|
|
|
|
|
by drorco
42 days ago
|
|
This is my second business after already having experience with GDPR. Thinking of it in advance does make it easier but it can definitely still break a business and it's not a trivial cost. Moreover, it's still changing frequently, just about 2 years ago there was a major change were asking for simple consent was not good enough and now there's a whole CMP TCF2 protocol you have to implement. From research I made, the tools that provide good coverage are not cheap, I pay a lot of money for these services, and they are also 3rd parties that without them the game experience might degrade. Just a little example, if the privacy consent service times out, the game load time increases to about ~10s at least. Moreover, I have to also pay a company just to be my representative in the EU and have a stupid email address that is completely useless. I don't know these things definitely don't make my appreciate regulations, and I think if you want to add more layers of regulation, you have to be really thoughtful about them, because often like DRM, eventually they screw the little guys more than they screw the bad actors. |
|
If privacy regulations can break your business, then I think there’s a very high chance what you are doing is exactly the sort of thing the regulations are explicitly designed to discourage.
> now there's a whole CMP TCF2 protocol you have to implement.
That’s exactly what I’m talking about. There’s no regulation saying you have to implement that. That’s a consequence of you making the choice to trade user data. Somebody who does not choose to do that has much less work to do. This is an example of the regulations working as intended. You’re supposed to see the friction and make better choices up front to avoid it, not make the same choices then complain about the friction.
> eventually they screw the little guys more than they screw the bad actors.
Little guys are often the bad actors.