Skip to main content

All Questions

6 votes
1 answer
2k views

Is deciding to use google fonts the sort of decision that makes an entity a controller rather than a processor?

In ensuring GDPR compliance determining which entities are data controllers and which data processors is a critical step. The UK government says: The UK GDPR defines a controller as: the natural or ...
User65535's user avatar
  • 7,770
3 votes
2 answers
188 views

What rules determine jurisdiction on the internet?

It is in the news that Clearview AI has won an appeal against the UK Information Commissioner's Office (ICO). The reasons for judgment are here: Clearview AI Inc v The Information Commissioner [2023] ...
User65535's user avatar
  • 7,770
1 vote
1 answer
66 views

What are the limits of service provision/PII consent for compliance with GDPR?

Most of the internet business model can be described as providing data in exchange for seeing adverts. These adverts are worth a lot more if they can be targeted. The GDPR applies to this, such that ...
Dave's user avatar
  • 827
0 votes
1 answer
57 views

Can you request response to SAR by web form?

When one makes a GDPR Subject Access Request (SAR), one can specify a particular form of response, for example by email. Also the data can be requested in a structured, commonly used and machine-...
Dave's user avatar
  • 827
14 votes
2 answers
3k views

Does revealing the owner of an anonymous forum account breach GDPR (or other) laws?

This whole thing is to do with using an IP address to identify an anonymous forum account and then sharing details of the ownership of this account with another member. I will explain the best I can: ...
Michael Morgan's user avatar
5 votes
1 answer
2k views

I have created an App to help isolated people in Corona Virus lockdown. Do GDPR rules apply

I have created an App at helpathome.me which isolated people can use to fill out a form and request help from others. I innocently thought this would be fine but a friend told me that I must comply ...
Bwizard's user avatar
  • 153
0 votes
2 answers
571 views

Is it illegal to NOT store logs within the UK? (VPN related)

Introduction: I co-run a VPN company. I have a few legal questions since our service has a strict NO-LOG policy enforced. Question: In the UK, it is illegal to store sensitive and private customer ...
Mr Duck's user avatar
1 vote
1 answer
81 views

Does the GDPR mandate that web sites provide access to cookie settings?

Cross referenced this question with SO just to get more technical perspective In this article it says with respect to: Google Analytics and GDPR consent to cookies and tracking: Based on a true ...
Ole's user avatar
  • 327
6 votes
1 answer
157 views

Do marketing emails require consent?

I am getting spammed with marketing emails from Tough Mudder. Their unsubscribe link takes me to a page where I have to either accept the fact they will send me emails or unsubscribe from everything, ...
Diazole's user avatar
  • 61