Home Data-Driven Thinking With Latest Safari Release, Apple Fixes Its Cookie Glitch

With Latest Safari Release, Apple Fixes Its Cookie Glitch

SHARE:

Data-Driven Thinking” is written by members of the media community and contains fresh ideas on the digital revolution in media.

Today’s column is written by Chris Kane, founder at Jounce Media.

For years, Apple’s Safari browser has endeavored to prevent advertising technology companies from tracking user web browsing behavior via cookies. And for years, ad tech companies have tried to circumvent Safari’s cookie policies.

Back in 2012, The Wall Street Journal wrote an exposé on the techniques used by Google and others to exploit loopholes in Safari’s cookie policies. Five years later, Apple is still trying to close these loopholes.

Safari draws an important distinction between first-party and third-party cookies. A cookie is assigned first-party status if it is set by the website that a user is currently visiting. AdExchanger.com, for example, can set a first-party cookie while you’re reading this article. But content loaded from other domains, like an ad served by doubleclick.net, is given third-party status, and Safari prevents these domains from setting cookies.

The most common technique for circumventing these rules relies on click tracking to create opportunities for setting persistent cookies. Here’s how it works:

When users click on ads, they navigate to the advertiser’s landing page. But in most cases, the user’s browser actually redirects through one or more click-tracking URLs. In the fleeting moment when a browser is connected directly to a click-tracking URL, Safari gives that ad tech domain first-party status, creating the opportunity for the ad tech company to set a persistent cookie. And once that persistent cookie is set, the ad tech company can continue to read for its presence, even when connecting to the browser as a third party.

While desktop Safari has negligible market share, more than 50% of mobile web browsing happens on Safari browsers. All browsing activity on iOS, even on standalone web browsers like the Chrome app, is powered by Safari’s WebKit and governed by Apple’s third-party cookie policies. Users can change these default cookie settings, but no one does, and so targeting and measurement is more or less broken for the majority of mobile web traffic. While Safari’s cookie policies are an afterthought for desktop advertising, they are the backbone of mobile web advertising, making the first-party cookie loophole essential for many buy-side and sell-side ad tech platforms.

At June’s developer conference, Apple announced that is is closing the loophole. It is fixing the glitch. Powered by a combination of more stringent cookie expiration policies and intelligent cookie clearing, Safari will begin purging ad tech cookies that were set via the first-party loophole. The first release of this new cookie policy will apply only to desktop Safari, but the writing is on the wall for mobile web cookie tracking.

Here’s what this means for ad land:

Subscribe

AdExchanger Daily

Get our editors’ roundup delivered to your inbox every weekday.

  • Mobile web monetization is going to get even worse for publishers. The absence of audience data on Safari means that advertisers can’t target ads or measure their effectiveness. That depresses demand for both direct-sold and programmatic channels, pulling down publisher yield.
  • The consumer experience on the mobile web is also going to get even worse. Apple’s new policy is meant to protect consumer privacy, but it accomplishes this at the expense of ad relevance. Publishers will increase ad load to offset CPM erosion, and consumers will be exposed to a higher volume of untargeted ads.
  • Amazon and Facebook win again. Their consumer products give them a massive footprint of first-party cookies, creating an insurmountable advantage in targeting and measuring mobile web ads. (Google might have been a winner here too, but its decision to operate ad tech products on the DoubleClick domain demotes it to the same third-party status as any other ad tech platform.)

This also means that the ad tech world is going back to the drawing board on managing mobile web user identity. The industry made a collective misstep by building on top of a loophole. When a powerful company like Apple controls foundational advertising technology, the rest of the industry is subject to unpredictable shifts. The web turns out to be less open than we’ve been led to believe, and a handful of powerful companies now set the rules for how the rest of the industry operates.

Follow Jounce Media (@jouncemedia) and AdExchanger (@adexchanger) on Twitter.

Must Read

Scott’s Miracle-Gro Is Seeing Green With Retail Media

It’s lawn season – and you know what that means. Scott’s Miracle-Gro commercials, of course. Except this time, spots for Scott’s will be brought to you by The Home Depot’s retail media network.

Walled Garden Platforms Are Drowning Marketers In Self-Attributed Sales

Sales are way up; ROAS is through the roof across search, social and ecommerce. At least, that’s what the ad platforms say.

Comic: Working Hard or Hardly Working?

Shadier Than Forbes? Premium Publishers Are Partnering With Content Farms To Make A Quick Programmatic Buck

The practice involves monetizing resold subdomains jammed with recycled MFA articles produced by notorious content farms.

Privacy! Commerce! Connected TV! Read all about it. Subscribe to AdExchanger Newsletters

Adalytics Claims Colossus SSP Is Misdeclaring IDs In Its Bid Requests

Colossus SSP, a DEI-focused supply-side platform owned by Direct Digital Holdings (DDH), is the subject of Adalytics’ latest report released Friday. It’s a doozy.

The Trade Desk Reframes Its Open Internet Vision As ‘The Premium Internet’

The Trade Desk is focusing beyond the overall “open internet” and on what CEO Jeff Green calls the “premium internet.”

Comic: Welcome Aboard

Google Search’s Core Updates Are Crushing Sites And Reshaping The Web

Google Search, the web’s largest traffic and revenue generator for two decades, is in the midst of sweeping overhauls that have already altered how users are funneled around the internet.