Actually big tech is to blame: https://killthecookiebanner.eu/
- https://www.edps.europa.eu/data-protection/our-work/subjects...
(AIUI "I agree" gets people to give explicit consent with good success and the subscribe modals are quite effective too)
Also when I checked NoScript, it's only loading js from lxe.github.io
I expect there to be at minimum 8 domains, but often 12-18.
Too many people working on evil dark pattern bullshit
How about an email popup. My browser will happily auto-populate it.
I generally wanted web 1.0 simplicity, lots of contrast, but also a soft gentle colours and modern vibe. I also have a general design for use in dashboards/apps etc: https://frost-e.com/design-system/
The positives about covid and AI is that we don't hear anymore about blockchain and crypto (well, except one boomer oligarch holding onto it). Just please make the next two big things happen already for God's sake.
+-----------------+
|2" of vestigial |
|COVID messaging |
+-----------------+
|1.5" of actual |
| content |
+-----------------+
|2.5 of EU |
| cookie banner |
+-----------------+
A local utility took it even further during COVID: +---------------------+
|2" of COVID messaging|
+---------------------+
|1" of undismissable |
| "our app is gone; |
| use the mobile site |
| that you're on now" |
+---------------------+
|0.5" of content |
+---------------------+
|2.5" of EU cookie |
| banner, despite |
| being a US-only corp|
+---------------------+I swear NYT do this in their games app, the play button gets replaced with a subscribe as the late loaded subscribe element shifts the page exactly the amount to put subscribe under your finger. I wonder how well it worked?
zooming in should cause a full page refresh
Seriously how did we get to this point? I remember growing up in the 2000’s and all the marketing about computers was “it’s fast!” and “get results instantly!” that kind of thing. Now everything it gated by multiple spinners, then it loads a skeleton, then it partially loads your actual content, then, when you go to click on something, more content loads and the existing content jumps to a new place and you end up clicking on something else, meaning now you have to go back (if they haven’t hijacked the back button), wait for it all to load again, wait for the second “real” load, and then click on what you actually meant to click on in the first place.
(shameless plug)
Also, where is the unrelated autoplaying video that will unmute if you actually click it, that follows your scrolling and only becomes smaller when you dismiss it? Plus, it should probably have text that cuts off letting you know you can have access for just $10/month.
Plus, isn't this website undissmissably "better in the app" after a few minutes of attempting to use it on a phone? Where's that at?
edit: Oh shoot! I forgot, too. This modal needs to also ensure there is absolutely no way to scroll. If you could scroll you might be able to accidentally get to the address bar of your browser to fix the URL to xcancel or even close the page, which isn't using the app as you are intended to do.
Also, it doesn't attempt to hijack the back button to give me stuff I clearly wanted to see before I leave the page.
A lot of work left to do here before it's a "real" website. Although, it has about as much substance as the average website so far, so good work on that.
This is the most annoying thing on the internet. There’s a site I’d like to use, but “try the app” takes up the entire page (and appears to be impossible to dismiss?). Actually, is there a way to permanently request the desktop site for all future visits to a domain on iOS? There is no reason to visit this full-page app advertisement.
Also 1.5gb of heap allocated minimum
If it's the design, not everyone is a web designer so the bootstrap theme is great to get up off the ground.
If it's the other stuff then, yeah, totally.
* according to the copyright notice, although, going by the mention of Covid, it could also be 2020?
Oh well.
Seems like the sort of site and person who should have a guestbook - I would have left an appreciative and encouraging comment there, but this will have to do:)
We didn't want it, it's like a megabyte of JavaScript. It's some third party service corporate forced on us.
I have to imagine a lot of websites are in the same boat, where they're just add crap they don't want to add by higher ups.
Me having to make a legal agreement with every website is absurd and totally predictable.
It turns out everything has a price, and in more recent we started noticing that our time, attention and intelligence not being insulted also has value.
1) scroll hijacking (this should be a felony) 2) stupid cookie popups/banners 3) useless hero images (clients love them, users hate them)
I ended up trying it. Boosted conversion rate meaningfully. Worth the price I pay in mild self-loathing.
Chesterton's popup, I guess.
"Take back your web browser screen space with Kill Sticky" https://www.smokingonabike.com/2024/01/20/take-back-your-web...
"Quick Tips For Making The Internet Suck Less" https://www.smokingonabike.com/2025/08/01/tips-for-making-th...
"Web browsers have stopped blocking pop-ups" https://www.smokingonabike.com/2025/12/31/web-browsers-have-...
Steps to reproduce: Open terminal emulator and type;
$ w3m https://lxe.github.io/everywebsite/
I can read the same content as I can read in Firefox.
What I expected to happen: See content similar to the following;
Update your browser Your browser isn't supported any more. To continue your search, upgrade to a recent version. Learn more
I had a discussion with my CFO about removing the cookie banner from our website (because we don't set any tracking cookies, and cookies for things like login are exempted) and he said "yeah, but it makes the site seem less legitimate.
Companies could stop selling and storing your data. They could only use cookies when absolutely essential. They could use lots of kinds of UX.
This is the equivalent of businesses who put a big visible "20% the state says we have to give our employees healthcare" fee on their bill to throw a hissy fit and hope customers get angry at the government for protecting them instead of the business for exploiting them.
One of the best indicators that something was not spam was the unsubscribe button.
When I see these dialogs listing they have 1289723 gazillion vendors they share data with, I know that whoever is in charge of analytics, privacy or both at the company is incompetent.
Back in the day, this is how we introduced AWS at a large company. We just did it. And once done, they couldn't deny that it cost a fraction of what we were paying our supplier and that things took minutes to set up rather than weeks. And that they worked a lot better.
Yes, there was shouting in meeting rooms. And yes, people said "you can't do this". Turns out they were wrong. A few years later I mentioned this to Werner Vogels. During a meeting. Where my CEO and CTO were present. And where everyone was feeling very good about us being one of AWS' biggest customers in our region.
So when someone says "you can't do that", sometimes you should make them prove it.
(At the time AWS was a good idea. Today dependence on a US service provider is a harder sell in Europe. The _first_ question you get today is if we can host it ourselves if we need to or if we can use a local service provider.)
So how would you do ePrivacy Directive compliance/risk avoidance in a non-obnoxious way?
Completely eliminates the need for a cookie permission bar.
He may be right, sadly. I’ve seen the lack of a cookie banner used to suggest that a site was doing something shady or not complying with the law.
Most people don’t have knowledge about the finer details of cookie laws. They’ve been trained to believe that legitimate sites who comply with the laws will implement the cookie banner, and not seeing it feels suspiciously unprofessional.
I have yet to head that cookie prompts are a sign of legitimacy. What business has customers that would think that way?
The obvious conclusion is that when you try to regulate something like this you arent going to get the behavior you want.
The only mistake EU policymakers made was underestimating how willing companies were to deface their websites.
Copy pasting an older comment because it’s really coming up all the time…
https://news.ycombinator.com/item?id=49060456
===
That's not true and is a very common misinformation people repeat online. You can save user preferences in cookies without any consent banner, if the cookie isn't used for tracking. See here[0], page 6: > As stated in Article 5(3) ePD: ‘This shall not prevent any technical storage or access for the sole purpose of carrying out the transmission of a communication over an electronic communications network, or as strictly necessary in order for the provider of an information society service explicitly requested by the subscriber or user to provide the service.’ 0: https://www.edpb.europa.eu/system/files/documents/2024-10/ed... As long as you do not share that info with 3rd party, and the user requested it, you can store via cookies pretty much whatever you want without the need for a consent screen
Just like websites also give zero fcks about accept-language header... sure do geoip lookup, so much easier... not
“Oh you want consent involved in this interaction? Then we’ll annoy you about it constantly instead of respecting the intent of the regulation.”
If every webdev who would say no can be trivially replaced by webdevs who won't say no, then yes, it is webdevs.
Be it the EU for regulating disclosure and consent requirements, users for being "lazy" and usually just accepting all, or the webdev for not staking their livelihood on denying the banner - I'm sure they'll all get blamed before someone sees the ones actually demanding it be done can be the problem.
I'm going to risk months of unemployment and explain to my family why this is more important than eating when I get home. The internet is serious business, they'll understand."
-- the hypothetical webdev in that scenario, I guess?
I used to have long conversations with frontend developers that "no, when I log on I don't want to be forced through a look-at-the-new-feature-we-made" sequences. And then they went ahead and did it anyway. And usually whatever flag they tried to set to make sure you only saw it once would malfunction, so next time you'd get to click through it all over again.
(If you want to tell users about new features, show a unread flag on a notification icon and make it a one-click affair to make it go away. Don't get in users' face with stuff they don't want)
It feels similar to how CA environmental regs become the national standard simply because the market is so large it’s not worth splitting on it. So they just slap a cancer warning on everything
2. If you are a purely US entity with no actual business presence in the EU, you only need to comply with US laws and nothing else. If the EU doesn't like a purely-foreign website, it's on them to set up a national firewall and block it.
Case in point 1: It's not on you to comply with China's laws, it's on them to block it if they want to
Case in point 2: China's local businesses with no EU presence do not follow GDPR and do not display cookie banners even if accessed from the EU
1. When is the last time you saw China enforcing its laws outside their borders? Why would EU be any different?
2. China has laws that are directly contradictory to GDPR laws; you may be required to retain data regardless of consent; if your website is based in China you have to follow local laws first before you follow contradictory foreign laws that have no jurisdiction over you.
Check out: https://killthecookiebanner.eu/
It’s only broken to the extent that it collided with a messed up world where websites track even when they don’t need to and then send that to 2000 partners for more profit extraction on top of what the website does commercially.
Something is deeply fucked up there and it’s not the EU part. They just make a good scapegoat because the banner is what users see
Let's not paint the policymakers naïve when they're in fact incompetent.
It would be your payment information, which is orthogonal to most of the tracking data.
The black market demand for leaked advertising-related tracking data is basically nil, except maybe in cases where it’s related to something else exploitable or usable for blackmail like if someone frequents cryptocurrency exchanges or porn sites. Nobody cares to pay for black market data about you shopping for towels on Amazon or things like that.
99% percent of them intentionally turn the "decline" choice into a 5 - 10 step game of dark patterns even though the EU policy says it should be equally easy to decline. They know its bullshit but they also know the chance that someone will drag them through court is low.
No harvest data to 936 partners? No need for a banner!
youtube people I know you are in here. Fix your stupid PIP thing.
We can debate the specifics, maybe it's only in effect for X seconds after you stop moving the cursor, maybe it creates a 100px diameter disk of stability, I don't know. Just let me interact with the stuff I see.
news sites are the worst for this. bloomberg, nbc, etc. have 20+ domains, and as you click "temporarily allow" on one, it loads in a few more.
foxnews loads 36 domains before temporarily allowing any, which probably approaches 50 once you start allowing.
For Reddit, my choice for now is safereddit. If I need to view a Reddit link on mobile and old Reddit is blocked as it sometimes is, I just swap the domain to safereddit.com.
For Twitter, my choice has been xcancel for ages. I have no idea how that manages to stay up in spite of Twitter's hostility but it is a Nitter instance that seems to just work.
You can also run these frontends yourself, too, but I assume it requires accounts.
(edit: Also I hope it goes without saying that I don't really have any specific trust that my activity is necessarily more "private" with these frontends, although honestly if I was forced to bet I would have to bet that they are much more respectful to my privacy than Twitter or Reddit are. I just use them for functionality.)
Good luck fellow traveler. If there was more to do in real life, I'd probably had thrown my phone into the ocean by now. I'm about halfway there in spite of the lack of many appealing third spaces.
spottedmarley•1h ago
hectdev•58m ago
freudia•57m ago
NetMageSCW•38m ago