Hacker News new | ask | show | jobs
by envolt 2169 days ago
Additional to this, can some one help with this -

* Under GDPR, user can request for it's account deletion where we have to delete all the user's reference. If a user signup again there would be no way whether it is the same malicious user, how to overcome this?

4 comments

You can claim legitimate interest and keep certain information that would allow you to reidentify them for a reasonable amount of time (2 years?).
I haven't got a solution here, but it's extra friction for them to do this, you have a time window for processing and not all trolls will bother, so you would still have a better experience for other users by implementing it
You can still keep information.
Lie about it. Let them try to prove you did what they asked.
User ‘about’ checks out
GDPR penalties are steep, I'd highly recommend not doing this. You only need one lawyer with too much free time to test you and ruin your life.
No one has ever been ruined by GDPR.
So, you're banking on not being the first person to get caught?