Sometimes i really wonder howto determine whether something is "legitimate interest" per the GDPR. E.g. if eBay cannot find a cookie on my machine, it ll use a service called threatmetrix to attempt a LAN scan (e.g. whats running on and beyond) from within the browser. I only noticed because LittleSnitch alarmed about it. I cannot imagine that this could be a legitimate interest. Any clues how to determine if could successfully sue them?


followup - here is a (tracking free) copy of a 2020 forbes article elaborating on what happens when ebay scans your local / LAN ports.

to kick things off, i have lodged a GDPR information request. As a service for you, here is the template i used - why not also file a request? :-)

