|
|
|
|
|
by nolok
1313 days ago
|
|
It's not about saying where the data is / warning your customer, it's about protecting the data. You need to protect it under EU court / jurisdiction, and the US broke that and said they have jurisdiction over any piece of data your company ever touches. That's why the US now wants some sort of privacy shield 2. As an actual solution you can use: find another company, an EU company, one that you don't own, to handle your PII data for you, so you never store that data yourself. Also, be sure to read in the GDPR exactly what is and isn't PII under it, a lot of companies can work just fine without much or any PII, and a lot of people think "any" data is PII. |
|
So we basically need to migrate to a EU based could provider ASAP?
Would this privacy shield 2 fix this problem? I suppose we can’t just wait for that.