GDPR compliance as a service
41–50 of 158 posts
Re: GDPR compliance as a service
#42Earlier quoted context omitted.
If an EU citizen believes that their personally identifiable information was obtained without their consent, the EU GDPR allows firms to do an audit on the company. The citizen who filed the complaint would enlist help from a no-win-no-fee legal firm, meaning, if they don't win (with infractions being $10 million minimum), the citizen, who is now a client of the firm, would not be out any money. If they do win, most…
Wait! I was under the impression that fines due to GDPR are just that, fines. They are paid to the government, not individuals. At most, getting fined due to non-compliance can suggest that if individuals bring civil lawsuits against the company, they may win and be awarded damages, the amount of which depends on how much damages they can prove they have incurred as a result of misuse of their data, not statutory amo…
GDPR will give them new ammunition on a European scale.
Re: GDPR compliance as a service
#43> Simply paste our JavaScript snippet into your website's code. We'll check every visitor of your site and will block access to users located within the EU. See, the problem here is that you actually have to send an HTTP request to the site that's trying to block you, then you load it along with their JavaScript which then blocks you, but at that point the initial request(s) has already been logged and now they have…
Re: GDPR compliance as a service
#44Re: GDPR compliance as a service
#45I have this eerie suspicion that GDPR cases will be a haven for trollish and/or opportunist behavior. Instead of huge corporations having to shell out significant money to swallow up start-up competitors, they could much more cheaply pay EU citizens to exploit the huge burden of the law on small companies or even solo endeavors. I hope I can be convinced to be optimistic.
Re: GDPR compliance as a service
#46Directly from the EU:
> Provided your company doesn't specifically target its services at individuals in the EU, it is not subject to the rules of the GDPR.
(https://ec.europa.eu/info/law/law-topic/data-protection/refo...)
Re: GDPR compliance as a service
#47Re: GDPR compliance as a service
#48Earlier quoted context omitted.
Frightening to think something as innoculus as making a website of chocolate chip recipes and logging visitor IPs could provoke that.
Tip: don’t log the IPs then.
Some things are very deliberate, but others are the consequence of decisions far removed from those of site operators.
Re: GDPR compliance as a service
#49The idea that simply having an EU visitor load your site can subject you to a $2M fine is a recurring bit of FUD. Directly from the EU: > Provided your company doesn't specifically target its services at individuals in the EU, it is not subject to the rules of the GDPR. ( https://ec.europa.eu/info/law/law-topic/data-protection/refo... )
Do you have to provide proof that your site doesn't specifically target its services at individuals in the EU?