codeforsanjose / courtbot

People need help to not miss a court date. This is a lightweight app for notifications that can be integrated with any county's data.
GNU General Public License v3.0
0 stars 5 forks source link

Evaluate storing phone number - for GDPR and CCPA #8

Closed ying1 closed 3 years ago

ying1 commented 3 years ago

NOTE: This is closed as

  1. GDPR is not applicable for CA only products
  2. CCPA does not apply to non-profits. We probably should also take care of making sure storage of phone number is secure and encrypted

Original

Since phone numbers would be considered as a PII information, it is important that we need to consider what we need to do in order to comply w/ GDPR and CCPA (California specific law)

Evaluation is needed for law requirements, storage requirements and risk mitigation.

Law requirements:

Storage requirements:

Mitigation of risk: