{"id":2556,"date":"2019-09-26T12:16:06","date_gmt":"2019-09-26T11:16:06","guid":{"rendered":"https:\/\/staging.techgdpr.com\/?p=2556"},"modified":"2024-02-22T17:25:33","modified_gmt":"2024-02-22T16:25:33","slug":"gdpr-compliant-products-debunked","status":"publish","type":"post","link":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/","title":{"rendered":"GDPR compliant products debunked: it\u2019s all about HOW you use it"},"content":{"rendered":"\n<p><strong>I\u2019ve seen this a bit too often lately: products that qualify themselves as \u2018GDPR compliant\u2019, falsely leaving the impression that by using that product, an organisation will be GDPR compliant. In particular some blockchain products like to label themselves as \u2018GDPR compliant blockchain\u2019 &#8211; as in the public opinion there are massive problems surrounding blockchain and GDPR. Welcome to GDPR compliant products debunked.<\/strong><\/p>\n\n\n\n<p>Whether it\u2019s about a blockchain, a CRM or cloud storage, this is plain and simple wrong. In the case of blockchain, sure, you may have solved a particular compliance issue, but that doesn&#8217;t make your blockchain &#8216;fully GDPR compliant&#8217;.<\/p>\n\n\n\n<p>You will need the right tools to become GDPR compliant, but tools alone will not fix your problems. It\u2019s always about <b>how you use them<\/b>.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><b>It depends on the data<\/b><\/h2>\n\n\n\n<p>Your cloud storage provider may be fine for storing an email address and a name, but will hardly ever be able to help you meet the stringent requirements surrounding \u2018Special Categories of Personal Data\u2019 (Art. 9, GDPR), such as biometrical, medical or genetical data.<\/p>\n\n\n\n<p>Every data processor you add to your list, will increase your compliance risk, as you are (under most circumstances) primarily responsible for the protection of the Personal Data you are entrusted with. Moreover, you can not trust that your processors are doing what they claim they are doing, you have the obligation to ensure it yourself (even though in practice this is hardly ever done).<\/p>\n\n\n<div class=\"wp-block-image is-style-rounded\">\n<figure class=\"aligncenter is-resized\"><img decoding=\"async\" src=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/care-connection-device-1282308-1024x681.jpg\" alt=\"Medical data processed\" style=\"width:687px;height:auto\"\/><\/figure>\n<\/div>\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><b>What about GDPR tools?<\/b><\/h2>\n\n\n\n<p>There are tons of tools for GDPR out there, ranging from pimped project management tools giving you a list of tasks to complete to \u2018become GDPR compliant\u2019, to sophisticated Data Protection Management Systems. All these systems can help you with compliance, but are not going to achieve it for you. You will still need drive the process, ensure the right information is in there, the right organisational processes are in place, and essentially build a deep understanding of your data-flows and take responsibility for your compliance.<\/p>\n\n\n\n<p>In addition, you will probably be using these tools to also store some kind of personal data. Possibly of your staff that will be using it, or of those people submitting a subject request, or otherwise. So you <u>are<\/u>&nbsp;potentially increasing your risk profile with these tools as well.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><b>Can you build \u2018GDPR compliant\u2019 software?<\/b><\/h2>\n\n\n\n<p>No you can\u2019t, but you can ensure that the product you are building can be used in a GDPR compliant way by following the following 7 key points:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Think about privacy <strong>right from the beginning<\/strong>: data protection by design is a key principle, and required by the GDPR (Art. 25), and not doing this could already lead to fines of the \u2018lower\u2019 category.<\/li>\n\n\n\n<li>Work out the (potential) data flows of your product or service and make sure you understand exactly which Personal Data goes where.<\/li>\n\n\n\n<li>Ensure that all of the team involved in product development know at least the GDPR essentials and they are incentivised to take this seriously.<\/li>\n\n\n\n<li>Document your efforts to GDPR compliance so you can prove your commitment to it, and your considerations when questions may arise at a later point in time.<\/li>\n\n\n\n<li>Select your vendors that will have access to, or process the Personal Data that has been entrusted to you with care. Ensure they are aware of their obligations and take them seriously, always have a Data Processing Agreement in place, and know where (exactly) your data resides.<\/li>\n\n\n\n<li>If you can, keep Personal Data out of the US and out of the hands of US companies. While companies in the US may be self-certified under the EU-US Privacy Shield, there is a more fundamental conflict in the laws between the countries: The EU requires data to be kept secure, while the US requires data to be disclosed to authorities. While this hasn\u2019t been tried in court (yet), this will pose a problem as some point.<\/li>\n\n\n\n<li>Map out your data processing activities (which is a requirement for certain companies and we recommend it for everyone) and visualise the personal data flow from the moment you receive or first access it, to the moment you delete it. It\u2019s about the full personal data lifecycle. Ideally use data protection management software like <a href=\"https:\/\/niobase.com\">Niobase<\/a> to map this out (<a href=\"https:\/\/techgdpr.com\/contact\/\">contact us<\/a> for a discount code if you are interested).<\/li>\n<\/ol>\n\n\n\n<p><\/p>\n\n\n<div class=\"wp-block-image is-style-rounded\">\n<figure class=\"aligncenter\"><img decoding=\"async\" src=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/adult-code-coding-1181359-1024x684.jpg\" alt=\"programming in python: gdpr compliant software\"\/><\/figure>\n<\/div>\n\n\n<p class=\"has-text-align-center\"><em><span style=\"text-align: center;\"><span style=\"font-size: x-large;\">&#8220;It\u2019s all about how you process data,&nbsp;the tools you use is just a part of that.\u201d<\/span><\/span><\/em><\/p>\n\n\n\n<p><span style=\"font-size: medium;\">The GDPR does have a provision for <strong>certification mechanisms under Article 40<\/strong> that could help demonstrate compliance, but to date there are no approved c<\/span><span style=\"font-size: medium;\">ertifications a company can apply for<\/span><span style=\"font-size: medium;\">. W<\/span><span style=\"font-size: medium;\">hile the market seems to like the rubber stamp approach, the requirements of such a seal or certificate will likely be a lot higher than just taking basic steps towards GDPR compliance as suggested above. Also, it\u2019s unlikely such certifications will ever apply to a product or service. <\/span><\/p>\n\n\n\n<p><strong><span style=\"font-size: medium;\">A process can be GDPR compliant. A product can\u2019t be \u2018GDPR compliant\u2019 by itself, independent of it\u2019s use or the process it aids. <\/span><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>I\u2019ve seen this a bit too often lately: products that qualify themselves as \u2018GDPR compliant\u2019, falsely leaving the impression that by using that product, an organisation will be GDPR compliant. In particular some blockchain products like to label themselves as \u2018GDPR compliant blockchain\u2019 &#8211; as in the public opinion there are massive problems surrounding blockchain [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":2559,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":""},"categories":[5],"tags":[59,58],"class_list":["post-2556","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blockchain","tag-debunked","tag-gdpr-compliance"],"acf":[],"featured_image_urls":{"full":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",4000,2612,false],"thumbnail":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-150x150.jpg",150,150,true],"medium":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-300x196.jpg",300,196,true],"medium_large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-768x502.jpg",640,418,true],"large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-1024x669.jpg",640,418,true],"1536x1536":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",1536,1003,false],"2048x2048":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",2048,1337,false],"image-200-200":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",200,131,false]},"post_excerpt_stackable":"<p>I\u2019ve seen this a bit too often lately: products that qualify themselves as \u2018GDPR compliant\u2019, falsely leaving the impression that by using that product, an organisation will be GDPR compliant. In particular some blockchain products like to label themselves as \u2018GDPR compliant blockchain\u2019 &#8211; as in the public opinion there are massive problems surrounding blockchain and GDPR. Welcome to GDPR compliant products debunked. Whether it\u2019s about a blockchain, a CRM or cloud storage, this is plain and simple wrong. In the case of blockchain, sure, you may have solved a particular compliance issue, but that doesn&#8217;t make your blockchain &#8216;fully&hellip;<\/p>\n","category_list":"<a href=\"https:\/\/techgdpr.com\/blog\/category\/blockchain\/\" rel=\"category tag\">Blockchain<\/a>","author_info":{"name":"Silvan Jongerius","url":"https:\/\/techgdpr.com\/blog\/author\/silvan\/"},"comments_num":"0 comments","featured_image_urls_v2":{"full":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",4000,2612,false],"thumbnail":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-150x150.jpg",150,150,true],"medium":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-300x196.jpg",300,196,true],"medium_large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-768x502.jpg",640,418,true],"large":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-1024x669.jpg",640,418,true],"1536x1536":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",1536,1003,false],"2048x2048":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",2048,1337,false],"image-200-200":["https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg",200,131,false]},"post_excerpt_stackable_v2":"<p>I\u2019ve seen this a bit too often lately: products that qualify themselves as \u2018GDPR compliant\u2019, falsely leaving the impression that by using that product, an organisation will be GDPR compliant. In particular some blockchain products like to label themselves as \u2018GDPR compliant blockchain\u2019 &#8211; as in the public opinion there are massive problems surrounding blockchain and GDPR. Welcome to GDPR compliant products debunked. Whether it\u2019s about a blockchain, a CRM or cloud storage, this is plain and simple wrong. In the case of blockchain, sure, you may have solved a particular compliance issue, but that doesn&#8217;t make your blockchain &#8216;fully&hellip;<\/p>\n","category_list_v2":"<a href=\"https:\/\/techgdpr.com\/blog\/category\/blockchain\/\" rel=\"category tag\">Blockchain<\/a>","author_info_v2":{"name":"Silvan Jongerius","url":"https:\/\/techgdpr.com\/blog\/author\/silvan\/"},"comments_num_v2":"0 comments","yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>GDPR Compliant Products Debunked - Blog - TechGDPR<\/title>\n<meta name=\"description\" content=\"GDPR Compliant Products Debunked: A single piece of software does not make you GDPR compliant. It&#039;s about the full data processing lifecycle.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"GDPR Compliant Products Debunked - Blog - TechGDPR\" \/>\n<meta property=\"og:description\" content=\"GDPR Compliant Products Debunked: A single piece of software does not make you GDPR compliant. It&#039;s about the full data processing lifecycle.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/\" \/>\n<meta property=\"og:site_name\" content=\"TechGDPR\" \/>\n<meta property=\"article:published_time\" content=\"2019-09-26T11:16:06+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-02-22T16:25:33+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-1024x669.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"669\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Silvan Jongerius\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@silvanjongerius\" \/>\n<meta name=\"twitter:site\" content=\"@techgdpr\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Silvan Jongerius\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/\"},\"author\":{\"name\":\"Silvan Jongerius\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/person\\\/34bb17183811103b88ab2bf349c7fe5e\"},\"headline\":\"GDPR compliant products debunked: it\u2019s all about HOW you use it\",\"datePublished\":\"2019-09-26T11:16:06+00:00\",\"dateModified\":\"2024-02-22T16:25:33+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/\"},\"wordCount\":856,\"publisher\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2019\\\/09\\\/camera-coffee-composition-1509428.jpg\",\"keywords\":[\"Debunked\",\"GDPR Compliance\"],\"articleSection\":[\"Blockchain\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/\",\"name\":\"GDPR Compliant Products Debunked - Blog - TechGDPR\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2019\\\/09\\\/camera-coffee-composition-1509428.jpg\",\"datePublished\":\"2019-09-26T11:16:06+00:00\",\"dateModified\":\"2024-02-22T16:25:33+00:00\",\"description\":\"GDPR Compliant Products Debunked: A single piece of software does not make you GDPR compliant. It's about the full data processing lifecycle.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/#primaryimage\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2019\\\/09\\\/camera-coffee-composition-1509428.jpg\",\"contentUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2019\\\/09\\\/camera-coffee-composition-1509428.jpg\",\"width\":4000,\"height\":2612},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/gdpr-compliant-products-debunked\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/techgdpr.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"GDPR compliant products debunked: it\u2019s all about HOW you use it\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#website\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/\",\"name\":\"TechGDPR\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/techgdpr.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#organization\",\"name\":\"TechGDPR\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/staging.techgdpr.com\\\/wp-content\\\/uploads\\\/2018\\\/04\\\/TGDPR_logo_500px.png\",\"contentUrl\":\"https:\\\/\\\/staging.techgdpr.com\\\/wp-content\\\/uploads\\\/2018\\\/04\\\/TGDPR_logo_500px.png\",\"width\":501,\"height\":334,\"caption\":\"TechGDPR\"},\"image\":{\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/techgdpr\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/techgdpr\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/#\\\/schema\\\/person\\\/34bb17183811103b88ab2bf349c7fe5e\",\"name\":\"Silvan Jongerius\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2024\\\/03\\\/Silvan_OF_3869_700-150x150.jpg\",\"url\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2024\\\/03\\\/Silvan_OF_3869_700-150x150.jpg\",\"contentUrl\":\"https:\\\/\\\/techgdpr.com\\\/wp-content\\\/uploads\\\/2024\\\/03\\\/Silvan_OF_3869_700-150x150.jpg\",\"caption\":\"Silvan Jongerius\"},\"description\":\"Silvan Jongerius FIP, CIPT, CIPP\\\/e, is the Managing Partner and Founder of TechGDPR. He leads the team of data protection consultants and engages in key client projects as lead consultant. Silvan has been recognized as Fellow of Information Privacy by the renowed IAPP, and is certified as by the IAPP as Certified Information Privacy Professional (Europe\\\/GDPR), Certified Information Privacy Technologist (CIPT) and T\u00dcV certified Data Protection Officer (Datenschutzbeauftragter).\",\"sameAs\":[\"https:\\\/\\\/www.linkedin.com\\\/in\\\/silvanjongerius\\\/\",\"https:\\\/\\\/x.com\\\/silvanjongerius\"],\"url\":\"https:\\\/\\\/techgdpr.com\\\/blog\\\/author\\\/silvan\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"GDPR Compliant Products Debunked - Blog - TechGDPR","description":"GDPR Compliant Products Debunked: A single piece of software does not make you GDPR compliant. It's about the full data processing lifecycle.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/","og_locale":"en_US","og_type":"article","og_title":"GDPR Compliant Products Debunked - Blog - TechGDPR","og_description":"GDPR Compliant Products Debunked: A single piece of software does not make you GDPR compliant. It's about the full data processing lifecycle.","og_url":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/","og_site_name":"TechGDPR","article_published_time":"2019-09-26T11:16:06+00:00","article_modified_time":"2024-02-22T16:25:33+00:00","og_image":[{"width":1024,"height":669,"url":"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428-1024x669.jpg","type":"image\/jpeg"}],"author":"Silvan Jongerius","twitter_card":"summary_large_image","twitter_creator":"@silvanjongerius","twitter_site":"@techgdpr","twitter_misc":{"Written by":"Silvan Jongerius","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/#article","isPartOf":{"@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/"},"author":{"name":"Silvan Jongerius","@id":"https:\/\/techgdpr.com\/#\/schema\/person\/34bb17183811103b88ab2bf349c7fe5e"},"headline":"GDPR compliant products debunked: it\u2019s all about HOW you use it","datePublished":"2019-09-26T11:16:06+00:00","dateModified":"2024-02-22T16:25:33+00:00","mainEntityOfPage":{"@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/"},"wordCount":856,"publisher":{"@id":"https:\/\/techgdpr.com\/#organization"},"image":{"@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/#primaryimage"},"thumbnailUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg","keywords":["Debunked","GDPR Compliance"],"articleSection":["Blockchain"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/","url":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/","name":"GDPR Compliant Products Debunked - Blog - TechGDPR","isPartOf":{"@id":"https:\/\/techgdpr.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/#primaryimage"},"image":{"@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/#primaryimage"},"thumbnailUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg","datePublished":"2019-09-26T11:16:06+00:00","dateModified":"2024-02-22T16:25:33+00:00","description":"GDPR Compliant Products Debunked: A single piece of software does not make you GDPR compliant. It's about the full data processing lifecycle.","breadcrumb":{"@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/#primaryimage","url":"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg","contentUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2019\/09\/camera-coffee-composition-1509428.jpg","width":4000,"height":2612},{"@type":"BreadcrumbList","@id":"https:\/\/techgdpr.com\/blog\/gdpr-compliant-products-debunked\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/techgdpr.com\/"},{"@type":"ListItem","position":2,"name":"GDPR compliant products debunked: it\u2019s all about HOW you use it"}]},{"@type":"WebSite","@id":"https:\/\/techgdpr.com\/#website","url":"https:\/\/techgdpr.com\/","name":"TechGDPR","description":"","publisher":{"@id":"https:\/\/techgdpr.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/techgdpr.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/techgdpr.com\/#organization","name":"TechGDPR","url":"https:\/\/techgdpr.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/techgdpr.com\/#\/schema\/logo\/image\/","url":"https:\/\/staging.techgdpr.com\/wp-content\/uploads\/2018\/04\/TGDPR_logo_500px.png","contentUrl":"https:\/\/staging.techgdpr.com\/wp-content\/uploads\/2018\/04\/TGDPR_logo_500px.png","width":501,"height":334,"caption":"TechGDPR"},"image":{"@id":"https:\/\/techgdpr.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/techgdpr","https:\/\/www.linkedin.com\/company\/techgdpr"]},{"@type":"Person","@id":"https:\/\/techgdpr.com\/#\/schema\/person\/34bb17183811103b88ab2bf349c7fe5e","name":"Silvan Jongerius","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/techgdpr.com\/wp-content\/uploads\/2024\/03\/Silvan_OF_3869_700-150x150.jpg","url":"https:\/\/techgdpr.com\/wp-content\/uploads\/2024\/03\/Silvan_OF_3869_700-150x150.jpg","contentUrl":"https:\/\/techgdpr.com\/wp-content\/uploads\/2024\/03\/Silvan_OF_3869_700-150x150.jpg","caption":"Silvan Jongerius"},"description":"Silvan Jongerius FIP, CIPT, CIPP\/e, is the Managing Partner and Founder of TechGDPR. He leads the team of data protection consultants and engages in key client projects as lead consultant. Silvan has been recognized as Fellow of Information Privacy by the renowed IAPP, and is certified as by the IAPP as Certified Information Privacy Professional (Europe\/GDPR), Certified Information Privacy Technologist (CIPT) and T\u00dcV certified Data Protection Officer (Datenschutzbeauftragter).","sameAs":["https:\/\/www.linkedin.com\/in\/silvanjongerius\/","https:\/\/x.com\/silvanjongerius"],"url":"https:\/\/techgdpr.com\/blog\/author\/silvan\/"}]}},"_links":{"self":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts\/2556","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/comments?post=2556"}],"version-history":[{"count":2,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts\/2556\/revisions"}],"predecessor-version":[{"id":8126,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/posts\/2556\/revisions\/8126"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/media\/2559"}],"wp:attachment":[{"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/media?parent=2556"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/categories?post=2556"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techgdpr.com\/wp-json\/wp\/v2\/tags?post=2556"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}