Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Document GDPR strategies #93

Open
johanhaleby opened this issue Jun 9, 2021 · 0 comments
Open

Document GDPR strategies #93

johanhaleby opened this issue Jun 9, 2021 · 0 comments

Comments

@johanhaleby
Copy link
Owner

johanhaleby commented Jun 9, 2021

E.g.

  1. Write PII to external DB
  2. Write PII events to a different stream (use tx), delete stream when user unregisters
  3. Crypto-shredding
  4. Write PII to the same stream but add metadata to cloudevent so that we can know which fields contain PII. When user unregisters do any of:
    1. Delete all events in stream whose event contains PII
    2. Update and "hash" all events in stream that contains PII
    3. Update and delete all fields marked as PII from all events in the stream
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant