This is Personal Information and so the data processor must have a specific reason why they need it, and must take appropriate steps to secure it. They can't just capture it "In case we need it later" nor can they just store it haphazardly because it's not valuable to them, or refuse to update it because that's difficult.
I might be wrong but I don't think GDPR limits what information you can request, it's more about how the information is handled and the need for consent to collect it.
xigoi|3 years ago
rjh29|3 years ago
nmz|3 years ago
csours|3 years ago
perbu|3 years ago
tialaramex|3 years ago
This is Personal Information and so the data processor must have a specific reason why they need it, and must take appropriate steps to secure it. They can't just capture it "In case we need it later" nor can they just store it haphazardly because it's not valuable to them, or refuse to update it because that's difficult.
nibbleshifter|3 years ago
kace91|3 years ago