INTL-01
Standard
Weight: 5

European Data Handling Requirements

Plain English Explanation

This question asks whether you'll handle any data from or about people in European Economic Area countries (EU plus Norway, Iceland, and Liechtenstein). Your customer needs to know because touching European data in any way - collecting, processing, or storing it - triggers GDPR requirements, which are some of the world's strictest privacy laws.

Business Impact

Your answer determines whether you need full GDPR compliance, which can cost hundreds of thousands in implementation. Saying 'yes' means demonstrating comprehensive privacy controls, while saying 'no' might exclude you from global enterprises who need vendors capable of handling international data. This single question often determines whether you're seen as a regional player or a global-ready platform.

Common Pitfalls

Companies frequently underestimate what counts as 'processing' EEA data - even having European email subscribers or website visitors can trigger GDPR. Another pitfall is thinking you're exempt because you're US-based; GDPR applies to any company processing European data regardless of location.

Expert Guidance

Upgrade to SOFT_GATED tier to unlock expert guidance

Implementation Roadmap

Upgrade to DEEP_GATED tier to unlock implementation roadmap

Question Information

Category
International Privacy
Question ID
INTL-01
Version
4.1.0
Importance
Standard
Weight
5/10

Unlock Premium Content

Get expert guidance, business impact analysis, and implementation roadmaps for all questions.

Get Access