6 ms·
Thanks for the series of articles. I can't wait to see the rest of the world(especially the US) catch up with the visionary EU regulations. It's sad that so man
by helpme420 8y ago
Thanks for the series of articles. I can't wait to see the rest of the world(especially the US) catch up with the visionary EU regulations. It's sad that so many Americans/Anglos dislike regulations so much.
- baxtr 8y agoI, too like more data privacy, but think for a second about this: who can afford more regulation? The giant corporations like FB, Google etc. The small alternatives will suffer. EDIT: take a look at that slide, google invested 40 human years for assessment alone https://twitter.com/winfriedveil/status/995951301132537857?s=21 https://twitter.com/winfriedveil/status/995951301132537857?s...
- deleted 8y ago[deleted]
- Nursie 8y agoThe big players are flagrantly disregarding this stuff and have been for a long time. This seems to me like an opportunity for smaller players to be better, and to build in privacy from the ground up.
- dsfyu404ed 8y agoThe small players can more easily pivot their business to not be burdened by the GDPR
- matthewmacleod 8y agoI don't think this is true at all. Compliance in large organisations will be harder than small ones – small organisations should already be fairly well aware of where their data is, and how to handle it. Larger organisations tend to have mountains of uncontrolled user data which nobody is in charge of.
- tzs 8y agoThe costs could be a big deal for small businesses. Take a business about as far away from data as you can imagine. For instance, a business that makes replacement knobs for antique radio restorations. They have a website with an online catalog and a shopping cart where you can order replacement knobs, pay online, and they ship the knobs to you. They collect your name and address for shipping, your email address to contact you if there are any questions or issues with the order and to give you order processing updates, and payment information. If this business is offering their goods to people in the Union, that data collection falls under GDPR, and they have to have a designated representative in the Union. I've not been able to find anything so far on (1) how some random small business in the US goes about finding someone to be their designated representative in the EU, and (2) what they will have to pay that person to take do so.
- jacquesm 8y agoThe chances of such a shop running their own shopping infrastructure is very small, most likely they will use some kind of partner for the whole shop setup, up to and including fulfillment and they'll be happy doing what they're good at: making knobs. And if they do run their own shopping infrastructure they obviously will have to deal with all the ins and outs of that, including operations, keeping the whole thing up-to-date and secured as well as compliance with the law.
- tzs 8y agoHow about customer support? Even if a small business has someone else run their cart, and handle order fulfillment, there is still a good chance they deal directly with customer support, which usually includes collecting and storing customer information. Won't that mean they are still under GDPR and still need to have a designated representative?
- jacquesm 8y agoYes, in that case they would have to have a designated representative. I'm working on that particular angle at the moment but it is a rather complex affair and I don't want to commit to this before I'm all lawyered up and read up on the responsibilities and the risks.
- josteink 8y ago> I, too like more flight safety/healthcare hygiene/safer cars, but think for a second about this: who can afford more regulation? As an end-user/customer, I’ll have the regulated version every single time, thank you. You can reframe this either way you like, but what it will come down to is that IT has so far been one of the few completely unregulated industries, with only its own merits to show for why such regulation shouldn’t be needed. So far it’s not doing a very good case for itself. People like Alan Kay has warned about this. If we don’t start taking our profession seriously (like doctors take not killing their patients seriously), someone else will. And then the future of programming will be legislated. If that’s how it all will turn out, that’s because we as a industry has deserved it. The GDPR is merely about basic decency and should only be considered a taste of what the future holds. Unless we ourselves show that we can act responsibly without further regulation. Edit: Ofcourse if you are the world’s biggest privacy-violater with 100s of thousands of employees worldwide working every day to mine and AI even more shit out of you, ofcourse trying to get GDPR-compliant will take some effort. That’s the whole fucking point. Smaller businesses treating user-data decently and with respect won’t have any such issues or conflicts of interests.
- jacquesm 8y agoThe people that feel that the GDPR is a terrible thing are going to be really upset if and when software liability will be targeted. This has to be the only industry where it is the norm to charge the customer to fix a defect that we ourselves created.
- yxhuvud 8y agoI'd rather think it is the opposite - that generally people will pay for fixing defects unless it can be proven that it was sold in an intentionally misleading way. "Oops, did that airport take three times the money compared to expectations to build? Time to pony up more or end up with a half built airport".
- baxtr 8y agoThat’s an interesting view. Do you own a business where you had to implement GDPR or is this theoretical? Oh, and did you know that GDPR also affects the work of teachers, solo entrepreneurs, doctors and the like?
- m-localhost 8y agoWhat I see is geofencing and consolidating of power (google, faceboo etc).
- frockington 8y agoAs an American I hope it never does. Governments stifling competition through regulation gives me an uneasy feeling. I think it may be a cultural difference. Europeans value safety more than innovation and vice versa. Possibly due to the extreme behavior we saw after '08 over here
- jacquesm 8y ago> Europeans value safety more than innovation and vice versa. This is quite funny considering you are writing this on the WWW, which runs on top of the TCP/IP stack. The WWW came out of CERN, the TCP/IP stack came out of DARPA. The web is at its roots a pretty global affair. This is not about 'stifling competition', this is about privacy.
- arcbyte 8y agoSeconded.