Comment on FOSS infrastructure is under attack by AI companies
big_slap@lemmy.world 2 weeks agoself regulation is a joke. a frw bad apples always spoil the bunch.
what needs to happen is regulation, period. force all companies to abide by laws that just make sense, and all these problems go away.
see: GDPR
oldfart@lemm.ee 2 weeks ago
What did GDPR solve? Did we get rid of advertisers sharing data?
big_slap@lemmy.world 2 weeks ago
nope, but now we are aware of how many times our data is shared with and with whom because of it.
here’s a short breakdown of what it has accomplished:
The GDPR lists six data processing principles that data controllers must comply with. Personal data must be:
Lawful processing
Except for special categories of personal data, which cannot be processed except under certain circumstances, personal data can only be processed:
Data subjects’ rights
Data subjects have:
Learn how to map your data and establish a lawful basis for processing Valid consent
There are stricter rules regarding consent:
Data protection by design and by default
Data controllers and processors must implement technical and organisational measures that are designed to implement the data processing principles effectively.
Transparency and privacy notices
Organisations must be clear about how, why and by whom personal data will be processed.
Data transfers outside the EU
Many non-EU organisations that process EU residents’ personal data also need to appoint an EU representative following the end of the transition period. Mandatory data breach notification
The GDPR defines a personal data breach as “a breach of security leading to the accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to, personal data transmitted, stored or otherwise processed”.
DPOs (data protection officers)
You must be able to demonstrate compliance with the GDPR. This includes:
gigglybastard@lemmy.world 2 weeks ago
that sounds great in theory but a) noone respects this and ) noone enforces this
i know because i reported a bunch of companies and websites and every time i got a reply “welp, there’s nothing we can do”
GDRP is useless
big_slap@lemmy.world 2 weeks ago
well, the websites I frequent always ask me if I want to allow for tracking cookies ever since GDPR was implemented. I think it worked for websites that want to comply with the law.
also, that’s disappointing to hear about them not taking action on companies that don’t comply. you went through the whole process several times? which country are you located in? I’m just curious 🙂
oldfart@lemm.ee 2 weeks ago
So now the adtech companies need to hire a minimum wage person in the EU, and I can write them a letter requesting they remove my anonimized data, doxxing myself in the process. Oh and now I know they’re sharing with 395 partners, as if that wasn’t obvious from uBlock before. And I get to sign a permission to process my data if I want to see a doctor.
big_slap@lemmy.world 2 weeks ago
yes to everything you said, what point are you trying to make?