3 ms·
I got an email from Microsoft Azure in relation to this (didn't read the article, but people are quoting parts of the email I received here). I appreciate that
by jsgo 7y ago
I got an email from Microsoft Azure in relation to this (didn't read the article, but people are quoting parts of the email I received here).
I appreciate that they sent something, but sometimes it'd be nice for them to allow someone to access the data related to them that was exposed as they say "our analysis of the support information indicates that specific personal or organizational identifiable information related to your support case was potentially visible." Okay, what specific personal or organizational identifiable information of mine was visible?
I assume the representative or I may've listed said info in our communications back and forth so let me see what was exposed so I can make a judgement of what, if anything, I should do here.
- GordonS 7y agoI got the same email, and I agree with what you said - I'd really like to know if this is even personally relevant, and if it is, I'd really like to know precisely what information is relevant. I'm in the EU, so I guess I could ask under the GDPR, but I wouldn't even know who to ask, and with such a large organisation, I can only imagine there would be a lot of run-arpund, requiring a lot of follow-ups from me :/
- Darkphibre 7y agoWell, you can fill out this form: https://www.microsoft.com/en-us/concern/privacyrequest-msa https://www.microsoft.com/en-us/concern/privacyrequest-msa Or you could reach out to Microsoft's Data Protection Officer here: https://www.microsoft.com/en-us/concern/privacy https://www.microsoft.com/en-us/concern/privacy I'm not sure if that's the GDPR path, but it's what I came across.
- GordonS 7y agoThese seem like the kind of top-level links in a large organisation that will lead to nowhere, but I'll at least give them a try, thanks!
- jchb 7y agoUnder the GDPR, that Microsoft Data Protection Officer will have 30 days to respond to you. If they don't respond, you can complain to the supervisory authority (in the case of UK that is https://ico.org.uk/make-a-complaint/ https://ico.org.uk/make-a-complaint/). Now, Microsoft does not necessarily have to tell you exactly what of your data was leaked. They probably do not know! In this case, they may just respond to your request with all of the personal data they hold. The law just says that they have to notify you of the "nature of the personal data breach as well as recommendations for the natural person concerned to mitigate potential adverse effects".
- pbhjpbhj 7y agoDo you think the ICO will do anything? Usually their answer seems to be "well we told the company about your case, and they said they wouldn't do it again, so everything is fine now; you're welcome!".
- tallanvor 7y agoMy understanding is that this will be made available if you open a support case.