Safe Harbor - European Store

New Member
1 0 0

Hi Everyone,

The new legislations for the EU-US Privacy Shield has been finailised today and could come into effect in July once both parties agree. Below are a few articles on this update

http://www.theregister.co.uk/2016/06/27/useu_agree_privacy_shield/

http://www.itpro.co.uk/data-protection/26796/safe-harbour-replaced-with-eu-us-privacy-shield

http://www.dataiq.co.uk/news/privacy-shield-agreed-brexit-fall-out-continues

 

Once this new agreement becomes inplace how long will it take shopify to comply with the agreement?

Thanks

Olly

0 Likes
Shopify Expert
564 24 89

Oliver,

thanks for the update! It appears the agreement still has to be ratified by all EU member states. Not sure about other countries, but so far the public statements in Germany made by data protection officials, privacy advocates and the like regarding the new agreement have not been favorable.

If the agreement does come into effect, I don't think Shopify has to do much more to comply than change their ToS to refer to the new agreement instead of where it used to refer to the old Safe Harbour agreement. But I'm sure Shopify's legal team will now best what to do ;)

★ ThemeUp: Nifty Upgrades for your Shopify Store ★ https://themeup.net
0 Likes
Explorer
89 0 54

Really thrilled to read the papers. I think we can't compare this with those (literally) letters which where part of the EU/US communication in February (here are the documents, if someone is interested: http://europa.eu/rapid/press-release_IP-16-433_en.htm).

As of April this year, shopify doesn't have a current certification on the safe harbor list anymore, which is strange when compared to other companies like Apple or Microsoft.

But again, safe harbor is past :-)

0 Likes
Shopify Expert
564 24 89

Privacy Shield apparently going into effect next week: http://www.bbc.com/news/technology-36744928

★ ThemeUp: Nifty Upgrades for your Shopify Store ★ https://themeup.net
0 Likes
Shopify Staff
Shopify Staff
5 0 0

Hi folks,

We are also following the news about Privacy Shield coming out of Europe. It clarifies how data transfers should work and it's something that we are working hard on reviewing so that once it comes into force we can act quickly.

I'll post to this thread with updates as they're available.

0 Likes
Shopify Partner
17 0 14

Hello Chris,

I note that US companies could begin the self-certification process for Privacy Shield as of Aug 1 2016.

A quick extract from the relevant EU Commission decision states that the “Commission concludes that the United States ensures an adequate level of protection for personal data transferred under the EU-U.S. Privacy Shield from the Union to self-certified organisations in the United States.”

Has Shopify (or the US entity that controls its data servers in the US) submitted its Self-Certification Application to the US Department of Commerce?

Does Shopify have any indication when it will be added to the US Department of Commerce’s Privacy List?

 

Many thanks,

Graham

0 Likes
New Member
13 0 0

I am taking interest in this post as I have recently been contacted by one of my customers regarding their data being sent to the US.

I was never aware that this was the case. I really must read up on all the data protection laws

0 Likes
Shopify Staff
Shopify Staff
5 0 0

Good morning Graham, Karen, and everyone else,

Has Shopify (or the US entity that controls its data servers in the US) submitted its Self-Certification Application to the US Department of Commerce?

Does Shopify have any indication when it will be added to the US Department of Commerce’s Privacy List?

We haven't sent in our submission to the DoC yet though we intend to do so. We expect it will probably be in the first 2 or 3 weeks of September but I have to add the caveat that sometimes things like this go totally sideways. If something changes, I'll post an update here.

I really must read up on all the data protection laws

It's an fascinating legal area, especially these days. Here's a recent blog post by the Information Commissioner's Office in the UK that gives the whole backstory of Safe Habour -> Privacy Shield: https://iconewsblog.wordpress.com/2016/08/04/the-what-why-and-how-of-transferring-data-to-the-usa/

Their website provides some pretty good resources as well: https://ico.org.uk/

Finally, this is a quick fact-sheet from the Department of Commerce on the process of joining Privacy Shield for those that are truly curious about what's involved: https://www.commerce.gov/sites/commerce.gov/files/media/files/2016/fact_sheet-_eu-us_privacy_shield_...

Thanks folks,

Chris

0 Likes
Highlighted
Explorer
89 0 54

Looks like it's done.

https://www.shopify.com/legal/privacy (11.)

Cheers, Marco

1 Like
Shopify Staff
Shopify Staff
5 0 0

Afternoon folks,

MGander is right. We updated our privacy policy and sent in our submission to the Department of Commerce last week. It seems to be taking a couple of weeks to be added to the list on privacyshield.gov.

Chris

0 Likes