logoalt Hacker News

wizzwizz4last Saturday at 8:32 PM1 replyview on HN

GDPR article 6.1(c) has you covered: no additional costs are incurred, if you're doing things properly. Did you have a specific issue complying with this legislation?


Replies

echelonyesterday at 12:41 AM

Regulation is a moat. It costs money to build systems that comply.

Building compliance is not building for your customers direct asks and requirements. Especially software that does not originate in the EU. How many startups are building data export to comply with data export regulations?

I spent nearly a year plumbing through complex microservices to satisfy GDPR at my last company. We collected an enormous amount of PII and KYC data from payments processing, and there were so many downstream services impacted. And I was just one engineer from amongst dozens of impacted teams that had to deal with it.

Regulatory compliance is not free.

Regulatory compliance is frictionful.

I'm not saying regulation is bad, but that it is a cost of doing business and a tax on engineering. Especially for startups looking to go toe to toe with bigger incumbents that have already paid for compliance and that can afford to pay fees to ignore compliance to go fast.

show 1 reply