Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

GDPR Checkbox in comments form #9574

Closed
jadelaop opened this issue May 18, 2018 · 9 comments
Closed

GDPR Checkbox in comments form #9574

jadelaop opened this issue May 18, 2018 · 9 comments

Comments

@jadelaop
Copy link

jadelaop commented May 18, 2018

Hello, could you add the GDPR checkbox in comments form?

Is necessary by GDPR to check every time when a comment is posted...

Thank you!!

@jeherve jeherve added this to the 6.1.1 milestone May 18, 2018
@jeherve jeherve added this to Proposals in GDPR via automation May 18, 2018
@htdat
Copy link
Member

htdat commented May 21, 2018

On https://wordpress.org/news/2018/05/wordpress-4-9-6-privacy-and-maintenance-release/, there is a new option under each comment box (not Jetpack):

Logged-out commenters will be given a choice on whether their name, email address, and website are saved in a cookie on their browser.

It looks like this:


Another request: 1172614-zen

@jeherve
Copy link
Member

jeherve commented May 21, 2018

Also in 1169939-zen. Internal reference: p4H3ND-I4-p2

@jeherve
Copy link
Member

jeherve commented May 24, 2018

After discussing about this internally, we'll close this GitHub issue as wontfix.

There are a few valid ways to be transparent and compliant about cookies that a site uses to enable its features, like comment form auto complete. The way we chose is to include information about the cookies we use (including the comment cookies) in our cookie policy which you can read here. If you want to alert users to the use of these kinds of cookies on your site, you can do that using the cookie and consent tools that we’ve recently added to Jetpack, here.

@jeherve jeherve closed this as completed May 24, 2018
GDPR automation moved this from Proposals to Done May 24, 2018
@jadelaop
Copy link
Author

jadelaop commented May 24, 2018

I disagree with this solution... @jeherve

I believe that GDPR needs a checkbox at every form submission with personal data, including comments.

https://wordpress.org/support/topic/comments-does-not-display-gdpr-compliant-comment-consent-checkbox/

@jeherve
Copy link
Member

jeherve commented May 24, 2018

@jadelaop If you or your own legal counsel disagree with that decision, I would recommend that you deactivate Jetpack's Comment form option under Jetpack > Settings > Discussion in your dashboard. Your site will then display the default comment form again, that includes a checkbox.

@jadelaop
Copy link
Author

I made that. Thank you.

@johnstonesnow
Copy link

It is over a year and half since this was closed, and I don't like the way it was closed either.
I am a legal expert on DPA and GDPR (privacy laws generally). It is beyond dispute now that GDPR specifically requires all sites collecting data (not just cookies) to 'obtain explicit consent' from users, consent to the storage and processing of the submitted data, PRIOR to clicking submit. The default wordpress comments shows that they acknowledge this, as do every other modern GDPR-compliant plugin for any type of information submission, be it an email list subsription, a comment form, or any other submission form.

Will you PLEASE consider adding this simple option so that Jetpack comments stay with the game. I desperately want to use Jetpack comments because of the added functionality of social logins. I have spent two days trying to find a solution and I can't (without learning to code and writing something bespoke).

GDPR Consent is not to be trifled with, and no self-respecting website owner would wish to be in breach of it. Please make it so that we can use Jetpack comments without breaking the law in the EU.

@jeherve
Copy link
Member

jeherve commented Nov 25, 2019

@johnstonesnow I see you've opened a new issue about this in #14118. I'll reply there.

@johnstonesnow
Copy link

Thanks

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
GDPR
  
Done
Development

No branches or pull requests

5 participants