@european_alternatives I've been very exited to discover your list - there's some really good stuff on it.
I notice that you only include EEA, EFTA, or DCFTA countries, but not, say, Council of Europe members (https://en.wikipedia.org/wiki/Council_of_Europe) or the European Political Community (https://en.wikipedia.org/wiki/European_Political_Community) which both cover Europe comprehensively by including the UK. I can't help but wonder why you'd keep British projects out of the list of 'European alternatives'?
@nicol #GDPR applies to the EEA (including EU and EFTA). Everyone else is outside. https://www.efta.int/media-resources/news/general-data-protection-regulation-incorporated-eea-agreement
@nemobis @european_alternatives I don't follow. The UK implemented GDPR before Brexit, and has no plans to change that (thankfully!): https://ico.org.uk/for-organisations/data-protection-and-the-eu/data-protection-and-the-eu-in-detail/the-uk-gdpr/
@nicol Sure, the UK currently benefits from an adequacy decision https://commission.europa.eu/law/law-topic/data-protection/international-dimension-data-protection/adequacy-decisions_en thanks to the very similar legislation. But it's still a transfer outside the EU/EEA so it requires extra thinking. Why bother, when there's a supplier completely inside the EU/EEA?
(Nevertheless they said "We currently don't list UK companies, but we might reconsider that in the future or make an exception" https://mastodon.social/@european_alternatives/113459258153608221 .)
@nemobis ‘why bother’?
- when it comes to FOSS alternatives is there really so much choice to be exclusive?
- it’s cost the UK a fair bit to implement GDPR and there’s a lot of folks who’d like to ditch it. Recognising adequacy would help keep it?
- all my life I’ve know a spirit of cooperation between continental Europe & UK - that continues in FOSS work, literally today for me. Just coz 52% of Brit voters referendumed to leave the EU in one vote seems a sad reason to try to end that.
@nemobis FWIW ‘adequacy decision’ sounds like an odd kind of gatekeeping if the US is included in that list. The UK designed its GDPR implementation while still a member, which is unique amongst those other countries. In my experience it takes GDPR more seriously than some member states. For e.g. the CiviCRM GDPR extension was developed by a UK company, is maintained by another UK company, is used by many 100s of EU non profits and EU Civi agencies today: https://lab.civicrm.org/extensions/gdpr
@nicol Yes, the inclusion of the USA is a travesty and will probably be ruled void for the Nth time. https://noyb.eu/en/european-commission-gives-eu-us-data-transfers-third-round-cjeu
@nicol I love that GDPR work in CiviCRM. I've often encouraged orgs I'm involved with to support it. Supporting FLOSS developers across borders is important and necessary even though the paperwork is significant for EU orgs.
Using services is another matter, because individual rights are involved. (Suitable CiviCRM hosting exists in the EU, AFAIK.)
It's painful to see the UK and the EU grow apart, but it's the reality we live in. EU students in the UK decreased by 60%! https://commonslibrary.parliament.uk/research-briefings/cbp-7976/
@nemobis imho, while tragic it’s still a fluid relationship, bigger than a vote, treaty or trade deficit. It’s defined ultimately by the people in both places, as it has for millennia.
FLOSS tho seems a model for stateless collaboration that both the UK and EU could learn something from.
@nicol I agree!