Live data from Hacker News

GDPR for lazy people: Block all European users with Cloudflare Workers

apility.io

221–230 of 1001 posts

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#222
post #214

I plan to completely ignore GDPR laws and will not modify neither my privacy policy not my SaaS product, even if I have a lot of customers from the EU.

Why? You're opposed to privacy? And how do you plan to react when you get penalized?

Because he's lazy and thinks he'll get away with it. He'll come into compliance after penalties outweigh the costs of changing the way he does business. This is probably the reaction of the vast majority of folks dealing with customer data, and not at all unexpected — they have a business to run, and costs to customer privacy are an externality being rolled into their costs via regulation.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#224
post #53

I keep seeing these posts on how to block European users to avoid the GDPR. As a citizen of Europe, seeing these posts consistently making it to the front page is disappointing. It would seem that Silicon Valley perceives the GDPR as more of a hindrance than an opportunity to offer users better privacy. Nothing has been learned.

I really enjoyed this quote from [1] > I would be very wary of a company who claims this legislation is onerous. It is potentially life threatening to companies who do very shady things without your consent. That much is true. That is the entire point. I somewhat suspect those companies hiding behind the 'oh lets just block Europe' excuse just don't want to admit the extent of what they are doing with the data. US ci…

I somewhat suspect those companies hiding behind the 'oh lets just block Europe' excuse just don't want to admit the extent of what they are doing with the data.

If the cops showed up at your door asking to search your home, business, and Internet accounts without a warrant, would you let them? Why not? What are you hiding?

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#225
post #208

Earlier quoted context omitted.

Wait a minute… You provide a service, and your users are afraid the GDPR could come to them ?!? Please tell me I've read something wrong. Otherwise, this is just panic induced stupidity. I expect they will grow out of it (though maybe not before you go bankrupt, which obviously sucks big time).

> Wait a minute… You provide a service, and your users are afraid the GDPR could come to them?!? Yes. It's not unreasonable, because GDPR has components that require vendor assurance (more or less). So the megacorp with a point-of-presence in the EU has to be cautious about what strictly-US SaaS services it uses if there's any potential for data crossing into the SaaS. This is almost certainly exactly what GDPR is in…

Ah, OK. Makes more sense now. Still, requiring ISO compliance from a small business sounds like madness. An audit ought to be enough.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#226
Can American businesses actually be sued or anything over GDPR? What if all my servers are housed in america?

If I have a user agreement that my users agree to, I don't particularly care what another country thinks about what kinds of privacy they think my users are entitled to. I would already have a legal agreement in that case.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#227
post #53

I keep seeing these posts on how to block European users to avoid the GDPR. As a citizen of Europe, seeing these posts consistently making it to the front page is disappointing. It would seem that Silicon Valley perceives the GDPR as more of a hindrance than an opportunity to offer users better privacy. Nothing has been learned.

It's not about privacy, its about poorly written regulation that leaves too much vagueness because its based on principles rather than hard rules. Good intentions are not enough, there must be clear paths to implementation and verification. Perhaps that should've been fixed instead of wondering why so many companies don't really want to deal with it. It will also do just about nothing in regards to the major companie…

>its about poorly written regulation

What is poorly written about it?

> there must be clear paths to implementation and verification.

There are.

>Perhaps that should've been fixed instead of wondering why so many companies don't really want to deal with it.

There's nothing to fix, and I'm going to assume you can't even name 3 things since your post is just an extremely vague talking point.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#228
post #113

I simply don't understand how or why a law that has scope in the EU is causing trouble for companies which conduct no business in the EU beyond responding to HTTP requests on a global decentralized telecommunications network. Why would an American internet business which conducts no operations in Europe and has no servers in Europe be subject to regulation that affects the EU? What is going to happen? Is the EU going…

> Is the EU going to target American banks of American businesses and try to extract fines? You mean like America? That time when the USA decided to enforce their embargo against Cuba by intercepting a payment from one of the Nordics for a bunch of Cuban cigars? No, that's unlikely. > Is the EU going to extradite owners of these businesses? Extremely unlikely, besides that would require the cooperation of the other c…

>> Are EU courts going to issue default judgements on businesses and individuals?

> Against individuals: Unlikely, but it could happen

AFAIK IANAL: GDPR doesn't apply to individuals that e.g. host mastodon instance.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#229
post #113

I simply don't understand how or why a law that has scope in the EU is causing trouble for companies which conduct no business in the EU beyond responding to HTTP requests on a global decentralized telecommunications network. Why would an American internet business which conducts no operations in Europe and has no servers in Europe be subject to regulation that affects the EU? What is going to happen? Is the EU going…

Fun fact: Russia recently approved similar law which requires all personal data of Russian citizens to be stored in a server hosted in Russia. So theoretically many webmasters are already be in trouble :)

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#230
post #53

I keep seeing these posts on how to block European users to avoid the GDPR. As a citizen of Europe, seeing these posts consistently making it to the front page is disappointing. It would seem that Silicon Valley perceives the GDPR as more of a hindrance than an opportunity to offer users better privacy. Nothing has been learned.

If there's a successful business that blocks EU access due to GDPR, that's a huge immediate opportunity to enter that market in the EU (unless, of course, the business model is based on resale of personal information).

Or unless the business model is location-based.

The example from a previous HN article was the Chicago Tribune blocking EU access.

Are you saying that there's a "huge immediate opportunity" for people in Europe to read local Chicago news?

Not every business is global. In fact, 99%+ aren't.

Post reply on HN