<?xml version="1.0" ?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<atom:link href="https://blog.zgp.org/feed.xml" rel="self" type="application/rss+xml"/>
		<title>Don Marti</title>
		<link>https://blog.zgp.org/feed.xml</link>
		<description>Personal blog for Don Marti</description>
		<item>
			<title>Scam culture news link dump</title>
			<link>https://blog.zgp.org/mlp-2026-08-23/</link>
			<guid>https://blog.zgp.org/mlp-2026-08-23/</guid>
			<pubDate>Sun, 23 Aug 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p><strong>Previously:</strong> <a href="https://blog.zgp.org/mlp-2024-09-28/">Scam culture is
everywhere</a></p>
<p><a href="https://www.businessinsider.com/lawsuit-alleges-sony-investigation-into-wpp-rebates-2026-8">Lawsuit
alleges Sony investigated WPP’s media operation and said it ran a
‘global crime scene’</a>, <a href="https://www.businessinsider.com/wpp-seal-lawsuit-former-executive-richard-foster-sony-china-2026-8">WPP
seeks to seal ‘highly confidential and sensitive’ client information
from lawsuit with former exec</a> by Lara O’Reilly. (This may be a
common pattern. ICYMI: <a href="https://www.reuters.com/investigations/meta-tolerates-rampant-ad-fraud-china-safeguard-billions-revenue-2025-12-15/">Meta
tolerates rampant ad fraud from China to safeguard billions in
revenue</a>.)</p>
<p><a href="https://yourbrainonmoney.substack.com/p/why-does-everything-feel-like-a-scam">Why
does everything feel like a scam?</a> by Hanna Horvath. (I thnk I know
this one. As the IT industry ran out of ideas, but had to keep growing
anyway, they filled in the gaps with crime. <a href="https://techcrunch.com/2026/08/11/phoebe-gates-and-sophia-kianni-reportedly-knew-phia-was-cookie-stuffing-for-months/">Phoebe
Gates and Sophia Kianni reportedly knew Phia was ‘cookie stuffing’ for
months</a>.)</p>
<p><a href="https://krebsonsecurity.com/2026/08/whos-tracking-you-use-this-new-service-to-find-out/">8
thoughts on “Who’s Tracking You? Use This New Service to Find Out”</a>
by Brian Krebs. <q>A powerful and free new service called DecryptAds
scrapes and correlates this adtech data and makes it simple to quickly
learn a great deal about the entities that are tracking you.</q> (This
is a good start. What’s harder is figuring out the ML “inferences” about
whether you’re a person in immediate need of the product, or a bargain
hunter with more options.)</p>
<p><a href="https://www.schneier.com/blog/archives/2026/08/separating-ais-technological-problems-from-its-capitalism-problems.html">Separating
AI’s Technological Problems from Its Capitalism Problems</a> by Bruce
Schneier. <q>The question is not whether it is possible to develop AI in
a non-exploitative way, or even whether we can trust AI companies to act
in the public interest. The question is whether we will recognize that
our existing social and economic systems are failing to achieve these
outcomes, and whether we can act in time to make structural change.</q>
(A big part of the problem is the extent to which “AI” investors and
execs see themselves as <em>post</em>-capitalist: a cognitive elite
capable of ML-assisted economic central planning with better judgment
than old-fashioned <a href="https://www.kysq.org/docs/Hayek_45.pdf">markets</a>. More: <a href="https://blog.zgp.org/reinventing-gosplan/">reinventing
Gosplan</a>)</p>
<p><a href="https://adaged.blogspot.com/2026/08/be-rube.html">Be a
Rube.</a> by George Tannenbaum. <q>I noticed the Times had told the
story with six or seven cartoonish pictures and a few hundred words of
copy. The New York water system is one of the most-complex
infrastructures in the world. If it can be explained this simply, why
can’t we do the same when we’re selling AI, or data migration, or
Quantum, or whatever?</q> (Maybe a clear explanation would be not so
helpful? <a href="https://futurism.com/artificial-intelligence/ai-learn-negative-sentiment-polling-american-attitudes">The
More People Learn About AI, the More They Want It Out of Their
Lives</a>)</p>
<p><a href="https://retractionwatch.com/2026/07/31/federal-lawsuit-major-publishers-article-processing-charges-false-claims-act/">Federal
lawsuit accuses four major publishers of extorting article processing
charges</a> <q>The case, which became unsealed July 30, claims Elsevier,
Springer Nature, Wiley and Informa forced U.S. research institutions to
submit false claims to the government for reimbursement through article
fees up to 10 times the cost of processing the articles.</q></p>
<p><a href="https://www.techpolicy.press/ai-is-removing-bottlenecks-to-effective-content-moderation-at-scale/">AI
is Removing Bottlenecks to Effective Content Moderation at Scale</a> by
Dave Willner. <q>When platforms don’t prevent this kind of harm, it’s
clear that it is no longer because the problem is technically hard. It’s
because they’ve decided not to.</q> (I agree: <a href="https://blog.zgp.org/but-i-want-to-turn-people-into-dinosaurs/">but
I want to turn people into dinosaurs</a>)</p>
<p><a href="https://mashable.com/tech/reddit-scam-ads-pose-as-outlets-to-promote-ai">Reddit
ads pose as news stories to promote AI investment scams</a> by Chance
Townsend. <q>The promoted posts redirect users to cloned news websites
designed to closely mimic the appearance of legitimate publishers, where
fabricated articles, invented testimonials, and fake profit screenshots
are used to build false credibility.</q> (Why are ad blocker users
happier than non-users? Some possibilities: <a href="https://blog.zgp.org/picking-up-cheap-shoes-in-front-of-a-steamroller/">picking
up cheap shoes in front of a steamroller</a>)</p>]]></description>
		</item>
		<item>
			<title>This video explains why people hate the IT industry, and it doesn’t even have an IT product or service in it</title>
			<link>https://blog.zgp.org/this-video-explains-why-people-hate-the-it-industry-and-it-doesn-t-even-have-an-it-product-or-service-in-it/</link>
			<guid>https://blog.zgp.org/this-video-explains-why-people-hate-the-it-industry-and-it-doesn-t-even-have-an-it-product-or-service-in-it/</guid>
			<pubDate>Sat, 22 Aug 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>On the Forgoten Weapons site, Ian McCollum
reviews the <a href="https://www.forgottenweapons.com/cz75-legend-a-reissue-of-the-iconic-original-short-frame-cz75-bug-match-comparison/">CZ75
Legend: A Reissue of the Iconic Original Short-Frame CZ75</a>. The CZ75,
which originally come out a year before the <a href="https://en.wikipedia.org/wiki/Apple_I">Apple I</a>, is a <a href="https://en.wikipedia.org/wiki/CZ_75">widely distributed,
well-known semiautomatic pistol</a>, which McCollum previously called <a href="https://www.forgottenweapons.com/book-review-cold-war-pistols-of-czechoslovakia/">technically
outstanding</a>. The manufacturer, <a href="https://en.wikipedia.org/wiki/%C4%8Cesk%C3%A1_zbrojovka_Uhersk%C3%BD_Brod">Česká
zbrojovka Uherský Brod</a>, just performed an act of fan service by
releasing a near-duplicate of their 1975 version.</p>
<p>Extended availability of the products that customers are used to is
not unusual in the firearms business. Colt had a “1991A1” near-reissue
of the famous M1911A1 pistol from World War II. A serious hobbyist can
get a hold of a surprising fraction of the entire firearms tech tree,
newly manufactured. And, possibly as a result, even though the firearms
market has what looks like a normal level of customer/vendor disputes,
the customer base and the manufacturers are roughly aligned, and
customers vote with the industry on issues that concern both.</p>
<p>Now compare that to IT. Can you still get the version of anything
that was still good? Say, a desktop OS that works like <a href="https://appleinsider.com/articles/25/12/09/stop-this-myth-that-snow-leopard-was-just-some-tune-up-mac-release">Mac
OS “Snow Leopard”</a> or <a href="https://en.wikipedia.org/wiki/Windows_XP#Service_Pack_3">Windows
XP Service Pack 3</a>? Or an Apple iOS update without <a href="https://www.theverge.com/news/684321/no-more-liquid-ass">Liquid
Ass</a>? Or <a href="https://blog.zgp.org/vibeshop/">pre-“cloud” Adobe
Photoshop</a>? No—the necessary new code to support new hardware and fix
bugs is bundled with stuff that’s just in there because reasons. Not
just business reasons, like sticking ads on everything. Sometimes an
adult software exec just wakes up with the determination to make an
aesthetic impact, even when it makes the product look like a 1990s raver
tried to design a psychedelic window manager theme.</p>
<p><a href="https://www.fastcompany.com/91592384/gen-z-are-ai-skeptics-tech-ceo-they-trust-the-least-elon-musk-mark-zuckerberg-sam-altman">IT
CEOs are household names—but famous for being untrustworthy</a>. That’s
not ideal for an industry that’s trying to build popular support. <a href="https://techcrunch.com/2026/08/19/ai-was-supposed-to-win-people-over-by-now-it-hasnt/">AI
was supposed to win people over by now – it hasn’t</a>. People are <a href="https://www.librarian.net/NoToAI/">asking librarians how to
disable or avoid intrusive AI</a>.</p>
<p>The problem is not just the big picture stuff like trying to get
people to accept the impact of (still unpopular) data centers. Failure
to keep what works, working is costing the industry in other ways, too.
In <a href="https://www.macrumors.com/2026/06/22/apple-airport-utility-ios-27/">Apple
Dropping AirPort Utility From the App Store With iOS 27</a>, Juli Clover
covers how one company is turning a usable WiFi device into e-waste by
dropping software support. There’s not even an open source code
dump.</p>
<p>Cool trick, but now who’s going to buy an Apple Vision Pro? When a
support rugpull could come at any time?</p>
<p>The Apple Vision Pro didn’t flop because it’s overpriced. When the
Apple Macintosh came out, it cost about 1559 <a href="https://www.eatthis.com/big-mac-cost/">Big Macs</a> or almost half
a <a href="https://www.cargurus.com/Cars/1984-Honda-Civic-Trims-c4669">Honda
Civic</a>. That’s for a computer with no networking, <q>Please insert
the disk</q> dialogs instead of a hard drive, and a tiny screen.</p>
<p>The Apple Vision Pro does so much more, and it’s far cheaper, at only
604 <a href="https://github.com/TheEconomist/big-mac-data/tree/master/source-data">Big
Macs</a> or about one-seventh of a Civic.</p>
<p>But the Macintosh was sold into a 1980s market with conventional
norms, and the Vision Pro was too expensive for most people, even
developers, to take a chance on in today’s rugpull economy.</p>
<p>When you choose the behavior, you choose the consequences. If the
industry wants political support and willingness to try ambitous new
platforms, a lot of people will have to make more respectful and
long-termist decisions.</p>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://www.theguardian.com/technology/2026/aug/19/meta-safety-trial-whistleblower-testimony">Zuckerberg
lied about concern for child safety, Meta whistleblower testifies at
landmark trial</a> by Dana Kerr. (ICYMI, <a href="https://www.adweek.com/social-marketing/meta-has-made-child-exploitation-a-cost-of-doing-business/">Mark
Ritson covered</a> the marketing industry reaction to a previous
case.)</p>
<p><a href="https://www.zdnet.com/article/china-drops-windows-for-linux/">China
joins Europe in scrapping Windows for Linux</a> by Steven
Vaughan-Nichols. <q>The specialized Chinese version of Windows was
already scheduled for retirement in February 2027, but now its
end-of-life date has been moved to later in 2026.</q></p>
</section>]]></description>
		</item>
		<item>
			<title>The fix is in for the attribution cartel…or is it?</title>
			<link>https://blog.zgp.org/the-fix-is-in-for-the-attribution-cartel-or-is-it/</link>
			<guid>https://blog.zgp.org/the-fix-is-in-for-the-attribution-cartel-or-is-it/</guid>
			<pubDate>Fri, 21 Aug 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p><strong>Previously:</strong> <a href="https://blog.zgp.org/arguments-for-the-attribution-cartel/">Arguments
for the attribution cartel</a></p>
<p>One more point being made in favor of standardizing on Big Tech’s <a href="https://blog.zgp.org/the-advertising-cartel-coming-to-your-web-browser/">built-in
ad tracking for web browsers</a>: in the EU, the fix is already in.
Supposedly, someone over in Europe (maybe the <a href="https://thenextweb.com/news/apple-ireland-17bn-tax-country-by-country-filing">same
crooked politicians in Ireland who help Big Tech evade taxes</a>?) are
going to allow attribution cartel tracking without consent, and make
everyone else who wants to collect advertising data do the annoying <a href="https://blog.zgp.org/1741-partners/">“cookie banner”
thing</a>.</p>
<p>I’m not buying it. Do people really expect regulators and politicians
in the EU to be all,</p>
<blockquote>
<p><strong>Gosh, thank you for the new awesome tracking system, Big
Tech! Even though it’s a <a href="https://blog.zgp.org/privacy-menace-almost/">big risk</a>, your
elegant math and “privacy” branding will make us totally accept it
without consent!</strong></p>
</blockquote>
<p>And do they expect regulators to give special treatment to the
attribution cartel even when that would mean giving a problematically
USA-centric tracking system—and Big Tech ad inventory—an advantage over
European adtech and publishers?</p>
<p>That’s not the way things are going over there. Nick Heer explains a
recent German competition authority (<em>Bundeskartellamt</em>) decision
about Apple ATT, in <a href="https://pxlnv.com/linklog/app-tracking-transparency-germany-agreement/">After
Regulator’s Investigation, Apple Will Make Changes to App Tracking
Transparency Prompts in Germany</a>. <q>The definition of
<q>tracking</q> Apple uses is self-serving, which would not matter so
much if it did not also have a parallel desire to grow its advertising
business.</q></p>
<p>Apple makes it easy to turn off “tracking” by non-Apple apps, while
Apple’s own “personalization” and “privacy preserving ad measurement”
are harder to find. (<a href="https://blog.zgp.org/turn-off-advertising-measurement-in-apple-safari/">turn
off advertising measurement in Apple Safari</a>) But now they have to
cut out the self-preferencing. From the English version of the
decision:</p>
<blockquote>
<p>Apple is allowed to provide for a level of protection for its users
that exceeds the minimum legal requirements. However, if Apple sets up
additional rules within its ecosystem for the use of data, these rules
must, under Germany’s special abuse provision for large digital
companies, not treat its own offerings better than those of its
competitors. This is precisely where our competition concerns arose.
Apple will now align the consent requests much more closely and give
third-party app providers more freedom to combine the necessary requests
in a sensible way.</p>
</blockquote>
<p>More coverage by Ana-Maria Stanciuc: <a href="https://thenextweb.com/news/apple-att-consent-germany-bundeskartellamt">Apple
bows to Germany and rewrites its tracking-consent rules, ending a
self-preferencing probe</a>.</p>
<p>So even if Irish regulators try to get special treatment for the
attribution cartel, different from what all the other online ad
companies get, eventually the rest of Europe will catch up with
them.</p>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://www.adexchanger.com/content-studio/why-social-medias-ad-dominance-is-a-billion-dollar-measurement-illusion/">Why
Social Media’s Ad Dominance Is A Billion-Dollar Measurement Illusion</a>
by Vicky Chang. <q>When a platform owns the measurement, it is more
likely to push the narrative that the ads are working. The measurement
models make that easy to do. Last-click and view-through attribution
routinely take credit for conversions that would have happened
anyway.</q></p>
<p><a href="https://www.adexchanger.com/data-driven-thinking/ad-techs-trust-problem-isnt-going-away-we-just-stopped-talking-about-it/">Ad
Tech’s Trust Problem Isn’t Going Away. We Just Stopped Talking About
It</a> by Chad Hickey. <q>We’re in a chaotic environment right now, and
a lot of businesses are struggling. That kind of pressure leads to bad
behavior. Companies start trying to monetize in any way they can,
whether that’s out of need to survive or just plain greed….I’d tell
anyone in this industry right now: Take the healthy pause. Look at what
the data actually says instead of what the panic is telling you to do.
It’s not enough to just protect the trust you’ve already built. The
companies that figure out how to actually build more of it, not just
defend what they have, are the ones that will pull ahead.</q></p>
<p><a href="https://evonomics.com/how-western-europe-is-richer-than-the-us/">Western
Europe Is Richer Than the US</a> by Matt Bruenig. <q>Germany is the most
extreme case in the group, as it has a higher GDP per hour than America,
the highest overall employment rate, and the lowest number of hours
worked per worker. Germany is not poorer than the US. It has just chosen
to cash out more of its productivity in the form of free time than the
US has. The other Western European countries have made similar
decisions.</q></p>
<p><a href="https://aftermath.site/ai-poster-ad-flyer-local-business/">Hello
Local Business, Your AI Ads Are Costing You Customers</a> by Luke
Plunkett. <q>[I]t shows that you’d rather prompt something into a
machine than hire a local graphic designer, artist and/or photographer,
which tells your potential customers that you don’t give a shit about
the community you’re a part of. Or that you’d rather offload the
cognitive effort of coming up with a new poster to a glorified
autocorrect, instead of just coming up with something cute, simple and
personal yourself. Even the corniest blackboard trivia, or small A4 sign
taped to a window made using MS Word on a yellowing printer in the back
office, is preferable to an AI-generated ad, because at least you made
it.</q></p>
</section>]]></description>
		</item>
		<item>
			<title>Waiter, there’s a watermark in my slop</title>
			<link>https://blog.zgp.org/waiter-there-s-a-watermark-in-my-slop/</link>
			<guid>https://blog.zgp.org/waiter-there-s-a-watermark-in-my-slop/</guid>
			<pubDate>Thu, 20 Aug 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>David Gerard covers the new <a href="https://www.404media.co/anthropics-text-watermarking-proves-ai-companies-do-not-care-at-all-about-writing/">text
watermarking</a> in Anthropic’s LLM output: <a href="https://pivot-to-ai.com/2026/08/17/anthropic-watermarks-ai-output-and-the-ai-bros-yell/">Anthropic
watermarks AI output — and the AI bros yell</a>.</p>
<blockquote>
<p>Nobody who claims they can tell good writing from bad should care
this much. If they’re not using the slopbot instead of doing the
writing.</p>
</blockquote>
<p>The watermarked text doesn’t even make it into the final writing
project, if the LLM was just used for assistance, with methods such as
Seth Godin’s <a href="https://seths.blog/2026/08/consider-the-ai-tear-down/">AI tear
down</a>. So it shouldn’t really matter. Maybe Matt Birchler is right,
and <a href="https://birchtree.me/blog/what-is-a-perversion-to-writing/">the
reader’s desire to know when text is AI-generated is more important than
the AI user’s desire for the opposite</a>. Maybe Dave Winer is right in
<a href="https://rss.chat/?id=538">A rebuttal to Doc Searls’ piece about
watermarks</a> and the risk that a watermark might be detected could
help discourage people from <q>getting a long bit of writing from the
bot, and then pasting it into a comment thread in a GitHub repo I
run.</q></p>
<p>The bigger question, though, isn’t about the <a href="https://daringfireball.net/2026/08/anthropics_watermark_text_adulteration_in_claude_is_a_perversion_of_writing">negligible</a>
difference between watermarked slop and somehow purer non-watermarked
slop.</p>
<p>If LLM output can have watermarks, what else can it have?</p>
<p><strong>Other identifiers.</strong> If Anthropic can get a 1-bit
yes/no watermark into 200 words of text, how many words does an LLM
provider need to encode a 32-bit identifier? That’s probably infeasible
in the lengths of text that most people use LLMs for in practice. Maybe
they would be able to find the authors of all those <a href="https://www.404media.co/a-slop-publisher-sold-a-ripoff-of-my-book-on-amazon/">slop
clone books on Amazon dot com</a>, but for most business writing and
article-length text it wouldn’t work. SynthID, described in <a href="https://www.nature.com/articles/s41586-024-08025-4">Scalable
watermarking for identifying large language model outputs</a>, encodes a
single bit of information by over-weighting token choice from <a href="https://hackerfactor.com/blog/index.php?/archives/1101-Mark-My-Words.html">one
red list and one green list</a>. Splitting the list into 2<sup>n</sup>
categories would give you more bits but require a lot more text to
encode it.</p>
<p>But what about just a few more bits? Now that governments and Big
Tech know that encoding information into LLM-generated text is possible,
what’s next?</p>
<ul>
<li><p>USA Citizen/non-citizen? This would be a obvious one for a
company trying to get in good with the Federal government here.</p></li>
<li><p>Age verification? I don’t know, they’re sticking age verification
on everything now, someone will try it.</p></li>
<li><p>Marketing-related data? <a href="https://www.marketplace.org/story/2025/09/17/top-10-of-earners-make-up-half-of-us-retail-spending">The
highest-earning 10% of people in the USA buy 50% of the stuff</a>, so
there could be all kind of uses for a flag to show which side of the
K-shaped economy the user is on.</p></li>
</ul>
<p><strong>Infringing or plagiarizing text.</strong> The big AI
companies have a pretty well-defined political program, and can identify
likely opponents to some or all of that program. Some of those opponents
are consistent “AI vegans” in their own personal IT choices, but if
someone is politically inconvenient <em>and</em> an AI user, well, it’s
possible to tune the likelihood that an LLM’s output contains material
straight out of the training set.</p>
<p>Could the LLM’s output contain deliberate infringement bombs or
plagiarism bombs? Deliberately giving users some text that would get
them in trouble later is not the kind of thing that a human developer
would risk—too much risk that the commit messages would come out in
discovery—but it is the kind of trick that a heavily “agentic” automated
software process would come up with. <a href="https://www.bbc.com/news/articles/cn0nww2qlp7o">An AI agent can
already hack a gym to get its owner a spot in pilates class</a>, so a
program of compromising political opponents who are also users seems
feasible.</p>
<p><strong>Marketing side effects.</strong> Some LLMs are serving ads
now, which means a lot of hard-to-predict ML-driven ad placements. And
this stuff will be a lot weirder and more indirect than current projects
like the <a href="https://blog.zgp.org/the-advertising-cartel-coming-to-your-web-browser/">attribution
cartel</a>, which is pretty clearly going to cause ML to come up with
privacy-violating ways to juice the apparent results from Big Tech
advertising. ML systems going for other goals are going to get a lot
weirder. Meta’s ad ML is already <a href="https://www.theguardian.com/technology/2025/sep/20/parents-outraged-meta-uses-photos-schoolgirls-ads-man">doing
pretty weird</a> (and creepy) stuff to maximize engagement, and it’s
only going to get weirder.</p>
<p>What happens when more ad-revenue-maxing ML is in the loop in more
places? What if you can sell a renter’s insurance policy to user A by
giving their friend, user B, some bad household tips that result in an
expensive bill from their landlord? Consumer-facing LLMs are run by the
same companies that find themselves in a <a href="https://blog.zgp.org/what-if-ed-zitron-is-an-optimist/">desperate
squeeze to keep raising ad revenue at startup-like growth rates</a>.
Corners will be cut. Other ways will be looked. Slop advice will reflect
the need to achieve ambitious business goals, even at the user’s
expense.</p>
<p>Anyway, the difference between watermarked slop and non-watermarked
slop is tiny compared to some of the text that’s going to be in the LLM
output. Enjoy.</p>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://lifehacker.com/tech/hundreds-of-fake-vpns-are-flooding-the-chrome-web-store">Hundreds
of Fake VPNs Are Flooding the Chrome Web Store</a> by Ritoban Mukherjee.
(Ad blockers are another category with similar problems. If you’re
looking for browser extensions on the browser’s extension store, you’re
doing it wrong. Start with a trusted IT news site.)</p>
<p><a href="https://lwn.net/Articles/1088781/">Representing Python paths
using pathlib</a> by Jake Edge. (One of the ingredients in upgrading a
Python program from junk drawer script to maintainable. Two more: <a href="https://docs.python.org/3/library/dataclasses.html">dataclasses</a>
instead of free-form dictionaries, and <a href="https://docs.python.org/3/library/logging.html">logging</a>
instead of just <code>print()</code> for debugging output)</p>
<p><a href="https://www.doomsdayscenario.co/p/ai-is-making-everything-worse">AI
is making everything worse</a> by Garrett Graff. (One more: scammers
have adopted “AI” enthusiastically and at scale. We already had a <a href="https://blog.zgp.org/mlp-2024-09-28/">scam culture</a> crisis
before the “AI” boom, and the existing services help the scammers a lot
more than they help the scam fighters. Related: <a href="https://blog.zgp.org/another-ad-safety-report/">Another ad safety*
report</a>)</p>
<p><a href="https://arstechnica.com/ai/2026/08/meta-ran-ads-for-an-app-promising-to-nudify-female-politicians/">Meta
ran ads for an app promising to nudify female politicians</a> by
Vittoria Elliott and Matt Burgess. (File under “your company’s choice to
advertise on Meta sites and apps is a political statement.”)</p>
<p><a href="https://futurism.com/artificial-intelligence/young-people-ai-ceos-executives-poll">Young
People Hate AI CEOs So Passionately That It’s Almost Hard to Believe</a>
by Joe Wilkins. <q>Those are some appalling approval ratings, reflecting
the massive swing in popularity the tech industry has experienced over
the last decade, driven by concerns around data privacy, the purposeful
decay of once-useful platforms, and the erosion of democracy.</q> (Don’t
forget online harassment and scam culture. When a normal person’s
day-to-day experience of an IT brand is a flood of dick picks,
lootbox-infested games, and rip-off dietary supplements, that brand is
not going to be super premium.)</p>
</section>]]></description>
		</item>
		<item>
			<title>LLMs: damned if you don’t, worse if you do</title>
			<link>https://blog.zgp.org/llms-damned-if-you-don-t-worse-if-you-do/</link>
			<guid>https://blog.zgp.org/llms-damned-if-you-don-t-worse-if-you-do/</guid>
			<pubDate>Sun, 16 Aug 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>The Carlson Lab at the Yale School of Public
Health has done some research and held some discussions, and posted <a href="https://www.carlsonlab.bio/thoughts/the-only-reason-youll-ever-need-not-to-write-with-ai">The
only reason you’ll ever need not to write with AI</a>.</p>
<blockquote>
<p>Our lab has agreed on a blanket ban on the use of generative AI for
writing….Using generative AI inherently exposes you to the risk of
career-ending accusations of plagiarism.</p>
</blockquote>
<p>Even though there’s a lot of pressure on academics to <strong>adopt
AI or be left behind!!1!</strong> this is a lot bigger deal. Especially
for this particular research team.</p>
<p>They’re a public health lab, which puts them into an unavoidable
adversarial relationship with the anti-public-health oligarchs who run
the “AI” companies. The “E” in <a href="https://en.wikipedia.org/wiki/TESCREAL">TESCREAL</a> doesn’t stand
for “eugenics,” but the <a href="https://firstmonday.org/ojs/index.php/fm/article/download/13636/11599?inline=1">political
movement behind “AI”</a> is more likely to believe in <a href="https://blog.zgp.org/how-to-massacre-a-country-with-ai/">improving
society by weeding out the “unfit” recipients of health
misinformation</a> than in public health as we know it.</p>
<p>More from the blog post:</p>
<blockquote>
<p>Plagiarism accusations are now a core part of the right-wing
harassment toolkit, and knowing that those accusations were made in bad
faith or for political reasons does not make them disappear.</p>
</blockquote>
<p>It’s safest to assume that a future well-connected accuser will be
able to get access to large quantities of text, for practical purposes
<em>all</em> of it, and the computing resources to look for a pattern
match between anything that the targeted person has ever written and
anything that anyone else has ever written. They’ll be able to do the
search much better than the targeted person could, even using the best
commercial “plagiarism detection” software and services.</p>
<p>Related: <a href="https://www.antipope.org/charlie/blog-static/2026/08/on-the-non-use-of-ai-in-my-wri.html">On
the non-use of AI in my writing process</a> by Charles Stross.</p>
<blockquote>
<p>If I was crazy enough to feed the outline of a story I was working on
as a prompt to ChatGPT or Claude in hope of getting the stochastic
parrot to do my homework for me, then it would be only my own fault and
nobody else’s if the next model from the company in question was trained
on my book outline and could reproduce part or all of it for someone
else.</p>
</blockquote>
<p>Authors of scientific papers don’t have the choice to keep their work
out of training sets in most cases. As soon as it’s published or on a
preprint server it will get crawled, either with the publisher’s
cooperation or not.</p>
<section class="level2" id="related">
<h2>Related</h2>
<p><a href="https://theconversation.com/jason-arday-and-the-new-politics-of-plagiarism-290020">Jason
Arday and the new politics of plagiarism</a> by Roger J. Kreuz.
<q>[P]artisans of the political left and right routinely use allegations
of plagiarism to vilify their ideological adversaries. This serves their
goals of undercutting both their target’s work and the institutions they
represent.</q> (The partisans of the weird political movement where the
corporate oligopoly “right” meets the economic central planning “left”
are the same people who control the major “AI” companies. They have both
the resources to pattern-match a target’s work against a lot of other
text, the incentive to do it, and maybe even the ability to
plagiarism-bomb any adversaries who make the mistake of using “AI”
services. <strong>More:</strong> <a href="https://blog.zgp.org/waiter-there-s-a-watermark-in-my-slop/">Waiter,
there’s a watermark in my slop</a>)</p>
</section>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://www.theguardian.com/world/2026/aug/14/dei-policy-company-performance">US
firms that kept DEI policies despite ‘go woke, go broke’ threats
thrived</a> by Gaya Gupta. (There’s probably a pretty simple explanation
of why this happens. (1) In order to avoid the frequent criticism that
DEI programs are resulting in hiring unqualified people, the company has
to document and improve the hiring process. (2) As a side effect of step
1, they make fewer nepo, vibe, and “lgtm” non-DEI hires, so even if the
average DEI hire is no more than acceptably qualified, the average new
employee skill level goes up.)</p>
<p><a href="https://arstechnica.com/gadgets/2026/08/ukrainian-drones-wipe-out-entire-us-tank-brigade-in-live-war-game/">Ukrainian
drones wipe out entire US tank brigade in live war game</a> by Jeremy
Hsu. (This is <em>good news.</em> An army that either made the exercises
easy enough to win every time, or didn’t release the results of
challenging exercises, would be a lot worse off.)</p>
<p><a href="https://futurism.com/future-society/hackers-device-takeover-plane-autopilot">Hackers
Created a Device That Can Take Over a Boeing 737 Jet’s Autopilot Without
Anyone Noticing</a> by Frank Landymore. <q>The attack relies on plugging
the device, which costs less than $100, into a port hidden by a hatch on
the exterior of the plane, which the researchers say is easily within
reach of maintenance workers and airline staff. Once the device is
plugged in, it could connect to the plane’s in-flight Wi-Fi system and
allow a hacker to remotely control the aircraft’s systems from terra
firma.</q></p>
<p><a href="https://techcrunch.com/2026/07/31/vc-backed-startups-commit-more-fraud-and-researchers-think-they-know-why/">VC-backed
startups commit more fraud, and researchers think they know why</a> by
Dominic-Madori Davis. <q>But investors aren’t always hapless victims,
the researchers found. Beyond the outsized growth expectations that push
founders toward fraud in the first place, some investors unwittingly
“co-create fraud,” Weiss said, by continuing to back founders—sometimes
the very same ones— who’ve previously been accused of fraud, thereby
normalizing it to a certain extent. In fact, the UT report found little
evidence that alleged fraud prevents founders from raising funding for
new startups, even when those fraud cases received major media
attention.</q> (more for the <a href="https://blog.zgp.org/mlp-2024-09-28/">scam culture is
everywhere</a> file)</p>
<p><a href="https://theconversation.com/saudi-defence-pact-with-turkey-and-pakistan-is-a-verdict-on-the-reliability-of-us-security-guarantees-289410">Saudi
defence pact with Turkey and Pakistan is a verdict on the reliability of
US security guarantees</a> by Muhammad Waqas Haider. <q>On paper, the
combination is formidable. Turkey fields Nato’s second-largest army and
a drone industry that has reshaped modern battlefields. Saudi Arabia
brings the Gulf’s deepest reserves of capital. Pakistan adds a large,
combat-experienced military and the Muslim world’s only nuclear arsenal.
Analysts point to genuinely complementary assets here: Turkish
technology which is short of markets, Pakistani manpower short of
financing, Saudi wealth short of manpower.</q></p>
<p><a href="https://www.theringer.com/2026/08/04/tech/google-search-ai-internet">The
End of Google Search</a> by Katie Baker. (Yes, “new Google” is doing
their best to ruin what “old Google” built, but <a href="https://blog.zgp.org/fix-google-search/">you can still (mostly)
get the pre-enshittification version back</a>.)</p>
</section>]]></description>
		</item>
		<item>
			<title>How Meta will fail at prediction markets</title>
			<link>https://blog.zgp.org/how-meta-will-fail-at-prediction-markets/</link>
			<guid>https://blog.zgp.org/how-meta-will-fail-at-prediction-markets/</guid>
			<pubDate>Sat, 15 Aug 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>Meta still doesn’t control a customer-facing
platform, and the prospects for <a href="https://futurism.com/future-society/backlash-meta-pervert-glasses-afraid">pervert
glasses</a> don’t look especially good right now, either. They’re losing
the same cultural debate that Google Glass did. ICYMI: <a href="https://www.lbc.co.uk/article/wetherspoons-bans-meta-glasses-in-pubs-amid-privacy-concerns-5HjdfkH_2/">Wetherspoons
bans Meta Glasses in pubs amid privacy concerns</a>.</p>
<p>So what’s next? <a href="https://thenextweb.com/news/meta-prediction-market-arena-app-zuckerberg">Prediction
markets, apparently</a>. Yes, I admit, predicting that they’re going to
fail at this is a safe prediction. Meta trying to build an end-user
platform is like Wile E. Coyote trying to catch the Road Runner.</p>
<ul>
<li><p>2013: <a href="https://en.wikipedia.org/wiki/Facebook_Home">Facebook
Home</a></p></li>
<li><p>2014: <a href="https://josh.earth/2026/06/28/metaverse-failed">The
Metaverse</a></p></li>
<li><p>2017: <a href="https://en.wikipedia.org/wiki/Diem_(digital_currency)">Diem
(digital currency)</a></p></li>
<li><p>2018: <a href="https://en.wikipedia.org/wiki/Meta_Portal">Meta
Portal</a></p></li>
</ul>
<p>Meta bought Instagram and Whatsapp, and continues to grow as part of
<a href="https://blog.zgp.org/living-with-a-bigger-ad-duopoly/">the
advertising duopoly</a>, but making new consumer-facing stuff, not so
much. <a href="https://en.wikipedia.org/wiki/Open_Compute_Project">Open
Compute Project</a> was a huge success inside the IT department, but
nobody has their hardware at home. The interesting part here isn’t that
Meta is going to fail at prediction markets, it’s how they’re going to
fail.</p>
<section class="level2" id="insider-trading">
<h2>“Insider trading”</h2>
<p>A lot of carpal tunnels have been sacrificed to warning about
“insider trading” in prediction markets. But that’s not really the main
problem. There’s no bright line between prediction markets and
incentivization markets. At some point, the money at stake gets to be
enough to attract a trader who can move the market. In <a href="https://rajivsethi.substack.com/p/trading-on-violence">Trading on
Violence</a>, Rajiv Sethi writes,</p>
<blockquote>
<p>Someone with inside information (or with the capacity to directly
influence the outcome) can trade in ways that sharply raise the price
prior to event realization. Profits may not be as high as they would be
under binary resolution, but they could still be substantial.</p>
</blockquote>
<p>So-called “insider trading,” for prediction markets, is a sign of
under-informed traders or problematic power centralization. One current
big problem is the <a href="https://www.kptv.com/2026/08/04/oregon-senators-warn-prediction-markets-allowing-betting-wildfires-could-incentivize-arson/">wildfire
markets</a>. A trader who places a bet that no forest fire is going to
happen in a certain location is basically paying someone to start a
fire. As a money-making strategy, that’s about as good as trading on <a href="https://en.wikipedia.org/wiki/Libor">LIBOR</a> (my friends and I
are going to meet up and pick a number, how about you make a bet with me
on what the number is) and buyers of “no fire” contracts are either
going to lose their money and quit, get arrested for paying someone to
start a fire, or both.</p>
<p>Jim Bell’s <a href="https://www.academia.edu/4146743/Assassination_Politics_by_Jim_Bell">Assassination
Politics</a> envisioned markets as a check on state power—somehow,
people would pay for contracts on key government employees—but really,
the ROI of replacing one bureaucrat with an ambitious subordinate is
much less than the ROI for removing a celebrity tycoon. In practice, the
effect of prediction markets will be similar to the effect of the rise
of personality-driven publicly traded stocks—more regulation and more
corporate governance overhead, to protect high-profile execs by reducing
the incentives to remove them.</p>
</section>
<section class="level2" id="oracles-as-vulnerable-points">
<h2>Oracles as vulnerable points</h2>
<p>In some cases, the easy way to move the market is to make an event
happen. But another way is to rig the measurement, either physically as
when <a href="https://www.theatlantic.com/technology/2026/07/prediction-market-outsider-trading/687975/">someone
set up a hair dryer to blow on a weather station</a> to win a
temperature market, or by bribing or threatening the “oracle” or
referee. Brad Lipton and Toyosi Odusola write, in <a href="https://rooseveltinstitute.org/blog/how-prediction-markets-are-shaping-real-world-events-and-eroding-public-trust/">How
Prediction Markets Are Shaping Real-World Events and Eroding Public
Trust</a>,</p>
<blockquote>
<p>Although most Americans have never participated in a prediction
market, these increasingly popular platforms are already shaping our
world more broadly. We are seeing prediction markets entangled in
everything from news coverage to war to weather forecasts, with
journalists being threatened and battlefield maps literally being
redrawn to affect the outcome of prediction market bets.</p>
</blockquote>
<p>Prediction markets that free-ride on existing services for oracle are
already having trouble. You have to <a href="https://blog.zgp.org/pay-the-oracle/">pay the oracle</a> to get a
reliable result, and except for a few government-run services (at least
for now) the news and research organizations being free-ridden on as
oracles aren’t provided with the resources they would need to fill the
role. An oracle, for a prediction market, is like a moderator for a
social site. <strong>It’s the hard part.</strong> And Meta dogmatically
refuses to staff up and pay for moderators—even when the result is <a href="https://www.wired.com/story/meta-ran-ads-that-contained-ai-generated-child-sexual-abuse-imagery/">subjecting
users to CSAM</a>. I’m not counting the <a href="https://theconversation.com/meta-backed-research-finds-exposure-to-untrustworthy-social-media-is-rare-the-fine-print-is-less-reassuring-288595">‘untrustworthy’
social media</a> pushed on some users, or the <a href="https://futurism.com/artificial-intelligence/meta-caught-paying-nazis-to-post-on-facebook">Meta
Caught Paying Nazis to Post on Facebook</a> issue, since it’s likely
that Meta decision-makers are just boosting their own politics and the
algorithms are working as intended. <span class="aside">Victor
Tangermann asks “<a href="https://futurism.com/artificial-intelligence/mark-zuckerberg-meta-capex-ai">Is
Mark Zuckerberg Actually TRYING to Destroy Meta?</a>” and the answer is
probably (1) no (2) slop is a political project</span> Anyway, Meta
decision-makers would rather fail at anything than lose a
labor-management conflict with their moderators. And the same thing is
going to happen with oracle failures at their prediction market.</p>
</section>
<section class="level2" id="related">
<h2>Related</h2>
<p><a href="https://readwrite.com/metas-prediction-market-plans-shares-slip/">Shares
fall after Meta prediction market app report</a> by Suswati Basu.</p>
<p><a href="https://www.businessinsider.com/meta-cto-andrew-bosworth-addresses-morale-after-layoffs-ai-shift-2026-6">Meta’s
CTO says morale is almost ‘the worst it’s ever been’</a> by Charles
Rollet. (If they’re laying off full-time employees, they’re doing worse
to contractors—and that means under-resourced prediction market
refereeing with all its consequences.)</p>
<p><a href="https://www.reuters.com/business/finance/more-than-150-polymarket-wallets-may-have-traded-military-secrets-research-finds-2026-08-20/">EXCLUSIVE:
More than 150 Polymarket wallets may have traded on military secrets,
research finds</a> by Douglas Gillison. (This is one of the benefits of
large prediction markets on news events—they reveal corrupt and leaky
organizations whose ability to perform their duties is compromised. One
mole passsing info to the USSR can go undetected for years, this kind of
thing not so much. I would bet that most of these “Orcas” turn out to be
political appointees with pre-existing cryptocurrency stakes and
expertise, not military personnel.)</p>
</section>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://www.niemanlab.org/2026/08/can-public-media-build-its-own-social-media-chicago-public-media-teams-up-with-new_public-to-try/">Can
public media build its own social network? Chicago Public Media teams up
with New Public to try</a> By Sophie Culpepper. <q>For a while now,
publishers everywhere have been confronting the bleak reality that, with
more and more people turning to social media for their news, news
websites — like newspapers before them — are at risk of becoming
obsolete. But what if a news website could be something fundamentally
different? What if it could beat the platforms at their own game and
offer people sick of doomscrolling something better and more useful?</q>
(via <a href="https://werd.io/chicagos-social-network-is-a-huge-bet-for-news-i-think-its-the-future/">Chicago’s
social network is a huge bet for news. I think it’s the future.</a> by
Ben Werdmuller. <q>People trust human relationships, not brands; hosting
a space to support those relationships, and forming them authentically
and organically with a wider community, will lead to more representative
journalism, stronger trust from the public, and better information
overall.</q>)</p>
<p><a href="https://arstechnica.com/tech-policy/2026/08/meta-cant-stop-states-1-4-trillion-lawsuit-from-going-to-trial/">Meta
can’t stop states’ $1.4 trillion lawsuit from going to trial</a> by Jon
Brodkin. <q>Although Section 230 limits liability for online platforms
that host third-party content, Congress didn’t give companies an
explicit guarantee that they will not face trials, the 9th Circuit
judges’ panel said.</q></p>
<p><a href="https://www.theguardian.com/technology/2026/aug/11/meta-glasses-banned-from-courts-in-england-and-wales">Meta
glasses banned from courts in England and Wales</a> by Matthew Weaver.
(Places that <em>don’t</em> ban these things will increasingly be seen
as unsafe or edgy bros only—and I doubt that edgy bros go out to snap
covert pix of each other.)</p>
<p><a href="https://arstechnica.com/tech-policy/2026/08/meta-ordered-to-pay-567m-to-treat-youth-mental-health-problems-it-helped-create/">Judge
rules Meta caused “public nuisance” and must fund mental health
treatment</a> by Jon Brodkin. (Will teen mental health cases get more
parents to ask for help with “parental control” features on smartphones,
or make feature requests?)</p>
</section>]]></description>
		</item>
		<item>
			<title>substitution effects</title>
			<link>https://blog.zgp.org/substitution-effects/</link>
			<guid>https://blog.zgp.org/substitution-effects/</guid>
			<pubDate>Thu, 06 Aug 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p><strong>Previously:</strong> <a href="https://blog.zgp.org/arguments-for-the-attribution-cartel/">Arguments
for the attribution cartel</a></p>
<p>One of the arguments for the attribution cartel is that in-browser
attribution tracking will somehow displace other forms of ad
measurement. Because reasons, I guess. Or because the cartel members
believe that they can convince people that everyone else’s ad data
collection needs consent—or at least those fake “consent” dialogs that
the Irish regulators will let you get away with—and somehow the
attribution cartel doesn’t.</p>
<p>The problem with that argument is that there have already been two
big opportunities for substitution effects to happen. And they
haven’t.</p>
<ul>
<li><p>Google’s “Privacy Sandbox” included an <a href="https://digiday.com/marketing/wtf-is-the-attribution-reporting-api-in-googles-privacy-sandbox/">Attribution
Reporting API</a>. But as far as I can tell it was the only one of the
major “Privacy Sandbox” ad systems not to get an independent test. (If
I’m wrong, let me know and I’ll add it to the <a href="https://blog.zgp.org/google-privacy-sandbox-timeline/">timeline</a>.)</p></li>
<li><p>Apple Safari has “<a href="https://developer.apple.com/videos/play/wwdc2021/10033/">privacy-preserving
ad attribution</a>” that came out in 2021, but as far as I can tell most
of the <a href="https://discussions.apple.com/thread/253497173?sortBy=rank">people
talking about it</a> are users who found it <a href="https://blog.zgp.org/turn-off-advertising-measurement-in-apple-safari/">buried
under “Advanced” in settings</a> and are talking about turning it
off.</p></li>
</ul>
<p>Why so little marketer interest in an in-browser ad measurement
system?</p>
<p>The problem is that for the attribution cartel, the system has a
limited set of acceptable outputs. The Google and Apple systems would
have had to agree that the best-performing ads are on Google and Apple
properties.</p>
<p>Likewise, whatever W3C ends up standardizing on, the attribution
reports will have to agree with the ad placement decisions already made
by the Facebook and Instagram algorithms, by Google’s Performance Max,
and by whatever Apple is going to be doing as they <a href="https://blog.zgp.org/enshittification-is-riskier-than-it-looks/">continue
to enshittify over there</a>. Imagine an attribution report that
contradicted the optimal placements decreed from above, and gave credit
for sales to legit independent sites instead. That would be like writing
a biology paper contradicting <a href="https://en.wikipedia.org/wiki/Trofim_Lysenko">Trofim Lysenko</a>
back when he was a big shot.</p>
<p>Since marketers can predict that the attribution reports are going to
<a href="https://blog.zgp.org/save-the-halo-effect/">hide the halo
effects</a> of the likely most impactful ad placements, and just back up
what the cartel members were saying anyway, there was little interest in
the Google and Apple systems, and there will be little interest in the
new one. The attribution cartel members have reasons to do what they’re
doing—but they have to do with <a href="https://blog.zgp.org/silly-marketer-attribution-cartel-reports-are-for-lobbyists/">lobbying</a>
and consolidation, not benefits to legit advertisers or legit
ad-supported sites.</p>
<p><strong>More:</strong> <a href="https://blog.zgp.org/are-ya-winning-son/">Are ya winning, son?</a>
How the attribution cartel is getting privacy nerds and adtech execs to
agree on something.</p>
<section class="level2" id="related">
<h2>Related</h2>
<p><a href="https://mediacat.uk/reenter-sandbox/#">(Re)enter Sandbox</a>
by James Swift. <q>If there’s one consolation for opponents of the
Attribution API, though, it’s that not even Thomson, who is working on
the project, expects it to make a huge difference.</q></p>
<p><a href="https://blog.mozilla.org/netpolicy/2026/06/23/building-%20competitive-digital-markets-from-rules-to-results/">Mozilla
Privacy Blog: Building Competitive Digital Markets: From Rules to
Results</a> (The attribution cartel saga is another sad example of
Mozilla vs. Mozilla—on one hand they’re trying to advocate for
competitive digital markets, on the other they’re participating in
building the opposite.)</p>
</section>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://www.eff.org/deeplinks/2026/07/developers-beware-ad-libraries-betray-your-users-location-privacy">Developers:
Beware of Ad Libraries that Betray Your Users’ Location Privacy</a> by
Lena Cohen and Bill Budington. <q>When developers let advertising SDKs
collect location data, they’re putting users at risk of more than just
creepy ads. Location information sourced from the advertising industry
has been used for ICE investigations, global spy tools, outing a gay
priest, tracking union organizers, and tracking US military
personnel.</q></p>
<p><a href="https://www.quippd.com/writing/2026/08/04/wikipedia-turned-on-its-volunteers-now-its-coming-for-its-workers.html">Wikipedia
Turned on its Volunteers. Now it’s Coming for its Workers.</a> by Asif
Youssuff. <q>Wikimedia’s CEO since January 20 has been Bernadette
Meehan. Bernadette has had a career in high finance and in public
service, and she’s now revolved into the executive role at the Wikimedia
Foundation. Bernadette admits that she has never been an editor of
Wikipedia….</q> (yikes)</p>
<p><a href="https://blogs.thomsonreuters.com/en-us/innovation/thomson-reuters-built-its-own-ai-model-that-now-ranks-among-the-worlds-best/">Thomson
Reuters Built Its Own AI Model That Now Ranks Among the World’s Best -
Thomson Reuters Institute</a> by Joel Hron and Jonathan Schwarz.
<q>Thomson is competitive with the world’s leading frontier models
despite being a fraction of their size and cost to train and operate.
Thomson Reuters has achieved that performance by combining exceptional
AI talent with authoritative proprietary content and deep domain
expertise. And with less than 10% of Thomson Reuters content used in its
training so far, there remains significant opportunity to expand its
capabilities.</q></p>
<p><a href="https://www.snopes.com/fact-check/grant-next-civil-war/">Ulysses
S. Grant on the Future Dividing Line</a> by David Mikkelson. <q>If we
are to have another contest in the near future of our national
existence, I predict that the dividing line will not be Mason and
Dixon’s, but between patriotism and intelligence on the one side, and
superstition, ambition, and ignorance on the other.</q> — U.S. Grant
(confirmed)</p>
<p><a href="https://techcrunch.com/2026/08/03/samsung-bans-smart-tv-apps-that-share-users-internet-connections-with-strangers/">Samsung
bans smart TV apps that share users’ internet connections with
strangers</a> by Zack Whittaker. <q>AI companies, for example,
increasingly rely on resproxies to scrape data from multiple places on
the internet in one go to train their AI models.</q> (A positive use of
these proxies is spotting surveillance pricing.)</p>
<p><a href="https://www.theautopian.com/bmw-is-showing-commercials-on-their-cars-dash-screens-and-they-want-you-to-think-its-a-treat/">BMW
Is Showing Commercials on Their Car’s Dash Screens as a Treat</a> by
Jason Torchinsky. (Don’t complain—it it weren’t for the ads, they would
have to charge money for the cars.)</p>
</section>]]></description>
		</item>
		<item>
			<title>1,741 partners</title>
			<link>https://blog.zgp.org/1741-partners/</link>
			<guid>https://blog.zgp.org/1741-partners/</guid>
			<pubDate>Fri, 31 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p><strong>previously:</strong> <a href="https://blog.zgp.org/paleoenshittification-and-myterms/">paleoenshittification
and a path to adoption for MyTerms</a></p>
<p>The European privacy organization <em>noyb</em> has filed a complaint
over a common web annoyances. This one is a little more extreme than
most: <a href="https://noyb.eu/en/1741-informed-consents-one-click-gdpr-complaint-against-dictcc-filed">1,741
“informed” consents with one click?! GDPR complaint against dict.cc
filed</a>. Who has 1,741 “partners”? Anyway, this claimed “consent” to
data collection by all these “partners” is stored in the following TCF
string.</p>
<p><span class="big_ass_string"><code>CQoKcgAQoKcgAAJAGBENCpFsAP_gAEPgACiQMttR_G__bWlr-bb3abtkeYxP9_hr7sQxBgbIkm4FzLvW7JwGx2EZJAyatiIKmRIAu3DBIQNlHBDURUCgKIAFryDMaE2U4TNKJ6BkiFMZIytQCEhvm4tjeQCZ4ur_9kc0mB-t7dr-2dzyy6hHn3a5fmS1UJSdIYesDfv-ZhOS-9IEd-x8v4v4_EbpEm8eSVn9pGtp4jc6Yns6dBmxt-Tyff6Pn_f71fW7X_ve_n3zv8oXn7rr6-__f3-7___-b_-___b-__7Z_zM_37_v_YMttR_G_9bXlv-bBX4btkOYxf9_gD7sQxBAbIomYFzLqW5IwC32ETJEiaMCIIGRAAo1BBIAEpEBhEREChCIAVLxDsAE0Q4TtIAeBkgDMZYiBQAEhPi4tjWQCZ4Op-dUd0iQ2s5Nr22VyyWbAjn3KteOSVUJicKYMFHetuYhMQ-vIU93RK9otI_MbpEkIYARv9lWpl4TYa4vnKVpqxNeRydMSffdFz3fW7RO3a-91k-uqSV_rb4uXW5m__bNn_f138_f_7Z7_1x-3Zf_f__4AAAA.IMttR_G__bXlv-bb36btkeYxf9_hr7sQxBgbIsm4FzLvW7JwG32EbJEyatiIKmRIAu3DBIQNtHBjURUChKIAVrzDsaE2U4TtKJ-BkiHMZYytQCEhvm4tjeQCZ4ur_90d0mR-t7dr-2dzy27hnn3a9fuS1UJydKYetHfv-ZhOS-_IU9_x-_4v4_MbpEm8eSVv9tWtt4zc64vv6dpuxt-Tyff6f__f73fW7X__e__33_-qX3_r76-___3______f__________9_________4A.f_wAD_wAAAAA</code><span></span></span></p>
<p>If I visit the site from the complaint using a European VPN endpoint,
<span class="aside">Yes, I went to that site with VPN to Europe on and
ad blocker off, and ended up seeing a gross fungus treatment ad. Yeech.
The things I do for privacy research</span> and click the obvious button
to make the annoying dialog go away, this is what gets stored in the
browser. And no, I won’t say that I “consented” because I’m still not
informed enough about this industry to give informed consent in all but
a few cases.</p>
<p>But why 1,741 partners? Because of the way that this stuff works in
Europe right now.</p>
<ol type="1">
<li><p>A site gets a Consent Management Platform (CMP) – a third party
script that powers the annoying “consent dialog”/“cookie
banner”</p></li>
<li><p>A person with up-to-date knowledge of the site’s data practices
carefully configures the CMP to match the…lol, no, somebody clicks
various options in the CMP control panel until the errors and warnings
stop, which is how you end up with “1,714 partners” and other ludicrous
messages to end users.</p></li>
<li><p>When a user visits the site and clicks the CMP “consent” button,
the CMP stores a record of “consent.” (This can be in TCF, or in a
related format called <a href="https://iabtechlab.com/gpp/">Global
Privacy Protocol</a> that wraps TCF along with other strings that apply
to non-EU jurisdictions.)</p></li>
<li><p>Any company that is somehow processing the user’s information has
to check the record from step 3.</p></li>
</ol>
<p>There’s no step in the process for MyTerms, and the way it’s set up
makes it look like a MyTerms check is not needed at all. No
decision-maker at the site is going to see any need to get contractual
permission to do some data processing that, as far as they can tell,
they “already have consent for.” (It’s <a href="https://blog.zgp.org/insulating-people-from-fake-consent/">fake
consent</a> because Irish politics, but people settle for it.)</p>
<p>So a way to get more sites interested in MyTerms is something like a
step 3.5.</p>
<ul>
<li><p>Detect when a CMP is generating a TCF or GPP string.</p></li>
<li><p>Where the string indicates “consent” to anything that would be
disallowed by any of the possible MyTerms contracts that the user has
indicated they would accept, modify the string to remove the
conflict.</p></li>
</ul>
<p>This filtering or masking step is not going to produce as good of a
result as a full MyTerms transaction that both user and site participate
in, but it at least takes a step to prevent the data practices most
inconsistent with the user’s preferences (and safety), and gives the
site an incentive to upgrade to full MyTerms instead of just filtered
GPP.</p>
<p>Different MyTerms implementations might approach GPP and TCF
integration differently.</p>
<p>One possibility is to provide a surrogate script for the CMP and
prevent the annoying “consent” dialog from ever showing up.</p>
<p>Or implement the <a href="https://github.com/InteractiveAdvertisingBureau/Global-Privacy-Platform/blob/main/Core/CMP%20API%20Specification.md">CMP
API</a> to provide a filtered result to callers.</p>
<p>I’m sure that other possible approaches exist, too. The only approach
to GPP and TCF that I know for sure won’t work is ignoring them.</p>
<section class="level2" id="related">
<h2>Related</h2>
<p><a href="https://projectvrm.org/2026/07/28/toward-harmonizing-myterms-ieee-7012-with-gpc-and-gpp/">Toward
Harmonizing MyTerms (IEEE 7012) with GPC and GPP</a> by Doc Searls.</p>
</section>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://militarnyi.com/en/news/ukr-drones-disable-30-russian-oil-capacity/">Ukrainian
Drones Disabled Over 30% of Russian Oil Refinery Capacity — FT</a> by
Vladyslav Khomenko. (This is a campaign by a low-budget country that is
itself under constant attack from the air, against the largest country
in the world. It’s past time to assume that future belligerents will
have the option of ending all oil refining and LNG exports anywhere they
choose, at relatively low cost.)</p>
<p><a href="https://aftermath.site/video-game-journalist-2026/">I Am
Quietly And Perhaps Foolishly Optimistic About The Future Of Video Games
Journalism</a> By Luke Plunkett. <q>Just as it was clear in 2006 that
paying for magazines was a dying business proposition, even as some
clung on to newsstands, so too does it look in 2026 that relying on
Google search and online ads to sustain journalism is just as terminal.
So while things are currently stuck in this painful limbo, where a
handful of old websites are dying while new websites struggle to be
born, I think the more success you see from subscription-based
publications (like our friends and former colleagues at outlets like
Defector, 404, Hell Gate, Rascal and Mothership), the more the idea that
quality writing has to be paid for will take root among a wider
audience, and a rising tide will start lifting more boats.</q> (fwiw,
I’m an <a href="https://blog.zgp.org/internet-optimism/">Internet
optimist</a> too, and I even have a good answer to the question: Where
will the money to pay for subscriptions come from?)</p>
<p><a href="https://www.metafilter.com/213977/The-Last-Small-Step-for-Art">The
Last Small Step for Art</a> on MetaFilter links to <a href="https://lastmuseum.com/">The Last Museum</a>. (Now more than <a href="https://livelaugh.blog/posts/non-ai-images-for-blogs-websites/">ever</a>
there’s no excuse to use a slop illustration for a blog post.)</p>
<p><a href="https://www.theverge.com/ai-artificial-intelligence/972119/ai-stock-fall-google-capex">AI’s
finally expensive enough to make Wall Street nervous</a> by Elizabeth
Lopatto. (Google management has been used to sitting back and raking in
the cash from the network effects of search and anything that can be
illegally tied to search—possibly the easiest business model in the
world to keep going after someone does the hard work of coding a search
engine in the first place. Now they’re trying to sell a high-capex,
low-differentiation LLM service. Related: <a href="https://larrysalibra.com/ben-thompson-is-wrong-us-frontier-labs-are-right-to-be-panicking/">Ben
Thompson is wrong: US frontier labs are right to be panicking</a> by
Larry Salibra. <q>Take the examples he gives: “Claude Code” and “Codex.”
As any reader of Hacker News will tell you, Claude Code is already
yesterday….in fact, it’s last week. Yesterday was Codex, and Cursor is
ancient history….The situation is the same with non-technical users who
are seriously using AI. Today, they’re using Claude Cowork but yesterday
they were all using Manus. And before that, they were using
Perplexity…Sure, the mass market consumer user who asks “AI” a question
a few times a week might have downloaded ChatGPT or Doubao when they
first heard of AI and never switched to anything else. But those users
usually don’t pay much if anything at all and will hardly bail the labs
out of their sinking ships.</q>)</p>
</section>]]></description>
		</item>
		<item>
			<title>The hidden cost of New York Times AI columns</title>
			<link>https://blog.zgp.org/the-hidden-cost-of-new-york-times-ai-columns/</link>
			<guid>https://blog.zgp.org/the-hidden-cost-of-new-york-times-ai-columns/</guid>
			<pubDate>Thu, 30 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>In <a href="https://www.nytimes.com/2026/07/29/opinion/ai-china-us-free-models.html">The
Hidden Cost of China’s Free A.I.</a>, Tal Feldman writes,</p>
<blockquote>
<p>A.I. models are very different from the usual inexpensive imports we
buy from China. These products must promote the interests of the Chinese
government. Propaganda and false claims are baked into them.</p>
</blockquote>
<p>…</p>
<blockquote>
<p>Whoever supplies the world’s A.I. will shape how the world thinks. As
these models get smarter and more autonomous, we are outsourcing more
and more thinking to them. That “cognitive offloading” must not go to
models that were designed to promote a foreign government, no matter how
inexpensive they are.</p>
</blockquote>
<p>Two problems with that. (Aside from letting the AI shape how you
think, which, yikes. But the influence is already there, and we have to
expect that it will persist.)</p>
<p>First of all, the choice is not between propaganda AI from the PRC
and some hypothetical, honest red, white, and blue AI from the good old
USA. The average American has more in common with a random propaganda
commissar in China then with the deeply weird <a href="https://en.wikipedia.org/wiki/TESCREAL">TESCREAL</a> investors,
founders, and CEOs who run the AI operations here.</p>
<p>Second, as more and more legal opt-outs apply to LLM training sets
here, the US-based AI firms will rely more and more on <a href="https://blog.zgp.org/vibe-cms/">vibe CMS</a> automated paraphrased
versions of US and European news and culture. Legit publishers will opt
out the copyrighted works they own or distribute, in the hopes of
training license deals. Big AI firms will pay a few publishers for PR
value, but mostly settle for first-generation lossy copies.</p>
<p>And a lot of that free training material will have been run through
someone’s PR filter. For example, a <a href="https://blog.zgp.org/llms-and-reputation-management/">reputation
management firm</a> could make a site that mostly generates
high-fidelity paraphrases of legit news, but folds in positive mentions
of the firm’s clients. Almost everyone wins: big US-based AI gets freely
crawlable tokens, the client gets their crimes buried in LLM-generated
answers, most news consumers get an adequate free paraphrase. Meanwhile,
though, AI operations in the PRC will be able to train on material
that’s one generation fresher.</p>
<p>The problem isn’t so much that “our side’s” AI is better than theirs,
or the other way around. Every LLM is going to have embedded biases, for
a variety of reasons. Propaganda and copyright-related biases are only
two.</p>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://www.technologyreview.com/2026/07/30/1140927/a-fundamental-flaw-leaves-llms-vulnerable-to-attack/">A
fundamental flaw leaves LLMs strikingly vulnerable to attack</a> by Will
Douglas Heaven. <q>In a series of experiments that looked at what was
going on inside a handful of different models, the researchers found
that LLMs seem to identify the role of a specific chunk of text not by
the tags around it but by the style of that text and the words it
contains.</q></p>
<p><a href="https://www.wired.com/story/boomers-cant-stop-gifting-their-grandkids-ai-generated-slop-books/">Boomers
Can’t Stop Gifting Their Grandkids AI-Generated Slop Books</a> by Miles
Klee. <q>In addition to books featuring kids, some parents have
complained of being fleeced by vendors selling AI-produced books not
labeled as such on Amazon, irritated by their children’s exposure to
puzzles and games riddled with AI’s mistakes, and just plain dismayed by
the proliferation of the AI aesthetic across content targeted at
kids.</q> (Another good reason to go to story hour at the library—legit
children’s book recommendations.)</p>
<p><a href="https://pluralistic.net/2026/07/30/pay-for-privacy/">Pluralistic:
The stupidest imaginable excuses for surveillance pricing (30 Jul
2026)</a> by Cory Doctorow. <q>[Y]ou can direct the AI to automatically
run a series of small experiments to discover the maximum markup each
group will stomach under which circumstances. This works without you
having to direct the AI to rip off certain groups of people – it will
simply find the most vulnerable people and rip them off the most….This
works so well that Google has announced that it is their plan for making
a profit off of AI, after losing hundreds of billions of dollars on
chatbots.</q> (But however fast the price discrimination works, <a href="https://blog.zgp.org/price-of-price-discrimination/">the price of
the price discrimination machine has to keep going up faster than
that</a>.)</p>
<p><a href="https://www.adweek.com/media/metas-tepid-revenue-outlook-undercuts-its-ai-spending-spree/">Meta’s
Tepid Revenue Outlook Undercuts its AI Spending Spree</a> by Kendra
Barnett. (Revenue is up 28% year over year. Conversions are up 15.7%. Do
the math—the <a href="https://blog.zgp.org/the-duopoly-crunch-from-the-brand-side/">customer
acquisition cost crunch</a> continues. It’s not evenly distributed,
though. Highly Meta-dependent advertisers such as <a href="https://finance.yahoo.com/markets/stocks/articles/oddity-tech-odd-stock-fair-191251642.html">Oddity
Tech (ODD)</a> are hurting more, while advertisers with better options
are less affected.)</p>
<p><a href="https://www.theverge.com/tech/970948/meta-smart-glasses-privacy-wearables">Meta
is royally screwing up its smart glasses rollout</a> by Victoria Song.
(I don’t know anyone who owns these things, or participate in any group
or space where they would be tolerated. Is there some filter bubble of
extremly surveillance-positive Instagram users that I’m totally
disconnected from?)</p>
<p><a href="https://daringfireball.net/linked/2026/07/28/jobs-we-dont-want-ads">Steve
Jobs in 2011: ‘We Build Products That We Want for Ourselves, Too, and We
Just Don’t Want Ads’</a> by John Gruber. (None of the current Apple
execs could stay at the company if they tried to hold the line against
enshittification. Mr. Market wants enshittification to happen
everywhere, and <a href="https://blog.zgp.org/enshittification-is-riskier-than-it-looks/">even
if Apple can buy the best of everything else, they’re stuck with the
same investors as Packard Bell</a>. More from John Gruber: <a href="https://daringfireball.net/2026/07/ads_on_apple_news_suck">The Ads
on Apple News Continue to Suck, but at Least There Are a Lot of
Them</a>)</p>
<p><a href="https://theconversation.com/older-peoples-media-literacy-can-be-boosted-in-just-60-minutes-new-study-287880">Older
people’s media literacy can be boosted in just 60 minutes – new
study</a> by Saffron Howden, Janet Fulton, and Sora Park. <q>To find
solutions through media literacy, we focused on older people (aged 55+)
who are known to be more vulnerable to misinformation, have fewer media
skills, and feel less confident in their media abilities. We recruited
our study participants from across Australia through libraries, the news
media, and social media.</q></p>
<p><a href="https://larrysalibra.com/tesla-is-juicing-its-china-sales/">Tesla
is juicing its China sales</a> by Larry Salibra. <q>When I was shopping
for a car in Hong Kong, all of the Chinese EVs dealers required that I
book a test drive days in advance. The Tesla showroom, in contrast, let
me do a walk in test drive because they weren’t busy. They also offered
me something none of the Chinese EV dealers did: 7 year financing at
0.99% interest per year. This made the Tesla which had a higher sticker
price, actually less expensive because HKD (which is pegged to the USD)
loses value at much faster than 0.99% a year.</q></p>
</section>]]></description>
		</item>
		<item>
			<title>How scams target you online—and how to fight back</title>
			<link>https://blog.zgp.org/how-scams-target-you-online-and-how-to-fight-back/</link>
			<guid>https://blog.zgp.org/how-scams-target-you-online-and-how-to-fight-back/</guid>
			<pubDate>Sun, 26 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>The prophet Jeremiah once <a href="https://en.wikisource.org/wiki/Bible_(King_James)/Jeremiah#Chapter_12">asked</a>,</p>
<blockquote>
<p>Wherefore doth the way of the wicked prosper? wherefore are all they
happy that deal very treacherously?</p>
</blockquote>
<p>Every generation of people perceives a collapse in ethical behavior,
and if the trust level of human civilization had really been sliding
that badly for so long—<a href="https://en.wikipedia.org/wiki/Book_of_Jeremiah#Historical_background">the
book of Jeremiah was written 2600 years ago</a>—nothing would be left
for us by now.</p>
<p>That perception of decline is not surprising, considering that most
people respect norms of honesty and reciprocity, but the transgressors
tend to attract more attention. Often, people who comment on moral
collapse are older adults comparing their experiences with their own
peer group to the crimes of the younger, higher-profile <a href="https://www.theguardian.com/business/2023/apr/06/forbes-30-under-30-tech-finance-prison">30
under 30 crowd</a>.</p>
<p>So we can’t just go by vibes, by our feelings of how much of a
rip-off everything is now. We have to take a step back and look at the
stats. And this time, possibly because of how network effects amplify
the impact of a few big companies, it’s a real problem.</p>
<p>According to the FTC, <a href="https://techcrunch.com/2026/04/27/consumers-lost-2-1-billion-to-social-media-scams-in-2025-ftc-reports/">people
in the USA lost $2.1B to social media scams in 2025</a>. Internal
documents from Meta, which owns Facebook, Instagram, and WhatsApp,
estimated that the company is <a href="https://www.reuters.com/investigations/meta-is-earning-fortune-deluge-fraudulent-ads-documents-show-2025-11-06/">involved
in about 1/3 of successful scams here</a>.</p>
<p>And Meta isn’t the only company that <a href="https://blog.zgp.org/but-i-want-to-turn-people-into-dinosaurs/">designs
an Internet platform to work better for scammers</a>. Google tweaks
their systems and policies to benefit scams, too. The <a href="https://www.ic3.gov/PSA/2025/PSA250424">FBI warns</a>,</p>
<blockquote>
<p>Cyber criminals use advertisements that imitate legitimate companies
to misdirect targets conducting an internet search for a specific
website.</p>
</blockquote>
<p>Google Search is a major scam risk because of some <a href="https://blog.zgp.org/how-google-can-go-legit/">choices in software
design and ad policies</a> that make their platform work better for
scammers and worse for those trying to catch them. As Prof. Tressie
McMillan Cottom <a href="https://www.nytimes.com/2021/12/10/opinion/scams-trust-institutions.html">wrote</a>,
we are now living in a scam <em>culture</em>.</p>
<blockquote>
<p>Scams weaken our trust in social institutions, but their going
mainstream—divorced from empathy for the victims or stigma for the
perpetrators—means that we have accepted scams as institutions
themselves.</p>
</blockquote>
<p>Google and Meta are large enough, and have enough impact on how
people and companies find each other, that their internal collapse in
business ethics has an oversized impact on the whole economy.</p>
<p>The ways that big companies profit from online fraud is pretty
complicated, but I think I can explain it if we work backwards. And the
better we understand how scam culture has been coded into everyday
business practices, the better we will be able to roll it back.</p>
<section class="level2" id="the-auction">
<h2>The auction</h2>
<p>Most online advertising, legit or criminal, is placed using some kind
of auction. Probably the best known is the system behind Google’s search
ads, which Edelman et al. explained in <a href="https://www.benedelman.org/publications/gsp-060801.pdf">Internet
Advertising and the Generalized Second-Price Auction: Selling Billions
of Dollars Worth of Keywords</a>.</p>
<p>Every time there is some opportunity to show an ad to you—whether
it’s because you did a web search, scrolled a social media feed, or
visited a web site with ads—some computer program in a data center
somewhere acts like a very fast auctioneer, selling off the ad space to
the highest bidder.</p>
<p>The bidders in the auction are AI, using three different kinds of
information to “decide” how much to bid.</p>
<ul>
<li><p><strong>Context:</strong> where the ad will appear</p></li>
<li><p><strong>Intent:</strong> what you’re doing (if a bidder infers
that you’re shopping, the ads reaching you go way up in value)</p></li>
<li><p><strong>Personal information:</strong> some other qualities about
you that a bidder has collected or inferred.</p></li>
</ul>
<p>If you notice that you get different ads on search engines or social
media from other people, you have probably been classified differently
from them, so different bidders are bidding high enough to win the
auctions.</p>
</section>
<section class="level2" id="why-facebook-and-google-tolerate-scams">
<h2>Why Facebook and Google tolerate scams</h2>
<p>The auction mechanism explains why Meta and Google seem so <a href="https://blog.zgp.org/another-ad-safety-report/">incompetent</a> at
filtering out the scam ads. An auction generally gets higher prices when
there are more bidders. And the ad auction is no exception. (How is it
that social sites make it so easy to tag people who appear in photos,
but they somehow can’t spot a bank logo in an ad and alert the real
bank?)</p>
<p>Meta estimated that they get 10% of their revenue from illegal and
policy-violating ads—but that doesn’t mean that scammers are responsible
for 10% of their revenue. All of the legit advertisers are paying more,
too, because every time “their” AI bidder participates in an ad auction,
it has to go up against not just legit competitors, but scammers
too.</p>
<p>No wonder that, as Bob Sullivan explains, <a href="https://bobsullivan.net/cybercrime/facebook-plays-role-in-one-third-of-all-scams-and-earns-10-of-its-revenue-that-way/">Facebook’s
algorithm pushes people into the arms of criminals</a>. Meta and Google
refuse to take some basic steps to make it easier for law enforcement
and consumer organizations to spot scam advertisers, or for their real
advertisers to spot their fake competitors.</p>
</section>
<section class="level2" id="know-the-scam-avoid-the-ad">
<h2>Know the scam, avoid the ad?</h2>
<p>I’m fortunate enough to avoid some kinds of online scam ads. For
example, I rarely see those urgent Microsoft warnings, you know, the
ones that will put you on the phone with a “tech support” person to talk
you through installing a computer virus.</p>
<p>I don’t get those tech support ads because AI bidders can infer that
I keep up with computer stuff. But I’m sure that there are plenty of
scams I would be more likely to fall for. I’m probably about as gullible
as average if a scammer could figure me out—maybe a realistic urgent
alert related to an upcoming trip?</p>
<p>In general, the less accurately I can be targeted, the better. I
probably won’t get any fewer scams by being misclassified, but I’d
rather get scam ads that I’ll laugh at than scam ads I’ll click on.</p>
<p>In order for the scam problem to flourish, though, the scams must be
getting matched up to the people likely to fall for them.</p>
</section>
<section class="level2" id="normal-companies-passing-targeting-data">
<h2>Normal companies passing targeting data</h2>
<p>The Big Tech companies collect some data about what you watch and do
on their sites and apps. But a lot of targeting data comes from a place
you wouldn’t expect. It’s actually provided to the Big Tech platforms by
normal small businesses.</p>
<p>Why?</p>
<p>Companies that advertise with Google and/or Meta are encouraged to
share their customer information.</p>
<p>For example, they can report when somebody bought something, or send
a customer list to the Big Tech company to train the AI to find people
similar to their customers to show ads to. They can even report on who’s
reading what pages of their web site.</p>
<p>And because of the built-in auction mechanisms on the platform, every
advertiser ends up sharing information with every other advertiser.
Every customer list that you appear on helps to train the AI to target
you for ads you’re likely to respond to—including the scam ones.</p>
</section>
<section class="level2" id="legal-options">
<h2>Legal options</h2>
<p>Do you have a right to stop companies from passing info about
you?</p>
<p>It’s complicated, but in California you have a better chance than in
most other places. California has a bunch of privacy laws.</p>
<p>That’s good news. Even better news is that a bill that would have
rolled back some of our most important privacy protections has been
amended, and right now it looks like we will keep our right to sue over
the worst violations. More on that at: <a href="https://oaklandprivacy.org/facts-and-fiction-on-the-california-invasion-of-privacy-act-and-the-problematic-sb-690/">Facts
and Fiction on the California Invasion of Privacy Act and the
problematic SB 690</a> from Oakland Privacy.</p>
<p>A lawyer can work backward from a scam ad you received, to the AI
that targeted you for the scam, to the sources of information that
trained the AI. Justice is within reach.</p>
</section>
<section class="level2" id="doing-legit-businesses-a-favor">
<h2>Doing legit businesses a favor</h2>
<p>People who do online marketing are family members and citizens, too.
They don’t want to support Big Tech’s noisy, resource-sucking data
centers, <a href="https://www.reuters.com/sustainability/boards-policy-regulation/meta-buried-causal-evidence-social-media-harm-us-court-filings-allege-2025-11-23/">social
media mental health harm</a>, or other corporate crimes, any more than
the rest of us do.</p>
<p>But sometimes Big Tech companies make it hard to justify not spending
money with them. And it’s hard to speak out in the marketing meeting and
say, “our company should do the right thing.”</p>
<p>But over time, privacy cases can help change that.</p>
<p>When a marketing person has trouble justifying moving the budget away
from Big Tech and into legit marketing projects, the benefit of avoiding
legal issues can shift the balance. It’s sort of like the struggle by
people with disabilities to get the accommodations required by the
Americans with Disabilities Act. Being able to point out the risk of
legal action can help a business decision-maker do the right thing.</p>
</section>
<section class="level2" id="next-steps">
<h2>Next steps</h2>
<p>The Big Tech companies want people to think of the Internet as some
kind of lawless zone, and they throw around scary terms like “Section
230” to try to make people think that the fix is in, and there’s no
point going after a scam at the source. But when you dig into the files
from the California Legislature and the courts, that’s not how it is.
Regular people are making progress in the courts against scammers and
their enablers. If you want to learn more, please <a href="https://blog.zgp.org/hello/">get in touch</a>.</p>
</section>]]></description>
		</item>
		<item>
			<title>Links for 25 July 2026</title>
			<link>https://blog.zgp.org/mlp-2026-07-25/</link>
			<guid>https://blog.zgp.org/mlp-2026-07-25/</guid>
			<pubDate>Sat, 25 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p><a href="https://www.adexchanger.com/programmatic/programmatic-platforms-champion-transparency-but-not-if-it-means-giving-activists-access/">Programmatic
Platforms Champion Transparency, But Not If It Means Giving Activists
Access</a> by Anthony Vargas. (I said I would <a href="https://blog.zgp.org/is-it-safe-to-turn-off-your-ad-blocker/">let
you know when it’s safe to turn off your ad blocker</a>, and nope, still
wretched hive of scum and villainy. This story is about good ads sneaked
onto bad sites—but every time that happens, it leaves some good site
with an ad slot to fill, so more of the bad ads get served. The industry
has existing tools, often already standardized, just <a href="https://blog.zgp.org/performance-max-preserving-attribution/">doesn’t
want to use them</a>.)</p>
<p><a href="https://pxlnv.com/linklog/apple-maps-ads-policies/">Apple
Updates Its Advertising Policies</a> by Nick Heer. (More news from how
Apple is on the <a href="https://blog.zgp.org/enshittification-is-riskier-than-it-looks/">enshittification
curve</a> the same as any other company.)</p>
<p><a href="https://www.nature.com/articles/s41562-026-02474-9">The
political polarization of health outcomes in the USA</a> by Elizabeth
Elder and Neil A. O’Brian. <q>Roughly half of this new health gap is due
to people changing their ideology over time, with new entrants to the
conservative coalition being less healthy than new liberals. But another
sizeable share is due to people who were already liberal or conservative
diverging more in health over time.</q> (Maybe William James was right
about the <a href="https://www.gutenberg.org/files/5116/5116-h/5116-h.htm">cash
value</a> of beliefs, and some people are just invested in lower-return
asset classes?)</p>
<p><a href="https://blog.mozilla.org/en/firefox/firefox-containers-preview/">Experience
Better Browsing: Introducing Native Containers in Firefox 153</a> (This
is <a href="https://blog.zgp.org/youtube-cleanup/">part of the easiest
way to containerize and mostly de-enshittify YouTube</a>, now part of
the browser.)</p>
<p><a href="https://fortune.com/article/ai-godfather-radiologists-obsolete-salaries-up-to-571k-demand-growing/">A
decade after the ‘Godfather of AI’ said radiologists were obsolete,
their salaries are up to $571K and demand is growing fast</a> vy Marco
Quiroz-Gutierrez. <q>Over the last 10 years, the number of active
radiologists in the U.S. has grown by about 10%, said Christoph Herpfer,
an economist and business administration professor at the University of
Virginia’s Darden School of Business who studies health care finance and
physician labor markets. <q>We actually have a huge shortage of
radiologists. So the exact opposite of this prediction has happened,</q>
he told Fortune.</q></p>
<p><a href="https://www.theguardian.com/books/2026/jul/14/publishers-sue-google-gemini-ai-training">Book
publishers sue Google for copyright infringement over Gemini AI
training</a> by Emma Loffhagen. <q>The publishers argue that Google
repurposed books that had been supplied for limited services such as
Google Books, Google Play Books and Google Scholar. Those services
allowed Google to use the works in specific ways – for example, to
display searchable snippets or sell ebooks – but not, the lawsuit
claims, to copy them for training commercial AI products.</q></p>
<p><a href="https://www.wired.com/story/please-stop-making-me-opt-out-of-ai/">Please
Stop Making Me Opt Out of AI</a> by Reece Rogers. (not likely. Number
must go up.) Related: <a href="https://マリウス.com/the-rise-of-the-bullshittery/">https://マリウス.com/the-rise-of-the-bullshittery/</a>),
<a href="https://karlbode.com/the-lies-theyre-telling-towns-and-tribes-about-the-benefits-of-ai-data-centers/">The
Lies They’re Telling Towns And Tribes About The Benefits Of AI Data
Centers</a> by Karl Bode, <a href="https://futurism.com/artificial-intelligence/pollution-ai-data-centers-severe">The
Pollution Being Churned Out by AI Data Centers Is So Severe That It’s
Almost Incomprehensible</a> by Victor Tangermann.</p>
<p><a href="https://www.adexchanger.com/tv/please-i-beg-you-do-not-fill-my-tv-with-pregnancy-ads/">Please,
I Beg You, Do Not Fill My TV With Pregnancy Ads</a> by Victoria
McNally—associate editor of AdExchanger. (Marketing people <em>know</em>
that this stuff is creepy as hell, and counterproductive for the brand,
but they’re so <a href="https://blog.zgp.org/try-the-interruption-test/">cohesive</a> as a
group that it will take a swift kick from outside to stop the <a href="https://blog.zgp.org/total-independence/">slide into
chickenization</a>.) Related: <a href="https://www.bjanda.com/blog/where-did-it-all-go-wrong-for-agencies/">Where
Did It All Go Wrong For Agencies?</a> by Brian Jacobs.</p>
<p><a href="https://monopoly-report.com/p/google-s-new-use-of-ips-in-europe">Google’s
new use of IPs in Europe</a> by Alan Chapell. Hooray, Google imposes yet
another <a href="https://blog.zgp.org/have-you-filed-your-compliance-taxes/">compliance
tax</a> on companies using their services. <q>Accordingly, anyone
running a third-party CMP supporting Adsense must surface Feature 3 in
Google’s vendor entry before August 3 or risk understated-disclosure
exposure and limited-ads degradation (not to mention legal
liability).</q> (Somewhere in Mountain View, Google lawyers are passing
the bong and laughing their asses off about being able to make people do
all this stuff. <q>I got it, I got it, make them quack like a duck next,
they’ll totally do it!</q>)</p>
<p><a href="https://www.businessinsider.com/metas-ai-ads-push-causes-chaos-for-brands-2026-7">Meta’s
AI advertising dreams have become a nightmare for brands</a> by Lara
O’Reilly, Sydney Bradley, and Lucia Moses. <q>Meta is pushing
advertisers to use its AI tools — and results are proving chaotic:
strangely twisted limbs, gibberish writing, or entirely changed
products. Meta’s response to brands: That’s on you, not us.</q> (Don’t
worry, when Meta <a href="https://blog.zgp.org/the-advertising-cartel-coming-to-your-web-browser/">takes
control of how the ad <em>results</em> get measured</a> across all
media, these ads will turn out to be the best ads ever.)</p>]]></description>
		</item>
		<item>
			<title>Are ya winning, son?</title>
			<link>https://blog.zgp.org/are-ya-winning-son/</link>
			<guid>https://blog.zgp.org/are-ya-winning-son/</guid>
			<pubDate>Wed, 22 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>The attribution cartel is in Digiday, in a series
by Ronan Shields.</p>
<ul>
<li><p><a href="https://digiday.com/media-buying/wtf-w3cs-attribution-api/">WTF:
W3C’s Attribution API?</a></p></li>
<li><p><a href="https://digiday.com/media-buying/w3c-attribution-api-prompts-debate-over-the-future-of-web-measurement/">W3C
Attribution API prompts debate over web measurement future</a></p></li>
<li><p><a href="https://digiday.com/marketing/fears-of-big-tech-bias-underpin-debates-around-w3cs-attribution-api/">Fears
of Big Tech bias underpin debates around W3C’s Attribution
API</a></p></li>
</ul>
<p>I’m quoted, about the proposal’s <a href="https://blog.zgp.org/privacy-menace-almost/">biggest privacy
problem</a>.</p>
<blockquote>
<p>“You get this paradoxical increase in user privacy risks, because the
proposal obfuscates and rewards attribution fraud,” he told Digiday,
adding the proposal’s current guise actually “creates more incentives to
collect more data on more people in order to sneak ads in front of those
who are about to buy anyway.”</p>
</blockquote>
<p>And so is Angelina Eng, formerly VP of measurement at Interactive
Advertising Bureau (IAB) U.S.</p>
<blockquote>
<p>“There is no one-size-fits-all solution, and there is always
customization,” she explained to Digiday, urging the importance of the
ability to slice and dice data across time periods and portfolios
without browser-imposed constraints or privacy budgets limiting
combinations.</p>
</blockquote>
<p>(The “privacy budget” feature is part of how <a href="https://blog.zgp.org/oops-all-oligopoly/">“structural advantages”
to large scale are built in to the proposal</a>.)</p>
<p>So if both the free-range privacy nerd (me) and the adtech
measurement expert executive are against the attribution proposal, could
that mean that the attribution cartel is doing something right?</p>
<p>Unfortunately, no. The big companies in the middle are just taking
such a big bite that it’s unacceptable to both ends.</p>
<p>Adtech people and privacy nerds are on opposite sites on a lot of
issues, but fundamentally most members of both groups are proponents of
decentralized decision-making. Markets, stigmergic learning,
competition, all that good stuff.</p>
<p>The Big Tech companies are approaching the problem differently. In
the surveillance oligopoly model, prices—instead of acting as an
information-carrying medium—serve only as an <em>output</em> of an ML
system that collects data from both buyers and sellers. The operator of
the ML system can sit back and collect all the consumer surplus (which
is really the only source of revenue remaining that’s large enough to
justify all those data center investments, just saying).</p>
<figure>
<img alt="meme version of this blog post" loading="lazy" src="/i/are-ya-winning-son.png"/>
<figcaption aria-hidden="true">meme version of this blog
post</figcaption>
</figure>
<p>There is well-known <a href="https://en.wikipedia.org/wiki/The_Use_of_Knowledge_in_Society">criticism
of economic central planning</a>, but every so often someone predicts
that this time it will be different, and central planning will totally
work because now we have better information technology for central
planning. This time, that supposedly enabling technology is “AI.” The
Attribution proposal is not an economic central planning platform all by
itself, but it’s a step toward the cartel members’ <a href="https://blog.zgp.org/reinventing-gosplan/">planned economy
goal</a>. Instead of a variety of advertising decision-makers evaluating
the performance of different ad media for different purposes and
different audiences, the cartel will be able to provide one centralized
report, which will, of course <a href="https://blog.zgp.org/performance-max-preserving-attribution/">back
up the placements made by its own algorithms</a>.</p>
<p>My view is that advertising should be an economic signal between
independent players in an economy. Cory Doctorow summarizes the other
side of the argument as <a href="https://pluralistic.net/2025/05/07/rah-rah-rasputin/">“Facebook
has built a mind-control ray out of Big Data, and we can sell anything
to anyone”</a>.</p>
<p>So it’s not a surprise that adtech people and privacy people are on
the same side on the attribution cartel issue. If the atttribution
cartel can be beaten—and it can, the freedom-loving side <a href="https://rjionline.org/news/big-techs-economic-takeover-can-be-beat/">beat
the Clipper Chip and the Fritz Chip</a> and this time they don’t even
have a chip—then the privacy nerds and the IAB can go back to arguing
about cookies and stuff in the context of a market economy. I’m looking
forward to that.</p>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://krebsonsecurity.com/2026/07/lg-to-ban-residential-proxies-from-smart-tv-apps/">LG
to Ban Residential Proxies from Smart TV Apps</a> by Brian Krebs. <q>App
makers looking for ways to monetize their creations can turn to
residential proxy providers, which pay developers to include SDKs that
turn the user’s device into a residential proxy node that is rented to
paying customers. In the case of LG and Samsung smart TVs, Spur found
residential proxy SDKs bundled with everything from simple games like
Pac-Man to screensavers and file utilities.</q></p>
<p><a href="https://arstechnica.com/security/2026/07/apps-targeted-at-us-troops-contain-chinese-and-russian-code/">Apps
targeted at US troops contain Chinese and Russian code</a> by Dell
Cameron. <q>The largely unregulated advertising industry that tracks
Americans online treats civilians and service members mostly the
same—unless there is profit in telling them apart—despite evidence that
exposure can reveal troop deployments, unit movements, and the routines
of personnel within intelligence facilities and hardened shelters where
nuclear weapons are believed to be stored.</q> (Also a risk for defense
manufacturing workers, utility repair crews, and first responders: <a href="https://blog.zgp.org/surveillance-risks-and-the-tidalwave-report/">Surveillance
risks and the TIDALWAVE report</a>)</p>
</section>]]></description>
		</item>
		<item>
			<title>Starting Firefox with a temporary profile</title>
			<link>https://blog.zgp.org/starting-firefox-with-a-temporary-profile/</link>
			<guid>https://blog.zgp.org/starting-firefox-with-a-temporary-profile/</guid>
			<pubDate>Tue, 21 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>I have been starting Firefox with temporary
throwaway profiles (for research and testing purposes), and wrote this
to make it a little faster.</p>
<nav><div class="highlight"><pre><span></span><span class="ch">#!/usr/bin/env python3</span>

<span class="kn">from</span><span class="w"> </span><span class="nn">os</span><span class="w"> </span><span class="kn">import</span> <span class="n">path</span>
<span class="kn">from</span><span class="w"> </span><span class="nn">subprocess</span><span class="w"> </span><span class="kn">import</span> <span class="n">run</span>
<span class="kn">from</span><span class="w"> </span><span class="nn">sys</span><span class="w"> </span><span class="kn">import</span> <span class="n">argv</span>
<span class="kn">from</span><span class="w"> </span><span class="nn">tempfile</span><span class="w"> </span><span class="kn">import</span> <span class="n">TemporaryDirectory</span>

<span class="c1"># Script to run Firefox with a temporary profile.</span>
<span class="c1"># Takes one optional argument, URL to open.</span>

<span class="c1"># Reference</span>
<span class="c1"># https://kb.mozillazine.org/Bypassing_the_Profile_Manager</span>

<span class="k">try</span><span class="p">:</span>
    <span class="n">url</span> <span class="o">=</span> <span class="n">argv</span><span class="p">[</span><span class="mi">1</span><span class="p">]</span>
<span class="k">except</span> <span class="ne">IndexError</span><span class="p">:</span>
    <span class="n">url</span> <span class="o">=</span> <span class="s2">"about:blank"</span>

<span class="k">with</span> <span class="n">TemporaryDirectory</span><span class="p">()</span> <span class="k">as</span> <span class="n">tmp</span><span class="p">:</span>
    <span class="nb">print</span><span class="p">(</span><span class="s2">"Starting Firefox with profile </span><span class="si">%s</span><span class="s2">"</span> <span class="o">%</span> <span class="n">tmp</span><span class="p">)</span>
    <span class="c1"># Write a preferences file to turn off the first run pages</span>
    <span class="k">with</span> <span class="nb">open</span><span class="p">(</span><span class="n">path</span><span class="o">.</span><span class="n">join</span><span class="p">(</span><span class="n">tmp</span><span class="p">,</span> <span class="s2">"prefs.js"</span><span class="p">),</span> <span class="s2">"w"</span><span class="p">)</span> <span class="k">as</span> <span class="n">fh</span><span class="p">:</span>
        <span class="nb">print</span><span class="p">(</span><span class="s1">'''</span>
<span class="s1">        user_pref("startup.homepage_welcome_url", "");</span>
<span class="s1">        user_pref("datareporting.policy.dataSubmissionPolicyBypassNotification",</span>
<span class="s1">            true);</span>
<span class="s1">        user_pref("browser.startup.homepage",</span>
<span class="s1">            "chrome://browser/content/blanktab.html");</span>
<span class="s1">        user_pref("toolkit.telemetry.reportingpolicy.firstRun", false);</span>
<span class="s1">        user_pref("trailhead.firstrun.didSeeAboutWelcome", true);</span>
<span class="s1">        '''</span><span class="p">,</span> <span class="n">file</span><span class="o">=</span><span class="n">fh</span><span class="p">)</span>
    <span class="c1"># Start Firefox using the fresh profile, with developer tools open</span>
    <span class="n">run</span><span class="p">([</span><span class="s1">'/usr/bin/firefox'</span><span class="p">,</span> <span class="s1">'--devtools'</span><span class="p">,</span> <span class="s1">'-profile'</span><span class="p">,</span> <span class="n">tmp</span><span class="p">,</span> <span class="n">url</span><span class="p">])</span>
</pre></div>
</nav>
<p>Based on the article <a href="https://kb.mozillazine.org/Bypassing_the_Profile_Manager">Bypassing
the Profile Manager</a> from MozillaZine. This is the “unlisted profile”
feature.</p>
<p>And the temporary profile directory gets cleaned up when the script
exits.</p>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://lernerpython.com/python-update/">The Python you
learned isn’t the Python that exists today.</a> by Reuven Lerner. Covers
<code>dataclasses</code>, <code>collections</code>, and even gets into
<code>uv</code> which I have not tried yet. (So far I’m getting by with
whatever Python modules are packaged by the distribution.)</p>
<p><a href="https://time.com/article/2026/07/18/the-world-should-learn-from-australia-s-social-media-law/">What
the World Should Learn from Australia’s Social Media Law</a> by Ravi
Iyer, Jonathan Haidt and Zach Rausch. (Have you ever seen a Big Tech big
shot sending their kid to an expensive private school where they get
<em>extra</em> social media time?)</p>
<p><a href="https://www.theautopian.com/we-need-modern-car-equivalents-to-those-old-twin-cam-badges-and-luckily-i-have-some/">We
Need Modern Car Equivalents To Those Old ‘Twin Cam’ Badges And Luckily I
Have Some</a> by Jason Torchinsky. <q>Here’s a good idea: if you are
stuck with a car that uses some kind of miserable subscription service
so you can have access to things like heated seats or whatever, may as
well let everyone know your pain, right? Put that shit right on the back
of the car!</q></p>
<p><a href="https://futurism.com/artificial-intelligence/us-realizing-chinese-ai-models-way-cheaper">US
Companies Are Realizing That Chinese AI Models Are Way Cheaper, Ditch
American Ones</a> by Frank Landymore. Meanwhile, <a href="https://futurism.com/artificial-intelligence/china-cracking-down-ai-boyfriends">China
Is Cracking Down on AI Companions Because Not Enough Babies Are Being
Born</a> by Maggie Harrison Dupré.</p>
<p><a href="https://theconversation.com/gen-z-is-pushing-back-against-ai-a-reminder-to-all-of-us-that-the-future-isnt-written-284955">Gen
Z is pushing back against AI – a reminder to all of us that the future
isn’t written</a> by Siobhan Lyons. <q>Speaking at the University of
Central Florida, property developer Gloria Caulfield declared AI is
<q>the next Industrial Revolution</q>. The humanities graduates, already
burdened with debt and job insecurity, responded with a torrent of boos.
Former Google CEO Eric Schmidt and Big Machine Records CEO Scott
Borchetta were also booed as they sang the praises of AI at graduation
ceremonies. Their bemused reactions reflect a growing generational
divide when it comes to AI adoption.</q></p>
<p><a href="https://www.thebulwark.com/p/the-slop-doctrine-why-right-wing-embraces-ai-generated-imagery-slopaganda">The
Slop Doctrine</a> by Alice E. Marwick. <q>While Republicans and
Democrats are growing suspicious of AI at roughly the same pace,
right-wing politicians and influencers have embraced AI slop in a way
that the left has not. Why?</q></p>
<p><a href="https://pivot-to-ai.com/2026/07/15/meta-glasses-celebrity-backlash-the-fans-hate-them/">Meta
glasses celebrity backlash: the fans hate them</a> by David Gerard.
Related: <a href="https://futurism.com/future-society/backlash-meta-pervert-glasses-afraid">The
Backlash Is So Strong That People With “Pervert Glasses” Are Afraid to
Use Them in Public</a> by Maggie Harrison Dupré. (ICYMI: <a href="https://futurism.com/authors/mharrison/feed">Maggie Harrison Dupré
author RSS feed on Futurism</a>)</p>
</section>]]></description>
		</item>
		<item>
			<title>paleoenshittification and a path to adoption for MyTerms</title>
			<link>https://blog.zgp.org/paleoenshittification-and-myterms/</link>
			<guid>https://blog.zgp.org/paleoenshittification-and-myterms/</guid>
			<pubDate>Wed, 15 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p><strong>previously:</strong> <a href="https://blog.zgp.org/a-batna-for-myterms/">A BATNA for
MyTerms</a></p>
<p>Looking back at the history of the IT industry, it’s possible to find
instances where vendors did to their customers some of the same kinds of
shenanigans that oligopoly companies are doing to everyone today.</p>
<p>An early example of <strong>paleoenshittification</strong> was the
decision by Sun Microsystems to remove the C compiler from its Solaris
operating system. An OS, as a two-sided platform for developers and
users, is in a position to do the enshittification cycle, and Sun did it
early. The Unix software scene was the subject of an enshittification
run long before <a href="https://theoatmeal.com/comics/reaching_people">artists and writers
experienced one on Facebook</a>. Sun tried to get people to pay to
rebuild their own C programs long before Meta tried the same for
reaching people’s own audience. Yes, many Solaris users started paying
for the compiler that they used to get with the OS, but others were able
to slip out of being caught in first-stage enshittification—maybe
because old-school Solaris didn’t have the infrastructure, licensing, or
anticircumvention law to lock out or put a toll on other compilers. The
removal of this key development tool was one of the key events in the
popularization of a copyleft-licensed replacement, gcc. More info in <a href="https://zork.net/seven-dollars/unix.html">Nick Moffitt’s $7
History of Unix</a>.</p>
<p>Without that move by Sun, and other attempts at enshittification of
Unix, the software freedom movement and open source software business
might never have gone mainstream. So for those who dig rhyming history,
it’s tempting to make the analogy: <a href="https://myterms.info/">MyTerms</a> and the tools that support it
are to the enshittifying web of today as the GNU licenses and tools were
to Unix. But the rhyme needs to hang together. The GNU tools were
initially distributed first on tape, then CD, in a convenient form for
building and installing <em>on existing Unix systems.</em> The
“autotools” that mystify the developers of today were a pragmatic
response to the need to work with what’s there in order to get
adoption.</p>
<p>Today, IEEE, IAB, and W3C are all trying to address similar problems
with how personal information gets used on the web, and everybody has
gaps. The winning approach will be the one that can best embrace,
extend, and ameliorate where necessary, the other two.</p>
<p>That starts with understanding the territory.</p>
<p>MyTerms is not unique in offering an automated way to do the
paperwork necessary for processing personal data. On a technical level,
data collection on typical web sites operates not directly under control
of the site ToS, but using an <a href="https://iabtechlab.com/gpp/">Interactive Advertising Bureau
standard called GPP</a>, which stands for Global Privacy Protocol. (Not
to be confused with GP<strong>C</strong> or GP<strong>L</strong>.)</p>
<p>GPP is an existing machine-readable way—with open source
documentation and sample code—for browsers to tell sites that</p>
<ul>
<li><p>the user in in a jurisdiction that requires consent, and consent
has been obtained</p></li>
<li><p>the user is in a jurisdiction that recognizes opt-outs, and no
opt-out is in effect</p></li>
<li><p>the user is in some other jurisdiction, do as thou wilt shall be
the whole of the law</p></li>
</ul>
<p>And all of those options can apply to a bewildering grid of purposes
and vendors.</p>
<p>Although MyTerms <a href="https://blog.zgp.org/insulating-people-from-fake-consent/">relies
on contract instead of consent</a>, it solves a problem that from the
company point of view is already solved. Companies that process your
data <em>already have machine-readable permissions that they rely on to
process your data</em>, because they already check GPP.</p>
<p>From the company point of view, there is zero reason to check MyTerms
for permission to do something that GPP already says is allowed.</p>
<p>So the path to adoption for MyTerms has to account for the widespread
existing reliance on GPP. MyTerms can de-enshittify your web experience,
but can’t get adopted everywhere all at once, any more than C
programmers could go from proprietary Unix to a complete “GNU System” of
all freely licensed software all at once.</p>
<p>We have to look for key influence points to work with what’s already
there.</p>
<p>Fortunately—because GPP <a href="https://github.com/InteractiveAdvertisingBureau/">is open source,
along with a bunch of handy tools for working with it</a>, it will be
pretty straightforward for MyTerms implementations to also support
GPP.</p>
<p>Detect sites where GPP is in effect and modify any consent or
no-objection entries that are obviously in conflict with the MyTerms
contracts that the user is willing to accept. This means a little extra
work is required to map the MyTerms licenses to the permissions that can
be expressed in GPP, but when that’s done, a new MyTerms user can start
getting value from their MyTerms tool even on non-MyTerms sites.</p>
<p>That would leave the MyTerms/GPP hybrid providing more privacy
protection than GPP as deployed today, but not delivering the full
benefits of MyTerms—kind of like how installing GNU tools on Solaris
solved the immediate problem of building C programs, but you still
needed a licensed copy of Solaris to run them. But it gets the MyTerms
situation from (stable, no MyTerms) to (unstable, some MyTerms) on the
way to the full MyTerms stack. For sites, the decision to adopt MyTerms
would go from no effect to a better option than just MyTerms to GPP
(lossy) encoding. And users could get a similar immediate benefit to
what <a href="https://blog.zgp.org/alt-fan-rewarded-interest/">Rewarded
Interest offers</a>—the confusing, annoying “consent” dialogs
disappear.</p>
<p><strong>More:</strong> <a href="https://blog.zgp.org/1741-partners/">1,741 partners</a></p>
<section class="level2" id="related">
<h2>Related</h2>
<p><a href="https://blog.zgp.org/alt-fan-rewarded-interest/">Rewarded
Interest</a> is taking a similar approach, in a way. Making the
“consent” dialog go away is an easy-to-explain benefit for users.</p>
<p>Some people will be more satisfied with the Rewarded Interest
approach (share an identifier I control, make the ads personalized, try
to get me a piece of the action) and some will be more satisfied with
MyTerms. The status quo, where nobody quite gets what they want and
everybody has to click an extra thing, is a distant third.</p>
</section>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://snscratchpad.com/posts/reverse-information-paradox/">The
Reverse Information Paradox</a> by Satya Nadella. (Sharing data enables
the recipient to compete with or work against you. Probably kind of an
obvious point but news to see the CEO of a company with “cloud
computing”, surveillance advertising, and “AI” businesses making
it.)</p>
<p><a href="https://www.vogue.com/article/in-the-social-ban-era-where-will-gen-alpha-spend-time-online">In
the Social Ban Era, Where Will Gen Alpha Spend Time Online?</a> by Amy
O’Brien. (Generations aren’t cohesive, and this one is split along the
AI-maxer/AI-hater fault line along with all the others.)</p>
</section>]]></description>
		</item>
		<item>
			<title>Oops! All oligopoly</title>
			<link>https://blog.zgp.org/oops-all-oligopoly/</link>
			<guid>https://blog.zgp.org/oops-all-oligopoly/</guid>
			<pubDate>Mon, 13 Jul 2026 00:00:00 +0000</pubDate>
			<description><![CDATA[<p>Normally when I go on about the attribution
cartel I try to focus on the <a href="https://blog.zgp.org/privacy-menace-almost/">privacy problem</a>,
because even though the anticompetitive side is important, some
antitrust regulator somewhere will pick up on it eventually. And this is
not a situation where antitrust and privacy are in tension. As Robin
Berjon wrote, <a href="https://berjon.com/competition-privacy/">Competition &amp;
Privacy: It’s Both Or Nothing</a>.</p>
<p>Sometimes, though, I’m just all, damn, dude, you said that part out
loud? The Big Tech companies have <a href="https://www.abajournal.com/news/article/federal-judge-who-ruled-against-google-is-taken-aback-by-its-efforts-to-avoid-paper-trail">corporate
training</a> for talking about doing crimes, but it looks like Mozilla
doesn’t have their own <a href="https://collider.com/the-wire-stringer-bell-rule-conspiracy-quote/">Stringer
Bell</a>, and ends up taking more “notes on a criminal fuckin’
conspiracy” than the other cartel members would probably like.</p>
<p>In an <a href="https://monopoly-report.com/p/the-w3c-attribution-api">interview
with Martin Thomson from Mozilla about the W3C Attribution API</a>, Alan
Chapell asks,</p>
<blockquote>
<p>Critics have indicated that the privacy-budget mechanism favors large
platforms whereby a single mistaken query can lock a small advertiser
out, a constraint only a dominant firm could enforce. Does the design
assume a power imbalance between platform and advertiser, and if so,
does it entrench one?</p>
</blockquote>
<p>And the answer is one that I’m going to archive just in case.</p>
<blockquote>
<p>I want to acknowledge that this is one of the hard parts. Large
platforms have more data to use, so they are able to slice that data in
more ways than the little guys. With noise, you can’t slice what you get
into thousands of pieces unless you have many thousands of people
involved. Or, more likely millions. Small players need to be more
careful and make fewer queries. And a mistake will wipe out more of
their potential learnings as a result.</p>
<p>On top of that, big players will be better able to develop the
discipline necessary to get more out of the system. More people, more
resources, all that.</p>
<p>We spent a lot of time thinking about this problem. But we concluded
that this was one area where attempting to levy a technical control was
unwise. Competition law — as ineffective as it has been in stemming the
rise of monopoly power in this market, and others — has a better suite
of tools available than we do.</p>
<p>Right now, the best I can say is that there are no structural
advantages provided to large players, other than what they obtain
naturally. I understand that this might be disappointing, but it’s the
pragmatic outcome in this case.</p>
</blockquote>
<p>Let me check my notes here. Nope, not one of the members of the
attribution cartel is Mother Nature. The “obtain naturally” has nothing
to do with nature as we know it—it’s a reward to scale that results from
the design of the attribution tracking system.</p>
<p>Oligopoly is hard-coded in—as a result of decisions made by and for
the oligopoly companies. And of course it’s “pragmatic” for those who
already dominate the online advertising market to design a system to
keep dominating it.</p>
<section class="level2" id="when-not-to-use-the-feedback-sandwich">
<h2>When not to use the feedback sandwich</h2>
<p>How did things get so far? Part of it has to do with the way that
people responded all professionally to Google’s <a href="https://blog.zgp.org/google-privacy-sandbox-timeline/">“Privacy
Sandbox”</a>.</p>
<p>The “feedback sandwich” (say something nice, make your critical
point, say something else nice) is appropriate for many business
contexts, but not that one. An intern who puts their private key in a
script needs to be handled differently from a transnational corporation
doing a multi-year plan to extend its market dominance. But every
“Privacy Sandbox” op-ed was basically in the following format:</p>
<ul>
<li><p>Super stoked that Google is exercising such great leadership in
privacy. All hail Google’s wisdom!</p></li>
<li><p>Maybe Google is doing some tiny little crime that they could
maybe think about doing a little less, or if not that’s fine
too</p></li>
<li><p>We look forward to doing free QA work for Google to test every
morsel of code that drops down to us from on high.</p></li>
</ul>
<p>(Yes, I wrote some stuff that ended up getting squeezed into this
format, and no I don’t have the pre-edit versions, they’re in document
history at a former employer.)</p>
<p>That whole saga set a bad example. Sometimes an “open source project”
is a bona fide open source project, sometimes it’s the form of an open
source project on top of a scheme with existing goals that are
incompatible with the public interest. <a href="https://blog.zgp.org/think-before-you-click/">Think before you
click</a>.</p>
</section>
<section class="level2" id="bonus-links">
<h2>Bonus links</h2>
<p><a href="https://fortune.com/article/peter-thiel-tech-billionaires-limit-kids-screen-time-social-media-smartphones-short-form-video-risks/">Tech
billionaires are shielding their children from the products that made
them rich</a> by Marco Quiroz-Gutierrez. (This is not just billionaires.
Also applies to regular programmers, data scientists, and managers.)</p>
<p><a href="https://www.vogue.com/article/do-smart-glasses-have-a-surveillance-problem">Do
Smart Glasses Have a Surveillance Problem?</a> by Amy O’Brien. (Good
example of social fragmentation I guess—I don’t know any group or space
where Meta glasses are considered appropriate.)</p>
</section>]]></description>
		</item>
	</channel>
</rss>

