|
|
|
|
|
by kiiski
3920 days ago
|
|
I imagine that would only apply to sites which store PII[1]. The database should be located under the same jurisdiction (which doesn't mean every country, since some will have treaties to allow exporting to certain places (EU for example)) as the person whose data it is, and the data should not be transferred through other jurisdictions. [1]: https://en.wikipedia.org/wiki/Personally_identifiable_inform... |
|