home.social

#locaverdi — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #locaverdi, aggregated by home.social.

  1. De meeste MKB-cookie-inventarissen missen localStorage, pixels die pas afgaan na een klik, beacons bij foutmeldingen, en fingerprinting. Een CMP-scanner ziet die niet allemaal.
    Daarom ziet een audit ze wel.
    Schreef een gids voor MKB-bedrijven over wat ePrivacy art. 5 lid 3 echt vereist en waarom de banner alleen niet voldoende is.
    readmodel.com/blog/article.php
    #AVG #Privacy #readmodel #locaverdi

  2. Six years after Schrems II, most SMEs using mainstream SaaS have US transfers, Indian sub-processors, AI services running inference somewhere they can't name — and no documented Transfer Impact Assessment for any of it.
    Schrems III is pending at the CJEU. The organisations doing TIAs now will barely notice the ruling. The ones relying on DPF certification won't.
    readmodel.com/blog/article.php
    #GDPR #SchremsII #readmodel #locaverdi

  3. Most SME ransomware advice is either "buy this expensive tool" or "here's a scary statistic." Both unhelpful.
    The boring version: immutable backups + MFA + a tested recovery plan covers most of what matters. Controls most teams don't find exciting to implement, which is exactly why they don't.
    Wrote a 10-point checklist for organisations without dedicated security teams.
    readmodel.com/blog/article.php
    #RansomwareResilience #CyberSecurity #readmodel #locaverdi

  4. Spent four weeks writing long compliance articles. The analytics told me what was obvious in hindsight — most people would rather watch than read.
    So here's a five-minute demo of the thing I've been writing about. Creates a project, adds an AI service, maps users and access, generates a ROPA. Free tier is real.
    youtu.be/20VtaBhrfpQ
    #DataMapping #GDPR #readmodel #locaverdi

  5. Most organisations treat GDPR, NIS2, and the AI Act as three separate compliance projects. They're not. They're the same problem viewed from three angles — and the siloed approach is what's breaking.
    The IAPP calls the integrated version "aligned governance." Most orgs are nowhere near it yet.
    Wrote up why 2026 is the inflection point.
    readmodel.com/blog/article.php
    #DigitalGovernance #GDPR #NIS2 #readmodel #locaverdi

  6. Third post this week on compliance, but this one is on the clock.
    The EU AI Act deadline is August 2, 2026. That's four months away. And unlike GDPR, which most SMBs at least pretend to take seriously, AI governance is currently a blank page at almost every mid-market company I talk to.
    Here's the uncomfortable part: you're already a "deployer" under the Act. If your team uses ChatGPT, Copilot, Gemini, or any AI feature buried inside your CRM or HR platform, you have obligations. Not because you built the AI — because you chose to use it.
    The obligations themselves are manageable. Inventory your AI services. Classify each one by risk. Document human oversight for anything that affects people. Integrate it with your existing ROPA. None of that is hard. What's hard is that almost nobody has started.
    One thing to know that often gets missed: the AI literacy requirement (Article 4) already took effect in February 2025. If your staff use AI tools, they're already supposed to have training. That deadline is in the past, not the future.
    I wrote a guide on what SMBs actually need to do. Four steps, mapped against the August 2026 deadline, written for people who don't have a Chief AI Officer.
    readmodel.com/blog/article.php
    #EUAIAct #AIGovernance #GDPR #readmodel #locaverdi

  7. Quick follow-up to my ROPA post earlier this week.
    The replies and DMs converged on one question: "Okay, but where does the ROPA actually come from?" Fair. I jumped straight to the output without explaining the input.
    So here's the input: a data map. The living inventory of what personal data you have, where it lives, who can touch it, and why you're keeping it. Get those four right and the ROPA writes itself. Get them wrong — or skip them entirely, which most organisations do — and you're filling in an Article 30 register from guesswork.
    The thing most GDPR guidance gets wrong about data mapping: it's treated as a one-time exercise. Sit in a meeting room, list your services, tick the box, move on. Six months later a new SaaS tool got adopted, nobody updated the map, and your "compliance" is fiction.
    I wrote a step-by-step guide on building a data map that actually stays current. Five steps, no jargon, aimed at SMEs without a six-figure consulting budget.
    readmodel.com/blog/gdpr-data-m
    #GDPR #DataProtection #Privacy #readmodel #locaverdi

  8. Most ROPAs I see are spreadsheets. Most of those spreadsheets are wrong.
    Not because the DPO is sloppy — because the format guarantees drift. A new SaaS tool gets adopted, someone forgets to email the privacy team, and three months later the "Record of Processing Activities" describes a company that no longer exists.
    Then the supervisory authority asks for it.
    I wrote a guide on what a ROPA actually needs to be (structured, linked, generated from your real data map — not a flat table somebody updates when they remember). It covers what Article 30 requires, why the <250-employee exemption almost never applies in practice, and what to look for when evaluating a tool.
    If your ROPA lives in a spreadsheet right now, this is for you.
    readmodel.com/blog/ropa-tool-g
    #GDPR #DataProtection #Privacy #readmodel #locaverdi

  9. We wrote a little how-to on running FreeBSD 15.0 on a Raspberry Pi 5 with a Raspberry Pi M.2 HAT+ and a 256GB Integral M.2 NVMe SSD. locaverdi.com/freebsdrpi5.html #freebsd #rpi5 #howto #locaverdi

  10. Do you have surveillance cameras? A network-attached surveillance camera can consume a sizeable amount of energy. It's not just the camera but also the NAS or NVR for storage, software for image analysis, and network equipment that's loaded continuously because of the recorded streams. Simple tip to reduce power consumption: just store the event recordings on an SD card in the camera unit. It has downsides, but it's very efficient. #energyefficient #nas #surveillance #frugalcomputing #locaverdi

  11. Break Free from Big Tech’s Data Dominance!

    We’re launching Move Your Data. A new initiative to help businesses reclaim control of their data, away from centralized platforms and US-based tech giants.

    At moveyourdata.eu, you’ll find practical guides, actionable steps, and trusted alternatives to migrate your business data securely and efficiently.

    Start your journey today: moveyourdata.eu

    #DataFreedom #PrivacyMatters #TechResilience #locaverdi #moveyourdata

  12. A new day gives a new opportunity to ditch another US company. Today we replaced Firefox Sync with Floccus. Why? Firefox is getting a strong AI focus. And that is not what we need in a browser. Also, Firefox Sync is a US based service and therefore no longer safe and sound to use. #floccus #firefox #locaverdi