Jan 24, 2023 · 36m · we-live-to-build

How a Cookie Invented in 94 Became the Monster Behind Your Data

Dan Freckling · 26m spoken Sean Weisbrot · 6m spoken
0:00 / 0:00
▶ Watch on YouTube →

gold bands on the timeline = statements, start to end. Hover to read, click to jump. CC turns on captions

In this episode of We Left To Build, Boltive CEO Dan Freckling joins Sean Weisbrot to examine the historical evolution, predatory mechanics, legal complexities, and security risks of modern ad tracking. Together, they outline essential data compliance frameworks for digital enterprises and share actionable digital hygiene strategies for consumers to reclaim their privacy.

How this conversation actually went

Every chapter scored 0–10 on four independent dynamics. Hover any point for the reasoning behind the score. Sean holds 19.8% of the talking time here. How this is scored →

Sean as informed peer 2.0 Guest teaching 4.8 Guest disagreement 0.1 Sean pushing back 0.1
05100:0010:0020:0030:002:20–5:18 · Sean as informed peer 1/10 The Mechanics of Online Ad Tracking and Data Auctions Sean asks a broad opening question about privacy issues. Dan delivers a comprehensive masterclass comparing 250 billion daily ad auctions to 15 billion stock trades and detailing how digital tags leak sensitive PII.5:18–8:12 · Sean as informed peer 2/10 Comparing California and Virginia Privacy Legislation Sean asks if new state laws are simply GDPR clones. Dan clarifies the specific nuances between California's broad definition of value and Virginia's GDPR-like opt-in framework for sensitive data.8:12–12:21 · Sean as informed peer 2/10 Compliance Strategies and Organizational Data Mapping Sean asks practical questions on compliance and data mapping. Dan lays out organizational best practices, referencing the NIST framework and the legal necessity of data mapping for deletion and correction rights.12:21–17:25 · Sean as informed peer 2/10 Boltive's Automated Scanning and Blocking Technology Sean asks technical and personal origin questions. Dan explains Boltive's persona-based journey scanning before sharing the poignant personal story of how predatory cancer ad targeting spurred him to join the company.17:25–21:05 · Sean as informed peer 3/10 Algorithmic Profiling and Law Enforcement Data Purchases Sean shares an anecdote about pregnancy tracking and references Minority Report. Dan politely corrects the retail brand involved (Target, not Walmart) and elevates the issue to law enforcement purchasing private geolocation data around clinics.21:05–24:15 · Sean as informed peer 1/10 Digital Privacy as a National Security Vulnerability Dan provides an extensive monologue explaining how digital ad data intersects with national security, citing RuTarget sanctions, TikTok Chinese intelligence laws, and Pushwoosh malware in US federal agencies.24:15–29:35 · Sean as informed peer 4/10 Practical Privacy Habits and Digital Footprint Management Sean demonstrates domain knowledge by explaining how TikTok uses divergent recommendation algorithms domestically versus internationally. He also forcefully articulates his counter-argument to individuals who claim they have nothing to hide.29:35–33:21 · Sean as informed peer 1/10 The History of Tracking: From Netscape Cookies to GDPR Sean gives Dan the floor to summarize closing thoughts. Dan delivers a historical synthesis of digital tracking, tracing cookies from Netscape's 1994 invention through DoubleClick, cross-device graphs, and Cambridge Analytica.2:20–5:18 · Guest teaching 6/10 The Mechanics of Online Ad Tracking and Data Auctions Sean asks a broad opening question about privacy issues. Dan delivers a comprehensive masterclass comparing 250 billion daily ad auctions to 15 billion stock trades and detailing how digital tags leak sensitive PII.5:18–8:12 · Guest teaching 5/10 Comparing California and Virginia Privacy Legislation Sean asks if new state laws are simply GDPR clones. Dan clarifies the specific nuances between California's broad definition of value and Virginia's GDPR-like opt-in framework for sensitive data.8:12–12:21 · Guest teaching 5/10 Compliance Strategies and Organizational Data Mapping Sean asks practical questions on compliance and data mapping. Dan lays out organizational best practices, referencing the NIST framework and the legal necessity of data mapping for deletion and correction rights.12:21–17:25 · Guest teaching 3/10 Boltive's Automated Scanning and Blocking Technology Sean asks technical and personal origin questions. Dan explains Boltive's persona-based journey scanning before sharing the poignant personal story of how predatory cancer ad targeting spurred him to join the company.17:25–21:05 · Guest teaching 5/10 Algorithmic Profiling and Law Enforcement Data Purchases Sean shares an anecdote about pregnancy tracking and references Minority Report. Dan politely corrects the retail brand involved (Target, not Walmart) and elevates the issue to law enforcement purchasing private geolocation data around clinics.21:05–24:15 · Guest teaching 6/10 Digital Privacy as a National Security Vulnerability Dan provides an extensive monologue explaining how digital ad data intersects with national security, citing RuTarget sanctions, TikTok Chinese intelligence laws, and Pushwoosh malware in US federal agencies.24:15–29:35 · Guest teaching 2/10 Practical Privacy Habits and Digital Footprint Management Sean demonstrates domain knowledge by explaining how TikTok uses divergent recommendation algorithms domestically versus internationally. He also forcefully articulates his counter-argument to individuals who claim they have nothing to hide.29:35–33:21 · Guest teaching 6/10 The History of Tracking: From Netscape Cookies to GDPR Sean gives Dan the floor to summarize closing thoughts. Dan delivers a historical synthesis of digital tracking, tracing cookies from Netscape's 1994 invention through DoubleClick, cross-device graphs, and Cambridge Analytica.2:20–5:18 · Guest disagreement 0/10 The Mechanics of Online Ad Tracking and Data Auctions Sean asks a broad opening question about privacy issues. Dan delivers a comprehensive masterclass comparing 250 billion daily ad auctions to 15 billion stock trades and detailing how digital tags leak sensitive PII.5:18–8:12 · Guest disagreement 0/10 Comparing California and Virginia Privacy Legislation Sean asks if new state laws are simply GDPR clones. Dan clarifies the specific nuances between California's broad definition of value and Virginia's GDPR-like opt-in framework for sensitive data.8:12–12:21 · Guest disagreement 0/10 Compliance Strategies and Organizational Data Mapping Sean asks practical questions on compliance and data mapping. Dan lays out organizational best practices, referencing the NIST framework and the legal necessity of data mapping for deletion and correction rights.12:21–17:25 · Guest disagreement 0/10 Boltive's Automated Scanning and Blocking Technology Sean asks technical and personal origin questions. Dan explains Boltive's persona-based journey scanning before sharing the poignant personal story of how predatory cancer ad targeting spurred him to join the company.17:25–21:05 · Guest disagreement 1/10 Algorithmic Profiling and Law Enforcement Data Purchases Sean shares an anecdote about pregnancy tracking and references Minority Report. Dan politely corrects the retail brand involved (Target, not Walmart) and elevates the issue to law enforcement purchasing private geolocation data around clinics.21:05–24:15 · Guest disagreement 0/10 Digital Privacy as a National Security Vulnerability Dan provides an extensive monologue explaining how digital ad data intersects with national security, citing RuTarget sanctions, TikTok Chinese intelligence laws, and Pushwoosh malware in US federal agencies.24:15–29:35 · Guest disagreement 0/10 Practical Privacy Habits and Digital Footprint Management Sean demonstrates domain knowledge by explaining how TikTok uses divergent recommendation algorithms domestically versus internationally. He also forcefully articulates his counter-argument to individuals who claim they have nothing to hide.29:35–33:21 · Guest disagreement 0/10 The History of Tracking: From Netscape Cookies to GDPR Sean gives Dan the floor to summarize closing thoughts. Dan delivers a historical synthesis of digital tracking, tracing cookies from Netscape's 1994 invention through DoubleClick, cross-device graphs, and Cambridge Analytica.2:20–5:18 · Sean pushing back 0/10 The Mechanics of Online Ad Tracking and Data Auctions Sean asks a broad opening question about privacy issues. Dan delivers a comprehensive masterclass comparing 250 billion daily ad auctions to 15 billion stock trades and detailing how digital tags leak sensitive PII.5:18–8:12 · Sean pushing back 0/10 Comparing California and Virginia Privacy Legislation Sean asks if new state laws are simply GDPR clones. Dan clarifies the specific nuances between California's broad definition of value and Virginia's GDPR-like opt-in framework for sensitive data.8:12–12:21 · Sean pushing back 0/10 Compliance Strategies and Organizational Data Mapping Sean asks practical questions on compliance and data mapping. Dan lays out organizational best practices, referencing the NIST framework and the legal necessity of data mapping for deletion and correction rights.12:21–17:25 · Sean pushing back 0/10 Boltive's Automated Scanning and Blocking Technology Sean asks technical and personal origin questions. Dan explains Boltive's persona-based journey scanning before sharing the poignant personal story of how predatory cancer ad targeting spurred him to join the company.17:25–21:05 · Sean pushing back 0/10 Algorithmic Profiling and Law Enforcement Data Purchases Sean shares an anecdote about pregnancy tracking and references Minority Report. Dan politely corrects the retail brand involved (Target, not Walmart) and elevates the issue to law enforcement purchasing private geolocation data around clinics.21:05–24:15 · Sean pushing back 0/10 Digital Privacy as a National Security Vulnerability Dan provides an extensive monologue explaining how digital ad data intersects with national security, citing RuTarget sanctions, TikTok Chinese intelligence laws, and Pushwoosh malware in US federal agencies.24:15–29:35 · Sean pushing back 1/10 Practical Privacy Habits and Digital Footprint Management Sean demonstrates domain knowledge by explaining how TikTok uses divergent recommendation algorithms domestically versus internationally. He also forcefully articulates his counter-argument to individuals who claim they have nothing to hide.29:35–33:21 · Sean pushing back 0/10 The History of Tracking: From Netscape Cookies to GDPR Sean gives Dan the floor to summarize closing thoughts. Dan delivers a historical synthesis of digital tracking, tracing cookies from Netscape's 1994 invention through DoubleClick, cross-device graphs, and Cambridge Analytica.

speaking balance: gold is Sean, purple is the guest (3 minute bins)

0:00 · Sean 39.6% · guest 60.4%0:00 · Sean 39.6% · guest 60.4%3:00 · Sean 9.6% · guest 90.4%3:00 · Sean 9.6% · guest 90.4%6:00 · Sean 6.1% · guest 93.9%6:00 · Sean 6.1% · guest 93.9%9:00 · Sean 1.9% · guest 98.1%9:00 · Sean 1.9% · guest 98.1%12:00 · Sean 5.2% · guest 94.8%12:00 · Sean 5.2% · guest 94.8%15:00 · Sean 31.4% · guest 68.6%15:00 · Sean 31.4% · guest 68.6%18:00 · Sean 21.1% · guest 78.9%18:00 · Sean 21.1% · guest 78.9%21:00 · Sean 2.7% · guest 97.3%21:00 · Sean 2.7% · guest 97.3%24:00 · Sean 47.7% · guest 52.3%24:00 · Sean 47.7% · guest 52.3%27:00 · Sean 11.5% · guest 88.5%27:00 · Sean 11.5% · guest 88.5%30:00 · Sean 0% · guest 100%30:00 · Sean 0% · guest 100%33:00 · Sean 54.9% · guest 45.1%33:00 · Sean 54.9% · guest 45.1%36:00 · Sean 100% · guest 0%36:00 · Sean 100% · guest 0%
Sharpest disagreement ▶ 18:13 Target pregnancy prediction factual correction

In a very collegial episode, Dan offers the closest instance of friction by gently correcting Sean's attribution of the famous algorithmic pregnancy prediction case from Walmart to Target.

Hardest push from Sean ▶ 28:49 Refuting the 'nothing to hide' privacy apathy

Sean explicitly challenges and rejects the common rationalization that innocent people have nothing to fear from pervasive digital surveillance.

Biggest teaching moment ▶ 4:25 Real-time ad auction scale and sensitive data extraction

Dan educates Sean on the staggering volume of daily ad auctions compared to the stock market and explains how sensitive categories like health and sexual orientation are traded.

Sean holds their own ▶ 24:15 Deconstructing TikTok's divergent algorithmic strategy

Sean shows strong domain command by detailing how ByteDance optimizes positive social harmony internally in China while exporting polarizing engagement loops internationally.

the scores for every segment, with the reasoning behind each
ChapterTopicSean as informed peerGuest teachingGuest disagreementSean pushing backWhy
The Mechanics of Online Ad Tracking and Data Auctions 1600 Sean asks a broad opening question about privacy issues. Dan delivers a comprehensive masterclass comparing 250 billion daily ad auctions to 15 billion stock trades and detailing how digital tags leak sensitive PII.
Comparing California and Virginia Privacy Legislation 2500 Sean asks if new state laws are simply GDPR clones. Dan clarifies the specific nuances between California's broad definition of value and Virginia's GDPR-like opt-in framework for sensitive data.
Compliance Strategies and Organizational Data Mapping 2500 Sean asks practical questions on compliance and data mapping. Dan lays out organizational best practices, referencing the NIST framework and the legal necessity of data mapping for deletion and correction rights.
Boltive's Automated Scanning and Blocking Technology 2300 Sean asks technical and personal origin questions. Dan explains Boltive's persona-based journey scanning before sharing the poignant personal story of how predatory cancer ad targeting spurred him to join the company.
Algorithmic Profiling and Law Enforcement Data Purchases 3510 Sean shares an anecdote about pregnancy tracking and references Minority Report. Dan politely corrects the retail brand involved (Target, not Walmart) and elevates the issue to law enforcement purchasing private geolocation data around clinics.
Digital Privacy as a National Security Vulnerability 1600 Dan provides an extensive monologue explaining how digital ad data intersects with national security, citing RuTarget sanctions, TikTok Chinese intelligence laws, and Pushwoosh malware in US federal agencies.
Practical Privacy Habits and Digital Footprint Management 4201 Sean demonstrates domain knowledge by explaining how TikTok uses divergent recommendation algorithms domestically versus internationally. He also forcefully articulates his counter-argument to individuals who claim they have nothing to hide.
The History of Tracking: From Netscape Cookies to GDPR 1600 Sean gives Dan the floor to summarize closing thoughts. Dan delivers a historical synthesis of digital tracking, tracing cookies from Netscape's 1994 invention through DoubleClick, cross-device graphs, and Cambridge Analytica.

Statements from this episode (13)

Assertion Partly supported
Freckling: Digital ads represent over 70% of marketing and $500B globally
“Digital ads are over 70% of all ads in marketing. It's about a half a trillion spend globally.”
Dan Freckling Jan 24, 2023 ▶ 3:03
Assertion Partly supported
Freckling: 95% of marketing websites use Google Analytics
“95% of marketing websites use Google analytics, which is a very well-known Example of this”
Dan Freckling Jan 24, 2023 ▶ 3:24
Assertion Partly supported
Freckling: 250B real-time ad auctions happen daily versus 15B stock trades
“So it, there's two hundred and fifty billion real-time auctions per day, and that compares to fifteen billion stock trades per day.”
Dan Freckling Jan 24, 2023 ▶ 4:36
Assertion Supported
Freckling: California defines data sales beyond monetary value unlike Virginia
“In California, when we talk about the definition of a sale of user data, it's for anything of value, not just monetary value. In Virginia, the definition is really around monetary value.”
Dan Freckling Jan 24, 2023 ▶ 6:48
Assertion Supported
Freckling: Virginia mandates opt-in for sensitive data whereas California uses opt-out
“Sensitive data under Virginia law. You must opt into, you must affirmatively say, yes, I will share my data. Whereas in California, it's an opt out regime. Meaning if you don't say anything, the assumption is you're allowing your data to be shared. You need to…”
Dan Freckling Jan 24, 2023 ▶ 7:09
Insight
Freckling: Standardizing to Strict Privacy Laws Beats State-by-State Geofencing
“It's much better, in my opinion, to do that than to try to geofence your users and try to do the Virginia thing for Virginia residents and the Colorado thing for Colorado residents and the California thing for California residents because IP identification is …”
Dan Freckling Jan 24, 2023 ▶ 8:33
Assertion Supported
Freckling: Companies Suffer Fines for Retaining Unused Decade-Old Data
“That's a real risk because businesses have gotten caught with data that's five or 10 years old that violates laws, and that's data that they weren't really using anyway, which is kind of a tragedy to get suffer fines for data that you weren't really using.”
Dan Freckling Jan 24, 2023 ▶ 10:11
Assertion Supported
Freckling: High Ad Rates Create Strong Incentives to Target Medical Professionals
“The ads for doctors are very premium priced. So there's an incentive to serve those ads to medical professionals.”
Dan Freckling Jan 24, 2023 ▶ 17:02
Assertion Supported
Freckling: Law Enforcement Can Legally Buy Private Geolocation Data for Prosecutions
“It is legal for law enforcement to purchase private data that's collected this way through geo location, through search history and law enforcement can purchase that information and use it in prosecution without running a foul of the fourth amendment to unreas…”
Dan Freckling Jan 24, 2023 ▶ 19:30
Assertion Supported
Freckling: Google shared ad data with sanctioned Russian entity RuTarget
“Google was found to be sharing data with root target, which is actually a sanctioned Russian company, a unit of spare bank that was subject to sanctions after the invasion of Ukraine.”
Dan Freckling Jan 24, 2023 ▶ 21:34
Assertion Supported
Freckling: Russian SDK Pushwoosh was embedded in US military applications
“A Russian software vendor called Pushwoosh was found to be installed in military and U S government agencies because they had they had disguised themselves. I think they had purported to have American employees based in Washington, DC, and this SDK, which was …”
Dan Freckling Jan 24, 2023 ▶ 23:22
Assertion Not checkable as stated
Weisbrot: TikTok promotes divisive content outside China while curating positivity domestically
“It's been made clear that they have two algorithms, one for inside of China and one for outside of China. The one inside of China promotes social harmony, positive things, because the Chinese government wants people to see positive imagery and things that prom…”
Sean Weisbrot Jan 24, 2023 ▶ 24:18
Assertion Supported
Freckling: Netscape invented cookies in 1994 for state management
“The first unique cookie was invented in 94 by Netscape by a young engineer who was simply trying to allow a browser to remember privately and anonymously remember a user that had signed in or had something in their shopping cart or preferred a certain language…”
Dan Freckling Jan 24, 2023 ▶ 30:46
Made with StarZero

Turn any episode into a week of clips.

This entire site, over 300 episodes transcribed, diarized, checked and made playable, runs on the StarZero media pipeline. Drop in your own episode and the podcast clipper finds the moments worth sharing, cuts them, captions them, and reframes them for every feed.