Hacker News new | ask | show | jobs
by 18af219e 2024 days ago
But isn't the user international? Seems within provider's rights?
1 comments

If you're targeting European users, you need to comply with the GDPR.
In this case the user is in Norway which is not a member of the EU.
The comment you’re replying to doesn’t mention EU, so this nitpick doesn’t make much sense.
Norway integrated GDPR into its own legal system: https://lovdata.no/dokument/NL/lov/2018-06-15-38
Didn't mention EU, but to be specific: members of the EU or the EEA.
GDPR was implemented in the EU and in the EEA, of which Norway is a member of.