← Back to context

Comment by aenis

2 hours ago

I keep saying: its worse than that. Companies that actually do not need to ask for consent do - because their compliance departments prefer to play it safe. My current employer genuinely does not share any data with anyone, the only stuff we process is for our own technical purposes, very well within the remit of GDPR. But year after year, a chief data privacy officer after chief data privacy officer, I lose the battle for "lets get rid of the obnoxious cookie consent banner, we dont need it". All big companies are like that.

And of course, cookies are no longer needed for invasive tracking, fingerprinting, and data disaggregation. Been this for years. But hey, bureaucracies never backtrack, so we will have the cookie consent until the thermal death of the universe.

> And of course, cookies are no longer needed for invasive tracking, fingerprinting, and data disaggregation. Been this for years. But hey, bureaucracies never backtrack, so we will have the cookie consent until the thermal death of the universe.

The exact method of tracking doesn't matter. Under GDPR you have to ask for consent no matter the technology used. So as long as tracking every single movement remains the norm, we will have consent banners

  • Worth knowing cookies are a special case and are covered under the ePrivacy directive, which is distinct from the wider GDPR legislation and specifically deals with storing tracking information in a user's browser.