Why is this site blocked in the EU ? Was disabling cookies on your static page that hard ?
You're not missing anything. Here is the full text: (this could have been an email:)<p>On Sept. 30, 2025, a Flock vice president logged into the Dunwoody PD’s Flock system and looked at a camera in the children’s gymnastics room of a private community center here in Dunwoody.<p>He did not look at any other cameras in the entire 400-camera network that day.<p>The community center shared their cameras directly to the PD under the pretense that access was “solely for real-time critical incident response.”<p>Flock and Dunwoody elected officials both say this was for a “sales demo.” They claim this was “part of authorized activity approved under the city's demo partner agreement.”<p>The problem with that is that the city cannot provide any information that that demo partner agreement exists.<p>What kind of sales demo would require looking at one camera in a children’s gymnastics room? Can anyone rationally explain why a police agency that is interested in Flock would like to see one third-party camera integration that is in a children’s gymnastics room?<p>Jason Hunyar lives in Dunwoody.
No one is going to go around complying with random rules from other countries, man. If you don't serve that population, just opt them out.
They complied by building a blocking system, instead of just disabling cookies with a flag, which would have taken exactly the same effort.
This would be true if they were working from a baremetal Apache server. But they seem to be using a vendor, Cloudflare, for their CDN. And so I strongly suspect that they used their existing Cloudflare account to do it. Just type the countries you want to block into a field in the Cloudflare UI and you're done. I've used that UI myself (not for GPDR reasons but for compliance with my countries sanctions). Significantly easier than controlling the cookies and data retention and getting an audit to certify compliance, which I've also done.
And by "no one" you mean almost everyone.
Except that it’s an entire continent and loads of people do comply with it. You just sound ignorant.
So we're supposed to deal with your bullshit Patriot Act while GDPR is too "random" for you?
They are a hyper local business. The chance of making any revenue off EU users is close to 0, which is much higher than the cost of figuring out EU compliance.<p>The conversation went like this:<p>IT director: “If we serve ads or collect data from EU users we have to be GDPR compliant. That’ll cost several thousand dollars worth of employee time”<p>Exec: “how much revenue is attributable to EU users.”<p>IT: “Single digit dollars per year”<p>Exec: “is there a cheaper solution?”
GDPR compliance is good IT practice. It's easy to do, good for users, and states are rolling out similar laws.<p>But now, instead of their story being read by people all over the world, having gone viral, it's just going to pirated. Not only losing them out on revenue, but recognition as well.<p>This is part of the long death of online local news. They can't be bothered to do the simplest things for their site (make personal data collection optional). But they have tons of time to fill them with online cancer and make them unusable without ad blocking.
Going viral doesn’t really matter to them.<p>A small local news agency prioritizes serving small local news needs. I used to work at a small local newspaper. Spending four or five figures of limited money on IT overhauls means that something else has to be sacrificed. It isn’t that they can’t be bothered, it’s that it costs money and doesn’t serve their community or customers. Being GDPR compliant hinders their ability to do local news since it literally takes resources to accomplish.<p>Local news is dying, but it is not because of GDPR. That trend started well before then, and is very well understood. The amount of news content is a direct function of advertising revenue not actual news to be reported. Craigslist and google undercut them and that’s really the only relevant part of the story. GDPR noncompliance has nothing to do with the success or failure of a news outlet in middle America.<p>Do you make sure that your work is fully compliant with all Chinese laws? Why not? They are the world’s largest market, after all. Do you even know if your work is possible to access in China? Or is it the case that compliance with Chinese laws is irrelevant to your business models so it’s easier to just do nothing. Same logic…
"We might, maybe, have some article go viral some day. With unknown revenue implications." is a weak argument for trying to figure out and maintain GDPR compliance, which costs real money right now, today. And you have to be sure to maintain that compliance as the web site evolves.<p>It's such a low-probability event that I don't blame them for just saying, "Nah. Not gonna hassle with that."<p>The recognition argument is also quite weak--it's not like recognition pays the bills.
This website is a small, local company. They have a newsletter signup page so they do collect user info. Quite likely they are not GDPR compliant (e.g. take longer than 30d to delete records, don't have a process for answering data requests etc). It is reasonable for them not to want to invest in getting the legal advise to know whether they are compliant or process improvements to become compliant, as there is no ROI on that.<p>I love GDPR, but it's understandable for folks with no connection to the EU to just nope-out.
This website and topic is protected by a SEP field. Who cares about U.S. problems?
On the one hand, sure, it is a US problem. On the other hand, US culture has a way of travelling.<p>IE surveillance dickheads see what is in the US and decide to enact it in their local country.<p>In this case, it is handy to see how the conversation about such surveillance is going.