Apache Hammers Microsoft Over Do Not Track


Recommended Posts

BTW this is more of what I predicted earlier. MS will get hammered regardless of what road they take with security.

I agree with what Microsoft is doing here, I'm just worried about the average user ending up with settings enabled or disabled without knowing what the actual consequences are.

This is always the case with default or express options, but in case of DNT it's a bit more than a simple user preference.

In the pc word somethind that is turned off by default is, most of the times, turned off forever. What's the point of DNT if it's turned off by default? Only those who know about it would turn it on, and how many does?

I agree with what Microsoft is doing here, I'm just worried about the average user ending up with settings enabled or disabled without knowing what the actual consequences are.

This is always the case with default or express options, but in case of DNT it's a bit more than a simple user preference.

...and that's what the Custom option is for.

Also if you looked at the screenshot it shows what Express will do for you. It doesn't hide anything. It spells it out pretty clearly. Also the feature is named in a manner that makes it easy to figure out. If I saw a setting called Do Not Track, I would assume it was something to help keep me from being tracked while using Internet Explorer since it states that it was an IE feature.

MS decided to create 2 routes to an install. Custom & Express. Express is a simple click here, no muss, no fuss install...but has a screen telling you what happens when you use it.

If they prompt again, then the user will go wait a minute...I thought I chose Express where it was supposed to just turn on everything for me...so why is it asking this now?

That's what Custom is there for. If we have to start prompting users at every single new feature added in new version of Windows then it goes back to being a non-Express experience again...so why even bother?

Yes, and it cannot be enforced if it's not a standard... ...by the very definition of what it means to be a standard in normal industry jargon.

Even if/when it becomes a standard, is there any plan to actually enforce it? That is, legally enforce it.

Or are we expecting ad companies complying out of free will?

The fact is that right now DNT is useless, and will be at the very least for quite some time.

Even if/when it becomes a standard, is there any plan to actually enforce it? That is, legally enforce it.

Or are we expecting ad companies complying out of free will?

The fact is that right now DNT is useless, and will be at the very least for quite some time.

Indeed, for now it is.

There are perks to following a standard. For instance if you don't follow the WiFi standard you actually can't list the WiFi logo on your hardware or any associated boxes or advertising, and cannot call it certified.

As stands the draft is calling for voluntary participation, but I think it should be compulsory.

Indeed, for now it is.

There are perks to following a standard. For instance if you don't follow the WiFi standard you actually can't list the WiFi logo on your hardware or any associated boxes or advertising, and cannot call it certified.

As stands the draft is calling for voluntary participation, but I think it should be compulsory.

And how would you enforce that ?

Make every site offer up server access to a 3rd party to check it ? Don't think so.

And how would you enforce that ?

Make every site offer up server access to a 3rd party to check it ? Don't think so.

Have a system similar to Verisign in place. Send a DNT request and check for the response. It's not hard to figure out...

Have a system similar to Verisign in place. Send a DNT request and check for the response. It's not hard to figure out...

Having a secure connection server to user is something you can test.

Proving at a server isn't keeping records of what you do is something you can't without access to the code.

I can track people coming to a site without even using cookies, just by logging the movies of their IP Address server side and no one without access to the code would have a clue.

Having a secure connection server to user is something you can test.

Proving at a server isn't keeping records of what you do is something you can't without access to the code.

I can track people coming to a site without even using cookies, just by logging the movies of their IP Address server side and no one without access to the code would have a clue.

Right but that's not what this is for. With DNT a flag is sent to the server and a response is given showing whether or not they acknowledge the flag.

That's something that you can easily check.

So a standards body can easily confirm if the flag is being respected or not just by reading the response.

Right but that's not what this is for. With DNT a flag is sent to the server and a response is given showing whether or not they acknowledge the flag.

That's something that you can easily check.

So a standards body can easily confirm if the flag is being respected or not just by reading the response.

You can check a response but not if they are actually tracking you or not.

And then what's exactly tracking anyway? Tracking cookies are obviously considered tracking, but what about sites that get third party webs to load resources from their servers, like Facebook?

I can't believe people are all over MS again for protecting their average customer.

Like I said before, for some people MS can never win doesn't matter what they do.

And as been posted before, they give you a clear option to turn it on or off during installation.

Add companies are just mad because they were hoping the DNT option would stay hidden away in some obscure menu and now MS is bringing it to the front so more people will have this option on.

Can't believe people agree with what Apache just did, they openly admit they will ignore the choice of all IE users.

And to Shane Nokes, I have the feeling people are just being thick on purpose when they are answering to you, you make total sense to me!

Right but that's not what this is for. With DNT a flag is sent to the server and a response is given showing whether or not they acknowledge the flag.

That's something that you can easily check.

So a standards body can easily confirm if the flag is being respected or not just by reading the response.

That doesn't prove the flag is being respected, just that the server says it is..

It really wouldn't be hard to get a server to respond to the dnt saying it's following it, then Not following it.. that's my point.

It's very easy to get a server it lie to anyone..

I can't believe people are all over MS again for protecting their average customer.

Like I said before, for some people MS can never win doesn't matter what they do.

And as been posted before, they give you a clear option to turn it on or off during installation.

Add companies are just mad because they were hoping the DNT option would stay hidden away in some obscure menu and now MS is bringing it to the front so more people will have this option on.

Can't believe people agree with what Apache just did, they openly admit they will ignore the choice of all IE users.

And to Shane Nokes, I have the feeling people are just being thick on purpose when they are answering to you, you make total sense to me!

Thank you. I try to be a clear & effective communicator. I don't think a lot of people realize that if this becomes a standard and violations occur that there are consequences that ensue.

That's why I pointed out Verisign. Usually when a standard comes along there are groups who verify it is being followed.

That doesn't prove the flag is being respected, just that the server says it is..

It really wouldn't be hard to get a server to respond to the dnt saying it's following it, then Not following it.. that's my point.

It's very easy to get a server it lie to anyone..

Indeed and do you know how hard companies get slammed if they lie? Any company that stated they complied with DNT and didn't would get dropped for contracts quickly if it went public.

Have you worked for one of the big tech companies before? I ask because if you had you'd know what a huge deal breaking standards is for most. Look how badly MS was taken to task?

I'm with Apache on this. If the browsers default behavior is do not track then web services will simply ignore the flag entirely. It has to be a choice that the users make instead of a default if it has any hope of working.

This should force Microsoft to change their stance but we all know it won't they are too stubborn.

didn't ms have to include crappy browsers in a ballot box because google and mozilla assumed the user didn't know too much. Now MS does something that helps users stay more secure and its a bad thing??

didn't ms have to include crappy browsers in a ballot box because google and mozilla assumed the user didn't know too much. Now MS does something that helps users stay more secure and its a bad thing??

Yes this is bad because if this browser automatically defaults 25% of the web fairing public to "do not track" advertisers and other websites will just ignore the do not track system entirely. That is one of the major ways they make money, heck whole businesses are built on tracking. The only reason they are embracing it currently is for good PR and knowing that very few people will go in to the settings of their browser and turn on "do no track".

I applaud Microsoft for wanting to do the right thing but as usual their execution fails them and puts the whole do not track system in jeopardy from being ignored by the people we don't want to track us.

Yes this is bad because if this browser automatically defaults 25% of the web fairing public to "do not track" advertisers and other websites will just ignore the do not track system entirely. That is one of the major ways they make money, heck whole businesses are built on tracking. The only reason they are embracing it currently is for good PR and knowing that very few people will go in to the settings of their browser and turn on "do no track".

I applaud Microsoft for wanting to do the right thing but as usual their execution fails them and puts the whole do not track system in jeopardy from being ignored by the people we don't want to track us.

Again it doesn't 'automatically default' anything. You are given a very clear choice during the setup of Windows to either enable or disable DNT.

The user has to make this choice. It isn't just automatically done without them having been given an option, so will you please stop trying to spread this FUD!

I'm starting to agree with Stoffel when they say that some of you are being thick on purpose. It's not amusing...

Again it doesn't 'automatically default' anything. You are given a very clear choice during the setup of Windows to either enable or disable DNT.

The user has to make this choice. It isn't just automatically done without them having been given an option, so will you please stop trying to spread this FUD!

I'm starting to agree with Stoffel when they say that some of you are being thick on purpose. It's not amusing...

And what happens if you just click this box away without choosing anything?

Also notice in my post I said "if this browser" I never said "this browser does".

I want to know what happens if the user doesn't read the box and just clicks the x. What is the default behavior if the user doesn't choose an option at all.

Isn't that also a choice?

Microsoft just can't win with some people. They don't do anything, people bitch. The do something proactive to protect people and people bitch. Frankly, this really isn't the place to hit Microsoft on. If you ask people if they want to be tracked online and most people will say no.

Isn't that also a choice?

Microsoft just can't win with some people. They don't do anything, people bitch. The do something proactive to protect people and people bitch. Frankly, this really isn't the place to hit Microsoft on. If you ask people if they want to be tracked online and most people will say no.

So do you not know the answer to my question because I don't which is why I asked.

Indeed and do you know how hard companies get slammed if they lie? Any company that stated they complied with DNT and didn't would get dropped for contracts quickly if it went public.

Have you worked for one of the big tech companies before? I ask because if you had you'd know what a huge deal breaking standards is for most. Look how badly MS was taken to task?

I know that most companies will try to get away with what they can.

Would they get fined big time if they were caught ? Ya.. of course.. but how are you gonna catch them.

Short of employees turning in their company, there is really no way..

Look at all the stuff Google has done, ignoring privacy, and when they get caught they pay a fine they can afford, but say they are sorry, didn't mean too, and then move along.. in a few months no one cared anymore..

And what happens if you just click this box away without choosing anything?

Also notice in my post I said "if this browser" I never said "this browser does".

I want to know what happens if the user doesn't read the box and just clicks the x. What is the default behavior if the user doesn't choose an option at all.

It's part of the install process. You can't just click an X to make it go away. You aren't in Windows when that box appears... there is nowhere to go but forward...

What is the default behavior if the user doesn't choose an option at all? To stay stuck on that screen forever.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Microsoft Teams is getting a controversial location tracking feature that users may hate by Usama Jawad Image generated with Microsoft Copilot Earlier this year, Microsoft planned to roll out a controversial location tracking feature in Teams, but following customer feedback, it decided to delay its release. The bad news is that the company has decided to launch it later this year, but it's based on roughly the same design that was shared earlier, which means that many users still have good reason to worry. Basically, Microsoft Places and Teams have received workplace check-ins via Wi-Fi. The idea is that if an employee arrives at the office and connects to their enterprise network, their profile status indicator will show them as being present in the office. For example, if you arrive at work, open Teams on your PC, and connect to the "Studio B" company Wi-Fi network, your Teams profile will indicate that you are present in "Studio B", as shown below: Microsoft says that this feature is basically a replacement for physical workplace check-in peripherals, it reduces the need to manually update your status, and it also enables co-workers to know that you're at work so that they can coordinate in-person meetings with you. IT admins can enable this workplace check-in capability at a tenant level, and users have the ability to control whether they want to enable it or not. Of course, all of that sounds great on paper, but naturally, many Teams customers may still have concerns, as they did before. This is because it enables your reporting manager and other members of the organization to track if you are at the office, when you arrive at the office, and where you are right now. This could be problematic for people who work in what they consider to be flexible work environments or hybrid setups, and this kind of location tracking could be considered an invasion of privacy. Microsoft has tried to alleviate some of these concerns by letting users know that they can manually set their location easily, which essentially overrides workplace check-in if they feel uncomfortable with it. However, that doesn't really solve the problem because your organization could enforce a workplace policy that mandates that this feature remains enabled. The Redmond tech giant has also assured users that this capability does not store historical data and is only a real-time indicator of location. Finally, it only generates a signal when you connect to a corporate network, which means that if you are working from home and connect your PC to your personal Wi-Fi, it won't broadcast your location to your employer; you will simply be shown as "Remote". Microsoft has encouraged IT admins to prepare for this change and begin informing users so they know what to expect once it begins rolling out later this year.
    • Wow, Microsoft IS cooking lately... This only shows that they COULD improve, they just chose not to for whatever reasons. That obsession with AI was destroying them from the inside out.
    • BATorrent 4.1.0 by Razvan Serea BATorrent is a lightweight, open-source BitTorrent client built with modern C++ and Qt 6, offering a clean, fast, and privacy-focused alternative to traditional torrent apps. It supports magnet links, .torrent files, resume data, sequential downloading, per-file priorities, and even imports from qBittorrent. Power users benefit from integrated RSS auto-download with regex filtering, duplicate detection, and automatic tracker lists from Stremio. Streaming is seamless thanks to auto-detected players like VLC and IINA. BATorrent includes robust VPN tools—interface binding, auto-detection for WireGuard-based services like Mullvad and NordLynx, kill switch, proxy support, and IP filtering. A full WebUI enables remote control, while integrations with Plex, Jellyfin, and Emby automate library updates. With themes, speed scheduling, system-tray alerts, and cross-platform support for Windows, Linux, and macOS, BATorrent delivers a polished, high-performance torrenting experience. BATorrent features: Core .torrent file and magnet link support Resume data — picks up where you left off after restart Import torrents from qBittorrent Create .torrent files from any file or folder Sequential download mode Per-file priority control (skip, low, normal, high) Seed ratio limits with auto-pause DHT, PEX, UPnP, NAT-PMP RSS Auto-Download Subscribe to RSS feeds — automatically download new torrents as they appear Regex filters — match only what you want (e.g. 1080p|720p, S01E\d+) Per-feed settings — custom save path, check interval (5–1440 min), enable/disable Auto-download — matched items are downloaded automatically in the background Supports magnet links, .torrent URLs, and tags Tray notifications when items are auto-downloaded Duplicate detection — never downloads the same item twice Stremio Stremio Addon System pre-installed — works out of the box Auto tracker list from ngosang/trackerslist Streaming Play while downloading — stream video files before the download is complete Supports mp4, mkv, avi, mov, wmv, flv, webm, m4v, ts Auto-detects installed players (VLC, IINA, system default) VPN & Privacy Interface binding — lock torrent traffic to a specific network interface (e.g. tun0) Auto VPN detection — identifies VPN interfaces (tun, tap, WireGuard, Mullvad, NordLynx, ProtonVPN) Kill switch — automatically pauses all torrents if the VPN interface drops Auto-resume — resumes only the torrents paused by the kill switch when VPN reconnects Proxy support — SOCKS5 and HTTP proxy with optional authentication IP filtering — load P2P blocklists to block unwanted IP ranges Protocol encryption (enabled / forced / disabled) WebUI Remote management — control torrents from any browser at http://localhost:8080 REST API with JSON responses Add torrents via magnet link or .torrent upload Pause, resume, remove torrents remotely View peers and files per torrent Dark theme matching the desktop app HTTP Basic Auth with SHA-256 password hashing Configurable port and remote access (localhost vs 0.0.0.0) Interface 3 themes: Dark, Light, Midnight (bat/vampire aesthetic) Real-time speed graph Detailed panel with tabs: General, Peers, Files, Trackers Filter bar: search by name, filter by state (Active, Downloading, Seeding, Paused, Finished) Drag & drop .torrent files and magnet links Drag & drop reorder in torrent list System tray with notifications (download complete, kill switch events, RSS auto-downloads) Splash screen with bat animation Bilingual: English and Portuguese (BR), auto-detected from system locale Bandwidth Scheduler Alternative speed limits — set different download/upload limits on a schedule Time range — configure active hours (e.g. 01:00 to 07:00), supports overnight ranges Per-day control — choose which days of the week the schedule applies Automatically switches between normal and alternative speeds Media Server Integration Plex — automatically trigger library scan when a download completes Jellyfin / Emby — same automatic library refresh via API Configure server URL and authentication token/key in Settings System Cross-platform: Windows, Linux, macOS Auto-shutdown — automatically shut down PC when all downloads complete (60s cancellable countdown) Auto-update system (AppImage on Linux, installer on Windows, DMG on macOS) CLI arguments: pass .torrent files or magnet: URIs directly Keyboard shortcuts: Space to toggle pause, Ctrl+A to select all, Ctrl+O to open BATorrent 4.1.0 release notes: A community-driven release: everything here came straight from your reports and requests. It closes the remaining gaps with qBittorrent and fixes the Windows settings/tray/splash issues several of you hit. Fixed Settings now actually save. A whole class of preferences — speed limits (and the alternative limits), max active downloads, seed ratio, listen port, max connections, DHT/uTP/encryption, VPN interface, kill switch and proxy — weren't being persisted and reset to defaults on every launch. They now round-trip correctly. (Thanks to everyone who reported "the upload limit always goes back to 0".) Splash and tray toggles stick on Windows. Turning off the startup animation (or "close to tray") no longer reverts — the Windows registry stored these booleans as integers and the UI was misreading them. Close-to-tray hint. The first time the window hides to the tray you get a one-time notification, so the app doesn't look like it vanished (Windows 11 tucks new tray icons into the overflow). macOS Dock icon size. The icon filled its canvas edge-to-edge and rendered larger than neighbouring apps; it now uses the standard safe-area padding. Native file picker language. The "Torrent file / All files" filter in the open dialog follows the app language instead of being hard-coded. Added — qBittorrent parity Alternative speed limits toggle — a turtle button in the toolbar flips your throttled limits on/off instantly, independent of the scheduler. Follow system theme — switch light/dark automatically with the OS (Settings → Appearance). Pre-allocate disk space — reserve the full file size up front to reduce fragmentation (Settings → Downloads). Recheck data on add — optionally force a hash check when adding a torrent, so existing or partial files on disk are detected. Port status indicator — a 🔴 dot in the status bar shows whether your listen port looks reachable (UPnP/NAT-PMP + listen state; fully local, no external check). Add torrent from URL — File → Add torrent from URL (Ctrl+U) fetches a remote .torrent and routes it through the normal add dialog. Export .torrent — right-click a torrent → Export .torrent to save its metadata file. Already there (in case you missed it) Watch folder — auto-add .torrent files dropped into a monitored directory (Settings → Files). This release just surfaces it. Incomplete files already carry a .!bt suffix until they finish. Under the hood Regression tests for the settings-persistence and Windows boolean bugs. A new Qt Quick Test harness covering the startup splash and the design-system widgets. Download: BATorrent 4.1.0 | 37.5 MB (Open Source) Download: BATorrent Portable | 51.7 MB Links: BATorrent Website | Screenshot | Changelog Get alerted to all of our Software updates on Twitter at @NeowinSoftware
  • Recent Achievements

    • Very Popular
      AndrewSteel earned a badge
      Very Popular
    • Veteran
      Taliseian went up a rank
      Veteran
    • One Month Later
      Clizby earned a badge
      One Month Later
    • One Month Later
      Timaximus earned a badge
      One Month Later
    • Week One Done
      Timaximus earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      511
    2. 2
      +Edouard
      162
    3. 3
      PsYcHoKiLLa
      157
    4. 4
      Steven P.
      83
    5. 5
      ATLien_0
      80
  • Tell a friend

    Love Neowin? Tell a friend!