Back in 2022, I wrote this rather grumpy post on Mastodon, the federated social media platform. @Edent@mastodon.socialTerence EdenMastodon enforces a "noreferrer" on all external links.I have mixed feelings about that.As a blogger, I want to see *where* visitors are coming from. I also like to see (...
Yeah, browser vendors think the same thing, since they are part of the commercial web. Anyway, at minimum, sending referer should be opt-in rather than opt-out.
According to ths post it will be opt-in, on the instance side.
So smaller instances where there-might be risks associated will be opted out by default, while large instances that might want the attention and where individual users stand out less can opt in.
I guess it depends on what you want. If you want to be totally anonymous on the internet, then it's a bad idea. If you want people to use Mastodon, then it's probably an OK one, since the way people use microblogging is to follow famous people, and famous people aren't using Mastodon unless there's evidence that there's an audience there for them to play to.
It's less a matter of anonymity as wanting to maintain some basic privacy. If you want to tell someone where you learned about something, that's great, go ahead and tell them. To have them extract the info from you without your knowledge is dystopian. Referers should have been banned as soon as the web became commercial.
The referer header tells the site which specific users and which specific clicks came from lemmy world. That's flat-out invasive. Revealing the number of users (as Mozilla wants to do) is also invasive even if it doesn't single out the user (of course that's much less direct and people usually tolerate it until they become attuned to the issue).
The thing to ask yourself when site X wants information Y is "what does X want to do with the information?". If the answer can possibly be "something bad", then X should not get the information unless the user opts into sending it. That is even if it's statistical or aggregated information. Being included in the count is like casting a vote for X, which (as we see with Trump getting elected) can have significant effects even with no identification of the individual voters.
Only nerds do stuff like mess with their browser settings through about:config. The bulk of activity is from people who don't mess with those settings and don't stay aware of what's going on. Those are the ones who the info gatherers want to observe, so that's why the system should be opt-in in every case, and it's also why they want it to be the opposite.
If people dont care enough to mess with their browser settings thenselves, then they can either a. join a privacy-focused Mastodon instance whose admin will keep the "no referer" policy, or b. live with the fact that choices are being made for them. People need to take actions for themselves, we cant treat everyone like babies.
If people dont care enough to mess with their browser settings thenselves, then they can either a. join a privacy-focused Mastodon instance
"Joining a privacy focused instance" is exactly an opt-out approach so the answer is exactly the same is before, opt-out is the wrong chocie.
live with the fact that choices are being made for them. People need to take actions for themselves, we cant treat everyone like babies.
It's not that choices are being made for them, it's that they are adversarial choices. There's a difference between "treating everyone like babies" and being on their side. Users who want sites run by predatory jerks already know where Elon's site is. The fediverse's main appeal afaict is that it's run by people who aren't like Musk and Spez. That is, its operators can be trusted more. They should be looking out for the user. They should make choices for the user that the user would want them to make. Otherwise there is no point to it.
The people running the majority of internet services have used a combination of monopolies and a cartel-like commitment to growth-at-all-costs thinking to make war with the user, turning the customer into something between a lab rat and an unpaid intern, with the goal to juice as much value from the interaction as possible.
I've only started reading it though. Anyway, if the fedivese has anything to offer, it's a respite from that. Stop trying to ruin it.
There's legitimate interest in knowing where people come from, though, and asking on your own page "how did you get here?" is hardly going to work. Personally I don't think it's much of an issue if some random commercial site sees that I got there via lemm.ee, it's not giving away much at all, not even whether I have an account here and certainly not as much as tracking cookies. OTOH I also think it could be done better, wich tech similar to Mozilla's aggregate (i.e. you're just a number in an anonymous mass) ad clickthrough thing. Sites would see "yep we got a number of visitors from lemm.ee, and that number from lemmy.world" but wouldn't know which of their site impressions corresponded to which origin.
There’s legitimate interest in knowing where people come from, though, and asking on your own page “how did you get here?” is hardly going to work
I fundamentally disagree, if shops started scanning people's phones as they walked in to find where they had been last before they entered their shop people would be outraged, but somehow this has become accepted practice on the web.
You think malls don't have data on shopper movement? That a random kiosk owner can't distinguish people who come from high school from the after-church crowd from the office workers from the tinfoil-wearing nerd always coming at 2am so that they can minimise social interaction? That they will have coffee ready for the morning shift, and beer for the club crowd?
I know malls track peoples movements throught them and thats creepy as fuck too, though I dont think they tie IDs to individuals, just monitors where people move throughout them.
The rest of your post makes no sense, yes obviously peole can tell the diference between commuters wanting coffee and people on a night out getting drunk. But that is very different to having a label on everyone saying "came from my mistresses house" or "came from my weed dealer" on each person, which is more akin to the level of detail given by referal links.