denoland / deploy_feedback

For reporting issues with Deno Deploy
https://deno.com/deploy
74 stars 5 forks source link

EU Data Protection #272

Open tobiasschmidt89 opened 2 years ago

tobiasschmidt89 commented 2 years ago

I would like to host a website on deno deploy in Germany. I did not find official statement or guide if deno deploy is in check with GDPR, Schrems 2, TMG, DPA, etc. It would be great if you could provide information, features and or processes on this topic so that it is "safe" for users in EU to host websites and apps on deno deploy.

e.g. I found this post by software provider Segment.com that has some information on how they try to solve GDPR, Schrems 2 (e.g. they seem to have a sub company and infrastructure in EU/non-EU to split processing). So something like this would be super helpful for me to feel confident in using deno deploy in Germany.

Thanks

ije commented 2 years ago

thanks, we will fix!

felix-schindler commented 2 years ago

It would be very helpful to be able to select which region to deploy to instead of "earth". Before that, it is impossible for many companies to use the service.

CetinSert commented 2 years ago

It would be better if we could just

tobiasschmidt89 commented 2 years ago

It would be better if we could just

Makes sense to have this option, but I am not sure if it is sufficient to be in check with GDPR.

E.g. it might be necessary to have a deno deploy sub company in EU to be in check with Schrems 2. As far as I understand the US cloud act, it affects also data processed/collected in other countries by US companies. Therefore to keep the EU citizens data isolated would require a physical and "legal" isolation.

Additional I think it would be necessary to have a way to create a DPA with deno deploy and a post explaining the data processing (What Data, Where it is processed, How it is processed, Who has access, ...) so that it is easy to explain in a Privacy Policy and to have a reference in case of an issue.

PS: Again I am no expert on this topic, so everything I explain here might be wrong or insufficient to be in check with GDPR, etc.

eqoram commented 1 year ago

Also very interesting for our organization! Any updates on this?

mknet commented 2 weeks ago

Hello everbody,

it would be a huge step to solve this issue for all people try to use Deno Deploy within Europe / the EU.

Any progress regrading GDPR?

Thanks and regards Marcel

CetinSert commented 2 weeks ago

You know you can all just deploy deno on your traditional VMs, right!?

They have only 3 regions in EU anyway: image