4 ms·
It applies to everyone who wants to serve EU customers. As for startups: depending on what kind of personal data you are collecting, being GDPR complicit shoul
by askmike 8y ago
It applies to everyone who wants to serve EU customers.
As for startups: depending on what kind of personal data you are collecting, being GDPR complicit shouldn't take more than a day.
If it takes longer you are building a business around personal data, and I think you should know your stuff (not just GDPR, but also what kind of data you are collecting and why).
- jfk13 8y ago> If it takes longer you are building a business around personal data, and I think you should know your stuff (not just GDPR, but also what kind of data you are collecting and why). And you should probably pause and ask whether your proposed business will provide a net benefit to the world, or if it's just an attempt to make money regardless of the consequences to society. Not to say there aren't any worthwhile businesses to be created around personal data, but experience suggests that some skepticism is in order.
- CiaranMcNulty 8y agoDelete * from user_data doesn't take that long
- chii 8y ago> being GDPR complicit shouldn't take more than a day. either you're overly optimistic, or you have some 100x rock star doing the impl. because it took over 1 year to implement all of the GDPR required features for me, and we don't even store that much private data!
- Semaphor 8y ago> it took over 1 year to implement all of the GDPR required features for me > we don't even store that much private data! What do you store? Because I can't imagine what would take that long.
- askmike 8y agoIt took me half a day: Had to download a GDPR pivacy policy template, read through the thing. Double check all the sections applied to what I was doing (cookies, etc) and fill in my details. What have you spend 1 year doing if I may ask? Did you previously store passwords in plain text and you had to update that?
- askmike 8y agoCan someone fill me in on why I'm getting downvoted?
- martin_a 8y agoI stopped questioning downvotes. It's just plain stupid and has no reasoning after all. But people will resort to the commenting rules or something like that, because they don't understand sarcasm and think your comment is "low quality" or something like that. It's puzzling.
- 908087 8y agoBecause you're going against the "GDPR BAD" narrative aspiring surveillance capitalists are desperately trying to spin.
- GordonS 8y agoIt took me 2 days - 1 day to research the requirements, and 1 day to make a few changes, largely simply to wording of our privacy policy. How long it takes obviously depends on your data - but also on how important privacy and security is for you already. In my case, privacy was already important, so there wasn't much to do. Unless you were in charge of GDPR compliance for an enterprise-size company, I don't know how you could possibly take a year about it, even if you had previously not cared a jot about your user's data?