If you work in any industry that makes use of other people’s data, and odds you’ve been hearing a lot about a new European Union law going into effect called GDPR (General Data Protection Regulation if you’re curious). I’m not going to get into the law’s requirements – if it applies to you then odds are the attorneys working for or retained by your company have already discussed what you need to do to be in compliance, that’s not what interests me here (besides, I’m neck deep in implementing the things my company’s lawyers said need to be implemented to say we’re in compliance). After hearing people say that Facebook’s latest scandal could/should result in GDPR-style regulation in the US, I thought I’d take a closer look at theĀ ideas behind GDPR, and see how well they stack up as well as take a passing look at how good or bad they’re likely going to be.

