Ask HN: How do small personal website/blog owners comply with GDPR?

https://news.ycombinator.com/item?id=33100513
by eminent101 • 4 years ago
4 8 4 years ago

I think some of the crowd here run their own servers with a small and personal website or blog hosted on it. So I think this is the right audience to ask this. How do you ensure that your server and website complies with GDPR?

Do you stop keeping web server access logs? Do you disable comment forms? If you do keep web server logs or comment forms what do you do to make it comply with GDPR?

The comment form aspect is especially a tricky one. Many comment forms require only a name and comment. What if a commenter later asks you to delete all their data (that is to say, all their comments) from your website? How would you satisfy such a request when you can't even validate that the person who is requesting the deletion is really the person who authored the comments?

I am planning to create my own website on a small Digital Ocean server but these GDPR concerns are giving me headache. Hoping to get some wisdom from this thread?

Edit: If it helps, I am based in EU and UK. I live in both places at different times based on work availability. But for the good of the community, answers for other locations and regulations are welcome!

Related Stories

Loading related stories...

Source preview

news.ycombinator.com