4 ms·
Encrypt with a user specific key when the data enters the log. You can effectively delete all the user specific data by throwing the key away. No tracking down
by nerpderp83 9y ago
Encrypt with a user specific key when the data enters the log. You can effectively delete all the user specific data by throwing the key away. No tracking down files or reprocessing necessary.
- pcl 9y agoIs that acceptable within GDPR requirements?
- nerpderp83 9y agohttps://en.wikipedia.org/wiki/Crypto-shredding https://en.wikipedia.org/wiki/Crypto-shredding https://law.stackexchange.com/questions/23375/gdpr-general-data-protection-regulation-crypto-shredding-or-regular-delete https://law.stackexchange.com/questions/23375/gdpr-general-d... I believe it would be, but IANAL.
- tscs37 9y agoThe GDPR contains exceptions when deleting individual user data is infeasible or if the data in question is a backup, in which case you must only keep a log somewhere so you don't forget to delete again.
- mk89 9y agoToday’s encryption is strong. Who knows about tomorrow?