←back to thread

199 points billybuckwheat | 8 comments | | HN request time: 1.764s | source | bottom
Show context
hammock ◴[] No.41213541[source]
Add the credit card readers/POS tablets at stores, Starbucks, etc to that list, which mostly have tiny cell phone cameras built into them now (whether you knew it or not)
replies(5): >>41213632 #>>41213701 #>>41213789 #>>41213833 #>>41214603 #
1. gaadd33 ◴[] No.41213833[source]
Does that mean I can request all the pictures of myself checking out at Starbucks under the GDPR/CCPA? Has anyone done that yet? If not, any idea why not?
replies(2): >>41213860 #>>41214574 #
2. deafpolygon ◴[] No.41213860[source]
No, because no one really 'knows' it's being collected/not yet deployed at scale.
replies(1): >>41213978 #
3. zx8080 ◴[] No.41213978[source]
Until some DB leak happens.
4. Nextgrid ◴[] No.41214574[source]
No, because ignoring the GDPR under all kinds of technicalities is standard practice: https://noyb.eu/en/microsofts-xandr-grants-gdpr-rights-rate-...
replies(2): >>41215101 #>>41215910 #
5. abc123abc123 ◴[] No.41215101[source]
There are two types of ignoring that's been very common with the american and swedish companies I've battled with.

1. Protection against law suits. We reserve the right to not delete any information you have, since if there's a law suit we would need that as proof.

2. Freedom of speech. We are a publisher, so by removing your personal information, our right to free speech is threatened and since this is a foundational legal principle, it overrides any GDPR laws.

replies(1): >>41215747 #
6. jboggan ◴[] No.41215747{3}[source]
Could you expound on the first point in greater detail
replies(1): >>41225017 #
7. amarcheschi ◴[] No.41215910[source]
Adding to this, I tried to do the same thing and after providing uuid2 they said "we don't know where it is, but if it exists we will delete it" or something like that, which of course is ridiculous because you can f-ing access the database and access the unique identifier. I'm gonna do it again in some time and try to file another gdpr complaint as soon as they tell "me nooo we can't do that silly ahah"
8. whaleofatw2022 ◴[] No.41225017{4}[source]
I can give one perspective...

I worked in the communications part of a lender. We couldn't delete anyone's texts or other correspondence for a number of years due to compliance requirements.