1 |
On Thu, 21 May 2020 at 09:47, Michał Górny <mgorny@g.o> wrote: |
2 |
|
3 |
> |
4 |
> Option 1: IP-based limiting |
5 |
> =========================== |
6 |
> |
7 |
|
8 |
Preface this with IANAL, check with your own legal counsel... |
9 |
|
10 |
While IP address based methods might be attractive technically, do |
11 |
remember that an IP address is considered Personally Identifiable in |
12 |
European Data Protection law. |
13 |
|
14 |
The fact submissions require an action by the user will probably be |
15 |
sufficient to be explicit consent, any system storing these details should |
16 |
allow for the use to revoke their consent: If you collect anything |
17 |
personally identifiable, you will need to provide a mechanism for users to |
18 |
request the removal of all their submissions. |
19 |
|
20 |
Tread carefully with this project. :) |