Zu Hauptinhalten überspringen

Cookie Einstellungen

Wir verwenden Cookies, um die grundlegenden Funktionalitäten der Website zu gewährleisten und Ihr Online-Erlebnis zu verbessern. Sie können jederzeit die Verwendung der Cookies konfigurieren und akzeptieren oder Ihre Zustimmungsoptionen ändern.

Notwendige

Präferenzen

Analysen und Statistiken

Debatte schließen

Wie lautet die Zusammenfassung oder Schlussfolgerung dieser Debatte?

Mautic Privacy Project RFC

Avatar: Offizielle Debatte Offizielle Debatte

We used the findings from our audit to develop proposed solutions for the scope defined for this project.

We would now like your assessment of the technical proposals briefly presented in the document, keeping in mind that a more in-depth investigation into the implementation of each milestone will take place according to the project timeline (which you can request access to, if you are interested in more details about the next steps).

Quick context / what this project is about:

The project primarily focuses on ensuring that all functionality across the platform respects privacy preferences related to tracking. For example, downloading an asset without linking the tracked count directly to a contact; this is the kind of control the project aimed for, being able to choose if these features will (and how) track contacts + integrating what’s technically needed to operate without tracking cookies.

This also means the project does not cover topics related to consent management or general GDPR compliance.

Document is available here: https://docs.google.com/document/d/1JkZMbNa7PWqZeOcROdWutWK7fHyOSftFfySD2jUBZro/edit?usp=sharing

It's providing ideas for execution of the following milestones (project scope):

  • Cookieless forms

  • Asset downloads and URL redirects without cookies

  • Consent-aware mtracking.gif pixel

  • Focus items consent split

  • Forwarded email handling

  • Cookie revocation on consent withdrawal

  • Disabling the Gravatar integration

  • Form submission retention and cleanup

  • Surfacing and extending DNT and GPC handling

  • Field-level contact field permissions

  • Engagement and timeline data permissions

  • Grouped data spaces

  • Audit logging of read access and authentication

  • Privacy-first default roles

  • Privacy centre configuration screen

  • Contact-facing tracking controls in the preference centre

  • Tracking off by default and the onboarding journey

Project members: Anderson José Eccel (Design Engineer) and Predrag Vukovic (Developer).

Bring your thoughts. Tell us if you disagree, or see a better way to handle these challenges. We're looking for any feedback that could help us draft a better path for this project.

Open questions:

  • If you could subscribe to audit alerts, what would be useful to have as options? (example, "if someone requests bulk contacts download" or "4 failed attempts of logging into a user account")

  • how would the perfect audit screen look like to you?

  • Should the audit screen be able to show logs (the human version) from all bundles (an asset, for example)?

Kommentar

Bestätigen

Bitte melden Sie sich an

Sie können mit einem externen Konto darauf zugreifen

Teilen