What's the legal channel here? Do they plan on arresting me if I decide to vacation to an EU country? Will the US gov't comply with levying fines due to some treaty/agreement between the countries?
GDPR compliance as a service
11–20 of 158 posts
Re: GDPR compliance as a service
#12Re: GDPR compliance as a service
#13Maybe I'm missing something - but as a US citizen, with a US company, how can EU laws be enforced against me? What's the legal channel here? Do they plan on arresting me if I decide to vacation to an EU country? Will the US gov't comply with levying fines due to some treaty/agreement between the countries?
Re: GDPR compliance as a service
#14Re: GDPR compliance as a service
#15That's the biggest thing from the EU's GDPR rules - what is your organization's data inventory, how does it map outside of your organization, and how are you securing PII?
If a complaint is made from someone who is an EU citizen, and another organization shows logs that they got this information from your web app or service, that will trigger an audit from the EU. Blocking access to a subset of IP ranges will do absolutely nothing to stop this, and will not stop the sharks once they have smelled blood.
In a sense, the EU has plain rules that you can protect against, unlike the FTC/FDA (for HIPPA etc) who are vague and will not disclose how you can protect your own organization.
Re: GDPR compliance as a service
#16Thought this was a joke SaaS offering, but inputting google.com as the domain and a burner card, it's real [0]. [0] https://judge.sh/3Bc2E0GR.png
Re: GDPR compliance as a service
#17Maybe I'm missing something - but as a US citizen, with a US company, how can EU laws be enforced against me? What's the legal channel here? Do they plan on arresting me if I decide to vacation to an EU country? Will the US gov't comply with levying fines due to some treaty/agreement between the countries?
And then -- what if you finally have confirmation? You were attempting to avoid it, but now you cannot. If your attempt is to avoid it at all costs, you're effectively required to validate whether users are EU citizens much earlier in the process than before GDPR, which means GDPR already has had a big impact despite efforts to avoid its umbrella.
Re: GDPR compliance as a service
#18Anyone can expand on what "vindictive reporting from no-win-no-fee legal firms" would exactly consist of?
Re: GDPR compliance as a service
#19Re: GDPR compliance as a service
#20I'm currently an EU-ish Citizen, not residing in the EU. Will it block me? Also will it block JS-blocking EU Citizens residing in the EU? Let's not mention VPNs. Let's not mention Tor. This feels like a "registry cleaner" for GDPR o. xkcd: https://xkcd.com/1969/
Probably. It seems like a quick "let's make some money" scheme to milk the GDPR panic.