Live data from Hacker News

GDPR for lazy people: Block all European users with Cloudflare Workers

apility.io

841–850 of 1001 posts

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#841
post #610

Earlier quoted context omitted.

Tired of the eternal startup excuse to justify bad behaviour when it comes to protection of consumer privacy. If it is impossible for some startups to respect strong privacy practices maybe we simply don't need those startups. This 'startupism' is almost an ideology. No mechanical engineer would complain about safety regulation just because it means that they cannot start a business in their garage. In other industri…

Here's a thought: regulation like this is, along with the heavy-handed ideology that lead to it, is the reason why the EU is still lagging regarding technical innovation. I think this attitude is the primary reason Silicon Valley took hold in the USA and that the EU has nothing comparable. If the EU wants to legislate itself out of the future they're more than welcome to do so -- and I applaud every site who makes th…

Here's a thought: You don't know what you're talking about and I applaud the EU for protecting me against people like you.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#842

GDPR is set to destroy American tech/media companies along with those from developing nations. Europe has got most of its wealth through imperialism back in time robbing countries of Africa and South Asian countries. This is the primary reason countries of South Asia/Africa so poor today. Before imperialism, most of Europe was poor while countries like China and India were way richer. India is just 70 years old by co…

Care to explain downvotes? I would love to know why would anyone disagree with me.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#843
post #613
post #590

Earlier quoted context omitted.

This may be an edgy and rebellious sentiment that makes me a radical anti-privacy activist, but unless you're storing levels of information on me that are similar to facebook/google/etc., I do not give a damn whether you're soft-deleting or hard-deleting my IP address and my user account. If your web app is just a web app, and not one component of a vast surveillance octopus which puts tentacles on almost every websi…

> This may be an edgy and rebellious sentiment that makes me a radical anti-privacy activist, but unless you're storing levels of information on me that are similar to facebook/google/etc., I do not give a damn whether you're soft-deleting or hard-deleting my IP address and my user account. If your web app is just a web app, and not one component of a vast surveillance octopus which puts tentacles on almost every web…

> PII

GDPR has no concept of PII. Personal data is anything relating to a natural person. It's not just an identifier like an address or phone number.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#844

Earlier quoted context omitted.

I believe it's because, in general, Americans distrust government and trust corporations

We distrust both but only one has a monopoly on violence that can be pointed in our direction at any time.

There's also economic/financial violence.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#845

I’ve been reading hacker news for about a decade, and it’s getting to the point where I don’t think there are many entrepreneurs and/or technical people on here anymore. The number of people who are saying it’s no big deal to comply with this huge law, especially for very small startups, is mind boggling. Let’s just take one feature: the requirement that you can permanently delete all of your information. Most early-…

Tired of the eternal startup excuse to justify bad behaviour when it comes to protection of consumer privacy. If it is impossible for some startups to respect strong privacy practices maybe we simply don't need those startups. This 'startupism' is almost an ideology. No mechanical engineer would complain about safety regulation just because it means that they cannot start a business in their garage. In other industri…

>No mechanical engineer would complain about safety regulation

Mechanical engineering projects are too costly to be undertaken casually in the first place. Regulation is unlikely to be the long pole, so do you don't hear them complain about it. It only takes a few minutes and some easily self-teachable skills to start serving HTTP traffic; now it's going to take a few months and some lawyer hours to create the bureaucratic cover for doing so.

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#846

I’ve been reading hacker news for about a decade, and it’s getting to the point where I don’t think there are many entrepreneurs and/or technical people on here anymore. The number of people who are saying it’s no big deal to comply with this huge law, especially for very small startups, is mind boggling. Let’s just take one feature: the requirement that you can permanently delete all of your information. Most early-…

While i agree with your last 2 paragraphs i don't agree with the rest. I have a small team (2 fulltime devs and a designer) and we have no problem achieving GDPR compliance.

SaaS idea: I am a EU citizen and I will test that for every company that sends me a link to their website, by creating an account and then complaining to the Romanian authority that the site doesn't comply with the law.

Sarcasm... maybe :)

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#847
This might be a silly question, but I'll take the chance to ask it anyway. What constitutes personal data? More precisely, using FB as example, does it apply to things like: 1. where have you been? 2. what have you liked? 3. photos you've shared? 4. comments and posts you've made?

Or is it really just identification details like name, address, etc.?

Re: GDPR for lazy people: Block all European users with Cloudflare Workers

#849

Earlier quoted context omitted.

I've been wondering the same thing. Maybe the true hacker spirit is dead. I just want to roll my eyes when I see comments to the effect of, "Oh, it's so simple, just read the 80+ pages! The language is clear and straightforward, we promise! Also, you should have separated duties, full CI/CD that sanitizes any possible user data from leaving its hermetically sealed tier, and delete data early and often. If you don't,…

"The hacker spirit" was NEVER about harvesting user data so you could sell it to advertisers. Bite your tongue.

Yes, and? No one claims that it is. It is, however, about iterating quickly on networked software in the absence of heavy bureaucratic process. Process that is now necessary to ensure auditable, provable compliance with the letter of the law, even for activities that are already complaint with its spirit. One can argue this is necessary for society, but it's certainly a crackdown on the hacker spirit.

Fun fact: GDPR has not one word to say about advertising in particular. Ad targeting may still be legal in some cases! Meanwhile all networked software is illegal by default unless its operator can prove that it stays within the defined GDPR exceptions.

Post reply on HN