Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If you really care about our privacy that much, please configure the GDPR popup in a way[0] that let your EU visitors to say that they are not allowing third party usage of their personal data.

[0] https://www.leonpaternoster.com/posts/techradar-gdpr/



OP here, ya that shouldn't be. We used a GDPR service called ShareThis.com and I will check that as we do not share that with any 3rd party.

[Update] - We are only doing 1st party consent so I will email their support to find out what the heck is going on with it showing that.


FYI: the button has only I Accept and Customize options; that may violate the GDPR by not providing a No option.

When you click Customize, and manually turn off all options, the very next page you visit will show you the GDPR prompt again - and again. This definitely violates the consent statutes.

Please let your provider know so they can fix this bug, and on either their or your side, provide an option for a clear No button, or at the very least a quick way to disable all.


Interesting. I have a product (unreleased, still in private beta) that's in the privacy space. I want people to know I care about their privacy, and that absolutely no information is given to third-parties.

What's the best way I can get GDPR compliant? I know that GDPR isn't designed to crack down on products like mine, but I'm still legally required to comply. A simple notice saying user data isn't given to any third parties? I have a privacy policy, of course.


Apart from a privacy policy I do not believe any notice is necessary. The "notices" you see on pages today are actually asking for consent to store data, but you don't need to do that if you aren't storing data. (IANAL)

As for bragging about your privacy stance - well - that's a product design decision. Personally I'd probably do it on the "why you should use this" style pages and leave it out of any functional pages.


>The "notices" you see on pages today are actually asking for consent to store data

Consent to store data or share it with third parties? I store PII, but I don't share it with any third-party.


Yea consent to collect it.

Best way to comply with GDPR is read it carefully and/or hire a lawyer.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: