| [ Web Proxy ] |
| Viewing: https://joindeleteme.com/blog/how-to-enable-global-privacy-control/ | [Back] [Original] |
DeleteMe empowers organizations across a variety of industries to protect their employees from the risks of unmanaged information exposure.
[Cybersecurity Planning]
Cybersecurity Risks
[Executives Talking, Blurred Faces]
Executive Threats
[Blurred Face Financial Sector]
Financial Services
[Blurred Face Government Sector]
Government
[Blurred Face Healthcare Sector]
Healthcare
[Blurred Face Higher EdSector]
Higher Education
[Blurred Face Judicial Sector]
Judicial
[Blurred Faces Law Enforcement Sector]
Law Enforcement
[Blurred Faces Media Sector]
Media & Entertainment
Reading time: 6 minutes
Announced in 2020, the Global Privacy Control (GPC) is a standard that web browsers and websites can use to simplify the making and handling of user privacy requests particularly requests like Do Not Sell (do not sell my data to third parties without my consent).
Consumer requests to opt out of data collection and the sale of personal information have been made possible due to privacy laws like the California Consumer Privacy Act (CCPA) and Europes General Data Protection Regulation (GDPR). Still, consumers lacked the tools and standards to invoke their newly won privacy rights.
Now, rather than having to click on individual links across many websites (opt-in checkboxes, cookie banners, etc.), internet users can invoke their privacy settings in one step via the Global Privacy Control (GPC).
GPC is required under the California Consumer Protection Act (CCPA). Europe similarly empowers citizens to object to third-party processing under the General Data Protection Regulation (GDPR).
In 2022, several major publishers and consent management platforms (CMP) adopted the GPC, including The New York Times and the Washington Post.
Global Privacy Control (GPC) is a privacy signal sent to websites and online services. It communicates a user’s privacy preferences (like cookie consent or the restriction of third-party cookies) regarding how their data is tracked and shared online.
It’s meant to streamline the process, making it easier for people to exercise their privacy rights, especially under the General Data Protection Regulation (GDPR) in the European Union and US state regulations like the California Consumer Privacy Act (CCPA).
Find out which data brokers have your info
Tracking refers to the many different methods websites, advertisers, ad networks, and others use to learn about your browsing behavior.
This includes information about what sites you visit and for how long, things you like, dislike, and comment on, what you search for, and what you buy.
They then share this consumer data across the web to show you ads, products, or services specifically targeted to you.
Heres an example: After you search for Texas barbeque in Google, you start seeing ads for Dallas restaurants and Lone Star State barbeque contests on all the pages you visit. Your search tells the advertising networks that youre at least somewhat interested in Texas barbecue, and now theyll follow you around the web, throwing related ads at you.
In the past, people could use the Do Not Track, or DNT for short, browser control to let sites know they dont want to be tracked.
Originally proposed in 2009, the DNT project was disbanded in 2019 due to insufficient adoption and support. DNT failed because sites rarely honored users opt-out preference signals. Nor did they have toDNT was optional.
Experts think that the GPC technical specification might succeed where DNT failed. This is for one core reason: enforcement.
GPC is legally enforceable under data privacy legislation like the CCPA and California Privacy Rights Act (CPRA), which amends the former.
[GPC under the CCPA]
Other US privacy laws that respect universal opt-out mechanisms, such as the GPC, include the Colorado Privacy Act and the Connecticut Data Privacy Act.
In 2022, the California Attorney General concluded that the beauty product retailer Sephora took no steps to block sharing user personal information even when GPC opt-out requests were made, thus violating CCPA regulations. The brand ultimately received a $1.2 million fine for breaking Californias privacy law.
The Interactive Advertising Bureau has created a privacy compliance framework called the Multi-State Privacy Agreement to help companies adhere to privacy regulations and user-enabled GPC signals.
In the future, it is not unlikely that other state laws, such as the Virginia Consumer Data Protection Act, will also require businesses to respond to the GPC signal.
Global Privacy Control lets users opt out of the sale and tracking of personal data at the browser level.
For this to happen, individuals need to use a supported browser or extension and turn on the GPC signal.
[Enable Global Privacy Control in browser]
Sites that support GPC will register the consent and not collect any data about that specific user.
This is in direct contrast to most opt-out consent management frameworks, where users information is collected even before they can opt out.
Implementing GPC is simple. As a consumer, you can enable Global Privacy Control by installing a supported browser or browser extension such as:
The launch of GPC is a meaningful step in changing how the industry accepts and handles privacy requests, ensuring consumers have more control over what is done with their private data.
As more users assert their rights using Global Privacy Control tools and more websites adopt the standard handling these requests, pressure will increase on other websites to adopt the GPC standard.
Currently, the Global Privacy Control signal is intended to communicate two privacy preferences a specific Do Not Sell request, as protected by the CCPA, and a general request to limit the sale of data, as protected by GDPR. However, with time, the GPC signal may evolve to communicate additional rights in other jurisdictions.
Even after you enable GPC, data brokers will still track you. These companies collect your personal data from online and offline sources like social media and public records, compile this data into a detailed profile about your life, and then sell it to whoever wants to buy them.
Want to learn more about data brokers? Read our ultimate guide.
Then, follow our opt-out guides to remove your name from these databases (or let us do it for you).
DeleteMe is built for organizations that want to decrease their risk from vulnerabilities ranging from executive threats to cybersecurity risks.
Chat
DeleteMe is built and run by Abine, Inc.
The Online Privacy Company.
2026 Abine, Inc. All Rights Reserved.
DeleteMe is built and run by Abine, Inc.
The Online Privacy Company.
By Challenge
By Industry
2026 Abine, Inc. All Rights Reserved.
| Web Proxy Viewer | New URL | Original Page |