Skip to content

Commit fdf7f70

Browse files
committed
Note that disabled reports are a tracking vector.
1 parent 99bbbfb commit fdf7f70

File tree

1 file changed

+9
-0
lines changed

1 file changed

+9
-0
lines changed

index.src.html

Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -296,6 +296,10 @@ <h4 id="concept-configuration">User configuration</h4>
296296
define how [=/user agents=] determine whether their users prefer to disable
297297
reporting.
298298

299+
<p tracking-vector>Changing the default for a [=report type=] across all
300+
origins is a [=tracking vector=] because a site can detect that an expected
301+
report isn't sent.
302+
299303
<h3 id="media-type">Media Type</h3>
300304

301305
The media type used when POSTing reports to a specified endpoint is
@@ -1099,6 +1103,11 @@ <h3 id="disable">Disabling Reporting</h3>
10991103
users to [=reporting/disabled|disable reporting=] with some reasonable amount
11001104
of granularity in order to maintain the priority of constituencies espoused in
11011105
[[HTML-DESIGN-PRINCIPLES]].
1106+
1107+
To reduce the amount that this configuration is a [=tracking vector=], the
1108+
user agent would need to make it difficult to detect whether it sends an
1109+
expected report, perhaps by spreading out reports over a wider time or by
1110+
omitting some reports even if that type of reporting is enabled.
11021111
</section>
11031112

11041113
<!-- Big Text: IANA -->

0 commit comments

Comments
 (0)