Thread · 3 tweets · 24 Oct 2019

Replying to @jason_kint and @random_walker

This points to a broader problem we have in making good privacy regulation. It’s very easy to define behaviour at the extremes: only a very strict minimum and you must ask for opt in to even basic trustworthy things (GDPR) or anything goes and users can opt out of the bad (CCPA).
Neither of these is good. I’d want a “reasonable” starting point, with opt out to bare minimum if you want (and possibly opt in to more tracking if you’re into that, why not). There’s plenty you can do in first-party personalisation and analytics that’s respectful of people.
But we have no broad consensus on what “reasonable” is, and the notion of using data in a trustworthy manner has been so thoroughly discredited that it’s hard to even start building towards. It’s still worth a try, though :)