Live data from Hacker News

Grindr €6.5M fined for not collecting users’ valid consent for sharing data

gdprhub.eu

121–130 of 249 posts

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#122

Earlier quoted context omitted.

The EU is merely leading the way here, you can expect all of the developed world to have similar data protection laws on the books sooner or later. And if you think that treating data in the proper way is hard then you probably shouldn't be in business at all. Operating in the EU is not a liability if you treat your users data in a respectful and responsible way. Common sense alone would answer your questions on what…

How are websites and apps going to make money though? Like it or not, the reason the internet became this popular is because of all the free stuff on it. If everything was behind subscription fees it possibly would never have taken off. I don't think I would've ever used Google if they had charged a fee for the service. This would effectively make political interests entrenched even more on the internet, because they…

> How are websites and apps going to make money though?

Ah yes. The unsolved issue of businesses making money without wholesale collection and sale of user data.

No business ever made money until collecting and selling user data became possible.

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#123

Earlier quoted context omitted.

I feel that "just the way they like" is honestly a pretty low bar to clear and in general are common sense and respectful things that you should be doing with user data in the first place. - Tell people up front what you will do with their data - Let them opt out - Track what services your own service uses (Ex: your website -> google analytics) - If people want to know what data you have about them tell them - If peo…

>common sense and respectful things that you should be doing with user data in the first place It's disrespectful to be nosey into what people are doing or to give them orders on what they can or can't do. >So beyond just "handling data" Grindr was getting paid (ads) for sharing your data to companies that could then also turn around and do whatever they wanted with that data. Good on them. They figured out a way to…

> It's disrespectful to be nosey into what people are doing or to give them orders on what they can or can't do.

Not just disrespectful, I would even say it's immoral given the unbalance of power involved. That's why we need GDPR: to protect people from businesses being nosey into what they are doing against their consent, and also to protect people from businesses telling them what they can and cannot decide about their own data.

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#124
post #43

Earlier quoted context omitted.

With respect, that is easy to say when ~50% of the population is a potential partner and is easily determinable. When you are gay and the majority of guys are straight, finding partners organically is near impossible (unless you're in a gay bar or something). I'm not condoning Grindr's actions or that people shouldn't use it with care, but it really has become a key part of LGBT networking in the modern era.

I think it depends on where you are, the city I live in has a very large gay scene. So I've had guys just try to chat me up while I'm at a restaurant or something, I don't mind. The only time it was a bit weird is when a co-worker told me I look like his husband, not okay to say at work.

Arguing that guys shouldn't use grindr because it puts them in danger and then saying they should chat people up in real life seems bizarre to me. Even in my fairly liberal western country assuming a random guy in a normal bar is gay could put me at risk. Why take that chance when apps full of gay guys exist?

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#125

Earlier quoted context omitted.

The idea that some data is owned, and that people can obtain ownership of data that belongs to other entities is as moronic as claiming that the CO2 i breathed is owned by me. Data is data, it's not PII or whatever stupid contraptiion lawyers came up with to keep themselves busy If EU wanted to ban tracked ads, it should make a law bans tracked ads, that simple. Not only it would instantly achieve the desired effect…

You are totally misinterpreting what GDPR is for , so it makes sense you'd be unable to recognize the benefits. Data IS owned, by the person the data pertains to. And companies should not be able to capture that data, sell it and share it without explicit consent. Which GDPR does achieve.

> Data IS owned, by the person the data pertains to

This is an almost undefined concept. Data is not copyright, they are observations. Plus for many kinds of data ownership is hard to define, e.g. genetic data which is largely shared by all of us.

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#126

Earlier quoted context omitted.

Think of it as the law catching up with technology. > No business is interested in having to suddenly comply with such regulations and essentially no longer being able to utilize the data of individuals however they please. Indeed, hence the need for regulation. > Ergo, corporate interests will probably lead to lots of lobbying in this regard, just look at what happened with net neutrality and the advertising around…

> since EU citizens will be enjoying those protections and US citizens will not eventually this will translate into an advantage for companies doing business from the EU and into the US. For that reason alone there will be a big incentive for the US to make a law that is symmetrical to remove this advantage. Given the lack of similar regulation in the US despite the situation being so bad that unsolicited spam subsid…

Um, CCPA is a thing. It's not as stringent as GDPR, but I would call it "similar" regulation. This stuff tends to happen at the state level in the USA.

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#127

Earlier quoted context omitted.

You can collect as much data as you like, its what you do with it that counts.

I think the less data you collect the less impact a leak or rogue employee can have. Imagine if Hacker News would leak its user database. I assume there is not much in there, so the impact would pretty much be non existent.

That depends. If that user database included IP addresses I can see plenty of ways in which it could have major impact.

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#128
post #97

Earlier quoted context omitted.

Grindr has around 4 million daily users, and up to 30 million registered users in total. Even a fine of this size would be meaningless once divided between the users.

I meant giving a million dollar per user. People would try to sue them en masse. They would have no choice but to be very strict about what they do with our data.

Give millions of users a million dollars each? That seems... not very practical!

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#129

Earlier quoted context omitted.

You are totally misinterpreting what GDPR is for , so it makes sense you'd be unable to recognize the benefits. Data IS owned, by the person the data pertains to. And companies should not be able to capture that data, sell it and share it without explicit consent. Which GDPR does achieve.

> Data IS owned, by the person the data pertains to This is an almost undefined concept. Data is not copyright, they are observations. Plus for many kinds of data ownership is hard to define, e.g. genetic data which is largely shared by all of us.

You can try as hard as you can to wriggle out from understanding what this is all about but it is actually pretty clear: data supplied by an individual is the property of that individual, they have the right to informed consent on what it is used for, they can ask you to delete it, they can ask you to update it or review it. In some cases other laws (for instance: tax law) can make it mandatory for you to keep certain records, for which there are exceptions.

That's basically it. So it's not an 'undefined concept', it is extremely clear and the text of the law is actually quite legible so there is no real reason not to be informed about this if it affects you in any way (which it likely does).

Re: Grindr €6.5M fined for not collecting users’ valid consent for sharing data

#130
post #91
post #66

Earlier quoted context omitted.

Wait a second, it's not Grindr gathering and selling a list of homosexuals interested into sex. It's the users themselves who actively register on Grindr to announce their services and picture on the platform. If this activity is illegal in the country of the user, the best Grindr can do, is to prevent users from these countries from registering on the platform based on their national ID, but that's basically it.

You don't have to be living in a country where homosexuality is illegal to not want your presence on a dating app - straight or gay - to be public knowledge. Speaking from unfortunate experience about half the men on Grindr do not put up identifying pictures. Many are in relationships with men and are cheating. And many present publicly as heterosexual or are married to women. It's a blackmailer's jackpot.

Right along with https://en.wikipedia.org/wiki/Ashley_Madison_data_breach
Post reply on HN