ACTION-75: Write-up a hybrid of Do Not Profile and Do Not Cross-Site Track

Description:
Write-up a hybrid of Do Not Profile and Do Not Cross-Site Track

Draft:
o Not Profile + Do Not Cross-Site Track

When DNT:1...

1st parties may collect and profile.

3rd parties MUST NOT collect data across multiple, non-affiliated or branded websites.

<Non-Normative> Data collected by a 3rd party MUST be segregated according to the 1st party from which it was collected.  A 3rd party MUST NOT aggregate, correlate or use together data that was collected on different 1st party sites.

3rd parties MUST NOT add collected data to a "profile" of a user.

3rd parties MUST NOT leverage previously collected data to profile a user or to alter a user's experience.

3rd parties MUST NOT attempt to personally identify a user.

A party MUST NOT share (send or receive) collected data or profiles with another party (unless that party is ONLY working on the behalf of that specific party).

                <Non-Normative> (Outside of DNT Context):  Data legitimately collected and received from a party MAY be combined with existing 1st party profile data.

A party MAY choose to remove any previously profiled data.

All stated Exceptions apply.

Received on Tuesday, 31 January 2012 05:00:54 UTC