prologin / concours-site

Source code of the Prologin contest website
https://gitlab.com/prologin/concours/site
GNU General Public License v3.0
10 stars 6 forks source link

GDPR compliance for new members #230

Closed j4m3s-s closed 4 years ago

j4m3s-s commented 4 years ago

See gcc.prologin.org and ask Oxian for details, he's the expert. It's probably not difficult, just adding a page about the privacy and modify the inscription page a bit. gcc.prologin.org is apparently more up to date on this subject.

cyril-amar commented 4 years ago

See attached (privacy prologin.html.txt) with the revised Privacy declaration for Prologin website. It must be linked to from all the forms (new website user, first subscription to the contest, edit profile) and available at all time in the footer.

Add the following text on the forms (right before the submit button): Je consens au traitement de mes données personnelles ci-dessus par Prologin.

Add the following text on the forms (after the submit button): Prologin est organisés par l'association Prologin, qui agit en tant que contrôleur de données. Les réponses collectées dans ce formulaire nous permettent de fournir les services (communication et juge en ligne) et préparer le concours : sélections, restrictions alimentaires, etc... Pour en apprendre plus à propos de notre gestion des données et de vos droits, consultez notre page dédiée.

Note: processing under the legal basis of Contractual execution is quiet dangerous and complicated, as it requires the contract to be valid under national laws (cf <18yo for instance). I think the better way to go is explicit consent, which will require to collect consent for all existing users (and store the date/time of consent). An alternative would be the Legitimate interest of the data controller, but the definition is a bit unclear.

AurelReb commented 4 years ago

will the privacy page need to be translated in english too?

cyril-amar commented 4 years ago

Yes, but I should be able to provide the translated content.

On Wed, Feb 5, 2020 at 10:03 PM AurelReb notifications@github.com wrote:

will the privacy page need to be translated in english too?

— You are receiving this because you commented. Reply to this email directly, view it on GitHub https://github.com/prologin/site/issues/230?email_source=notifications&email_token=AF5UEZND5C57TDYYNZUWKXTRBMSQ7A5CNFSM4JPKWPL2YY3PNVWWK3TUL52HS4DFVREXG43VMVBW63LNMVXHJKTDN5WW2ZLOORPWSZGOEK47BOI#issuecomment-582611129, or unsubscribe https://github.com/notifications/unsubscribe-auth/AF5UEZMDC5NYFZDLOIQOY5TRBMSQ7ANCNFSM4JPKWPLQ .

-- Cyril Amar amar.cyril@gmail.com