Post #2345147
2026-05-10 13:47 UTC
@argv_minus_one@mastodon.sdf.org @nik@toot.teckids.org @fuchsiii@oxytodon.com @malwareminigun@infosec.exchange GDPR Recital 38 is not directly relevant, but is common-sense advice (and worth reading).
You should also be aware that bases other than 6(1)(a) ("consent") are very narrow, and 6(1)(a) is the hardest basis to obtain: the loopholes that most companies use don't actually exist, and those companies are breaking the law.
If you're not doing bad stuff, though – where "hoarding people's secrets" counts as bad stuff – GDPR nearly always says it's fine.
Replies (0)
No replies.