this post was submitted on 04 Mar 2024
96 points (91.4% liked)

Fediverse

28551 readers
745 users here now

A community to talk about the Fediverse and all it's related services using ActivityPub (Mastodon, Lemmy, KBin, etc).

If you wanted to get help with moderating your own community then head over to [email protected]!

Rules

Learn more at these websites: Join The Fediverse Wiki, Fediverse.info, Wikipedia Page, The Federation Info (Stats), FediDB (Stats), Sub Rehab (Reddit Migration), Search Lemmy

founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] Maalus 8 points 9 months ago (1 children)

Except you don't get to ignore GDPR by saying "don't expect our site to be private".

[–] [email protected] 5 points 9 months ago (1 children)

GDPR is really designed to target software controlled by a single entity, but this isn't that. The instances are responsible for their content, full stop. There's no way of forcing an instance to delete content, and even if there were, since the admins are running it, there's nothing stopping them from removing such a feature.

There's also nothing stopping admins from deleting content from their servers (it's just a database, after all).

[–] Maalus 5 points 9 months ago (1 children)

Well then, once the EU knows about Lemmy, it'll be screwed. Again, you don't get to make excuses when dealing with GDPR. The book will be thrown at you once you have EU citizen's data, which lemmy obviously does. Saying "we made this application without it ever being possible to comply with GDPR" will only get you a bigger fine, or worse.

[–] [email protected] 2 points 9 months ago (1 children)

"Lemmy" (the software) doesn't have any data. It all resides on servers owned by people other than Lemmy's developers. They have the user data and would absolutely be subject to GDPR.

Again, no matter what Lemmy's devs put in place, it doesn't matter because the instance admins can do whatever they want.

[–] Maalus 4 points 8 months ago (1 children)

Way to go being pedantic about it.

Once they know about one server, they will know about most large instances. Since Lemmy doesn't implement any GDPR features (i.e. cookie notices, a button for deletion, etc) every larger instance will get hit.

[–] [email protected] -1 points 8 months ago

Only those based in the EU.