{"id":2839,"date":"2023-05-03T20:11:55","date_gmt":"2023-05-03T20:11:55","guid":{"rendered":"https:\/\/blog.productcart.com\/?p=2839"},"modified":"2023-05-09T20:24:06","modified_gmt":"2023-05-09T20:24:06","slug":"gdpr-and-cookie-compliance","status":"publish","type":"post","link":"https:\/\/blog.productcart.com\/index.php\/2023\/05\/03\/gdpr-and-cookie-compliance\/","title":{"rendered":"Upholding GDPR &#038; UK-GDPR and Cookie Compliance"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>The <span style=\"text-decoration: underline;\">General Data Protection Regulation<\/span> (<strong>GDPR<\/strong>) is a data privacy and security law passed by the <em>European Union<\/em> (EU) which was put into full effect on May 25, 2018. The goal is to provide legal guidelines to protect the personal data of all EU people online. However, many other countries are following suit as they look at the GDPR as the next standard of personal privacy and data protection. For example, the United Kingdom (UK) has already adopted its own version of the GDPR called the <strong>UK-GDPR<\/strong>. This was done due to separating from the EU in December 31, 2021.<\/p>\n<p>[\/et_pb_text][et_pb_button button_url=&#8221;https:\/\/www.productcart.com\/contact.asp&#8221; button_text=&#8221;We Can Help with Online Privacy!&#8221; button_alignment=&#8221;center&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_button=&#8221;on&#8221; button_text_size=&#8221;20px&#8221; button_text_color=&#8221;#4067B1&#8243; box_shadow_style=&#8221;preset4&#8243; box_shadow_horizontal=&#8221;5px&#8221; box_shadow_vertical=&#8221;5px&#8221; box_shadow_color=&#8221;#8DC640&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_button][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h2>The GDPR, UK-GDPR and Cookie Compliance Explained for Businesses<\/h2>\n<p>Laws like the GDPR, UK-GDPR, CCPA\/ CPRA are steps governments are taking to protect the personal data of its citizens. Personal data is information collected that may include things like IP address, location, contact info, ethnicity or any data which contains details that make a person individually identifiable. Under the GDPR, this applies to all websites, not just the websites owned in the EU. Those who ignore this law may face penalties <a href=\"https:\/\/gdpr.eu\/what-is-gdpr\/\" target=\"_blank\" rel=\"noopener\" title=\"GDPR Official Website\">reaching \u20ac20 million<\/a> or 4% global revenues. This could be why over <a href=\"https:\/\/www.pwc.com\/us\/en\/increasing-it-effectiveness\/publications\/assets\/pwc-gdpr-series-pulse-survey.pdf\" target=\"_blank\" rel=\"noopener\" title=\"GDPR Survey\">half of US based companies<\/a> are making compliance a top priority, of which 77% are budgeting at least $1 million on GDPR optimization.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>Was the \u201cCookie Law\u201d Replaced?<\/h3>\n<p>The GDPR is NOT the <a href=\"https:\/\/edps.europa.eu\/data-protection\/our-work\/subjects\/eprivacy-directive_en\" target=\"_blank\" rel=\"noopener\" title=\"EPD Official Website\">ePrivacy Directive<\/a> (<strong>EPD<\/strong>) or \u201c<em>Cookie Law<\/em>\u201d that was passed in 2002, but expands to data collection practices as a whole within the EU, rather than a focus on just tracking methods. Although in some areas the EPD may supersede the GDPR, one doesn\u2019t replace the other.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>Who Does the GDPR Apply To?<\/h3>\n<p><strong>If You Process Data of EU Citizens<\/strong>: Any person or entity that processes data of or sells products to EU citizens or residents, falls under the GDPR rules. These regulations apply to any website around the world who handles or stores any personal or private data of those who live in the EU.<\/p>\n<p><strong>If You Are an EU Based Company:<\/strong> These regulations provide protection to ALL visitors to a website if the data controller (website owner collecting the data) is based in the EU. For example, a citizen of the United States is protected by the same law as a person who lives in the EU if the website owner is based in the EU.<\/p>\n<p>In short, unless you plan to deny website access to ALL EU visitors online and hold no operations within EU countries, then the GDPR will apply to your website and business.<\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>7 Principles of GDPR<\/h3>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=&#8221;1_2,1_2&#8243; use_custom_gutter=&#8221;on&#8221; gutter_width=&#8221;1&#8243; make_equal=&#8221;on&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221; sticky_enabled=&#8221;0&#8243;]<\/p>\n<ol class=\"numbered-list\">\n<li><strong>Lawfulness, fairness and transparency<\/strong> \u2013 People need to have the ability to know how their data will be handled and processing must follow established laws and fairness practices.<\/li>\n<li><strong>Purpose limitation<\/strong> \u2013 A person\u2019s data cannot be used for anything outside of what is specified.<\/li>\n<li><strong>Data minimization<\/strong> \u2013 Only collect information necessary to accomplish the objective.<\/li>\n<li><strong>Accuracy<\/strong> -personal records must be current.<\/li>\n<li><strong>Storage limitation<\/strong> \u2013 Personally Identifying Information may be held no longer than how long it\u2019s needed for processing.<\/li>\n<li><strong>Integrity and confidentiality<\/strong> \u2013 Business must keep personal data secure and not share it unnecessarily without consent.<\/li>\n<li><strong>Accountability<\/strong> \u2013 Any person who is collecting and processing personal data must show proof following these principles.<\/li>\n<\/ol>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_css_main_element=&#8221;margin: auto;&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_image src=&#8221;https:\/\/blog.productcart.com\/wp-content\/uploads\/2023\/05\/GDPR-300&#215;300-1.jpg&#8221; alt=&#8221;GDPR Compliance Stamp&#8221; title_text=&#8221;GDPR Compliance&#8221; align=&#8221;center&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>GDPR Website &amp; Cookie Compliance<\/h3>\n<p>Despite its length, the GDPR only mentions the term \u201c<a href=\"https:\/\/gdpr.eu\/recital-30-online-identifiers-for-profiling-and-identification\/\" target=\"_blank\" rel=\"noopener\" title=\"Cookies in GDPR\">cookies<\/a>\u201d once within its 88 pages. According to the GDPR, any cookie that is not strictly for the functioning of your website AND collects personal data (EU) must be deactivated until users manually opt into those scripts being used.<\/p>\n<p>There are four major types of cookies:<\/p>\n<ol class=\"numbered-list\">\n<li><u>Necessary Cookies<\/u>. These cookies belong to the website\u2019s owner and are needed to be active for your website to function properly. They usually only last as long as the session and don\u2019t follow the user off the website.<\/li>\n<li><u>Preference Cookies<\/u>. These remember the user\u2019s settings like language and saving form information.<\/li>\n<li><u>Statistics Cookies<\/u>. These are for third-party programs like Google Analytics that collect and measure data.<\/li>\n<li><span style=\"text-decoration: underline;\">Marketing Cookies<\/span>. These allow for ad customization to be served based on the user characteristics like location and collect behavior and data to be sent back to the ads service for remarketing. Facebook and Google Ads make use of such cookies.<\/li>\n<\/ol>\n<p>Under the <a href=\"https:\/\/gdpr.eu\/cookies\/\" target=\"_blank\" rel=\"noopener\" title=\"GDPR on Cookies\">GDPR and EPD<\/a>, your website must allow visitors to choose which cookies to enable on your website. Only cookies considered \u201cnecessary\u201d can bypass being opted out by the user. Your website must receive user consent before allowing any unnecessary cookies to run, provide clear and easy to read privacy policy, give ability to users to withdraw you consent, and ultimately, the ability to use your website regardless of opting into cookies. Below is more of this in detail.[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_button button_url=&#8221;https:\/\/www.productcart.com\/contact.asp&#8221; button_text=&#8221;Contact Us for GDPR Compliance!&#8221; button_alignment=&#8221;center&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_button=&#8221;on&#8221; button_text_size=&#8221;20px&#8221; button_text_color=&#8221;#4067B1&#8243; box_shadow_style=&#8221;preset4&#8243; box_shadow_horizontal=&#8221;5px&#8221; box_shadow_vertical=&#8221;5px&#8221; box_shadow_color=&#8221;#8DC640&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_button][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>How To Optimize Website for GDPR<\/h3>\n<ol class=\"numbered-list\">\n<li><em><u>Create a Cookie Notification:<\/u><\/em> Have a cookie notification through a banner or pop-up where visitors can opt-in to what cookies they want turned on. It is not allowed to have boxes pre-checked or assume users opt-in if they ignore the box. Any set of cookies that are NOT necessary must be actively opted-in by the user.<\/li>\n<li><em><u>Have a Cookie Policy<\/u><\/em>: Within your notification, have links to your policy on your cookies and any third-party cookies like Google Analytics. Policy should explain the \u201cwhat\u201d and \u201cwhy\u201d about the cookies in use.<\/li>\n<li><em><u>Update Privacy Policy:<\/u><\/em> Make sure your website\u2019s privacy policy is current with a more detailed explanation about the cookie policy. It should mention how you collect and store data, as well as, what you do with the data. There should be contact information listed so users can get in touch with you on how to access, modify or delete their data. Include things like IP addresses are captured or tracked for specific purposes.<\/li>\n<li><em><u>Purchase SSL:<\/u><\/em> If you don\u2019t have one, then it would be worth getting one. It\u2019s important because it secures data transfer between user\u2019s devices and web servers, and it\u2019s Google best practices. Plus, do you want to be that website that displays \u201cnot-secured\u201d in the URL bar of a user\u2019s browser?<\/li>\n<li><em><u>Capturing Leads:<\/u><\/em> Don\u2019t store any digital user information that is unnecessary. If you do, make sure that stored information is encrypted. Make sure your email service provider (Gmail, Yahoo, Hotmail, Outlook, etc) also has a GDPR policy in place as well. Lead information can be passed through email, so you want to be covered there. On lead forms, don\u2019t pre-check any boxes like \u201cterms &amp; conditions\u201d or \u201csubscribe me to newsletter\u201d on the form. If you print any digital copy with user information on it, shred it or dispose of it securely when you are finished with it. That cannot be left out.<\/li>\n<li><em><u>Third-Party Services:<\/u><\/em> Make sure any third-party services that you use within your business and website have GDPR policies in place to protect you from being liable for violations. These services include payment gateways, cloud storage, website chat bots, analytics, email providers, or any other service which collects, stores, and processes personal data.<\/li>\n<li><em><u>E-commerce<\/u><\/em>: Must delete or \u201ccleanse\u201d any personal information after a reasonable amount of time.<\/li>\n<\/ol>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>The Difference Between the UK-GDPR and the GDPR<\/h3>\n<p>The UK-GDPR (United Kingdom General Data Protection Regulation) took effect on January 31, 2020 alongside the Data Protection Act of 2018 and the PECR.\u00a0 Due to leaving the European Union on December 31, 2021, the UK was quickly drafted and accepted the UK-GDPR. The UK-GDPR is almost identical to the EU GDPR, except that it has changed to accommodate UK law rather than EU law.<\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>Similarities Between the UK-GDPR and GDPR:<\/h3>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=&#8221;1_2,1_2&#8243; use_custom_gutter=&#8221;on&#8221; gutter_width=&#8221;1&#8243; make_equal=&#8221;on&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;0px|||||&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<ul>\n<li>Both require websites to obtain explicit consent from users before processing their personal data via cookies and third-party trackers.<\/li>\n<li>Both require storing and documenting each valid consent.<\/li>\n<li>Both require websites to enable users to easily change their consent.<\/li>\n<li>Both provide citizens the right to delete and correct already collected personal data.<\/li>\n<li>Both share core definitions like personal data, the rights of data subjects, controller, and processor.<\/li>\n<\/ul>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_css_main_element=&#8221;margin: auto;&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_image src=&#8221;https:\/\/blog.productcart.com\/wp-content\/uploads\/2023\/05\/GDPR-cart-400&#215;300-1.jpg&#8221; alt=&#8221;Mini shopping cart filled with bags in front of laptop.&#8221; title_text=&#8221;Online Shopping&#8221; align=&#8221;center&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p><strong>Differences Between the UK-GDPR and GDPR:<\/strong><\/p>\n<ul>\n<li>Although UK is now considered a \u201cthird-country\u201d by the GDPR, the EU adopted an adequacy decision for the UK to allow free flow of personal data from individuals within the EU to the UK. However, the UK adequacy decision by the European Commission is limited to June 2025 and will not automatically renew.<\/li>\n<li>The Data Protection, Privacy and Electronic Communications (EU Exit) Regulation (DPPEC regulation) which was adopted by the UK. This document is what adapts the EU laws to the domestic UK laws, as well as revising the Data Protection Act of 2018.<\/li>\n<li>The UK-GDPR expanded and changed areas like National Security, Intelligent Services, and Immigration, which are outside the scope of the European GDPR.<\/li>\n<li>The leading data protection authority in the UK, the Information Commissioner, is the lead supervisor, regulator, and enforcer (ICO) of the UK-GDPR. In the EU GDPR, this role was assigned to the European Data Protection Board.<\/li>\n<li>The UK Secretary of State has been given powers to determine or revoke adequacy decisions on behalf of the UK-GDPR, without consulting the ICO.<\/li>\n<li>EU companies doing business within the UK will have to appoint a \u201cnatural or legal person established in the United Kingdom\u201d to represent them.<\/li>\n<li>In the UK-GDPR, the age of valid consent is lowered to 13 years old in the UK. It\u2019s 16 years in the EU.<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h3>Is GDPR and UK-GDPR Compliance Necessary?<\/h3>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=&#8221;1_2,1_2&#8243; use_custom_gutter=&#8221;on&#8221; gutter_width=&#8221;2&#8243; make_equal=&#8221;on&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;0px|||||&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>GTo understand why taking these steps are necessary, you must first know the purpose of documents like the GDPR and UK-GDPR. These rules have been put into place by the government authorities to do as much as they can to eliminate data breaches of personal data by reducing the amount and frequency of data freely passing unsecured from place to place. It is also forcing transparency and accountability between businesses and people who use the business services.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_css_main_element=&#8221;margin: auto;&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_image src=&#8221;https:\/\/blog.productcart.com\/wp-content\/uploads\/2023\/05\/GDPR-mobile-400&#215;300-1.jpg&#8221; alt=&#8221;Lady about to buy something on her smartphone on couch&#8221; title_text=&#8221;GDPR Helps with Online Privacy&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>Although it may seem like a hassle, following the GDPR and UK-GDPR regulations, along with cookie compliance, puts power of choice back into the hands of the end-user\u2026the customer! In addition, it validates the businesses who take these steps as being more responsible and respectful of the privacy and protection of personal data. Additionally, what business wants to pay compliance penalties up to \u20ac20M ($28M) or 4% of its global revenue?<\/p>\n<p>[\/et_pb_text][et_pb_cta title=&#8221;Is your ProductCart website GDPR compliant?&#8221; button_url=&#8221;https:\/\/www.productcart.com\/contact.asp&#8221; button_text=&#8221;Contact Us Today!&#8221; _builder_version=&#8221;4.20.2&#8243; header_font_size=&#8221;30px&#8221; background_color=&#8221;#4067B1&#8243; custom_button=&#8221;on&#8221; button_text_color=&#8221;#000000&#8243; button_bg_color=&#8221;#ffffff&#8221; button_border_width=&#8221;5px&#8221; button_border_color=&#8221;#8DC640&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p>We are here to help you navigate through global website compliance to privacy laws like the GDPR and UK-GDPR. Let our professional automated services keep you legal and current with best practices. Contact us today for a free consultation!<\/p>\n<p>[\/et_pb_cta][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; custom_margin=&#8221;-6px|auto||auto||&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; text_font_size=&#8221;11px&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<p><strong><u>*NOTE<\/u><\/strong>: This article is not professional legal advice, rather a summary of GDPR key points and its implications as it entails to websites and cookies. To ensure complete compliance, speak with an attorney certified in the appropriate areas of law for official legal counsel.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_row _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_image src=&#8221;https:\/\/blog.productcart.com\/wp-content\/uploads\/2023\/05\/social-square-gdpr.jpg&#8221; _builder_version=&#8221;4.20.2&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][\/et_pb_image][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The General Data Protection Regulation (GDPR) is a data privacy and security law passed by the European Union (EU) which was put into full effect on May 25, 2018. The goal is to provide legal guidelines to protect the personal data of all EU people online. However, many other countries are following suit as they [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":2857,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[5,12],"tags":[176,174,173,175],"class_list":["post-2839","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","category-tips-how-tos","tag-cookie-compliance","tag-gdpr","tag-online-privacy","tag-uk-gdpr"],"_links":{"self":[{"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/posts\/2839","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/comments?post=2839"}],"version-history":[{"count":10,"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/posts\/2839\/revisions"}],"predecessor-version":[{"id":2869,"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/posts\/2839\/revisions\/2869"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/media\/2857"}],"wp:attachment":[{"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/media?parent=2839"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/categories?post=2839"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.productcart.com\/index.php\/wp-json\/wp\/v2\/tags?post=2839"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}