3 ms·
Wouldn't it be possible to just delete the 'idetifiabel' parts in the database in order to be GDPR compliant? If you for instance save all the user data like u
by stemuk 8y ago
Wouldn't it be possible to just delete the 'idetifiabel' parts in the database in order to be GDPR compliant?
If you for instance save all the user data like user preferences under a random userId, and then delete the personal data (such as email address, name etc.) associated with the userId I would expect this to be GDPR complaint without having to do a cascading delete.
- sunir 8y agoThat it isn’t known with confidence is your answer to whether it is worth implying it is easy.
- pilsetnieks 8y agoIf you're absolutely certain that the user's identity cannot be reconstructed from the remaining data points, then yes, a full anonymization is enough. You are, after all, removing personally identifiable information, even if the record structure remains in your database. It's a law, not a technical constraint. No one gives a fuck about some foreign key relations, they care that personal data cannot be accessed, or somehow reconstructed.
- lagadu 8y agoAnonymizing like that would be GDPR compliant yes, as long as the remaining information absolutely cannot be used to identity the original subject.
- ianamartin 8y agoYes, but this is actually more difficult than you think. It doesn't take very many data points to ID a user.
- wlll 8y agoThis may well be harder to get right than just deleting the data. Just as in the saying (and this is a terrible paraphrase) goes: "Anyone can design a lock that they themselves can't pick" If you think you have anonymised data sufficiently you may well not have done it sufficiently to prevent others from re-conctructing it: https://en.wikipedia.org/wiki/AOL_search_data_leak https://en.wikipedia.org/wiki/AOL_search_data_leak