Hacker News new | past | comments | ask | show | jobs | submit login

None of those give you compliance?

A consent popup that makes it harder to decline than to accept is not compliant, nor one that merely cares about cookies/local storage while still loading third-party scripts and leaking your IP address & browser fingerprint.

A compliant consent flow would require explicit consent before loading any non-essential third-party scripts, but I'm not aware of any mainstream solution that does this, primarily because an actually compliant solution would put certain employees and maybe even entire companies out of business, thus pseudo-compliance is preferred over actual compliance.

Furthermore, even if you do actually handle tracking consent properly, it is only part of your GDPR compliance approach. It does't matter if your website tracking is compliant if your backend then uses the data without appropriate legal basis.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: