Deleteduser.com —a $15 PII Magnet

136 points by fanf


vrolfs

If the entirety of your delete process is replacing an email address with something@deleteduser.com, not only are you doing the bare minimum, you are somehow doing something worse than the bare minimum — because you are willingly exposing PII to some random fella’s domain, and you weren’t doing that before.

At least in Europe, you would be breaking the law. GDPR is pretty clear on that; you have to delete all PII from your system.