4 ms·
I feel like you've got that backwards: making the site available if it violates GDPR would be violating your rights. Making the site unavailable to you is resp
by quartz 5y ago
I feel like you've got that backwards: making the site available if it violates GDPR would be violating your rights. Making the site unavailable to you is respecting them.
That's not to mention that what's much more likely here is that a student focused and student run campus newspaper in West Lafayette, IN likely just considers the EU out of scope of their audience vs the cost of figuring out if they're GDPR compliant.
- DocTomoe 5y agoYou should take the outside perspective into account: For me as an EU employer, this implies students from West Lafayette, Indiana, are unable to fulfils even the most basic of rules regarding privacy and are thus a liability. Doing this - even if the site itself is not directly associated with the student body - diminishes the perceived worth of the degree.
- deleted 5y ago[deleted]
- oakfr 5y agoThe “cost” of being GDPR compliant is negligible if you simply put static content on your website and don’t track users.
- oytis 5y agoAt quick glance their page does have a login button, which you can't implement on a static site. It also has social network buttons. These are probably all useful features for them and their audience
- freemint 5y agoOpt-In Social Media buttons exist.
- lucb1e 5y agoIndeed, though that's extra work. One can also just send people to the social media site when they click on the site's button, afaik they all have dedicated pages for sharing content (they want you to share stuff on their platform). Don't need to import their javascript and run it on every visitor's system just to have links to their sites.
- kasey_junk 5y agoIt’s also negligible if you block EU access. The people that own the content get to decide which approach to take. I for one am a little tired of EU citizens telling me something doesn’t have compliance costs when I’ve been in the room when outside counsel couldn’t agree if a brochure ware site was compliant because the logs contained IP addresses. You may wish that the regulations didn’t make the choice of blocking EU citizens the more palatable but that doesn’t make it true.
- Kim_Bruning 5y agoGDPR seems straight up common sense to me, but ... At times it seems like the common sense behind the GDPR is not -in fact- entirely common to American (lawyers) somehow. That can't be entirely true though, since some US states seem to have been considering similar laws recently. Color me confused by it all. (see also an earlier comment I made in a similar conversation https://news.ycombinator.com/item?id=29126413 https://news.ycombinator.com/item?id=29126413 )
- Kim_Bruning 5y agoI'm not sure that computes for me. Can you explain in more detail how refusing service outright is better than providing ethical service? To trigger GDPR, you need to be collecting PII (of EU citizens). What interest would a student focused and student run campus newspaper in West Lafayette, IN have in people's PII (let alone the PII of European Citizens) in the first place, and why would they be collecting it?