15:52:01 RRSAgent has joined #dnt 15:52:01 logging to http://www.w3.org/2013/03/20-dnt-irc 15:52:03 RRSAgent, make logs world 15:52:03 Zakim has joined #dnt 15:52:05 Zakim, this will be 15:52:05 I don't understand 'this will be', trackbot 15:52:06 Meeting: Tracking Protection Working Group Teleconference 15:52:06 Date: 20 March 2013 15:52:10 Zakim, this will be 87225 15:52:11 ok, npdoty; I see T&S_Track(dnt)12:00PM scheduled to start in 8 minutes 15:52:32 Yianni has joined #DNT 15:52:35 Zakim, 6466548941 is eberkower 15:52:37 sorry, eberkower, I do not recognize a party named '6466548941' 15:52:48 Marc_ has joined #dnt 15:52:58 prestia has joined #dnt 15:53:05 efelten has joined #dnt 15:53:13 eberkower, please see: http://www.w3.org/1998/12/bridge/info/name.php3 15:53:59 Nick, I frequently call from different numbers 15:54:17 Zakim, who is on the phone? 15:54:17 T&S_Track(dnt)12:00PM has not yet started, npdoty 15:54:18 On IRC I see efelten, prestia, Marc_, Yianni, Zakim, RRSAgent, adrianba, robsherman, rigo, npdoty, eberkower, dstark, dsinger, hober, mischat, Walter, wseltzer, tlr, trackbot 15:54:24 (202) 347-7305 is Marc at NAI 15:54:46 eberkower, in that case, it would be great to learn the Zakim syntax, which refers just to the last four anonymized letters after you're called in 15:55:03 Zakim, 2023477305 is prestia 15:55:03 sorry, prestia, I do not recognize a party named '2023477305' 15:55:11 Zakim, who is on the phone? 15:55:11 T&S_Track(dnt)12:00PM has not yet started, npdoty 15:55:13 On IRC I see efelten, prestia, Marc_, Yianni, Zakim, RRSAgent, adrianba, robsherman, rigo, npdoty, eberkower, dstark, dsinger, hober, mischat, Walter, wseltzer, tlr, trackbot 15:55:33 Zakim, who is on the phone? 15:55:34 T&S_Track(dnt)12:00PM has not yet started, npdoty 15:55:34 On IRC I see efelten, prestia, Marc_, Yianni, Zakim, RRSAgent, adrianba, robsherman, rigo, npdoty, eberkower, dstark, dsinger, hober, mischat, Walter, wseltzer, tlr, trackbot 15:55:50 fielding has joined #dnt 15:56:11 Zakim, who is on the phone? 15:56:11 T&S_Track(dnt)12:00PM has not yet started, npdoty 15:56:13 On IRC I see fielding, efelten, prestia, Marc_, Yianni, Zakim, RRSAgent, adrianba, robsherman, rigo, npdoty, eberkower, dstark, dsinger, hober, mischat, Walter, wseltzer, tlr, 15:56:13 ... trackbot 15:56:26 npdoty, can you change the irc topic? 15:57:19 npdoty has changed the topic to: call today, March 20th 15:57:28 peterswire has joined #dnt 15:58:07 Zakim, who is on the phone? 15:58:07 T&S_Track(dnt)12:00PM has not yet started, npdoty 15:58:08 On IRC I see peterswire, fielding, efelten, prestia, Marc_, Yianni, Zakim, RRSAgent, adrianba, robsherman, rigo, npdoty, eberkower, dstark, dsinger, hober, mischat, Walter, 15:58:08 ... wseltzer, tlr, trackbot 15:58:11 yes 15:58:17 chair: peterswire 15:58:20 dwainberg has joined #dnt 15:58:39 rob sherman -- work for you to scribe today? 15:58:51 Richard_comScore has joined #dnt 15:58:53 Yes, dialing in now. 15:59:07 scribenick: robsherman 15:59:20 Zakim, who is on the phone? 15:59:20 T&S_Track(dnt)12:00PM has not yet started, npdoty 15:59:22 On IRC I see Richard_comScore, dwainberg, peterswire, fielding, efelten, prestia, Marc_, Yianni, Zakim, RRSAgent, adrianba, robsherman, rigo, npdoty, eberkower, dstark, dsinger, 15:59:22 ... hober, mischat, Walter, wseltzer, tlr, trackbot 15:59:23 susanisrael has joined #dnt 15:59:52 jchester2 has joined #dnt 16:00:08 vinay has joined #dnt 16:00:08 sidstamm has joined #dnt 16:00:24 +??P54 16:00:24 +[Apple] 16:00:29 Zakim, who is on the phone? 16:00:29 On the phone I see +1.646.654.aaaa, npdoty, +1.202.347.aabb, +1.609.258.aacc, +1.202.587.aadd, dwainberg, Fielding, RichardWeaver, +1.212.896.aaee, SusanIsrael, +1.650.391.aaff, 16:00:29 ... ??P54, [Apple] 16:00:32 + +1.917.934.aagg 16:00:34 +jchester2 16:00:36 Zakim, aacc is me 16:00:37 +efelten; got it 16:00:38 zakim, mute me 16:00:38 zakim, aaff is robsherman 16:00:39 zakim, aagg is vinay 16:00:40 jchester2 should now be muted 16:00:40 +robsherman; got it 16:00:40 +vinay; got it 16:00:45 +Peder_Magee 16:00:53 zakim, [apple] has dsinger 16:00:54 +dsinger; got it 16:00:57 +[Mozilla] 16:00:59 Zakim, Mozilla has sidstamm 16:00:59 +sidstamm; got it 16:00:59 Zakim, aabb is prestia 16:01:01 +prestia; got it 16:01:01 justin has joined #dnt 16:01:15 Zakim, aaaa is eberkower 16:01:15 +eberkower; got it 16:01:27 schunter has joined #dnt 16:01:29 CraigSpiezle has joined #dnt 16:01:48 kj has joined #dnt 16:01:49 +Amy_Colando 16:02:33 npdoty: Update on F2f. 16:02:33 Ralph has joined #dnt 16:02:37 peder23263538 has joined #dnt 16:02:41 + +1.647.274.aahh 16:02:43 Zakim, who is on the phone 16:02:43 I don't understand 'who is on the phone', schunter 16:02:48 Zakim, who is online 16:02:48 I don't understand 'who is online', schunter 16:02:57 +Craig_Spiezle 16:03:10 … F2F hosted at Apple in Sunnyvale — will send details to the list. 16:03:16 JC has joined #DNT 16:03:19 Zakim, ??P54 is schunter 16:03:19 +schunter; got it 16:03:19 … 2.5 days starting May 6. 16:03:27 +[CDT] 16:03:31 + +31.20.420.aaii 16:03:33 peterswire: Thanks to Nick and to David Singer. 16:03:38 Wileys has joined #dnt 16:03:43 +[Microsoft] 16:04:07 Zakim, aahh is dstark 16:04:07 +dstark; got it 16:04:13 +Chris_Pedigo 16:04:16 … Upcoming discussion of UI and user education. This is the subject of some controversy within the group, and I've had some discussions about this. 16:04:18 +Brooks 16:04:29 Brooks has joined #dnt 16:04:33 + +33.6.50.34.aajj 16:04:41 ChrisPedigoOPA has joined #dnt 16:04:51 kulick has joined #dnt 16:04:53 vincent has joined #dnt 16:05:15 - +1.212.896.aaee 16:05:15 … Tentative date is 4/10 to do a call on the topic. A variety of people have wanted to raise UI-related issues. The charter says we can't specify particular UI, so the idea is to give people time to consider how to have constructive discussions. 16:05:16 Is this about user interface for UAs only, or for all parties? 16:05:36 Ralph has left #dnt 16:05:44 … If you have proposals around UI, please circulate them by the end of March. 16:05:48 +[Microsoft.a] 16:05:56 + +1.408.836.aakk 16:05:57 +Rigo 16:06:00 zakim, [Microsoft.a] is me 16:06:01 +adrianba; got it 16:06:06 zakim, mute me 16:06:06 adrianba should now be muted 16:06:08 zakim, mute me 16:06:08 Rigo should now be muted 16:06:13 +q 16:06:14 … Comments or questions on this? 16:06:16 +WileyS 16:06:26 ack efelten 16:06:27 Zakim, who is on the phone? 16:06:27 q? 16:06:28 On the phone I see eberkower, npdoty, prestia, efelten, +1.202.587.aadd, dwainberg, Fielding, RichardWeaver, SusanIsrael, robsherman, schunter, [Apple], vinay, jchester2 (muted), 16:06:28 ... Peder_Magee, [Mozilla], Amy_Colando, dstark, Craig_Spiezle, [CDT], +31.20.420.aaii, [Microsoft], Chris_Pedigo, Brooks, +33.6.50.34.aajj, adrianba (muted), +1.408.836.aakk, Rigo 16:06:28 ... (muted), WileyS 16:06:28 [Apple] has dsinger 16:06:29 [Mozilla] has sidstamm 16:06:36 + +1.646.666.aall 16:06:37 Joanne has joined #DNT 16:06:38 efelten: Is this about UI for UAs only, or about UAs for all parties? 16:06:41 Zakim, aaii is kathyjoe 16:06:41 +kathyjoe; got it 16:06:46 peterswire: What does "all parties" mean? 16:06:48 zakim, aajj si vincent 16:06:49 +hwest 16:06:49 I don't understand 'aajj si vincent', vincent 16:06:52 efelten: Including server-side UI. 16:06:55 zakim, aajj is vincent 16:06:55 +vincent; got it 16:06:56 +1 to ed, this is interface for exception mechanism 16:06:59 Chapell has joined #DNT 16:07:01 peterswire: No view on this. 16:07:04 Same as browser 16:07:20 I'd like that on the table also; we should decide where the line is generally... 16:07:29 hwest has joined #dnt 16:07:29 I would include unless the browser makers scream :) 16:07:33 seems like the same (still limited) scope, to me 16:07:34 … My inclination is that we should include server-side UI as a part of this discussion. 16:07:35 q? 16:07:43 We have previously agreed as a group that prescriptiveness on consent to turn on DNT is tied to consent for exceptions, etc. 16:08:00 Same level on prescriptiveness is appropriate. 16:08:29 … For compliance spec, want to focus on dependencies within the document. People say, "My ability to agree on x depends on resolution of y." 16:09:07 cOlsen has joined #dnt 16:09:10 … My sense from talking to people is that getting people to agree that something is "closed" is an obstacle. People may not have anything more to say on a particular issue "right now" but might want to preserve the ability to object to the inclusion of a particular concept. 16:09:23 … This level of dependency happens more frequently than other standards. 16:09:42 +[FTC] 16:09:50 johnsimpson has joined #dnt 16:10:13 Zakim, aadd is probably Yianni 16:10:13 +Yianni?; got it 16:10:18 …. For compliance spec only, propose that we use "PENDING REVIEW" to mean "we have a stable text that is more or less settled, no other proposal on the table, would require an affirmative proposal with meaningful support for the issue to be brought back to discussion" 16:10:26 … Looks like there is nothing PENDING REVIEW right now on Compliance. 16:10:53 +johnsimpson 16:11:11 … The down side of this is that one big benefit in the W3C context is that getting things "CLOSED" helps, and people know what that means. 16:11:27 q? 16:11:28 q? 16:11:29 … But people may be more willing to put issues into the "PENDING REVIEW" parking lot than to "CLOSE" issues with open dependencies. 16:11:33 q+ 16:11:39 … Any objections or lack of clarity on this? 16:11:42 ack fielding 16:11:51 fielding: I don't understand the goal of this. If you make "PENDING REVIEW 16:12:11 … the new CLOSED, then when the editors add text to the Editors Draft, which has not yet been reviewed by the Working Group, what do we call it? 16:12:44 peterswire: One difference from the current state is that I understand CLOSED as meaning that it takes new information not previously available to the group as a criterion to reopen. 16:12:49 … Is that correct? 16:13:03 hefferjr has joined #dnt 16:13:06 fielding: Yes, but "new information" could be "new text" if the "new text" is substantially different from the closed text. 16:13:15 +hefferjr 16:13:58 seems like we'll have pending-review-A (into the draft, people haven't read it, needs flagging in the document) and pending-review-B (we're tentatively OK, flag in the document comes out). 16:14:03 peterswire: Two reactions. (1) W3C nomenclature for CLOSED is not well understood outside of W3C, and I've heard people be hesitant to allow something to be CLOSED because they will be seen to have signed off on it as an acceptable thing in the standard. 16:14:42 … Ex: we've been discussing multiple first parties. We may polish the language to the point that it's as polished as it is going to get, but peoples' view on whether to accept it may depend on whether other language that we haven't resolved is included in the spec. 16:14:53 I think chairs can always re-open an issue. "Closed" for me just means you have to convince the chairs to re-open 16:15:18 … I am seeking some way to avoid this problem. We need language to say, "We understand that what goes in at the end is going to depend on interdependencies." 16:15:36 we can always open new issues, and we would need to, if the document is no longer consistent... 16:15:41 fielding: In terms of the list of categories we have for issues, we could configure it and create a new category between PENDING REVIEW and CLOSED. 16:15:42 q? 16:15:55 http://www.w3.org/2011/tracking-protection/track/options 16:16:08 peterswire: That would address the concern. 16:16:14 +1 to fielding 16:16:26 q? 16:16:45 so, how do we edit ? 16:16:48 … I'll amend my suggestion to create a new category. I'll come up to the group by next week with a specific proposal that would avoid "CLOSED" but shows stability. 16:16:55 maybe stable or blocked 16:17:10 dsinger, fielding, I think it'll be up to me to figure that out :) 16:17:16 … [reviews agenda] 16:17:22 npdoty, yep 16:17:53 to npdoty: I have emailed the mighty dino asking him. 16:18:03 Zakim, who is on the phone? 16:18:03 On the phone I see eberkower, npdoty, prestia, efelten, Yianni?, dwainberg, Fielding, RichardWeaver, SusanIsrael, robsherman, schunter, [Apple], vinay, jchester2 (muted), 16:18:07 ... Peder_Magee, [Mozilla], Amy_Colando, dstark, Craig_Spiezle, [CDT], kathyjoe, [Microsoft], Chris_Pedigo, Brooks, vincent, adrianba (muted), +1.408.836.aakk, Rigo (muted), 16:18:07 ... WileyS, +1.646.666.aall, hwest, [FTC], johnsimpson, hefferjr 16:18:07 [Apple] has dsinger 16:18:07 [Mozilla] has sidstamm 16:18:22 zakim, aall is chapell 16:18:23 +chapell; got it 16:18:24 … So let's first turn to audience measurement. This is a more detailed proposal than we've had before. 16:18:45 If you're calling from (408), please let us know in IRC, or you may be dropped from the call. 16:18:46 … Since this came out just before the meeting, this is an initial opportunity to understand the next but we are not seeking to reach a conclusion. 16:18:51 q? 16:19:19 can we have link to the text? 16:19:19 dstark: Since everyone is familiar with the previous version that we'd submitted, comment we'd received is to better distinguish between normative and non-normative. 16:19:45 … We've added text around the idea that a third party would be subject to an independent certification process. 16:19:52 -dwainberg 16:20:04 +dwainberg 16:20:05 I assume this is ? 16:20:07 jchester2, link: http://lists.w3.org/Archives/Public/public-tracking/2013Mar/att-0202/Market_Research___Audience_Measurement.pdf 16:20:11 http://lists.w3.org/Archives/Public/public-tracking/2013Mar/0200.html 16:20:17 Zakim, who is making noise? 16:20:19 thanks 16:20:28 dwainber_ has joined #dnt 16:20:29 … Basic requirements: pseudonym, not shared without deidentification, deleted/deidentified as early as possible, in jursidctions where there is an MRC or similar body, cannot retain data longer than 53 weeks. 16:20:29 npdoty, listening for 10 seconds I heard sound from the following: Fielding (5%) 16:21:18 peterswire: Is independent certification widely used today? 16:21:45 dstark: MRC exists. At ESOMAR, we're thinking about the fact that market research firms need a transparent way to communicate with users about how we protect data, etc. 16:21:58 … In the US, we have the DAA program and the AdChoices icon. 16:22:06 … That's what we're looking toward doing for the market research industry. 16:22:19 … But because we're just discussing it now, it's hard to get into specifics now. 16:22:32 I haven't reviewed yet. But question. Will this research be used in any way for the user targeting function, inc. lookalike modeling? 16:22:32 peterswire: Have large companies previously talked about this publicly, or is this just getting started? 16:22:55 dstark: Just discussing now. It's hard to get companies to understand the initiative and the need for it, but we're hopeful about a public announcement in a few months. 16:23:15 peterswire: When you say "de-identified," do you understand that the same way that we're using the term elsewhere in the draft? 16:23:17 dstark: Yes. 16:23:27 moneill2 has joined #dnt 16:23:31 peterswire: We haven't used the term "pseudonymized" in this document before. How would you define this? 16:23:41 right, we've avoided getting into "pseudonymous" (and more importantly, "anonymous") -- that would require a new definition, yeah? 16:24:02 q? 16:24:09 dstark: The presentation we had about the German telemedia law made the point that pseudonymized is a waystation between the "identifiable" state and the "de-identified" state. 16:24:10 We would certainly need to define "pseudonymous" 16:24:39 Something along the lines of "tied to a device but not traditional PII" I think is what they're going for. 16:24:39 … It's a way for organizations to work with data while it is being aggregated but at the same time minimizing risk of harm to individuals. 16:25:11 peterswire: That's helpful. When the text says "must be pseudonymized," do you envision that would happen instantaneously? In a short time? 16:25:20 The raw data has to be pseudonymous. 16:25:26 … Do you mean that you can't do any measurement work until you pseudonymize? 16:25:26 Zakim, aakk may be kulick 16:25:26 +kulick?; got it 16:25:48 Richard_comScore: The ID that is assigned to the measurement is pseudonymized before statistical work happens? 16:25:53 s/?/. 16:25:55 + +1.650.365.aamm 16:25:57 s/?/./ 16:26:31 peterswire: Next question is around the permission to collect, retain, and use data for measurement where it is used to calibrate or otherwise support data from opt-in panels. 16:26:37 Zakim, aamm may be david_macmillan 16:26:37 +david_macmillan?; got it 16:26:39 David_MacMillan has joined #dnt 16:26:45 aakk is kulick... sorry 16:27:02 … I understand this to mean that, to qualify for the permitted use, this is supplementary to opt-in panels. Basically, the permitted use is broad enough to support opt-in panels but would not be permitted if not connected to opt-in panels. 16:27:11 So you're required to have opt-in panels if you want to take advantage of this exception? 16:27:20 efelten, yes 16:27:22 dstark: Correct. This is a significant change from the previous proposal, which used opt-in panels as an example but did not limit scope. 16:27:28 q? 16:27:41 You're required to collect more data? About identifiable individuals? 16:28:14 +q 16:28:18 zakim, unmute me 16:28:18 jchester2 should no longer be muted 16:28:33 peterswire: Could you give us a sense of who participated in the drafting of your text? 16:28:46 q? 16:29:03 dstark: WPP, ESOMAR, comScore, Nielsen, plus me. 16:29:15 q+ to ask about additional opt-out 16:29:23 ack jchester 16:29:42 q- 16:29:49 jchester: Interesting proposal. Glad to see movement on the part of the research industry. I haven't reviewed the text, but can you say whether the data will be used to target individuals? 16:29:52 Target no, model yes. 16:29:57 -npdoty 16:30:05 Q? 16:30:11 +npdoty 16:30:50 q+ to ask about additional opt-out 16:31:01 dstark: When companies commission research, the learnings are applied to a broader population. We haven't historically been about 1:1 targeting. But we're like the census: we aggregate data and report it in demographic buckets. 16:31:41 … Someone might take the demographic data and say, "We think this is useful information, and we're going to use these findings for future advertising," that's how a company may use research. But the intent is not to collect data from an individual and use the data to market to them directly. 16:32:08 jchester: I need to look at what ESOMAR is doing, but many members do individual targeting. 16:32:10 zakim, mute me 16:32:10 jchester2 should now be muted 16:32:41 peterswire: "Must not be used for any other independent purpose" is part of the language here. DAA similarly says that data collected "shall not be used for targeting back to individuals" or similar language. 16:32:44 npdoty, I dont get any reply on the telephone number 16:32:52 q+ 16:32:55 +q 16:32:57 … Maybe we could solve Jeff's concern by saying "may not be used for targeting back to individuals." 16:33:06 dstark: That sounds good. 16:33:23 q? 16:33:29 schunter1 has joined #dnt 16:33:29 rvaneijk has joined #dnt 16:33:29 peterswire: We should consider using the text in the DAA Principles to link into something that DAA members have already agreed to be onboard for. 16:33:32 ack npdoty 16:33:32 npdoty, you wanted to ask about additional opt-out 16:34:06 npdoty: There seems to still be a requirement that, if you use this permitted use, you provide some way for the user to opt out. Why does this distinction matter? Is it necessary? 16:34:28 DAA language: "Thus, the term “market research” does not include sales, promotional, or marketing activities directed at a specific computer or device." 16:35:02 dstark: Research firms today do offer an opt-out today. What we're talking about is, on an industry-wide basis, creating a web platform that would provide greater transparency. 16:35:12 It wouldn't be indusry wide, it would be industry organzation-wide. 16:35:21 s/indusry/industry/ 16:35:50 … Problem for industry is that if opt-out rates get high, then we have a significant non-response bias. 16:35:55 q+ 16:36:22 npdoty: If you think it's valuable for opt-out rate to be low, why have one at all? 16:36:31 q? 16:36:47 dstark: We think that if we provide a broader platform that educates people about how research works, why it's important, how data will be used, you'd want to have it be an informed decision. 16:36:52 ack johnsimpson 16:37:10 johnsimpson: I'm puzzled by this because we thought that DNT was intended to be a persistent opt-out. 16:37:22 maybe that gets to the user education point; dstark, does that imply that you'd be fine with DNT as an opt-out if users were provided additional context or information? 16:37:30 -vincent 16:37:48 I see: DNT works too good as an opt-out, so it wrecks our measurements and calibration. hmmm 16:37:48 … Under the current proposal, if you have de-identified data, can't you do what's necessary for research? 16:38:04 dstark: We need raw data to analyze and aggregate data — to make sense of it before we de-identify it. 16:38:13 but that can be covered under the short-term raw data exception, no? 16:38:27 dsinger, the request is for the data to be kept for 53 weeks 16:38:37 dsinger: they want 53 weeks, which is not a short period of time :) 16:38:38 that's not short term, ok 16:38:58 identified in a store to show that the calibration was ok 16:39:03 +MikeO 16:39:07 in fact, we've already considered that regarding DAA opt-out cookies 16:39:14 Not sure that the opt-out as presently designed is effective at all. 16:39:14 peterswire: How the specific opt-out that already exists interacts with DNT and the permitted use is a new issue. It's possible as discussion goes forward that they might work together in different ways. 16:39:18 ... WileyS provided text on what to do when you have a DNT header and a cookie both 16:39:21 … Sounds like this question raises some puzzlement. 16:39:23 ack jc 16:39:24 q? 16:39:31 zakim, unmute me 16:39:31 jchester2 was not muted, jchester2 16:39:42 zakim, mute me 16:39:42 sorry, moneill2, I do not know which phone connection belongs to you 16:39:51 rvaneijk: try again 16:39:58 JC: jchester, if research showed that people searching for beer also liked to buy t-shirts, could we show t-shirt ads to people who search for beer? 16:40:03 ... with the understanding that DNT:1 without an opt-out cookie should act as an opt-out 16:40:10 jchester: Using market research? 16:40:11 JC: Yes. 16:40:12 zakim,Mike0 is me 16:40:12 sorry, moneill2, I do not recognize a party named 'Mike0' 16:40:24 + +31.65.141.aann 16:40:28 Zakim, aann is me 16:40:30 +rvaneijk; got it 16:40:41 … If Person A has DNT on and Person B has DNT off. 16:40:59 q? 16:41:01 jchester: I would say that if Person A has DNT on then you cannot use information to advertise to Person B, even if Person B has DNT off. 16:41:22 Zakim, MikeO is moneill2 16:41:22 +moneill2; got it 16:41:36 So is the question - can you do a look alike to someone who has DNT:1 on? 16:41:40 q? 16:41:42 ack rigo 16:41:42 zakim, mute me 16:41:43 jchester2 should now be muted 16:42:27 q? 16:42:29 rigo: Two points. (1) To dstark, do you suspect that DNT might be too successful for the system to work? You're going for a system that says, "We have a permitted use, but we allow an opt-out." Seems like a logic break. 16:42:39 zakim, mute me 16:42:39 moneill2 should now be muted 16:42:46 … (2) How does market research organize the opt-out or opt-in in the offline world where there's no method for passive monitoring? 16:43:59 -Peder_Magee 16:44:12 rigo: You're saying, "By using a permitted use, we don't accept DNT as a valid opt-out mechanism." 16:44:44 Note that they are talking about audience measurement, centered around measuring the viewing of specific pieces of content, as opposed to building profiles of individuals and their activities over a period of time 16:44:49 dstark: This ties in with the browser defaults question. If we have to honor default-on, that alone would substantially undermine the integrity of research. 16:45:00 If there was any hard data on any of this, it would be useful to share with the group. 16:45:07 peterswire: If DNT is <5%, you're less worried. If it turns out to be big, then it's a problem. Right? 16:45:09 dstark: Yes. 16:45:26 rigo: So are you saying that if your opt-out system is too successful because it's usable, you would make it less usable? 16:45:36 q? 16:45:37 speculatively, what fraction of your users clear cookies or block cookies at some point? doesn't that affect calibration? 16:45:58 -[Microsoft] 16:46:00 q? 16:46:01 dstark: If someone visited a platform to exercise choice about market research, they would be able to make an informed choice. But this platform hasn't been built, so it's too early to speculate about how much or little people would use this. 16:46:07 Rigo, don't be argumentative about irrelevant points 16:46:17 but if your platform were popular as an opt-out, you'd have the same problem. 16:46:52 +[Microsoft] 16:47:22 peterswire: To wrap this up, the proposal has a number of new proposals from the industry. There clearly are a lot of questions about this, so we'll be following up on this. 16:48:25 … Turning back to our previous discussion about CLOSED, PENDING REVIEW, etc., we've been working with the editors to come up with a new comprehensive draft that could be reviewed by the group. Wanted to give people a heads up that this is coming and that we would like to be really clear about status of specific text. 16:48:40 … Next week, we'll have a presentation for the last 30 minutes of the call on financial auditing. 16:48:49 Topic: TPE Issues 16:48:55 Rigo, I'm not sure why, if DNT is not yet in effect, it is an issue that DNT has not been the way that they have implemented opt out up to now? 16:49:01 schunter: Peter's email included some issues I'd like to discuss. 16:49:04 issue-112? 16:49:04 ISSUE-112 -- How are sub-domains handled for site-specific exceptions? -- open 16:49:04 http://www.w3.org/2011/tracking-protection/track/issues/112 16:49:20 q+ 16:49:24 … ISSUE-112. In exception API, we express desire to use wildcards and similar mechanisms to express scope of an exception. 16:49:28 Zakim, mute me 16:49:28 Yianni? should now be muted 16:49:40 -Amy_Colando 16:49:50 … adrianba said that he could use cookie matching engine. I don't know that we have an action to translate this into proposed text. 16:50:10 dsinger: We do have ACTION-??? on this. 16:50:11 action-355? 16:50:11 ACTION-355 -- David Singer to propose changes to the spec to reflect our tentative agreement on cookie-like behavior -- due 2013-01-28 -- CLOSED 16:50:11 http://www.w3.org/2011/tracking-protection/track/actions/355 16:50:16 susanisrael, I just wanted to know why they fear that DNT will be too successful and why their own system will not be 16:50:16 s/???/355 16:50:19 s/???/355/ 16:50:28 Is there a problem with the audio 16:50:30 ? 16:50:58 dsinger: Reviewing these actions to understand the history. This action shouldn't be CLOSED. 16:51:06 http://lists.w3.org/Archives/Public/public-tracking/2013Jan/0071.html 16:51:15 adrianba dsinger is that the text to add to the spec? 16:51:18 schunter: Let's just remind you that we need to put text in the spec. 16:51:21 q? 16:51:31 ack adrianba 16:51:33 dsinger: I'll review this. Does adrianba have input? 16:51:33 susanisrael, because we don't know yet how DNT will develop. So saying DNT will be too successful is a similar speculation than saying the ESOMAR opt-out will be not successful enough 16:51:55 -kulick? 16:52:14 adrianba: I don't recall that being a precise action. I think we agreed on what the text should be but I'm happy to take an action to draft some specific text. 16:52:28 +1 to code re-use 16:52:42 schunter: dsinger and adrianba to discuss this, and adrianba will do a revision. 16:52:43 action: adrian to propose specific text on cookie-like exceptions 16:52:44 Created ACTION-385 - Propose specific text on cookie-like exceptions [on Adrian Bateman - due 2013-03-27]. 16:53:02 action-385: this text from dsinger might be relevant: http://lists.w3.org/Archives/Public/public-tracking/2013Jan/0071.html 16:53:02 Notes added to ACTION-385 Propose specific text on cookie-like exceptions. 16:53:17 adrianba: Will summarize options and status to the list as a part of this proposal. 16:53:29 schunter: Don't expect this to be controversial — just debugging the API. 16:53:34 for example the spec still refers to navigator.doNotTrack 16:53:36 q? 16:53:38 q? 16:53:48 instead of window.doNotTrack 16:53:51 zakim, who is making noise? 16:53:54 ISSUE-163? 16:53:54 ISSUE-163 -- How in the spec should we ensure user agents don't twist a user preference one way or another? -- raised 16:53:54 http://www.w3.org/2011/tracking-protection/track/issues/163 16:54:01 dsinger, listening for 10 seconds I heard sound from the following: eberkower (38%), schunter (97%) 16:54:05 q+ 16:54:08 +[Microsoft.a] 16:54:19 action-366? 16:54:19 ACTION-366 -- David Singer to draft text on another non-compliant/ignoring the expressed preference (by suggestion of WileyS) -- due 2013-02-20 -- OPEN 16:54:19 http://www.w3.org/2011/tracking-protection/track/actions/366 16:54:26 schunter: During F2F, we discussed ACTION-366. dsinger, can you summarize? 16:54:27 zakim, mute eberkower 16:54:27 eberkower should now be muted 16:54:31 I don't think we intended to use ! for that -- a new TSV instead 16:54:37 zakim, unmute eberkower 16:54:37 eberkower should no longer be muted 16:54:48 zakim, who is making noise? 16:54:58 rigo, listening for 10 seconds I heard sound from the following: schunter (99%) 16:55:00 I thought fielding intended "!" to be used for "beta" rather than "I refuse" 16:55:11 dsinger: I suggested that if you're unwilling or unable to listen to a user's preference, use the "!" status to convey that that's happening and provide a link in the well-known resource about what's happening and how the user can correct it. 16:55:14 amyc has joined #dnt 16:55:16 Agree with @npdoty --- there are two very different use cases here. 16:55:20 David's proposal -> http://lists.w3.org/Archives/Public/public-tracking/2013Feb/0174.html 16:55:28 Rigo, I understand what you are saying as a going forward principle, but the existing opt-out was in place before the DNT effort began. 16:55:29 … No idea whether you are compliant under these circumstances. 16:55:31 @Nick, that is where we started but it is now being suggested to a multi-purpose signal 16:55:42 -RichardWeaver 16:55:43 s/to/to be 16:55:45 q+ 16:55:53 q? 16:55:53 … For example, if you have a court order requiring tracking, you'd be compliant with the standard but would be tracking because you have to comply with your legal obligation. 16:55:56 ack fielding 16:56:09 fielding: We weren't proposing "!". David's proposal was "l". 16:56:25 Roy, could we lump them together or do you feel they should be separate? 16:56:37 q? 16:56:38 q? 16:56:48 Roy, nevermind - so a new signal is being requested 16:56:53 … Do we need to combine them or can we lump them together? 16:56:56 q? 16:57:05 ack johnsimpson 16:57:08 kulick has joined #dnt 16:57:13 susanisrael, there were many opt-outs in place long before this effort began. It is one thing to say: "We do not honor DNT and do only our own" and saying "we want an exception in DNT, so we do claim to do DNT, but we don't" 16:57:28 dsinger: "I'm under construction" is fundamentally different from "I'm not able or willing to listen to your preference." Goal is to promote transparency. 16:57:30 -hwest 16:57:34 q+ 16:57:36 David, I agree - a separate signal is appropriate with a required resource link to explain the situation to the user 16:57:51 -kathyjoe 16:57:55 John, yes. 16:58:05 johnsimpson: Is this intended to cover a case where the server has decided to disregard a DNT:1 signal for a particular browser? If so, what would happen? 16:58:06 That would be up to the user agent. 16:58:13 This is proposed as "L" in http://lists.w3.org/Archives/Public/public-tracking/2013Feb/0174.html 16:58:25 rigo, i'm not sure i understand them to be saying that but happy to discuss offline. 16:58:26 Thank you, all, for your questions and input on audience measurement research and ESOMAR's revised text. We appreciate your feedback and will take it into account. Unfortunately, I have to jump off now. Regards, David Stark 16:58:31 -dstark 16:58:38 thanks, dstark! 16:58:41 susan, good idea to discuss that offline 16:58:44 dsinger: That's one possibility. Browser would notice "not listening," and there would be a mandatory link to a page that explains why. In this example, the page would say, "You're using a UA that I don't feel like I can listen to. If you want your DNT:1 preference to be respected, you should use a different UA." 16:59:03 q? 16:59:04 … Not expressing a view on whether that is a good idea. But I am saying that if that is happening there should be transparency about it. 16:59:09 ack npdoty 16:59:28 + +44.772.301.aaoo 16:59:28 "The conformance of the not-listening response is indeterminate, depending on the reason. 16:59:29 " 16:59:43 phildpearce has joined #dnt 16:59:44 npdoty: Do we intend for this to be a "compliant" or "non-compliant" signal? There are some cases — say, legal obligation — where you would be compliant but still retain data in an exceptional way. 17:00:17 dsinger: I think it's impossible to say whether you're "compliant" under these circumstances because it depends on the specific circumstances. 17:00:18 q? 17:00:22 Many jurisdictions would probably prohibit a transparent signal . . . 17:00:32 npdoty: We're assuming that "1" and "3" mean "compliant." Does "l" mean the same thing? 17:00:34 …running away, sorry 17:00:37 -[Apple] 17:00:53 schunter: "1" and "3" say "compliant and honoring signal." "l" means "did not honor the signal" and does not express a position with regard to compliance. 17:01:02 q+ 17:01:17 I honestly don't understand what we mean by "not listening" - disregarding? 17:01:17 … This is purely a transparency mechanism for the user. 17:01:26 Zakim, aaoo is ChrisPedigoOPA 17:01:26 +ChrisPedigoOPA; got it 17:01:30 q? 17:01:35 ack dw 17:01:37 kulick has joined #dnt 17:01:46 L is just "no." I think a site should say "L" if they're required to maintain by a court order (?!), but they could still be technically compliant if they were ordered by govt not to send the signal. 17:02:15 dwainberg: This seems to be getting really complicated with so many permutations. Could we say that if the server is doing anything other than complying with the spec, they would respond with only a policy link that describes what they are doing or not doing and why? 17:02:17 q? 17:02:17 marc_, right, L is "I'm disregarding the signal." 17:02:26 -moneill2 17:02:32 q+ 17:02:34 Marc, I believe the suggestion is to indicate to the user when a site isn't complying with the expressed preference 17:02:37 ack rigo 17:02:50 we could make it a "D" instead ;-) 17:03:08 to dwainberg's point, do we need it to be distinct from "!", even if conceptually they're different? 17:03:14 rigo: I think this signal is needed because you could have multiple valid reasons, and we can either be transparent about this or not tell the user. I prefer to be transparent. 17:03:16 dsinger__ has joined #dnt 17:03:27 or if there are cases where it makes a difference to the user/user agent, then we should keep them separate 17:03:40 … I think the explanation should be optional. If we make it mandatory then we create a new URI for more legal text. 17:03:46 Is this different than "I do not honor DNT:1"? 17:03:47 q? 17:04:08 Marc_, it's a way to message that on a granular basis. 17:04:15 Marc_, I think it does imply "I do not honor this DNT:1" 17:04:21 schunter: My sense is that most people are okay with this signal, even if it can be used to reject certain UAs. 17:04:28 q+ 17:04:36 I am not listening and won't tell you why? 17:04:40 q? 17:04:40 This is optional or required? It's a "may?" 17:05:05 fielding: I suggest "D" for "disregard" rather than "L" for "not listening" because it's a weird double negative. 17:05:11 IF you ignore me you MUST tell me so and why... 17:05:14 q? 17:05:17 schunter: Agree. 17:05:20 marc_, it's mandatory if you're disregarding a signal 17:05:23 q- 17:05:31 D makes sense. Do we still have the "!" 17:05:32 yes 17:05:37 … Can fielding add text on this to the spec? 17:05:42 Indifferent on whether explanation should be required. 17:05:52 ISSUE-137? 17:05:52 ISSUE-137 -- Does hybrid tracking status need to distinguish between first party (1) and outsourcing service provider acting as a first party (s) -- pending review 17:05:52 http://www.w3.org/2011/tracking-protection/track/issues/137 17:05:53 well, if you're replying with D/L, you're already non-compliant, right? so additional requirements may not mean much 17:06:06 for example, you could just reply with no Tk: header 17:06:12 schunter: On ISSUE-137, we've had a longstanding disagreement about whether or not we need a "service provider" singal. 17:06:23 … David has suggested that this is no longer relevant. 17:06:38 +moneill2 17:06:39 Compliant to compliance spec and conformant to protocol are different 17:06:47 action: fielding to add disregard/"D" response value to TPE draft 17:06:47 Created ACTION-386 - Add disregard/"D" response value to TPE draft [on Roy Fielding - due 2013-03-27]. 17:06:54 dsinger: I read the text and did not have a concern. 17:06:58 @npdoty, a site could maintain that they are compliant because the signal did not reflect user intent. However, this signal is necessary for accountability and transparency. 17:07:25 … We can eliminate the "service provider" flag. It's addressed in what's currently called the "first party array" but would be changed to "data controller array." 17:07:46 schunter: Any contrary views? 17:07:50 I think the people with the strongest feelings in favor of transparency here are not on the call. 17:07:51 My only question on 137 is whether we need the examples somewhere? 17:08:04 justin, I don't think they're compliant in any case when they're not responding to DNT:1 17:08:10 … aleecia was a proponent of having a service provider flag. 17:08:42 She had this text for review before the group did 17:08:44 @npdoty, It's an open question in the text. 17:08:55 Where is the text now? 17:09:05 My point was that a single letter "s" doesn't add transparency in any meaningful way, whereas the solution in TPE does. 17:09:16 ISSUE-164? 17:09:16 ISSUE-164 -- To what extent should the "same-party" attribute of tracking status resource be required -- open 17:09:16 http://www.w3.org/2011/tracking-protection/track/issues/164 17:09:24 My email confirms Roy. 17:09:27 schunter: Rigo proposed text. 17:09:54 action: aleecia to review David Singer's most recent suggestion on service provider flag to see if it addresses the concern (with jmayer?) 17:09:54 Created ACTION-387 - Review David Singer's most recent suggestion on service provider flag to see if it addresses the concern (with jmayer?) [on Aleecia McDonald - due 2013-03-27]. 17:09:56 … You explained why "should" is the right approach for the same-party attribute. 17:09:59 Zakim, who is making noise? 17:10:11 npdoty, listening for 10 seconds I heard sound from the following: Fielding (9%), Rigo (60%) 17:10:14 -[CDT] 17:10:21 schunter has joined #dnt 17:10:29 hello 17:10:35 action-258? 17:10:35 ACTION-258 -- Rigo Wenning to propose 'should' for same-party and why -- due 2012-12-12 -- CLOSED 17:10:35 http://www.w3.org/2011/tracking-protection/track/actions/258 17:10:36 q? 17:10:39 q? 17:10:53 dsinger__ has joined #dnt 17:10:58 http://lists.w3.org/Archives/Public/public-tracking/2013Jan/0093.html 17:10:59 Zakim, mute me 17:10:59 hefferjr should now be muted 17:11:12 rigo: [reads proposed text] 17:11:33 … The only difference is changing "may" into "should." 17:11:38 q? 17:12:02 … You don't have to declare same-party, but if you don't then the first party is the only one that can claim first-party status. 17:12:21 I am opposed to making it a SHOULD because it is not required for interop and would be a burden on implementors when there is no actual usage in practice. If it turns out to be useful (browsers are coded to use the array for verification), then that alone is sufficient to encourage sites to provide the array. 17:12:33 "optional" and "should" are incompatible terms, aren't they? (or does "should" correctly note that the member is not "mandatory" and therefore "optional"?) 17:12:45 +??P13 17:12:48 -??P13 17:13:29 q? 17:14:03 q? 17:14:04 q+ 17:14:06 … adrianba says there is no plan to implement this. Tricky to propose wording that may not be implemented. One compromise is to remain with the old text and add non-normative text encouraging browsers to consider other parties as third parties unless they're in the first-party element. 17:14:07 -Chris_Pedigo 17:14:11 s/first-party/same-party/ 17:14:36 schunter: One alternative is to require parties to express whether they are following first or third party obligations. 17:15:00 … By having same-party attribute, you can identify other elements that belong to you, which will make browsers not suspicious if they see other elements claiming first-party status. 17:15:30 q? 17:15:35 ack adrianba 17:15:36 ack adrianba 17:15:58 q+ 17:16:23 adrianba: I'm okay with including text to encourage sites to consider providing the information in the well-known resource. I don't think a requirement to encourage browsers do anything. Everyday-use browsers won't be making any judgment about this. 17:16:47 q+ 17:16:49 … Ultimately, this information will be used for research, some form of auditing, so up to site owners to make a judgment about whether consequences of including or not including the information justifies the cost. 17:17:03 … So I am okay with text talking about the value of including the information, just not a requirement that people do it. 17:17:15 q? 17:17:24 ack fi 17:17:56 fielding: Same comment as adrianba on the server side. If this is a useful resource, servers will provide the information. It isn't necessary for interoperability so we shouldn't make it a "should." 17:18:10 … My experience is that nobody will be using an actively verifying browser. 17:18:10 q? 17:18:16 ack ri 17:18:22 … I'd like to minimize the burden of complying with something that will never actually be deployed. 17:18:40 rigo: Interesting. If nobody is implementing the tracking status, that undermines legal foundation of DNT. 17:18:46 q+ 17:19:09 … Why have the tracking status resource in the first place if nobody is interested? 17:19:20 q- 17:19:25 +1 to what roy said 17:19:40 fielding: I brought that up originally. Maybe only one person uses a verifying browser, and it's useful to that person. But I don't think normal people will use this. 17:20:01 q? 17:20:43 rigo: So it is clear to me that if the browser isn't verifying anything, then it is not better than browsers that just spawn DNT:1 headers. It's not a communication mechanism in that case. Why can you ignore default DNT? If it disregards status, then it will only react with exceptions, which turns into a normal cookie store. 17:21:12 fielding: This isn't about whether the communications happen, or whether the server makes a commitment. This is just about what additional information server may, should, or will provide to satisfy a verifying browser that may never exist. 17:21:40 … If we require that the server provide information that is only ever used by a regulator, we are creating a huge cost for something a regulator would be able to determine on their own, without an additional protocol. 17:21:50 My recommendation: Specify the feature, go experiment with it, and see what happens around LC or CR. 17:21:56 … If I am wrong about this, and there is a mass-market browser that does verifying, then sites are naturally encouraged to provide more information for that browser. 17:22:24 I think dsinger has already written the non-normative text expressing some reasons a server may be interested 17:22:24 … Just because you can use an active verification browser, and because the protocol can support it, does not mean we should burden implementations with fully supporting it. 17:22:56 rigo: I can provide non-normative text that describes this use case. 17:23:36 -dwainberg 17:23:37 … If Adrian sends a message saying "I'm the same party" and I consider myself the same party, I could just store an exception. 17:23:43 Q? 17:23:49 Yes, I was responding to the agenda item … I have not seen the non-normative text yet so I would expect that might be okay if it is clear that active verification is not required of browsers. 17:23:50 … This is totally different from that. 17:24:00 the exception API requires to be done at the point of consent - not when the site feels like it 17:24:08 … Using exception mechanism to solve same-party problem is not a good idea. 17:24:17 schunter: Rigo should propose non-normative text on this. 17:24:24 +dwainberg 17:24:37 it makes a good use case 17:25:16 … Sympathetic to not requiring it. If no browser looks at this field, no consequence to not providing it. If browsers start looking at it, sites will do so because they will have consequences for not. 17:25:19 … Okay with everyone? 17:25:20 +1 17:25:44 action: rigo to draft non-normative text for why it's useful for a server to provide same-party members 17:25:44 Created ACTION-388 - Draft non-normative text for why it's useful for a server to provide same-party members [on Rigo Wenning - due 2013-03-27]. 17:25:50 … I see potential that user agents and users are confused by the same entity that has multiple independent URLs. 17:25:55 action-388: you may want to check with dsinger on action-317 17:25:55 Notes added to ACTION-388 Draft non-normative text for why it's useful for a server to provide same-party members. 17:26:06 ack yianni 17:26:24 Topic: Next week 17:26:32 peterswire: Next week, last half-hour will have a financial auditing presentation. 17:26:33 Can we please recap any details on next F2F? 17:26:52 … Beyond that, I don't have other details. Pushing to get text finalized by Friday or Monday. 17:26:59 johnsimpson, I'm sending email to the group today 17:27:09 thanks, Nick 17:27:13 q? 17:27:23 -hefferjr 17:27:35 q+ 17:27:37 Thank you 17:27:40 Address and hotels coming out soon? 17:27:40 … [recaps F2F arrangements, to be sent to mailing list today] 17:27:42 -[FTC] 17:27:43 -efelten 17:27:44 -[Mozilla] 17:27:46 Suggestion: Could /crossdomain.xml for sharing "same-party" status be used as a parallel example? 17:27:47 -robsherman 17:27:48 -Yianni? 17:27:49 -rvaneijk 17:27:50 -Rigo 17:27:51 -Fielding 17:27:51 thanks 17:27:51 -[Microsoft] 17:27:52 -johnsimpson 17:27:52 -schunter 17:27:53 -moneill2 17:27:53 -SusanIsrael 17:27:53 -[Microsoft.a] 17:27:53 -adrianba 17:27:53 -eberkower 17:27:55 -npdoty 17:27:56 -dwainberg 17:27:57 -Brooks 17:27:57 -vinay 17:28:02 -prestia 17:28:03 -chapell 17:28:10 Question: would browsers running in "Verification/Regulator mode" lead to browsers cloaking? (e.g. different content displayed to "Verification mode" vs normal browser - same as GoogleBot SEO cloaking). 17:28:13 -david_macmillan? 17:28:17 -WileyS 17:28:54 rrsagent, please draft the minutes 17:28:54 I have made the request to generate http://www.w3.org/2013/03/20-dnt-minutes.html npdoty 17:28:57 Zakim, list attendees 17:28:57 As of this point the attendees have been +1.646.654.aaaa, npdoty, +1.202.347.aabb, +1.609.258.aacc, +1.202.587.aadd, dwainberg, Fielding, RichardWeaver, +1.212.896.aaee, 17:29:00 ... SusanIsrael, +1.650.391.aaff, +1.917.934.aagg, jchester2, efelten, robsherman, vinay, Peder_Magee, dsinger, sidstamm, prestia, eberkower, Amy_Colando, +1.647.274.aahh, 17:29:00 ... Craig_Spiezle, schunter, [CDT], +31.20.420.aaii, [Microsoft], dstark, Chris_Pedigo, Brooks, +33.6.50.34.aajj, +1.408.836.aakk, Rigo, adrianba, WileyS, +1.646.666.aall, 17:29:04 johnsimpson has left #dnt 17:29:05 ... kathyjoe, hwest, vincent, [FTC], Yianni?, johnsimpson, hefferjr, chapell, kulick?, +1.650.365.aamm, david_macmillan?, +31.65.141.aann, rvaneijk, moneill2, +44.772.301.aaoo, 17:29:05 ... ChrisPedigoOPA 17:29:46 -Craig_Spiezle 17:30:53 -ChrisPedigoOPA 17:33:23 -jchester2 17:36:22 kulick_ has joined #dnt 18:04:02 kulick has joined #dnt 18:04:34 T&S_Track(dnt)12:00PM has ended 18:04:36 Attendees were +1.646.654.aaaa, npdoty, +1.202.347.aabb, +1.609.258.aacc, +1.202.587.aadd, dwainberg, Fielding, RichardWeaver, +1.212.896.aaee, SusanIsrael, +1.650.391.aaff, 18:04:36 ... +1.917.934.aagg, jchester2, efelten, robsherman, vinay, Peder_Magee, dsinger, sidstamm, prestia, eberkower, Amy_Colando, +1.647.274.aahh, Craig_Spiezle, schunter, [CDT], 18:04:40 ... +31.20.420.aaii, [Microsoft], dstark, Chris_Pedigo, Brooks, +33.6.50.34.aajj, +1.408.836.aakk, Rigo, adrianba, WileyS, +1.646.666.aall, kathyjoe, hwest, vincent, [FTC], 18:04:40 ... Yianni?, johnsimpson, hefferjr, chapell, kulick?, +1.650.365.aamm, david_macmillan?, +31.65.141.aann, rvaneijk, moneill2, +44.772.301.aaoo, ChrisPedigoOPA 18:05:55 rrsagent, bye 18:05:55 I see 4 open action items saved in http://www.w3.org/2013/03/20-dnt-actions.rdf : 18:05:55 ACTION: adrian to propose specific text on cookie-like exceptions [1] 18:05:55 recorded in http://www.w3.org/2013/03/20-dnt-irc#T16-52-43 18:05:55 ACTION: fielding to add disregard/"D" response value to TPE draft [2] 18:05:55 recorded in http://www.w3.org/2013/03/20-dnt-irc#T17-06-47 18:05:55 ACTION: aleecia to review David Singer's most recent suggestion on service provider flag to see if it addresses the concern (with jmayer?) [3] 18:05:55 recorded in http://www.w3.org/2013/03/20-dnt-irc#T17-09-54 18:05:55 ACTION: rigo to draft non-normative text for why it's useful for a server to provide same-party members [4] 18:05:55 recorded in http://www.w3.org/2013/03/20-dnt-irc#T17-25-44 18:06:02 Zakim, bye 18:06:02 Zakim has left #dnt