Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The USA is special in that there is no national law against the commercial exploitation of personal information. There is some state level legislation, but that can't help very much for this sort of thing.


No, the EU is special in that it does. The US is like most of the rest of the world.


It looks like a surprisingly large number of countries actually have national GDPR-like laws either in place now or planned soon.

For example:

* Brazil: https://iapp.org/news/a/an-overview-of-brazils-lgpd/

* Canada: https://www.globalcompliancenews.com/2020/12/24/canada-watch...

* India: https://hbr.org/2019/12/how-india-plans-to-protect-consumer-...

* China: https://www.lexology.com/library/detail.aspx?g=47e4d6ec-f5fe...

* Indonesia: https://www.dataguidance.com/notes/indonesia-data-protection...

* Japan: https://auth0.com/blog/the-new-japanese-privacy-law-what-bus...

None are exactly the same, but each includes many similar constraints to the GDPR, notably for the GP's point: no processing of personal data without consent. Together with the EU, those easily cover more than 50% of the global population.

I wouldn't be surprised if the US made an attempt at something similar soon. If not it feels like another area (see also: socialized healthcare, gun control, the metric system) where US norms could end up out of step with the rest of the developed world.




Consider applying for YC's Winter 2027 batch! Applications are open till November 2.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: