Privacy And The EU General Data Protection Regulation

Understand how the EU General Data Protection Regulation (GDPR) impacts businesses using Post Affiliate Pro, including compliance requirements, roles like Data Protection Officer, and data storage rules.

Privacy And The EU General Data Protection Regulation

Privacy And The EU General Data Protection Regulation

Published on February 23, 2016 by Lucia Halašková. Last modified on December 13, 2023.

The EU General Data Protection Regulation (GDPR) is a new law coming into place in the EU. The GDPR is intended to increase the data protection for EU citizens’ personal data, and to govern how that data can be transferred outside of the EU. One of its other main goals is to unify the law across the region, which was previously covered by a Directive that needed to be implemented individually by each EU country.

For users of Post Affiliate Pro, there are some things you need to keep in mind when collecting the data of EU citizens, now that the GDPR is coming into force soon.

What is the GDPR?

The GDPR applies to all data controllers and processors dealing with the data of EU citizens, also called “data subjects”. Data controllers are people, bodies, companies, or agencies that determine what data will be collected, for what purpose, and how it will be done. Essentially, data controllers are those collecting the data for some purpose (such as building a marketing contact list).

Data subjects are those persons who can be identified, directly or indirectly, by way of information collected about them. That information may be something like their location data, an online identifier (like a forum username) or information about their physical, physiological, genetic, mental, economic, cultural or social identity.

When the personal data of data subjects is collected by a data controller, the data controller needs to deal with that data in certain ways, and notify the data subjects of certain things. We’ll cover that in further detail in the section below.

The GDPR also has other tangential requirements for organisations collecting the data of EU data subjects. For example, they must create a new Data Protection Officer (DPO) role in their organisation, and also have an EU representative in the EU if the organisation itself is not based in the EU.

The Data Protection Officer is a new member of staff that will be required to ensure that the business complies with the GDPR. DPOs are necessary if your business collects and processes data on a large scale, or collects “sensitive” information such as racial or ethnic origin, political opinions, religious or philosophical beliefs. The DPO will train the data controller and their staff, develop data protection policies for the organisation, and provide internal compliance updates so that management can make any necessary changes for GDPR compliance.

The EU representative is simply a person on the ground in the EU who can be contacted on the company’s behalf if there is an issue.

How does it affect those using Post Affiliate Pro

Post Affiliate Pro is an affiliate marketing management tool for managing your affiliates, and as such one way in which the personal data of an EU citizen could be collected when using Post Affiliate Pro, is when you track your affiliate’s referrals, commissions, payouts, or look at relevant customer data related to those affiliates. You can see in the following image how Post Affiliate Pro works.

Note that the Terms of Use and Privacy Policy are both hyperlinked in red in the form above; this is so that the appropriate documents are clearly brought to the attention of your customers.

You also need to be careful about where you store the information you collect – for the data of EU citizens, you can only store it in certain countries. Other than all of the EU countries (which are automatically included), the countries that are currently approved are Andorra, Argentina, Canada, Faeroe Islands, Guernsey, Israel, Isle of Man, Jersey, New Zealand, Switzerland, and Uruguay.

The US was previously viewed as an approved country by the EU under the US-EU Safe Harbor agreement, which was recently struck down. A new agreement has been formed between the US and the EU, called the EU-US Privacy Shield. However, the Privacy Shield is still facing criticism from privacy advocates and lawyers, who say that the Privacy Shield is not sufficiently clear and does not outline in enough detail how it will protect consumers. This means that the details of the Privacy Shield may still be subject to change.

Companies are also unhappy with the new Privacy Shield, as many still feel that they are “in the dark” about their obligations given its lack of clarity. Developments in this area need to be watched carefully, to ensure that as new changes are brought in you are aware of what your obligations are if you are storing the data of EU citizens in the US.

It’s important to comply with the GDPR, as the fines for non-compliance have also increased under the new regime. Under the GDPR if your business misses crucial steps in complying with the GDPR, or maliciously doesn’t comply, you could face fines of up to 4% of your global annual turnover.

Conclusion

The GDPR is important to comply with, both to provide customer security and trust in your business, and to ensure that you aren’t subject to hefty penalties. It’s easy to comply with the GDPR by ensuring that you set up a comprehensive Privacy Policy, being aware of where you store the data you collect through Post Affiliate Pro, and setting up roles such as the DPO and EU representative where necessary.

Frequently asked questions

What is the GDPR?

The GDPR (General Data Protection Regulation) is an EU law designed to increase the protection of personal data for EU citizens, unifying data protection laws across EU member states and setting rules for data transfer outside the EU.

Who needs a Data Protection Officer (DPO)?

A Data Protection Officer is required for organizations that process data on a large scale or handle sensitive information, ensuring GDPR compliance and training staff on data protection policies.

How does GDPR affect users of Post Affiliate Pro?

Users must ensure proper handling and storage of EU citizens’ data, notify data subjects appropriately, and may need to appoint roles like a Data Protection Officer or EU representative depending on their business structure.

Where can data of EU citizens be stored under GDPR?

Personal data of EU citizens can be stored in EU countries and other approved countries such as Andorra, Argentina, Canada, Israel, New Zealand, Switzerland, and Uruguay. Data transfer to the US is subject to the EU-US Privacy Shield agreement, which is still under scrutiny.

What are the penalties for non-compliance with GDPR?

Non-compliance with GDPR can result in fines of up to 4% of a business’s global annual turnover.

Leah Hamilton is a qualified Solicitor and writer working at TermsFeed, where businesses can create legal agreements in minutes using the Generator.

Leah Hamilton
Leah Hamilton
Guest Post Author

Ensure GDPR Compliance with Post Affiliate Pro

Stay compliant with the latest EU data protection regulations using Post Affiliate Pro. Learn how to protect personal data, avoid fines, and build customer trust.

Learn more

Privacy Policy Explained
Privacy Policy Explained

Privacy Policy Explained

A privacy policy is a legal document that states what the company can do with customer data. Learn about its importance, core components, and relevance for affi...

4 min read
Privacy AffiliateMarketing +4
Post Affiliate Pro May Improvements and New Features
Post Affiliate Pro May Improvements and New Features

Post Affiliate Pro May Improvements and New Features

Discover the latest enhancements in Post Affiliate Pro 5.11.5.8, including advanced click tracking, comprehensive email notifications, robust fraud protection, ...

2 min read
AffiliateMarketing ProductUpdates +5
Cookies in Marketing: What They Do
Cookies in Marketing: What They Do

Cookies in Marketing: What They Do

Cookie is a data or code that is stored in a computer by a website. It stores login information or information about user’s interests. In affiliate marketing, c...

5 min read
Cookies AffiliateMarketing +3

You will be in Good Hands!

Join our community of happy clients and provide excellent customer support with Post Affiliate Pro.

Capterra
G2 Crowd
GetApp
Post Affiliate Pro Dashboard - Campaign Manager Interface