Live data from Hacker News

Ask HN: How do you GDPR for your small side projects?

news.ycombinator.com

1–10 of 54 posts

Re: Ask HN: How do you GDPR for your small side projects?

#6
post #5

I'm sure I'll be shot by HN for this, but I'm not bothering. If a side project starts to gain traction then I'll look in to it, but if it's a small web app with a handful of users then sod it.

That's probably gonna be the approach for most people, but when it does get some traction, would be great to have a checklist to start from.

Re: Ask HN: How do you GDPR for your small side projects?

#8
post #5

I'm sure I'll be shot by HN for this, but I'm not bothering. If a side project starts to gain traction then I'll look in to it, but if it's a small web app with a handful of users then sod it.

While I understand the sentiment this might be risky. Creating the required documentation after the fact should your project take off might not be possible in every case.

Re: Ask HN: How do you GDPR for your small side projects?

#9
post #8
post #5

I'm sure I'll be shot by HN for this, but I'm not bothering. If a side project starts to gain traction then I'll look in to it, but if it's a small web app with a handful of users then sod it.

While I understand the sentiment this might be risky. Creating the required documentation after the fact should your project take off might not be possible in every case.

The goal of GDPR is compliance not punishment. So long as you are eventually following the rules it’s all ok.

Re: Ask HN: How do you GDPR for your small side projects?

#10
post #9
post #8

Earlier quoted context omitted.

While I understand the sentiment this might be risky. Creating the required documentation after the fact should your project take off might not be possible in every case.

The goal of GDPR is compliance not punishment. So long as you are eventually following the rules it’s all ok.

Yes, compliance is the goal.

However, the rules are vague enough to be interpreted in other ways as well. If some authority decides to make an example of pesky local startups for whatever reason there is little that prevents them from doing so. Remember, both the actual implementation and the enforcement of the regulation lies with the EU member countries, which even might decide to further devolve that responsibility to a local level.

Moreover, in the past similar regulations such as the legal notice requirement for websites in some EU member countries were abused by shady lawyers who specifically target small business that supposedly don't comply with these rules.

Post reply on HN