Hacker News new | ask | show | jobs
by andylynch 1505 days ago
Keeping PII for fraud detection is not barred by GDPR.

In this context the more relevant aspect of GDPR, which I think receives too little attention and more so enforcement, is article 22 (Automated individual decision-making, including profiling)