Hi all, we are quite happy to launch or first pris...
# orm-help
m
Hi all, we are quite happy to launch or first prisma backend in production soon. Preparing the apps launch, our management has been asking questions about the GDPR compliance. So I was wondering: Is there any information on how data storage in the prisma cloud in a private workspace is GDPR compliant? Does anyone have any experience with this or can you point me to a read? Thanks in advance!
h
GDPR compliancy is up to you and your implementation and business processes, not with Prisma. As long as you can account for all of your users’ data, can delete a user and all identifiable records of him/her upon request, and do not collect or save data that is not relevant to your service of this user, you should be good
The only thing that is relevant in regards to Prisma is wether they collect/store/share the data saved with them - but I’m sure you can find some wording in their TOC that they won’t do that
Good luck on your launch!
m
Thanks!
I believe that it must be documented somewhere where the data are stored. When using the prisma cloud, this requires some sort of contract or TOC agreement what they will do with and how they will store/protect the data... I am wondering whether someone ones where to find this documentation