Hi, On Tue, 2019-08-13 at 11:00 -0400, Robert J. Hansen wrote: > > They are! > > No, they're not. I think your assessment is wrong.
> > There are (or at least were) a large number of US-based keyserver > operators who were immune to the GDPR. I fail to see how this is in accordance with the GDPR. Section 3.2 states¹: > This Regulation applies to the processing of personal data of data > subjects who are in the Union by a controller or processor not > established in the Union, where the processing activities are related > to: > > the offering of goods or services, irrespective of whether a > payment of the data subject is required, to such data subjects in the > Union This is exactly the case for OpenPGP Keyservers. Cheers, Tobi 1: https://gdpr-info.eu/art-3-gdpr/ _______________________________________________ Sks-devel mailing list Sks-devel@nongnu.org https://lists.nongnu.org/mailman/listinfo/sks-devel