ✤     Not directly liable for others’     ✤   Agents of first parties,
                actions                                 contractual relationship

          ✤     Very few restrictions               ✤   Cannot share data across
                                                        multiple first parties or use
          ✤     Cannot share data with                  for their own purposes
                others, or else must act as a
                third party                         ✤   Debating exceptions

          ✤     Can be multiple 1st; depends      3. Third parties with strong
                upon meaningful interaction          restrictions, plus exceptions
                                                                                       7

Friday, May 4, 12
Uniform Signals, Different Results

                    Eleven Point One



                    Onze Comma Un



                        Punt Elf



                    Elf Komma Eins

                                       8

Friday, May 4, 12
Tri-part DNT Signal

    ✤    Three options
           DNT: 1 - enable DNT, user saying “do not track me”
           DNT: 0 - do not enable DNT
           Nothing - users have not made a selection

    ✤    US, Nothing:                     ✤   EU, Nothing:

          ✤     Users did not choose to       ✤   Users did not consent to
                enable DNT                        tracking

          ✤     Similar to DNT: 0             ✤   Similar to DNT: 1


                                                                             9

Friday, May 4, 12
Site-specific Exemptions

    ✤    Many countries can have a            ✤   Some countries may not allow a
         global DNT: 1 value                      global DNT: 1

          ✤     Companies want to ask to          ✤   Consent may be site-by-site
                track anyway

    ✤    Use same technical mechanism in both cases

    ✤    Exception specific to advertiser on that particular first party, not
         global for the advertiser across the whole Internet and/or

    ✤    Exception global for a specific third party, Internet wide

                                                                                    10

Friday, May 4, 12
Current Big Unresolved Issues

    1. Edges of a party                   2. Permitted uses for third parties,
                                             perhaps with retention limits,
          ✤     User expectations and        e.g.
                branding
                                            ✤   Frequency capping
          ✤     “Discoverable” based on
                corporate ownership         ✤   Billing and financial logging

                                            ✤   3rd party auditing

                                            ✤   Security and fraud
                                                prevention

                                                                               11

Friday, May 4, 12
Opportunities

    ✤    For feedback:                        ✤   For media:

          ✤     Speaking with WG on call          ✤   Internet week, May 17th

          ✤     Joining the WG                    ✤   Mozilla blog

          ✤     Community Group                   ✤   Jonathan’s list of DNT
                                                      implementations
          ✤     Individual comments on Last
                Call draft



                                                                                12

Friday, May 4, 12
Interested in Learning Thoughts...

    ✤    Response mechanism                 ✤   Hard to get user consent
                                                when brand unknown
          ✤     HTTP header
                                        ✤   Does 3rd party acting as 3rd
          ✤     Well-known URL              party help?

    ✤    How do you propagate opt-out       ✤   Auditing, billing
         status now?
                                            ✤   Silo data
    ✤    Consent for specific sites
                                        ✤   Biggest technical challenge to
          ✤     EU consent issues           implement?

                                                                             13

Friday, May 4, 12
Tracking Protection
    Working Group
    Aleecia M. McDonald

    3 February, 2012
                          14

Friday, May 4, 12
Photo credits

    ✤    Tim: http://i.telegraph.co.uk/multimedia/archive/00682/
         bernerslee-404_682192c.jpg

    ✤    Elephant: http://www.flickr.com/photos/paperpariah/2446224424/
         sizes/o/in/photostream/

          ✤     Adam Foster | Codefor

          ✤     “! danger elephants at Knowsley Safari Park?”

    ✤    Cash register: http://www.flickr.com/photos/teflon/4995681266/

          ✤     Martin Deutsch
                                                                        15

Friday, May 4, 12

Contenu connexe

Similaire à W3C DNT Presentation for AdMonsters

Tech For Good Meetup 10.11.14 The Good Data
Tech For Good Meetup 10.11.14 The Good DataTech For Good Meetup 10.11.14 The Good Data
Tech For Good Meetup 10.11.14 The Good DataTech For Good
 
Privacy and social media for Australian governments
Privacy and social media for Australian governmentsPrivacy and social media for Australian governments
Privacy and social media for Australian governmentsCraig Thomler
 
GDPR within Google Tag Manager - Measurecamp 2018
GDPR within Google Tag Manager - Measurecamp 2018GDPR within Google Tag Manager - Measurecamp 2018
GDPR within Google Tag Manager - Measurecamp 2018Danny Mawani Olsen
 
Web analytics: Practical steps to GDPR compliance
Web analytics: Practical steps to GDPR complianceWeb analytics: Practical steps to GDPR compliance
Web analytics: Practical steps to GDPR compliancePanagiotis Tzamtzis
 
5 tactics for practical privacy protection
5 tactics for practical privacy protection5 tactics for practical privacy protection
5 tactics for practical privacy protectionAmber Macintyre
 
Online Focus Groups Privacy and Security Considerations
Online Focus Groups Privacy and Security ConsiderationsOnline Focus Groups Privacy and Security Considerations
Online Focus Groups Privacy and Security ConsiderationsAlfonso Sintjago
 
Online privacy & security
Online privacy & securityOnline privacy & security
Online privacy & securityPriyab Satoshi
 
Service goes accessible_2013_sh
Service goes accessible_2013_shService goes accessible_2013_sh
Service goes accessible_2013_shTomppa Järvinen
 
Cip Multichannel Retail Webcast 091112 (2)
Cip Multichannel Retail Webcast 091112 (2)Cip Multichannel Retail Webcast 091112 (2)
Cip Multichannel Retail Webcast 091112 (2)Danny Miller
 
International Cooperative: APT Hunting
International Cooperative: APT HuntingInternational Cooperative: APT Hunting
International Cooperative: APT HuntingJoshua Lawton, MBA
 
Online Collaboration — Delivering Benefits for Organisations and Participants
Online Collaboration — Delivering Benefits for Organisations and ParticipantsOnline Collaboration — Delivering Benefits for Organisations and Participants
Online Collaboration — Delivering Benefits for Organisations and Participantsdanrandow
 
Letter to Google CEO Larry Page from privacy advocates
Letter to Google CEO Larry Page from privacy advocatesLetter to Google CEO Larry Page from privacy advocates
Letter to Google CEO Larry Page from privacy advocatesGillian Shaw
 
Online Privacy & Computer Security Basics (September 2017)
Online Privacy & Computer Security Basics (September 2017)Online Privacy & Computer Security Basics (September 2017)
Online Privacy & Computer Security Basics (September 2017)Kit O'Connell
 
ISYS 363 Group Task 1
ISYS 363 Group Task 1ISYS 363 Group Task 1
ISYS 363 Group Task 1schaudhary13
 
Exploring Data Privacy - SQL Saturday Louisville 2011
Exploring Data Privacy - SQL Saturday Louisville 2011Exploring Data Privacy - SQL Saturday Louisville 2011
Exploring Data Privacy - SQL Saturday Louisville 2011John Magnabosco
 

Similaire à W3C DNT Presentation for AdMonsters (20)

Tech For Good Meetup 10.11.14 The Good Data
Tech For Good Meetup 10.11.14 The Good DataTech For Good Meetup 10.11.14 The Good Data
Tech For Good Meetup 10.11.14 The Good Data
 
Privacy and social media for Australian governments
Privacy and social media for Australian governmentsPrivacy and social media for Australian governments
Privacy and social media for Australian governments
 
GDPR within Google Tag Manager - Measurecamp 2018
GDPR within Google Tag Manager - Measurecamp 2018GDPR within Google Tag Manager - Measurecamp 2018
GDPR within Google Tag Manager - Measurecamp 2018
 
Grant 2011.0918
Grant 2011.0918Grant 2011.0918
Grant 2011.0918
 
Privacy, Encryption, and Anonymity in the Civil Legal Aid Context
Privacy, Encryption, and Anonymity in the Civil Legal Aid ContextPrivacy, Encryption, and Anonymity in the Civil Legal Aid Context
Privacy, Encryption, and Anonymity in the Civil Legal Aid Context
 
Web analytics: Practical steps to GDPR compliance
Web analytics: Practical steps to GDPR complianceWeb analytics: Practical steps to GDPR compliance
Web analytics: Practical steps to GDPR compliance
 
5 tactics for practical privacy protection
5 tactics for practical privacy protection5 tactics for practical privacy protection
5 tactics for practical privacy protection
 
Online Focus Groups Privacy and Security Considerations
Online Focus Groups Privacy and Security ConsiderationsOnline Focus Groups Privacy and Security Considerations
Online Focus Groups Privacy and Security Considerations
 
Trendstechnology
TrendstechnologyTrendstechnology
Trendstechnology
 
Online privacy & security
Online privacy & securityOnline privacy & security
Online privacy & security
 
Info leakage 200510
Info leakage 200510Info leakage 200510
Info leakage 200510
 
Service goes accessible_2013_sh
Service goes accessible_2013_shService goes accessible_2013_sh
Service goes accessible_2013_sh
 
Free your metadata
Free your metadataFree your metadata
Free your metadata
 
Cip Multichannel Retail Webcast 091112 (2)
Cip Multichannel Retail Webcast 091112 (2)Cip Multichannel Retail Webcast 091112 (2)
Cip Multichannel Retail Webcast 091112 (2)
 
International Cooperative: APT Hunting
International Cooperative: APT HuntingInternational Cooperative: APT Hunting
International Cooperative: APT Hunting
 
Online Collaboration — Delivering Benefits for Organisations and Participants
Online Collaboration — Delivering Benefits for Organisations and ParticipantsOnline Collaboration — Delivering Benefits for Organisations and Participants
Online Collaboration — Delivering Benefits for Organisations and Participants
 
Letter to Google CEO Larry Page from privacy advocates
Letter to Google CEO Larry Page from privacy advocatesLetter to Google CEO Larry Page from privacy advocates
Letter to Google CEO Larry Page from privacy advocates
 
Online Privacy & Computer Security Basics (September 2017)
Online Privacy & Computer Security Basics (September 2017)Online Privacy & Computer Security Basics (September 2017)
Online Privacy & Computer Security Basics (September 2017)
 
ISYS 363 Group Task 1
ISYS 363 Group Task 1ISYS 363 Group Task 1
ISYS 363 Group Task 1
 
Exploring Data Privacy - SQL Saturday Louisville 2011
Exploring Data Privacy - SQL Saturday Louisville 2011Exploring Data Privacy - SQL Saturday Louisville 2011
Exploring Data Privacy - SQL Saturday Louisville 2011
 

Dernier

MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MIND CTI
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDropbox
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamUiPathCommunity
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native ApplicationsWSO2
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsNanddeep Nachan
 
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKSpring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKJago de Vreede
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Victor Rentea
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vázquez
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Jeffrey Haguewood
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Zilliz
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businesspanagenda
 
AXA XL - Insurer Innovation Award Americas 2024
AXA XL - Insurer Innovation Award Americas 2024AXA XL - Insurer Innovation Award Americas 2024
AXA XL - Insurer Innovation Award Americas 2024The Digital Insurer
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Angeliki Cooney
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 

Dernier (20)

MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 AmsterdamDEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
DEV meet-up UiPath Document Understanding May 7 2024 Amsterdam
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUKSpring Boot vs Quarkus the ultimate battle - DevoxxUK
Spring Boot vs Quarkus the ultimate battle - DevoxxUK
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
AXA XL - Insurer Innovation Award Americas 2024
AXA XL - Insurer Innovation Award Americas 2024AXA XL - Insurer Innovation Award Americas 2024
AXA XL - Insurer Innovation Award Americas 2024
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 

W3C DNT Presentation for AdMonsters

  • 1. Tracking Protection Working Group Aleecia M. McDonald 3 May, 2012 1 Friday, May 4, 12
  • 2. Introduction of the W3C ✤ World Wide Web Consortium creates international standards for the Internet ✤ Sir Tim Berners-Lee ✤ Created the World Wide Web, 1989 ✤ Created the W3C, 1994 ✤ Successful track record with standards for HTML, XML, CSS, etc. ✤ Hundreds of billions of dollars of commerce runs on W3C standards 2 Friday, May 4, 12
  • 3. Introduction of co-chairs ✤ Aleecia M. McDonald ✤ Matthias Schunter ✤ Half-time Mozilla Senior ✤ IBM Research in Switzerland Privacy Researcher ✤ Focus on cloud computing, ✤ Half-time Stanford security, and privacy Resident Fellow ✤ P3P standards experience ✤ Prior: PhD privacy; software start ups 3 Friday, May 4, 12
  • 4. Approach for Do Not Track ✤ User agent expresses a preference not to be tracked HTTP header of DNT:1 ✤ Shipping today; standards work answers “what does tracking mean?” ✤ Websites / applications choose to honor DNT, confirm with response ✤ Adoption is entirely voluntary; W3C cannot compel members to act 4 Friday, May 4, 12
  • 5. Diverse TPWG Membership ✤ 70+ group participants, plus observers ✤ Browser companies: Apple, Google, Opera, Microsoft, Mozilla ✤ Wide membership range including Alcatel-Lucent; Adobe; AdTruth; Article 29 Working Party; AT&T; CDD; CDT; Chapell & Associates; Deutsche Telekom; EFF; ESOMAR; Facebook; IAB Europe; Nielsen; Nokia; Online Publishers Association; TRUSTe; Yahoo!; The Walt Disney Company 5 Friday, May 4, 12
  • 6. Writing Standards Documents 1. Definitions & Compliance 2. Tracking Preference Expression ✤ Chair: Aleecia M. McDonald ✤ Chair: Matthias Schunter (IBM) (Mozilla) ✤ Editors: Roy Fielding (Adobe), ✤ Editors: Justin Brookman & Erica David Singer (Apple) Newland (CDT); Sean Harvey & Heather West (Google) 3. Tracking Selection Lists ✤ Chair: Matthias Schunter ✤ Editors: Karl Dubost (Opera); Andy Zeigler (Microsoft) 6 Friday, May 4, 12
  • 7. Three Types of Parties 1. First party 2. Service provider ✤ Not directly liable for others’ ✤ Agents of first parties, actions contractual relationship ✤ Very few restrictions ✤ Cannot share data across multiple first parties or use ✤ Cannot share data with for their own purposes others, or else must act as a third party ✤ Debating exceptions ✤ Can be multiple 1st; depends 3. Third parties with strong upon meaningful interaction restrictions, plus exceptions 7 Friday, May 4, 12
  • 8. Uniform Signals, Different Results Eleven Point One Onze Comma Un Punt Elf Elf Komma Eins 8 Friday, May 4, 12
  • 9. Tri-part DNT Signal ✤ Three options DNT: 1 - enable DNT, user saying “do not track me” DNT: 0 - do not enable DNT Nothing - users have not made a selection ✤ US, Nothing: ✤ EU, Nothing: ✤ Users did not choose to ✤ Users did not consent to enable DNT tracking ✤ Similar to DNT: 0 ✤ Similar to DNT: 1 9 Friday, May 4, 12
  • 10. Site-specific Exemptions ✤ Many countries can have a ✤ Some countries may not allow a global DNT: 1 value global DNT: 1 ✤ Companies want to ask to ✤ Consent may be site-by-site track anyway ✤ Use same technical mechanism in both cases ✤ Exception specific to advertiser on that particular first party, not global for the advertiser across the whole Internet and/or ✤ Exception global for a specific third party, Internet wide 10 Friday, May 4, 12
  • 11. Current Big Unresolved Issues 1. Edges of a party 2. Permitted uses for third parties, perhaps with retention limits, ✤ User expectations and e.g. branding ✤ Frequency capping ✤ “Discoverable” based on corporate ownership ✤ Billing and financial logging ✤ 3rd party auditing ✤ Security and fraud prevention 11 Friday, May 4, 12
  • 12. Opportunities ✤ For feedback: ✤ For media: ✤ Speaking with WG on call ✤ Internet week, May 17th ✤ Joining the WG ✤ Mozilla blog ✤ Community Group ✤ Jonathan’s list of DNT implementations ✤ Individual comments on Last Call draft 12 Friday, May 4, 12
  • 13. Interested in Learning Thoughts... ✤ Response mechanism ✤ Hard to get user consent when brand unknown ✤ HTTP header ✤ Does 3rd party acting as 3rd ✤ Well-known URL party help? ✤ How do you propagate opt-out ✤ Auditing, billing status now? ✤ Silo data ✤ Consent for specific sites ✤ Biggest technical challenge to ✤ EU consent issues implement? 13 Friday, May 4, 12
  • 14. Tracking Protection Working Group Aleecia M. McDonald 3 February, 2012 14 Friday, May 4, 12
  • 15. Photo credits ✤ Tim: http://i.telegraph.co.uk/multimedia/archive/00682/ bernerslee-404_682192c.jpg ✤ Elephant: http://www.flickr.com/photos/paperpariah/2446224424/ sizes/o/in/photostream/ ✤ Adam Foster | Codefor ✤ “! danger elephants at Knowsley Safari Park?” ✤ Cash register: http://www.flickr.com/photos/teflon/4995681266/ ✤ Martin Deutsch 15 Friday, May 4, 12