Thread · 2 tweets · 2 Oct 2019

Replying to @ericlaw

So, this is a neat and well thought out little improvement and the security plus is real, but I'm still not seeing how it helps privacy? Having the wrong default and forcing others to regularly delete their cookies helps privacy not one bit.
I've been wondering if a similar approach could be used to indicate data rights over the cookie, allowing processors and blocking controllers by default. It's what best matches a distinction between legitimate third parties and others.