Forum feedback forum: Running Gigya scripts required for CNet Login

by: Alan Mintaka June 19, 2012 9:59 PM PDT

Like this

0 people like this thread

Staff pick

Running Gigya scripts required for CNet Login

by Alan Mintaka - 6/19/12 9:59 PM

Hello Everyone,
I'm using the NoScript add-on with FireFox 12. For those of you not familiar with it, NoScript allows you to disable embedded scripts from third-party websites. It's very effective for finding out what third-parties are running scripts on a website you're visiting.

Today I discovered that unless I allow scripts from Gigya.Com to run on Cnet web pages, I can't log in to my Cnet account.

Gigya is a "social infrastructure service provider". What they do is provide third-party scripts that allow users to log in to accounts like Cnet using their social networking IDs. Thus, a website like Cnet that uses Gigya services allows you to log in using your Facebook or other social networking ID.

The only problem here is... I wasn't trying to log in to my Cnet account with a Facebook ID, or with any other social networking ID. I was trying to log in with my Cnet userid/password. Through trial and error I found that unless I allowed Gigya scripts to run on Cnet webpages, I couldn't log into my Cnet account.

Thus, whether you want it or not, scripts that support social networking logins are running when you log into a Cnet account.

What else are the Gigya scripts doing? When they accept Facebook login info, are they also running Facebook scripts? They have to interface with Facebook somehow to get your profile info.

Do the scripts do anything else? Who knows? Cnet is supposed to have a privacy policy of some sort that protects your information. That's fine, but Cnet can't guarantee all of the the actions of third party scripts like the ones provided by Gigya. Such scripts could - and probably do - obtain usage statistics. Why not? What's to stop them? If you log into your Cnet account using your Facebook ID, Gigya obtains your profile info, has access to your usage activities on Cnet, and knows your IP address among other things.

The requirement to run Gigya scripts in order to log into Cnet accounts is forced on Cnet account holders, whether or not they have social network IDs and/or want to participate in sharing information of any kind with a social network "infrastructure service" like Gigya?

I ask that Cnet reconsider requiring its users to run Gigya scripts in order to log into their Cnet accounts with their dedicated Cnet userid and password info.

Note: boilerplate to the effect of "Private information for Cnet users who use their Cnet userid/password to login to their accounts is not shared with Gigya or any other social network service" will not suffice. How do you know? Gigya is running some kind of scripts when Cnet users login. How can you guarantee that login and profile information is not being obtained by those scripts? Because Gigya told you it wasn't?

Anyone else have views on this? Should we be required to run social networking login scripts when we login to Cnet accounts using our Cnet login information?

Forum Icon Legend

  • UnreadUnread
  • ReadRead
  • Locked threadLocked thread
  •   
  •   
  •   
  •   
  •   
  •   
  •   
  • ModeratorModerator
  • CNET StaffCNET Staff
  • Samsung StaffSamsung Staff
  • Norton Authorized Support TeamNorton Authorized Support Team
  • AVG StaffAVG Staff
  • avast! Staffavast! Staff
  • Webroot Support TeamWebroot Support Team
  • Acer Customer Experience TeamAcer Customer Experience Team
  • Windows Outreach TeamWindows Outreach Team
  • DISH staffDISH staff
  • Dell StaffDell Staff
  • Intel StaffIntel Staff
  • QuestionQuestion
  • Resolved questionResolved question
  • General discussionGeneral discussion
  • TipTip
  • Alert or warningAlert or warning
  • PraisePraise
  • RantRant

You are e-mailing the following post: Post Subject

Your e-mail address is used only to let the recipient know who sent the e-mail and in case of transmission error. Neither your address nor the recipient's address will be used for any other purpose.

Sorry, there was a problem emailing this post. Please try again.

Submit Email Cancel

Thank you. Sent email to

Close

Thank you. Sent email to

Close

You are reporting the following post: Post Subject

If you believe this post is offensive or violates the CNET Forums' Usage policies, you can report it below (this will not automatically remove the post). Once reported, our moderators will be notified and the post will be reviewed.

Offensive: Sexually explicit or offensive language

Spam: Advertisements or commercial links

Disruptive posting: Flaming or offending other users

Illegal activities: Promote cracked software, or other illegal content

Sorry, there was a problem submitting your post. Please try again.

Submit Report Cancel

Your message has been submitted and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.

Close

Your message has been submitted and will be reviewed by our staff. Thank you for helping us maintain CNET's great community.

Close

You are posting a reply to: Post Subject

The posting of advertisements, profanity, or personal attacks is prohibited. Please refer to the CNET Forums policies for details. All submitted content is subject to CBS Interactive Site Terms of Use.

You are currently tracking this discussion. Click here to manage your tracked discussions.

If you're asking for technical help, please be sure to include all your system info, including operating system, model number, and any other specifics related to the problem. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.

Sorry, there was a problem submitting your post. Please try again.

Sorry, there was a problem generating the preview. Please try again.

Duplicate posts are not allowed in the forums. Please edit your post and submit again.

Submit Reply Preview Cancel

Thank you, , your post has been submitted and will appear on our site shortly.

Close