disconnectme / disconnect-tracking-protection

Canonical repository for the Disconnect services file
Other
647 stars 221 forks source link

Blocking cookielaw.org & onetrust.com domains breaks privacy rights functionality #373

Closed boyadamsam closed 3 days ago

boyadamsam commented 3 days ago

Domain(s) to review. Separate them by comma.

cookielaw.org, onetrust.com, onetrust.io

Rationale for removing, adding, or recategorizing.

Recategorize: Blocking breaks privacy rights functionality on websites

Where domain(s) observed. Separate them by comma.

cbs.com, cbsnews.com, cbssports.com, paramountplus.com, pluto.tv

Additional notes

We use a privacy technology vendor named Onetrust to power much of our privacy infrastructure.

Several of our websites reported users are encountering site functionality problems when trying to exercise their privacy rights, such as opting out of sharing data and targeted advertising. My team investigated and was able to reproduce the reported bug.

We discovered the cause of the bug is that users with ad blocker extensions or on a browser such as Firefox are by default blocking two domains from our privacy vendor OneTrust which are critical to the functioning of our CMP (Consent Management Platform):

These three domains are used solely for the essential services needed to run our privacy software. They're not used for marketing, sales, or advertising. Blocking them not only causes site functionality issues it keeps our users from being able to exercise their privacy rights.

cookielaw-domain onetrust-domain
disconnectme commented 3 days ago

Thank you for your submission. Our technical and policy review previously determined that the onetrust.com and onetrust.io domains meet our definition of Tracking (see https://disconnect.me/trackerprotection), and that these domains are properly classified.