All Questions
9
questions
6
votes
1
answer
2k
views
Is deciding to use google fonts the sort of decision that makes an entity a controller rather than a processor?
In ensuring GDPR compliance determining which entities are data controllers and which data processors is a critical step. The UK government says:
The UK GDPR defines a controller as:
the natural or ...
3
votes
2
answers
188
views
What rules determine jurisdiction on the internet?
It is in the news that Clearview AI has won an appeal against the UK Information Commissioner's Office (ICO). The reasons for judgment are here: Clearview AI Inc v The Information Commissioner [2023] ...
1
vote
1
answer
66
views
What are the limits of service provision/PII consent for compliance with GDPR?
Most of the internet business model can be described as providing data in exchange for seeing adverts. These adverts are worth a lot more if they can be targeted. The GDPR applies to this, such that ...
0
votes
1
answer
57
views
Can you request response to SAR by web form?
When one makes a GDPR Subject Access Request (SAR), one can specify a particular form of response, for example by email. Also the data can be requested in a structured, commonly used and machine-...
14
votes
2
answers
3k
views
Does revealing the owner of an anonymous forum account breach GDPR (or other) laws?
This whole thing is to do with using an IP address to identify an anonymous forum account and then sharing details of the ownership of this account with another member.
I will explain the best I can:
...
5
votes
1
answer
2k
views
I have created an App to help isolated people in Corona Virus lockdown. Do GDPR rules apply
I have created an App at helpathome.me which isolated people can use to fill out a form and request help from others.
I innocently thought this would be fine but a friend told me that I must comply ...
0
votes
2
answers
571
views
Is it illegal to NOT store logs within the UK? (VPN related)
Introduction:
I co-run a VPN company. I have a few legal questions since our service has a strict NO-LOG policy enforced.
Question:
In the UK, it is illegal to store sensitive and private customer ...
1
vote
1
answer
81
views
Does the GDPR mandate that web sites provide access to cookie settings?
Cross referenced this question with SO just to get more technical perspective
In this article it says with respect to:
Google Analytics and GDPR consent to cookies and tracking:
Based on a true ...
6
votes
1
answer
157
views
Do marketing emails require consent?
I am getting spammed with marketing emails from Tough Mudder. Their unsubscribe link takes me to a page where I have to either accept the fact they will send me emails or unsubscribe from everything, ...