The full form of GDPR is General Data Protection Regulation. It is the privacy law that protects the right of all EU citizens and their personal data. It was approved on April 14, 2016 by the European Commission. Here are the few terms you should understand:
A controller ascertains his purposes and means of processing the personal data.
They are responsible for processing the personal data on controller’s behalf.
- Personal data
Personal data is information that identifies a person, even indirectly by combining one piece of information with another piece of information.
If personal data is accessed, used or stored in any way, it is called processing. According to GDPR compliance, processing entails all actions taken on personal data like collecting, recording, organizing, structuring, storing, adapting, changing, retrieving, consulting, using, transmission, disclosing, disseminating, combining, aligning, restricting, erasing or destroying.
Basic principles of GDPR
- Data should be processed under lawful, fair and transparent means. Also considering that the consent is given.
- Personal data should be gathered for a certain, explicit and valid purpose and should only be used for the stated purpose.
- Personal data must always be proper, relevant, and limit collection to only what is needed at the time.
- Personal data should always be accurate and updated.
- Personal data should only be stored in an identifiable form for the shortest time.
- Personal data should be processed in a way that it guarantees data security.
- The controller has the sole responsibility to be able to pay heed to these aforementioned principles.
How does GDPR Impact WordPress?
- The WordPress community site that gathers personal information for every user profile.
- The WordPress theme shop where the customer needs to sign up for accounts to buy themes or plugins.
- A WordPress blog that bears a newsletter subscription widget or allows the visitors to comment.
- A WordPress site that makes the use of analytics software.
How to Make Your Website GDPR Compliant?
- Hire a lawyer
- Review the data collected and the processing workflow
- GDPR Project is now integrated with WordPress Core for Developers
- Keep all the legal documents updated.
- Offer data portability
- Self certify under privacy shield framework
- Encrypt your data or HTTPS
- Have a look at your themes, plugins, services etc.