Live data from Hacker News

Shutting Down Forum (GDPR)

discourse.drone.io

201–210 of 534 posts

Re: Shutting Down Forum (GDPR)

#201

Earlier quoted context omitted.

COPPA is frightening to web operators, at least in the abstract. The majority of web services online at least make a cursory effort to either ban users under the age of 13 from accessing the site or force them to give parental consent. Technically speaking, if you're under 13 you're not really supposed to be on sites like Twitter. The equivalent reaction for GDPR would be if everyone either started making half-hearte…

> ..started making half-hearted efforts to block European users (which isn't what EU wants.. Are we sure about that? GDPR seems like a gift to European startups who don’t like American competition. BlaBlah car in France got huge, incidentally right around the time the anti-Uber hysteria in France reaches a peak. The sale of Daily Motion to Yahoo was blocked by the French government under ridiculous national economic…

Blablacar has a different business model than Uber and Dailymotion is now useless because of government intervention.

American startups have less to worry about than european ones, they have their non-GDPR market to address and grow, and we'll see in the future if extra european companies get fined (AND effectively pay) because of GDPR

Re: Shutting Down Forum (GDPR)

#202

I"m not really a fan of the GDPR. I don't think it really protects privacy. I think it just uses the power of the EU, a fairly big and strong organization, to intimidate the rest of the world to comply with laws that it really shouldn't have legal jurisdiction to enforce globally. I think this is a scary precedent to set that the biggest bully on the block can de facto enforce such standards because the rest of the w…

You want a scary precedent ? look at DMCA and it's been used to intimidate and bully all over the world and outside US jurisdiction (the pirate bay case showed that US government outreach went to threat of economic sanctions to a foreign government). The GDPR is probably not what you think is, because it barely introduces new stuff, it only enforces what already existed but was ignored because it was based on self-re…

by comparison, you literally don't need to do anything to implement DMCA, except perhaps respond to emails.

(I wonder why this is contestable? DMCA is an afterthought, GDPR requires a lot of actual work to implement even if you process minimal data like IPs)

Re: Shutting Down Forum (GDPR)

#203

How can it be hard for a forum to comply to GDPR? What kind of private information does it really need to save?

I'm a European that supports the GDPR but here's my take on the issue in the post.

I don't think it would be hard for the person in the post to comply, it would just be time consuming. Say for example that a user requests a data transcript. Well he will have to collect all the post etc from that user and send it somehow. Now this is probably just a simple SQL query but it takes a bit of time, time that many people don't have.

Another issue seems to be that he is afraid of repercussions and is conditioned in the US system where everyone seems to be suing everyone all the time.

Re: Shutting Down Forum (GDPR)

#204
post #118

Earlier quoted context omitted.

> If you want none of your personal info on the web, I have a suggestion: Don't participate in forums, social media, etc. There are tons of companies processing my personal data that are not web companies. GDPR isn't about "data being on the web", it's about all handling of personal data.

If you walk into a store and buy something, does the owner not have a right to record relevant personal information as it pertains to the sale, such as when buying a car? This idea that those vendors ought to be required to delete records seems backwards — you aren’t required to interact with entities that do things you don’t like — unless it’s the government, no escaping that. Public records are potentially more har…

What you say is a gross misrepresentation of what GPDR is.

First it allows to record and keep the relevant data for sales and legal requirements. Second it applies to government.

Comparing facebook vs government is really a dumb fallacy, why would government be unable to use facebook for whatever ? and facebook to cooperate to that ? it is already happening, look at what happened in the Philippines with Rodrigo Duterte[1].

That you are unhappy with the US legal requirement to be able to ship cargo to their country[2] is unrelated to GDPR, maybe take your complaint to the relevant governement or regulation body.

[1]: https://www.bloomberg.com/news/features/2017-12-07/how-rodri...

[2]: excerpt from world shipping council to US customs

II. Cargo Manifests: General Today a cargo manifest is the document that states what a carrier has loaded aboard a vessel for delivery to the United States. The creation, submission, and retention on board of the manifest are tasks that are the responsibility of the vessel carrier and are regulated by law and regulations. Proper manifesting is a requirement for allowing the entry of inbound vessels and for the issuance of a permit to unlade.

We recognize that the cargo manifest has become a document that is used by the government to prescreen cargo for national security reasons. It was not designed for this purpose and has some limitations in this regard.

Re: Shutting Down Forum (GDPR)

#205

How can it be hard for a forum to comply to GDPR? What kind of private information does it really need to save?

It seems mainly to be just the american reaction to any letter related to a new law, the examples of data he lists are just things the forum needs for purely technical reasons, like a mail for password resets and login.

Re: Shutting Down Forum (GDPR)

#206

The thing I have to wonder is who did this and more importantly, why? If you're a startup competing against an open-source project, then this is potentially a great (not good) way to get a leg up. You get the benefit of access to the code until you don't need it anymore, then get the project shut down and reap the benefit of being the last man standing. Sure, you might eventually run up against the license on the sof…

> If you're a startup competing against an open-source project

Doesn't have to be a startup. I expect many small businesses will use it to damage competitors. It's not like it's unheard of .

Re: Shutting Down Forum (GDPR)

#207

Earlier quoted context omitted.

The owner of the store does have the right to record the sales transaction data. But that was never under dispute even with GDPR. GDPR specifically says that you do not have the right to be forgotten in the information is important for legal compliance (e.g. tax records), free speech, and a couple of other things. https://ico.org.uk/for-organisations/guide-to-the-general-da... See “when does [it] not apply?” GDPR alr…

> GDPR already applies to governments. What makes you think it is not? This, for example: > Germany's spy agency can monitor major internet hubs if Berlin deems it necessary for strategic security interests, a federal court has ruled. > In a ruling late on Wednesday, the Federal Administrative Court threw out a challenge by the world's largest internet hub, the De-Cix exchange, against the tapping of its data flows b…

Since when Germany's spy agency has been a government ?

Also see the much controversed "legitimate interests" exemption to GDPR that has been carried over from the 1995 EU directive.

Re: Shutting Down Forum (GDPR)

#208
post #33

I don't know why all these websites are shutting down due to GDPR when all you have to do is hire a competent law firm with GDPR compliance expertise to review your software and help you determine if any parts need to change to become compliant and also help you address any GDPR requests.

They're shutting down because they're privacy-ignorant and that doesn't fly in the EU any more.

People apparently have a hard enough time understanding invisible things such as privacy, but this goes double for those whose income depends on violating the privacy of everyone.

Re: Shutting Down Forum (GDPR)

#209
post #176

Guy shuts down forum, goes through the nightmare letter dissecting each part as "good question" or "you should have this already" or "easy one". So what was his issue anyway?

He points out that he's dealing with several of these requests. Even if you're doing everything correctly in terms of privacy etc., responding to these requests can still be time consuming.

Re: Shutting Down Forum (GDPR)

#210

Earlier quoted context omitted.

You want a scary precedent ? look at DMCA and it's been used to intimidate and bully all over the world and outside US jurisdiction (the pirate bay case showed that US government outreach went to threat of economic sanctions to a foreign government). The GDPR is probably not what you think is, because it barely introduces new stuff, it only enforces what already existed but was ignored because it was based on self-re…

by comparison, you literally don't need to do anything to implement DMCA, except perhaps respond to emails. (I wonder why this is contestable? DMCA is an afterthought, GDPR requires a lot of actual work to implement even if you process minimal data like IPs)

And if you respond to those emails you’re not still in danger of a business-closing fine.
Post reply on HN