Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Unfortunately, GDPR is an insane web of laws and regulations that any non-lawyer has absolutely no hope of understanding.


This is exactly what stops me from hosting websites. I simply have given up trying to keep up with the rules. It is a massive burden if you are not a corporation trying to extract information and just want to host a simple blog from a german server. At some point, private persons and maybe small businesses won't be able to keep up and the web becomes even more centralized.


It is possible to host a blog wihout third party services.

Maybe small businesses should focus on minimal websites and build from that. As you grow, you can more easily affort the costs for lawyers to check if the features you want to build are GDPR compliant.


https://gdpr.eu/compliance/

The whole thing, including guides, is much shorter than the spec for HTML: https://html.spec.whatwg.org/multipage/

Probably clearer, too.

And just like for specs there are even better third party doc sites you can use: https://gdpr-info.eu/

Dry reads, but it's not like RFCs are heart wrenching novels either :-D


It always puzzles me how people making six figures a year for translating real-life requirements to technical ones suddenly throw a tantrum when said requirements involve law.


Disagree. The key information is no longer than an average privacy policy (and frankly, less complex) and whereas there are millions of privacy policies (which no one ever reads), there is only one GDPR. Give it one hour of close reading and you'll see just how important and useful it is. It's worth the effort because you only need to do it once.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: