Live data from Hacker News

Statement on 4 Years of GDPR

noyb.eu

11–20 of 195 posts

Re: Statement on 4 Years of GDPR

#11
post #2

Honestly, never saw the point of GDPR. You add additional expenses for something big abusers will just bypass, ignore or even worse just retract from the market.

The purpose of GDPR is to help abusers legitimise the data they collect. Before GDPR it was a grey area, because users didn't explicitly consent to anything - GDPR fixes that. Ubiquitous pop ups where you agree for your data to be collected and processed, trained users to consent to anything that comes their way and corporations now have legal basis to use, process and sell that data. It was quite clever - make peopl…

The GDPR has strict regulations on what counts as valid data processing consent. 90% of the consent popups you see out there do not fit that criteria and any "consent" obtained via them doesn't count.

Re: Statement on 4 Years of GDPR

#12
post #9
post #2

Honestly, never saw the point of GDPR. You add additional expenses for something big abusers will just bypass, ignore or even worse just retract from the market.

GDPR also opened the door for the eprivacy directive that brought us cookie law

ePrivacy was there way before the GDPR.

Re: Statement on 4 Years of GDPR

#13
post #2

Honestly, never saw the point of GDPR. You add additional expenses for something big abusers will just bypass, ignore or even worse just retract from the market.

GDPR prevents companies like "safe"graph [1] from selling mined data:

>The GDPR (European Law)

> As of May 25, 2018, a new data privacy law known as the EU General Data Protection Regulation (or the "GDPR") went into effect through the EEA countries. SafeGraph does not offer products or services involving the collection or sale of “personal data” in EEA countries. We likewise seek not to collect such personal data from our data providers. Should any of the foregoing change, we will update this section of our Privacy Policy.

If this is not a net win, I don't know what is.

[1] https://www.safegraph.com/privacy-policy

Re: Statement on 4 Years of GDPR

#14
post #4
post #2

Honestly, never saw the point of GDPR. You add additional expenses for something big abusers will just bypass, ignore or even worse just retract from the market.

The point of GDPR is to smack companies that fail to meet it hard on the nose, so hard, in fact, that it might break. The maximum penalty is 2% of yearly turnover. That's hurtful even to megacorps. No one, not even them, needs a broken nose.

In theory yes, but so far they haven't brought the hammer onto anyone of formidable size.

Re: Statement on 4 Years of GDPR

#15
GDPR is a good idea, but it seems to be top-down and pushing against megacorp and user alike. As it stands, the law is only making it more expensive to be in the data harvesting business. These extra risks and requirements raise the barrier to entry for new firms and so just ends up cementing the market position of existing players.

If people start caring enough to actually cancel services that harvest their data, then the harvesting would stop. But it is very easy to underestimate the power of machine learning and correlation, especially when the data being correlated is gently sipped over years.

Re: Statement on 4 Years of GDPR

#16
post #2

Honestly, never saw the point of GDPR. You add additional expenses for something big abusers will just bypass, ignore or even worse just retract from the market.

> even worse just retract from the market

This is like saying that regulating damage to the environment is bad because would make businesses that can't exist without doing said damage would retract from the market. Good riddance, if a business can't or isn't willing to protect EU's citizens data they should go away, like many polluting industries that had to adapt or die.

Re: Statement on 4 Years of GDPR

#17
post #15

GDPR is a good idea, but it seems to be top-down and pushing against megacorp and user alike. As it stands, the law is only making it more expensive to be in the data harvesting business. These extra risks and requirements raise the barrier to entry for new firms and so just ends up cementing the market position of existing players. If people start caring enough to actually cancel services that harvest their data, th…

"As it stands, the law is only making it more expensive to be in the data harvesting business"

That's at least partially the intention, and I'm entirely in favour of it.

Re: Statement on 4 Years of GDPR

#18
post #15

GDPR is a good idea, but it seems to be top-down and pushing against megacorp and user alike. As it stands, the law is only making it more expensive to be in the data harvesting business. These extra risks and requirements raise the barrier to entry for new firms and so just ends up cementing the market position of existing players. If people start caring enough to actually cancel services that harvest their data, th…

> the law is only making it more expensive to be in the data harvesting business

Great. "Data harvesting" without explicit consent should not be a thing.

> If people start caring enough to actually cancel services that harvest their data, then the harvesting would stop.

I think that's quite naive. Much harvesting comes from websites that share data with each other about individual user behavior. There is no service to cancel unless you mean "browsing the web".

NOYB has more information, it seems: https://noyb.eu/en/projects

Re: Statement on 4 Years of GDPR

#19
post #15

GDPR is a good idea, but it seems to be top-down and pushing against megacorp and user alike. As it stands, the law is only making it more expensive to be in the data harvesting business. These extra risks and requirements raise the barrier to entry for new firms and so just ends up cementing the market position of existing players. If people start caring enough to actually cancel services that harvest their data, th…

"As it stands, the law is only making it more expensive to be in the data harvesting business" That's at least partially the intention, and I'm entirely in favour of it.

Agreed. At my 25 person company it gives me a lever to pull in conversations about data - when someone asks can I have X, I can pull the GDPR card as a reason not to do it.

Re: Statement on 4 Years of GDPR

#20
post #2

Honestly, never saw the point of GDPR. You add additional expenses for something big abusers will just bypass, ignore or even worse just retract from the market.

Can you give any examples of abusers that have retracted from the market that actually provided a useful product?
Post reply on HN