cgrates / cgrates

Real-time Charging System for Telecom & ISP environments
http://cgrates.org
GNU General Public License v3.0
432 stars 220 forks source link

GDPR related mechanisms #1085

Open danbogos opened 6 years ago

danbogos commented 6 years ago

Since in European countries is a demand, we need to identify sensitive zones and implement mechanisms helping platform administrators being GDPR compatible when it comes to CGRateS stored data.

DanB

ghenry commented 5 years ago

Hi Dan, I don't think this is cgrates remit. CDRs will be the only GDPR related items and they will be in the users database. What else are you thinking of? Thanks.

danbogos commented 5 years ago

Hey Gavin,

Well this was what I was hoping to gather here, issues with GDPR. Maybe some better APIs to mask parts of CDRs? TBH, no idea for now, I just wanted to make sure we cover this topic also.

DanB

ghenry commented 5 years ago

Maybe, but you need them for other legal reasons which you justify the use for GDPR. I'm pretty sure you don't need to do anything. The only thing telcos do is declare how long you are going to keep full CDRs and when you switch to a redacted version etc. There's nothing else that could be used to identify a person other than say a caller ID name and caller ID number.