Why would it need to be compliant? Ycombinator is not a European company.
But if they hold and manage data for users who reside in the EU (which they do), then I believe the rules apply too. From what I can gather, if a user in the EU approaches HN and asks for their profile data and posts to be removed, then that falls under the GDPR laws.
Ask HN: Is HN GDPR compliant?
21–30 of 113 posts
Re: Ask HN: Is HN GDPR compliant?
#22Re: Ask HN: Is HN GDPR compliant?
#23Re: Ask HN: Is HN GDPR compliant?
#24If you are a Non-EU business, that is a business with no legal presence or employees in the EU then you can comfortably skip GDPR compliance with minimal risk (some unknown obscure treaty provision?)
#notalawyer
Re: Ask HN: Is HN GDPR compliant?
#25Probably not. I really have mixed emotions about GDPR being a SaaS founder. It seems overstepping and heavy handed that the EU can enact laws that affect American's and American companies. The EU can do what it wants, but generally I am against regulation as it promotes bureaucracy, stifles innovation, and creates fluff and burden's especially on small companies such Chief Data Protection Officer and Chief Data Offic…
Re: Ask HN: Is HN GDPR compliant?
#26Why would it need to be compliant? Ycombinator is not a European company.
Unfortunately GPDR effects any site/company that has EU visitors which is nearly all sites.
Re: Ask HN: Is HN GDPR compliant?
#27American businesses should add a clause that all authorized access is predicated on a user knowingly acknowledging that they are not a resident of the EU. If GDPR becomes an issue they could abuse the CFAA to get the persons of interest extradited to the USA for prosecution of unauthorized access. It would be funny too because the data the lawyers would collect to proceed with a case would be from unauthorized access…
Re: Ask HN: Is HN GDPR compliant?
#28Earlier quoted context omitted.
But if they hold and manage data for users who reside in the EU (which they do), then I believe the rules apply too. From what I can gather, if a user in the EU approaches HN and asks for their profile data and posts to be removed, then that falls under the GDPR laws.
If that it truly the case, then I suspect we will see more and more sites refuse service to Europeans. Are Europeans permitted to decline to be covered under the GDPR? (In exchange for being permitted to use such sites?)
Re: Ask HN: Is HN GDPR compliant?
#29Why would it need to be compliant? Ycombinator is not a European company.
But if they hold and manage data for users who reside in the EU (which they do), then I believe the rules apply too. From what I can gather, if a user in the EU approaches HN and asks for their profile data and posts to be removed, then that falls under the GDPR laws.
Re: Ask HN: Is HN GDPR compliant?
#30Why would it need to be compliant? Ycombinator is not a European company.
Unfortunately GPDR effects any site/company that has EU visitors which is nearly all sites.
If my random little website isn't GDPR compliant, what is their strategy for getting me to pay the restitution if I'm not doing business in the EU? Where do the fines go? How could they force me to pay them? The worst they can do is block access to the website, but I haven't read anything which suggests that is written in the law.