Earlier quoted context omitted.
About 3 minutes. "Here's the privacy policy. Here's the data export page."
Haha data export page, what even is that? Let me just go to my SQL DB, redis, glacier backups, and Kafka logs and just click the data export button. It will only take 3 minutes.
Shutting Down Forum (GDPR)
251–260 of 534 posts
Re: Shutting Down Forum (GDPR)
#252Earlier quoted context omitted.
If you make money from EU users and are US based you need to be GDPR compliant or they will target you through payment processors and ad networks. If you don't make money from EU users and don't want to be GDPR compliant you should probably just shut them off if you ever want to operate in the EU in the future
The OP initially says if you’re small time they likely won’t target you. Are you really saying if you’re super small time, the EU is going to go after your payment processing? Of course anything is possible. It seems highly unlikely though. Then his/her last point is that they’ll give you a chance to correct things. Your post doesn’t seem to cover that either.
But this is not a given every time and not everyone goes the nice route, some go directly to court. So when you are a small fish, you are better off doing your best to follow the GDPR in the first place than scrambling to avoid sanction in a limited time later. it is not that complicated to not collect data you don't need, ask before collecting it and informing about what you do with it.
Re: Shutting Down Forum (GDPR)
#253The owner says that he doesn't have time to review GDPR-related requests; that's fine. But I wonder if he would receive a US court order would he treat it the same way? What if he received a letter from NSA? A DMCA request? What if someone posted something illegal on the forum, would he ignore that as well? It seems like he has no time only for legislation from EU.
Re: Shutting Down Forum (GDPR)
#254Earlier quoted context omitted.
Same for GDPR, you just respond to the users with "I don't collect anything on my website". Now if you collect and track you may want to inform the users and let them opt-out. GDPR is similar in a way with the Don't spam me laws, I assume you had to write code to respect this law and I did not see people complaining that they need to write code to respect that law. Or you can not do business with EU citizens.
You haven't read it, i presume. The implementation requires a lot more than that.
I understand that you may have some small websites and you put on them who knows how many trackers/analytics and now is time consuming to go to those websites and implement something, but we needed this law the same as we needed the don't spam me law, it will take effort to fix existing sites but is for the best.
Re: Shutting Down Forum (GDPR)
#255The owner says that he doesn't have time to review GDPR-related requests; that's fine. But I wonder if he would receive a US court order would he treat it the same way? What if he received a letter from NSA? A DMCA request? What if someone posted something illegal on the forum, would he ignore that as well? It seems like he has no time only for legislation from EU.
Re: Shutting Down Forum (GDPR)
#256Guy shuts down forum, goes through the nightmare letter dissecting each part as "good question" or "you should have this already" or "easy one". So what was his issue anyway?
links to what he thinks has been used to craft the letter he received.
Underlying issue is that guy does not have time to deal with GDPR and discourse does not offer the proper tools, so he went the easy route of outsourcing, but he overlooked that he's still probably still liable under GDPR.
Re: Shutting Down Forum (GDPR)
#257I"m not really a fan of the GDPR. I don't think it really protects privacy. I think it just uses the power of the EU, a fairly big and strong organization, to intimidate the rest of the world to comply with laws that it really shouldn't have legal jurisdiction to enforce globally. I think this is a scary precedent to set that the biggest bully on the block can de facto enforce such standards because the rest of the w…
You forgot to mention how this law hits your income quite hard, as you mentioned yourself a while ago: you're using internet advertising as supplemental income. And you're very likely using the services of one of the big players, like Google, the very ones you're suggesting should be explicitly targeted in another message below. Like I said before, including to you: the EU does not owe companies a business model, esp…
Re: Shutting Down Forum (GDPR)
#258The owner says that he doesn't have time to review GDPR-related requests; that's fine. But I wonder if he would receive a US court order would he treat it the same way? What if he received a letter from NSA? A DMCA request? What if someone posted something illegal on the forum, would he ignore that as well? It seems like he has no time only for legislation from EU.
Re: Shutting Down Forum (GDPR)
#259How can it be hard for a forum to comply to GDPR? What kind of private information does it really need to save?
I'm a European that supports the GDPR but here's my take on the issue in the post. I don't think it would be hard for the person in the post to comply, it would just be time consuming. Say for example that a user requests a data transcript. Well he will have to collect all the post etc from that user and send it somehow. Now this is probably just a simple SQL query but it takes a bit of time, time that many people do…
Re: Shutting Down Forum (GDPR)
#260From the prototype letter: "I am a customer of yours." Not until you pay me, you're not. Yes, Mr. Well Actually, I know that the law says otherwise, and that's exactly why the law is FUBAR.
https://www.linkedin.com/pulse/nightmare-letter-subject-acce...
thing is if you require people to register to be able to buy from you they can be customer before actually paying anything.