Hacker News new | ask | show | jobs
by dogma1138 2996 days ago
I’m not so sure about that multiple other vendors have or are in the process of implementing GDPR aware backups EMC/Dell allows you to flag records that will be purged from your backups and Microsoft is implementing pseudoanonymous backups for SQL.

https://azure.microsoft.com/en-us/blog/sql-database-long-ter...

Sure if your backup is only weekly or monthly until the next full one it might not be an issue but many companies keep full backs that span years and even decades.

Just one more point of data the GDPR doesn’t actually define a difference between backup and an archive. The article you’ve mentioned is essentially an untested legal argument that you may use in court if something happens or if the regulator audits you. But all of these arguments have not been tested yet in court and there is a lot of contradictory advice on essentially every part of the GDRP even at the most reputable levels (at this point ask the top 5 law firms in the UK and you’ll get 7 opinions).