@marc_manley Thanks!—Last case I noted was (NYC-based) @glitch’s embed code. That embed code has a reference to a Glitch (3rd party) script, but it comes in a way that in Europe we’d call naiveté: no provisions, not even a mention of privacy or security. Embeds can’t work like this anymore.
@marc_manley @glitch Another good example is @unpkg, where—unless I miss something—it would be really great to have 1. a #privacy policy, 2. a text snippet anyone using UNPKG in a live project could quote in their own policy. That would be my reading for #European projects respecting the #GDPR.