Somewhat relevant, but my firm was getting spammed by a provider called Surf Shark. Their emails were requesting removal of their "customers" data from our systems/DBs. We were getting hundreds of emails a day requesting removal. So we built this: https://SimpleOptOutCompliance.com/ with the aim of offering a low cost GDPR / CCPA compliance tool.
Purpose: These Cookies are used to track information about traffic to the Website and how users use the Website. The information gathered via these Cookies may directly or indirectly identify you as an individual visitor. This is because the information collected is typically linked to a pseudonymous identifier associated with the device you use to access the Website. We may also use these Cookies to test new pages, features or new functionality of the Website to see how our users react to them.
...
The Company may use Personal Data for the following purposes:
For other purposes: We may use Your information for other purposes, such as data analysis, identifying usage trends, determining the effectiveness of our promotional campaigns and to evaluate and improve our Service, products, services, marketing and your experience.
...
We may share Your personal information in the following situations:
With business partners: We may share Your information with Our business partners to offer You certain products, services or promotions.
"""
How hard is it to not track people? Will I be tracked even though I got no consent popup and therefore didn't provide it? (I block those on principle). Why even build something so pretentious about GDPR compliance yet you do the dirty things everyone else does?
Thanks for letting me know, this was a boiler plate policy that we edited the bones of. I don't know how that crept in. We have no intention of selling this data or any other data, so I have amended the policy. Thank you.
Many people in the privacy space do not consider these requests to be legitimate because of the power of attorney granted to them is a moot. Furthermore, we are sent requests whether or not we have data on these subjects. So in both regards we are being "spammed"
Comments
Somewhat relevant, but my firm was getting spammed by a provider called Surf Shark. Their emails were requesting removal of their "customers" data from our systems/DBs. We were getting hundreds of emails a day requesting removal. So we built this: https://SimpleOptOutCompliance.com/ with the aim of offering a low cost GDPR / CCPA compliance tool.
From your Privacy Policy:
""" Tracking and Performance Cookies
Type: Persistent Cookies
Administered by: Third-Parties
Purpose: These Cookies are used to track information about traffic to the Website and how users use the Website. The information gathered via these Cookies may directly or indirectly identify you as an individual visitor. This is because the information collected is typically linked to a pseudonymous identifier associated with the device you use to access the Website. We may also use these Cookies to test new pages, features or new functionality of the Website to see how our users react to them.
...
The Company may use Personal Data for the following purposes:
For other purposes: We may use Your information for other purposes, such as data analysis, identifying usage trends, determining the effectiveness of our promotional campaigns and to evaluate and improve our Service, products, services, marketing and your experience.
...
We may share Your personal information in the following situations:
With business partners: We may share Your information with Our business partners to offer You certain products, services or promotions. """
How hard is it to not track people? Will I be tracked even though I got no consent popup and therefore didn't provide it? (I block those on principle). Why even build something so pretentious about GDPR compliance yet you do the dirty things everyone else does?
Thanks for letting me know, this was a boiler plate policy that we edited the bones of. I don't know how that crept in. We have no intention of selling this data or any other data, so I have amended the policy. Thank you.
Come on.
Seriously, its a paid for subscription service for small businesses...no need or desire to sell.
So? What a horrific first impression.
is it really spam if you have data on someone that can be deleted?
Many people in the privacy space do not consider these requests to be legitimate because of the power of attorney granted to them is a moot. Furthermore, we are sent requests whether or not we have data on these subjects. So in both regards we are being "spammed"