4 ms·
It seems like you're in problematic GDPR territory as soon as you're instructing the users browser to contact a webservice of a company that is subsidiary of an
by pabe 5y ago
It seems like you're in problematic GDPR territory as soon as you're instructing the users browser to contact a webservice of a company that is subsidiary of an US company (see e.g. https://www.lexology.com/library/detail.aspx?g=196d55c7-beeb-43cc-9af0-5dedbfcf6149 https://www.lexology.com/library/detail.aspx?g=196d55c7-beeb...)
The problem here is the IP address is classified as personal data.
So, it might be illegal to allow an EU residents browser to even request a website hosted by e.g. AWS Ireland in Region Germany as AWS belongs to Amazon US.
We're actually thinking to serve EU customers via Hetzner and Bunny.net CDN to guarantee GDPR compliance.