Skip to content

Commit

Permalink
Note that disabled reports are a tracking vector.
Browse files Browse the repository at this point in the history
  • Loading branch information
jyasskin committed Sep 16, 2022
1 parent 99bbbfb commit fdf7f70
Showing 1 changed file with 9 additions and 0 deletions.
9 changes: 9 additions & 0 deletions index.src.html
Original file line number Diff line number Diff line change
Expand Up @@ -296,6 +296,10 @@ <h4 id="concept-configuration">User configuration</h4>
define how [=/user agents=] determine whether their users prefer to disable
reporting.

<p tracking-vector>Changing the default for a [=report type=] across all
origins is a [=tracking vector=] because a site can detect that an expected
report isn't sent.

<h3 id="media-type">Media Type</h3>

The media type used when POSTing reports to a specified endpoint is
Expand Down Expand Up @@ -1099,6 +1103,11 @@ <h3 id="disable">Disabling Reporting</h3>
users to [=reporting/disabled|disable reporting=] with some reasonable amount
of granularity in order to maintain the priority of constituencies espoused in
[[HTML-DESIGN-PRINCIPLES]].

To reduce the amount that this configuration is a [=tracking vector=], the
user agent would need to make it difficult to detect whether it sends an
expected report, perhaps by spreading out reports over a wider time or by
omitting some reports even if that type of reporting is enabled.
</section>

<!-- Big Text: IANA -->
Expand Down

0 comments on commit fdf7f70

Please sign in to comment.