Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

GDPR #342

Open
1 of 6 tasks
turt2live opened this issue Aug 14, 2018 · 3 comments
Open
1 of 6 tasks

GDPR #342

turt2live opened this issue Aug 14, 2018 · 3 comments
Labels
A-Client-Server Issues affecting the CS API epic

Comments

@turt2live
Copy link
Member

turt2live commented Aug 14, 2018

This is all the issues for GDPR-related things.

@turt2live turt2live added the epic label Aug 14, 2018
@turt2live turt2live added the A-Client-Server Issues affecting the CS API label Sep 5, 2018
@richvdh richvdh transferred this issue from matrix-org/matrix-spec-proposals Mar 1, 2022
@samuk
Copy link

samuk commented Jan 27, 2023

I'm evaluating Matrix/Element for use by an NGO in Europe.

Is Matrix currently GDPR compliant when used with Element? Or do the issues above need resolving before it is GDPR compliant?

@pReya
Copy link

pReya commented Jan 27, 2023

I'm evaluating Matrix/Element for use by an NGO in Europe.

Is Matrix currently GDPR compliant when used with Element? Or do the issues above need resolving before it is GDPR compliant?

This is very hard to answer currently in my opinion. You'd need a proper review by expert lawyers to give an answer. And even then you will probably get 2 different opinions based on who you ask.

In my (non-professional) opinion the answer is No. There are multiple problematic areas, e.g. deletion of federated content. From my amateur standpoint, it's questionable whether any truly federated messenger can be GDPR-compliant at all.

@Mikaela
Copy link

Mikaela commented Jan 29, 2023

I have blogged about privacy concerns with Matrix previously which might interest you. I don't think I am qualified to judge whether it fills requirements of GDPR as I am not a lawyer.

Additionally bridges and their GDPR compatibility is another question that has been brought to question at least at matrix-org/matrix-appservice-irc#1326 (comment).

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
A-Client-Server Issues affecting the CS API epic
Projects
None yet
Development

No branches or pull requests

4 participants