Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Couldn't a site just declare a single session ID as essential, and store everything else server side? Or is the problem that you usually don't keep server side session data indefinitely? I suppose you couldn't use client side JavaScript on your cookies in that case either.

Does this apply to HTML5 localstorage too?



Whether or not you declare it essential is irrelevant. What matters is if it actually is essential.

As for localstorage, read the guidance from the ICO:

https://www.ico.gov.uk/~/media/documents/library/Privacy_and...

Third paragraph: "These changes apply to storage or gaining access to information stored, in the device of a subscriber or user. This means the use of cookies and similar technologies for storing information."

Fifth paragraph: "The Regulations also apply to similar technologies for storing information. This could include, for example, Locally Stored Objects (commonly referred to as "Flash Cookies")."




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: