• Sergiy - Monday, December 18, 2017 7:03 AM

    1. I have a Facebook account (registered to my personal email, so this falls under the definition of identifiable natural person.2. I am a EU citizenBased on the two verifiable facts above, the obvious conclusion is that I have now given solid proof that Facebook holds personal recorrds of at least one EU citizen. They will need to follow GDPR.

    What course of actions you'd suggest me to take to verify these 2 "verifiable facts"?

    I don't know why you want to verify this yourself, but the stpes are fairly easy. For the first step, go to facebook.com and type my name in a search box. For the second, come by my house and I'll show you my passport. (I will not post a copy here, for obvious reasons).
    But you are missing the point. Facebook knows damn well that they have data of EU citizens, because they have a website without signup restrictions. They do not exclude the EU from their business model, hence they are bound by EU law.
    If they breach the GDPR regulations, the EU can fine them. And then it's Facebook that will have to prove that the breach didn't affect any citizen covered by GDPR if they want to wiggle out of that fine.


    Hugo Kornelis, SQL Server/Data Platform MVP (2006-2016)
    Visit my SQL Server blog: https://sqlserverfast.com/blog/
    SQL Server Execution Plan Reference: https://sqlserverfast.com/epr/