Live data from Hacker News

GDPR for lazy people: Block all European users with Cloudflare Workers

apility.io

441–450 of 1001 posts

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#441
I have a couple of side projects I've been slowly working on toward launch. I hate to say it, but I am indeed very inclined to simply block EU users until I can prove the economic viability of the products. There is no personal data involved except their login credentials and what they type in, and that information certainly is not the planned source of income. But it simply isn't worth taking on the liability.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#442
post #53

I keep seeing these posts on how to block European users to avoid the GDPR. As a citizen of Europe, seeing these posts consistently making it to the front page is disappointing. It would seem that Silicon Valley perceives the GDPR as more of a hindrance than an opportunity to offer users better privacy. Nothing has been learned.

I think the response from European citizens on hackernews has been disappointing. I see many refuse to accept any of the negatives of GDP

I am sure most of them are consumers and don't run their own websites.

The GDPR is even an issue for people running simple blogs and forums. Many public software for these don't even have the features for GDPR compliance.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#443

Earlier quoted context omitted.

It's no laughing matter for some companies. EU citizens have turned into pests overnight. There are businesses who don't make much money from the EU to justify compliance with the regulations.

> EU citizens have turned into pests overnight. More than USA citizens with dubious DMCA takedown requests?

You don't need to do anything to implement DMCA on your site - just respond to emails. How is this even comparable with the kafkaesque implementation required by gdpr?

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#444

I think there are a number of comments being made throughout this whole thread that are conflating the effort required to comply with the best security practices to protect user data, compared to the effort required to comply with the language of GDPR. A general theme seems to be that if a company is afraid to do the latter, they must not be willing to do the former. Which brings up a question, is the complexity of b…

GDPR is not about security but about privacy and data access protection. In fact security is mostly on paper: requires that you document the data and procedures, but doesn't require you to upgrade your security. So the effort for the one has little to do with effort for the other.

Good point; the sentiment in the original post did mean to include privacy in addition to security.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#445
post #53

I keep seeing these posts on how to block European users to avoid the GDPR. As a citizen of Europe, seeing these posts consistently making it to the front page is disappointing. It would seem that Silicon Valley perceives the GDPR as more of a hindrance than an opportunity to offer users better privacy. Nothing has been learned.

The companies that don't want to deal with GDPR are more than free to stop serving the EU. Then alternatives to these companies (services) will spawn within the EU.

It's a bit like a good forest fire. Out of the monocultural ash sprout (life sustaining) varieties.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#446
My biggest _annoyance_ with GDPR and its advocates is the constant touting of "giving users control over their data" when in reality it is hindering voluntary actions that by their nature require some of "my data". If I want to service a small group of people with, say, an XMPP network, and those users are willing and eager to just go with it without any of this bs with terms and three-letter EU dictated roles, then it should be possible. When you've made it prohibitive, then you've done something wrong IMO.

My biggest _fear_ regarding GDPR is that, to me at least, it seems like a one-size-fits-all regulation for a world where only organisations are allowed to run services, and where all services are centralized. Which is not the world we live in (yet).

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#448

Earlier quoted context omitted.

Fun fact: Russia recently approved similar law which requires all personal data of Russian citizens to be stored in a server hosted in Russia. So theoretically many webmasters are already be in trouble :)

> Russia recently approved similar law which requires all personal data of Russian citizens to be stored in a server hosted in Russia I wouldn't call that a similar law at all, because the spirit of it is so that the government can have access to that data…

It's similar in the sense that government dictates how foreign companies can deal with personal data of its citizens. I agree that purpose seems to be different.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#450

My biggest _annoyance_ with GDPR and its advocates is the constant touting of "giving users control over their data" when in reality it is hindering voluntary actions that by their nature require some of "my data". If I want to service a small group of people with, say, an XMPP network, and those users are willing and eager to just go with it without any of this bs with terms and three-letter EU dictated roles, then…

The processing of personal data should be designed to serve mankind. The right to the protection of personal data is not an absolute right; it must be considered in relation to its function in society and be balanced against other fundamental rights, in accordance with the principle of proportionality. This Regulation respects all fundamental rights and observes the freedoms and principles recognised in the Charter as enshrined in the Treaties, in particular the respect for private and family life, home and communications, the protection of personal data, freedom of thought, conscience and religion, freedom of expression and information, freedom to conduct a business, the right to an effective remedy and to a fair trial, and cultural, religious and linguistic diversity.

http://eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELEX...

I suggest you read the rest of it before opining.

Post reply on HN