Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You don't need a cookie banner for session cookie, not in eprivacy nor in gdpr, same applies for all cookies that are "strictly necessary" for the functionnal operation of the website on the technical level. Language selection cookie, "remember me" cookie, etc ... Are all perfectly fine.


I’ve often wondered if necessary cookies could just be carved out and designed (and named) differently to improve handling. You could then just configure your browser to inherently accept the benign <biscuits/bikkies> from a site, which would then only ask for non-essential ones.

The real nirvana, IMO, would be better sandboxing between sites.


Browser based solution not mandated by law but made by the industry wouldn't work, because all 4 major browser vendor makes significant revenues from Ads.

At a time a solution appeared with "do not track", and we ended up with the industry making sure it was as toothless as possible, opt-in, and google pushing hard to control the browser market.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: