SlideShare a Scribd company logo
1 of 19
t12 Essential Steps for GDPR
Compliant Mobile App
12 Essential Steps for
GDPR Compliant Mobile App
What is GDPR?
The new GDPR regulation, which was enacted in
May 2018, will completely change the way
companies use and manage personal data of their
users. For organizations that operate in Europe or
gather personal data of EU citizens residing in any
part of the world, this means reviewing the technical
implication that these updated laws will have on
their web applications or online operations.
Consequences of non-
compliance with GDPR
Organizations that fail to implement GDPR risk being
levied huge fines in the range of €1 million or 2% of
the global turnover, or €2 million or 4% of the global
turnover, depending on the sensitivity of the data.
Four Most Important
Aspects of the Law
1. Easier Access to Your Own Data
2. A Right to Data Portability
3. A Clarified Right to be Forgotten
4. The Right to Know When Your Data Has Been
Hacked
How do you implement an application
that’s compliant with the EU directive that
provides complete control of personal
data to users?
Here are 12
guidelines
Analyze whether all the
personal data requested
by app is actually needed
Ideally, a privacy implementation should
save as little as possible of the users’
personal details, such as birth date, name,
country of residence, etc.
1.
All personal data should
be encrypted, and users
informed about it
If an application needs to save personal
information, this data should be encrypted
using reliable and strong encryption
algorithms, such as hashing.
2.
Use protocols such as
OAUTH for data
portability
Single sign-in protocols such as OAUTH
allow users to create accounts by simply
providing details of another account.
3.
Use HTTPS to enforce
secure communications
The steps should be taken to make sure
that the SSL certificate has been properly
deployed to prevent exposure to
vulnerabilities related to SSL protocols.
4.
Inform users about
personal data from
‘contact us’ forms and
encrypt the data
Users must be informed about the way
this data will be stored and of the duration
for which it will be retained.
5.
Make sure sessions and
cookies expire and are
destroyed after logout
Users must be made aware of the use of
cookies by the application.
6.
Get users’ consent to
track activity for business
intelligence.
Whenever user behavior is being
monitored and stored for business
intelligence, the users should be given the
option to accept or reject tracking.
7.
Inform users about logs
that save location or IP
addresses
Users should be told about use of IP
addresses or locations parameters that
help with authentication and
authorizations.
8.
Encrypt logs and store in
a safe place
Keep logs that contain user information in
a secure location place and update users
about what happens to these logs.
9.
Prevent security
questions from turning
on users’ personal data
The security questions used as a method
to confirm user identity should not include
personal information.
10.
Provide clear terms and
conditions and ensure visibility
so that users read them
Terms and conditions need to be placed
on the landing page of any web
application and need to be extremely
visible to the users when they navigate the
application.
11.
Keep users informed about
any data sharing with third
parties and delete data on
service deactivation.
Organizations or entities that share
personal data with third parties, including
external plugins, affiliates, or government
organizations, should mention the fact in
the terms and conditions.
12.
Los Angeles
28310 Roadside Dr, STE 255,
Agoura Hills, Los Angeles, California 91301
Phone : +1 818-318-0727
New Jersey
100 Overlook Center, 2nd Floor,
Princeton, New Jersey, 08540
Phone : +1 609-375-2017
Noida
8th Floor, Tower A,
Green Boulevard, Plot No.B-9/A,
Sector-62, Noida, Uttar Pradesh, INDIA
Phone : +91 120 4589900
www.techaheadcorp.com
Contact Us
Contact us to get your mobile app GDPR compliant
sales@techaheadcorp.com

More Related Content

More from TechAhead

10 Principles of Mobile App Design
10 Principles of Mobile App Design10 Principles of Mobile App Design
10 Principles of Mobile App DesignTechAhead
 
10 Conditions for Cost Estimation of an iOS Application
10 Conditions for Cost Estimation of an iOS Application10 Conditions for Cost Estimation of an iOS Application
10 Conditions for Cost Estimation of an iOS ApplicationTechAhead
 
7 Things About iPhone 6 Health App
7 Things About iPhone 6 Health App7 Things About iPhone 6 Health App
7 Things About iPhone 6 Health AppTechAhead
 
Google Apps for Work
Google Apps for WorkGoogle Apps for Work
Google Apps for WorkTechAhead
 
Meet the New Amazing Google Calendar App
Meet the New Amazing Google Calendar AppMeet the New Amazing Google Calendar App
Meet the New Amazing Google Calendar AppTechAhead
 
A Kickstarter's Guide to ICC Cricket World Cup 2015
A Kickstarter's Guide to ICC Cricket World Cup 2015A Kickstarter's Guide to ICC Cricket World Cup 2015
A Kickstarter's Guide to ICC Cricket World Cup 2015TechAhead
 
Five Tech Masterpieces faded away in 2014
Five Tech Masterpieces faded away in 2014Five Tech Masterpieces faded away in 2014
Five Tech Masterpieces faded away in 2014TechAhead
 
What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?
What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?
What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?TechAhead
 
Sneak Peek at Google I/O 2014 Highlights
Sneak Peek at Google I/O 2014 HighlightsSneak Peek at Google I/O 2014 Highlights
Sneak Peek at Google I/O 2014 HighlightsTechAhead
 
What makes iOS 8 the world’s most advanced mobile operating system?
What makes iOS 8 the world’s most advanced mobile operating system?What makes iOS 8 the world’s most advanced mobile operating system?
What makes iOS 8 the world’s most advanced mobile operating system?TechAhead
 
Top-Notch Slimmest Smartphones on Earth
Top-Notch Slimmest Smartphones on EarthTop-Notch Slimmest Smartphones on Earth
Top-Notch Slimmest Smartphones on EarthTechAhead
 
Windows 8.1 Tweaks & New Add-Ons
Windows 8.1 Tweaks & New Add-OnsWindows 8.1 Tweaks & New Add-Ons
Windows 8.1 Tweaks & New Add-OnsTechAhead
 
Mobile Usage Trends in U.S.
Mobile Usage Trends in U.S.Mobile Usage Trends in U.S.
Mobile Usage Trends in U.S.TechAhead
 
In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...
In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...
In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...TechAhead
 
PhoneGap JavaScript API vs Native Components
PhoneGap JavaScript API vs Native ComponentsPhoneGap JavaScript API vs Native Components
PhoneGap JavaScript API vs Native ComponentsTechAhead
 
Top 5 open source cms
Top 5 open source cmsTop 5 open source cms
Top 5 open source cmsTechAhead
 
Version Control System
Version Control SystemVersion Control System
Version Control SystemTechAhead
 

More from TechAhead (17)

10 Principles of Mobile App Design
10 Principles of Mobile App Design10 Principles of Mobile App Design
10 Principles of Mobile App Design
 
10 Conditions for Cost Estimation of an iOS Application
10 Conditions for Cost Estimation of an iOS Application10 Conditions for Cost Estimation of an iOS Application
10 Conditions for Cost Estimation of an iOS Application
 
7 Things About iPhone 6 Health App
7 Things About iPhone 6 Health App7 Things About iPhone 6 Health App
7 Things About iPhone 6 Health App
 
Google Apps for Work
Google Apps for WorkGoogle Apps for Work
Google Apps for Work
 
Meet the New Amazing Google Calendar App
Meet the New Amazing Google Calendar AppMeet the New Amazing Google Calendar App
Meet the New Amazing Google Calendar App
 
A Kickstarter's Guide to ICC Cricket World Cup 2015
A Kickstarter's Guide to ICC Cricket World Cup 2015A Kickstarter's Guide to ICC Cricket World Cup 2015
A Kickstarter's Guide to ICC Cricket World Cup 2015
 
Five Tech Masterpieces faded away in 2014
Five Tech Masterpieces faded away in 2014Five Tech Masterpieces faded away in 2014
Five Tech Masterpieces faded away in 2014
 
What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?
What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?
What makes Xiaomi's MIUI 6, The Eyeball Grabber in the mobile Industry?
 
Sneak Peek at Google I/O 2014 Highlights
Sneak Peek at Google I/O 2014 HighlightsSneak Peek at Google I/O 2014 Highlights
Sneak Peek at Google I/O 2014 Highlights
 
What makes iOS 8 the world’s most advanced mobile operating system?
What makes iOS 8 the world’s most advanced mobile operating system?What makes iOS 8 the world’s most advanced mobile operating system?
What makes iOS 8 the world’s most advanced mobile operating system?
 
Top-Notch Slimmest Smartphones on Earth
Top-Notch Slimmest Smartphones on EarthTop-Notch Slimmest Smartphones on Earth
Top-Notch Slimmest Smartphones on Earth
 
Windows 8.1 Tweaks & New Add-Ons
Windows 8.1 Tweaks & New Add-OnsWindows 8.1 Tweaks & New Add-Ons
Windows 8.1 Tweaks & New Add-Ons
 
Mobile Usage Trends in U.S.
Mobile Usage Trends in U.S.Mobile Usage Trends in U.S.
Mobile Usage Trends in U.S.
 
In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...
In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...
In-App Purchases - Why the Freemium Model of Apps is Helping Developers and B...
 
PhoneGap JavaScript API vs Native Components
PhoneGap JavaScript API vs Native ComponentsPhoneGap JavaScript API vs Native Components
PhoneGap JavaScript API vs Native Components
 
Top 5 open source cms
Top 5 open source cmsTop 5 open source cms
Top 5 open source cms
 
Version Control System
Version Control SystemVersion Control System
Version Control System
 

Recently uploaded

IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsEnterprise Knowledge
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxKatpro Technologies
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxMalak Abu Hammad
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Enterprise Knowledge
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Scriptwesley chun
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...apidays
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking MenDelhi Call girls
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUK Journal
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Igalia
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 

Recently uploaded (20)

IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
Raspberry Pi 5: Challenges and Solutions in Bringing up an OpenGL/Vulkan Driv...
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 

12 Essential Steps for GDPR Compliant Mobile App

  • 1. t12 Essential Steps for GDPR Compliant Mobile App 12 Essential Steps for GDPR Compliant Mobile App
  • 2. What is GDPR? The new GDPR regulation, which was enacted in May 2018, will completely change the way companies use and manage personal data of their users. For organizations that operate in Europe or gather personal data of EU citizens residing in any part of the world, this means reviewing the technical implication that these updated laws will have on their web applications or online operations.
  • 3. Consequences of non- compliance with GDPR Organizations that fail to implement GDPR risk being levied huge fines in the range of €1 million or 2% of the global turnover, or €2 million or 4% of the global turnover, depending on the sensitivity of the data.
  • 4. Four Most Important Aspects of the Law 1. Easier Access to Your Own Data 2. A Right to Data Portability 3. A Clarified Right to be Forgotten 4. The Right to Know When Your Data Has Been Hacked
  • 5. How do you implement an application that’s compliant with the EU directive that provides complete control of personal data to users? Here are 12 guidelines
  • 6. Analyze whether all the personal data requested by app is actually needed Ideally, a privacy implementation should save as little as possible of the users’ personal details, such as birth date, name, country of residence, etc. 1.
  • 7. All personal data should be encrypted, and users informed about it If an application needs to save personal information, this data should be encrypted using reliable and strong encryption algorithms, such as hashing. 2.
  • 8. Use protocols such as OAUTH for data portability Single sign-in protocols such as OAUTH allow users to create accounts by simply providing details of another account. 3.
  • 9. Use HTTPS to enforce secure communications The steps should be taken to make sure that the SSL certificate has been properly deployed to prevent exposure to vulnerabilities related to SSL protocols. 4.
  • 10. Inform users about personal data from ‘contact us’ forms and encrypt the data Users must be informed about the way this data will be stored and of the duration for which it will be retained. 5.
  • 11. Make sure sessions and cookies expire and are destroyed after logout Users must be made aware of the use of cookies by the application. 6.
  • 12. Get users’ consent to track activity for business intelligence. Whenever user behavior is being monitored and stored for business intelligence, the users should be given the option to accept or reject tracking. 7.
  • 13. Inform users about logs that save location or IP addresses Users should be told about use of IP addresses or locations parameters that help with authentication and authorizations. 8.
  • 14. Encrypt logs and store in a safe place Keep logs that contain user information in a secure location place and update users about what happens to these logs. 9.
  • 15. Prevent security questions from turning on users’ personal data The security questions used as a method to confirm user identity should not include personal information. 10.
  • 16. Provide clear terms and conditions and ensure visibility so that users read them Terms and conditions need to be placed on the landing page of any web application and need to be extremely visible to the users when they navigate the application. 11.
  • 17. Keep users informed about any data sharing with third parties and delete data on service deactivation. Organizations or entities that share personal data with third parties, including external plugins, affiliates, or government organizations, should mention the fact in the terms and conditions. 12.
  • 18. Los Angeles 28310 Roadside Dr, STE 255, Agoura Hills, Los Angeles, California 91301 Phone : +1 818-318-0727 New Jersey 100 Overlook Center, 2nd Floor, Princeton, New Jersey, 08540 Phone : +1 609-375-2017 Noida 8th Floor, Tower A, Green Boulevard, Plot No.B-9/A, Sector-62, Noida, Uttar Pradesh, INDIA Phone : +91 120 4589900 www.techaheadcorp.com Contact Us
  • 19. Contact us to get your mobile app GDPR compliant sales@techaheadcorp.com