
Posted in
May 26, 2018
In short, the General Data Protection Regulation (GDPR) is a law that requires any organization (globally, not just the EU) that is handling Europeans’ data to give these citizens access to their data:
Basically, if your company, big or small, based anywhere in the world, is collecting data from citizens in the EU, you must comply.
Disclaimer: this should not be considered legal advice. We are not lawyers.
Europe is not taking this issue lightly; with the latest data scandals happening across the globe, it is no surprise that fines will be as high as 4% of annual “global” revenue.
The EU understands that this is a big change, so it is rumoured that as long as the right steps are being taken to become compliant, penalties and warnings will follow as such:
We're working with the Drupal community and many of our clients who do business in the EU to help them become compliant.
Acro Commerce is working with a GDPR module for Drupal, but as all websites differ (data storage, etc.), some custom work is required to bring your site up to full compliance.
Contact us if you have any of the following questions: