EU data protection, was: Extensions in regards to NTLDs
Klaus Malorny <[email protected]>
| Newsgroups | gmane.ietf.provreg |
|---|---|
| Message-ID | <[email protected]> |
On 21/12/11 10:32, Gavin Brown wrote: > On 20/12/2011 21:56, Francisco Obispo wrote: > [...] > > 3) an extension to cover legal/natural person information and whois opt-in/out > for contact objects, to meet EU data protection rules. Telnic has this, and > PuntCAT recently submitted a RSTEP application for such an extension, but any > other EU based gTLD registry will probably need something similar (although I am > not sure if the existing <contact:disclose> element doesn't already provide this). > > G. > Hi, IMHO <contact:disclose> already provides sufficient control (except for the design flaw that you cannot grant and deny disclosures at the same time). However, having some insight, decisions were made less with the intention to provide the best technical solution or the best protection. So the chosen solution of associating the protection with the domain instead of the contact should IMHO not be regarded as exemplary. BTW, regarding data protection, it sounds quite strange that you can gain an extra point in the score in the application for a new gTLD (item #26) if one provides a searchable Whois. At least in the EU, the data protection officers would likely go crazy. But that's probably out of scope of this list. Regards, Klaus _______________________________________________ provreg mailing list [email protected] https://www.ietf.org/mailman/listinfo/provreg