Live data from Hacker News

Shutting Down Forum (GDPR)

discourse.drone.io

181–190 of 534 posts

Re: Shutting Down Forum (GDPR)

#181

Earlier quoted context omitted.

It's punishment amounts. Laws should strive for minimal maximums and reasonable ranges to apply that interpretation in. We don't say every crime is punishable up to a life sentence for a reason. The more leeway the law provides, the more room for abuse (for either side). It would not have been hard to define multiple reasonable ranges, but sadly they think these values are what gives the law "teeth" (instead of actua…

The EU had competition law before that mentions 10% of global turnover as a maximum fee, along with very detailed notes of how to set them: https://eur-lex.europa.eu/LexUriServ/LexUriServ.do?uri=OJ:C:... The Sherman Act also mentions a ceiling of 10 million, 3 years of prison for private persons. And from history we know antitrust authorities broke up companies like AT&T or Standard Oil, which seems to me a much bigg…

> Yet you don't see small companies sweating over competition law.

They would if it applied to them and they had to do work to comply. This is very simple. If a law applies to a company, companies will worry about it and the perceived risks. If a law doesn't apply to a company, they won't worry. Ideally, both the laws and their punishments are as narrowly scoped as possible to prevent abuse at the whims of enforcer subjectivity. It goes without saying that a business not affected by a law won't sweat it like they might if affected by a law. Couple that with ambiguities in the legislation and effort to comply and it's clear why small businesses sweat one and not the other. It's a very poor comparison.

Re: Shutting Down Forum (GDPR)

#182

Earlier quoted context omitted.

Some of the early results we are seeing from GDPR make one question how ‘sensible’ it really is.

This is exactly what happens when you look to lawyers to solve social problems.

.. or tecnnological

Re: Shutting Down Forum (GDPR)

#183

I don't really see this as a GDPR troll. This guy is saying he can't manage formal GDPR requests. He's running an internet forum for christs sake. We had forums before we ever had tracking, and anonymous internet handles were practically invented on forums. What's he doing exactly that he can't answer GDPR requests with a simple "we don't collect personal information"? Of course, he probably is collecting PII, becaus…

Oh no, your email address (PII) might be compromised. How would you survive if a competent hacker could find that?

Re: Shutting Down Forum (GDPR)

#184

I'm a little confused. Who is sending compliance requests? If it's not the ico, there's rely no problem. If it is the ico, ask what needs to change. No lawyers required.

The owner of the forum received the "Nightmare letter" [1] which he is legally obligated to respond to, which as an open source project does not have the resources to be able to respond to them. [1]: https://www.linkedin.com/pulse/nightmare-letter-subject-acce...

To answer that letter takes maybe 5 minutes for a simple forum operator.

Re: Shutting Down Forum (GDPR)

#185
post #142
post #62

Earlier quoted context omitted.

The nightmare letter is bogus scaremongering bullshit. THe forum owner should just i) post a link to the privacy policy (which surely explains things like legitimate needs) and ii) supplies a copy of the data being held.

This is so incredibly tonedeaf: do you honestly think that small hobby-scale websites have a privacy policy?

What? So just because you're small scale you can ignore people's privacy?

Re: Shutting Down Forum (GDPR)

#186
post #93

Earlier quoted context omitted.

What you are saying is: don't use the internet. Google, Facebook, Twitter, etc. got websites to implement their like buttons everywhere. The information gathered by them is collected and everybody is being tracked wherever they go.

If a few mega corporations like google, fb, and twitter are The Problem, why are we making a law that generally applies to everyone and will disproportionately impact smaller organizations instead of dealing with these mega corporations per se? If we aren't as a world terrified of what is being done by small groups like the open source organization announcing it is shutting down in the very post under discussion, why…

I can't comment on the effectiveness of GDPR on the large data farmers such as Facebook and Google. However, I think that the alternative that you are proposing for lawmakers to go specifically after the current infringers of privacy would set a scary precedent. We shouldn't have specific corporations operating under a different set of laws than the rest of society, as that would undermine the rule of law.

Re: Shutting Down Forum (GDPR)

#187

I"m not really a fan of the GDPR. I don't think it really protects privacy. I think it just uses the power of the EU, a fairly big and strong organization, to intimidate the rest of the world to comply with laws that it really shouldn't have legal jurisdiction to enforce globally. I think this is a scary precedent to set that the biggest bully on the block can de facto enforce such standards because the rest of the w…

You want a scary precedent ? look at DMCA and it's been used to intimidate and bully all over the world and outside US jurisdiction (the pirate bay case showed that US government outreach went to threat of economic sanctions to a foreign government).

The GDPR is probably not what you think is, because it barely introduces new stuff, it only enforces what already existed but was ignored because it was based on self-regulation.

There are a number a publications about RGPD explaining that there really nothing to panic about (unless you're a giant conglomerate), it's not going to kill your business unless your business is based on violating privacy and things you should not be doing in the first place because it's been illegal for a while and you had 2 years since the announcement to respect the law.

> If you want none of your personal info on the web, I have a suggestion: Don't participate in forums, social media, etc.

Does not work that way, actually thanks to RGPD it's now: if you don't want to deal with RGPD requests don't collect or process personal data.

Re: Shutting Down Forum (GDPR)

#188

Does he have any proof that the person is a troll ? From what I read he just assumes it.

When you receive a request that is titled the "Nightmare letter" [1] it is hard to assume otherwise. 1: https://www.linkedin.com/pulse/nightmare-letter-subject-acce...

I don't think the TITLE of the letter is literally "Nightmare letter". It's the name of the letter that people copy and send.

Re: Shutting Down Forum (GDPR)

#189
post #76
post #5

Is it legal to publish the name of the requestor? Name and shame?

> The sad thing is that one email came from the co-founder of a Startup out of Germany. They should definitely name and shame them.

Yeah, let's not start giving people bad ideas here, m'kay? If you want to do some internet idiocy, do it yourself.

Re: Shutting Down Forum (GDPR)

#190

I just sent a GDPR letter to a company in the UK, which is still part of the EU. I have one of their Android phones, and it came with a non-removable app. It appeared to just be a bookmark. One day that app woke up and sent me a notification asking me to visit a web site, which led to a SurveyMonkey form. So I sent the company a letter asking what data they have on me. It's going to be interesting to see what happens…

    It's going to be interesting to see what happens.
My bet: Nothing.
Post reply on HN