GDPR Compliance for Forms in WordPress With WS Form

The GDPR, or General Data Protection Regulation, is a data protection law that governs how personal data is collected, processed, stored, and protected. It applies to organizations that process the personal data of people in the European Union (EU) and European Economic Area (EEA), and has been in effect since May 25, 2018.

Personal data can include information such as:

  • Basic identity information, such as names, addresses, and identification numbers
  • Online data, such as IP addresses and location data
  • Racial or ethnic origin
  • Health and genetic data
  • Political opinions
  • Sexual orientation

Further information about GDPR can be found at GDPR.eu.

GDPR Considerations

Organizations handling personal data may need to consider how that data is collected, processed, stored, protected, and deleted. This can include:

  • Why personal data is being collected and processed
  • How consent is obtained when consent is appropriate
  • What personal data is collected and whether all of it is necessary
  • How personal data is protected
  • How long personal data is retained
  • How requests to access or erase personal data are handled

Your responsibilities depend on factors such as what data you collect, why you collect it, where your organization and users are located, and how the data is processed. You should seek appropriate legal advice when determining your privacy and data protection obligations.

GDPR Features in WS Form

WS Form includes features that can help you implement your organization’s privacy and data protection policies. These include collecting consent, presenting legal notices, controlling the personal data you collect and store, protecting stored submission data, managing submission retention, and handling personal data export and erasure requests.