GDPR also regards user ids as personal information. What is the proper way to collect data and link it to some (pseudonymized) individual? Do we need a privacy policy for each game on its own too, asking new players to agree to it before being able to play the game?
I’m also wondering this too; for example, GameAnalytics, which a lot of developers including myself use, says this:
Is the Roblox Privacy Policy a “catch-all” for GDPR or do we need to ask players when they join our games as @Den_S said?
i’m very curious to know how this affects groups like True Colours who sort people into ranks based on their sexual orientation.
Obviously is necessary because putting out any form of uniqueness is dangerous and somebody could disagree now and days. While we’re at destroying what makes us different, I would like to request we all have the same avatars so nobody feels bad and nobody can make fun of someone else.
But in all seriousness, this is quite a stupid change to the terms of use. How exactly is my physical and mental health condition, race and ethnicity, political opinions, religion, sex life, and sexual orientation all sensitive information? I kind of feel like this is Roblox trying to be politically correct rather than protecting users. Nobody is ever going to be protected by not being able to say that they will be back in a bit because they have to go to Church.
How is Roblox promoting creativity if they are literally creating a box of what is not allowed because someone might get their feelings hurt? Not to mention, nobody can hurt each other’s feelings in the first place considering the filter already filters everything. This change is also hurting a lot of large groups on Roblox and even fellow developers here on the DevForum. Ultimately, this change is going to probably hurt the platform considering is it driving aways groups of hundreds of thousands of players.
A group like True Colours no doubt is now against the terms of service and will probably be terminated within a few days unless it is completely changed or abandoned.
Yeah, the implication is there but I would like certainty from the staff who will be enforcing this rule.
I would certainly hope this is not just dropped on us and then we receive no response while hundreds of games and groups become immediately at risk.
I don’t see this anywhere in Roblox’s ToS, where did you pull this from?
So basically just more censorship by the EU, nice …
It’s concerning that Roblox is making such a significant change that could result in the termination of many popular groups, especially without any advance notice and while leaving lots of unanswered questions on the table. Anyone who’s in violation of these new rules could be punished right here and now, without any chance to fix their content to be in compliance. It seems customary for almost every website to provide a certain waiting period before new terms go into effect, so questions can be answered and people can adjust their existing content.
Though it looks like the rule in question was just now silently removed for the time being…?
This has been removed from the Terms of Use since I posted.
Roblox, THANK YOU for removing section eight from the Terms of Use. It would have wiped out thousands of groups on Roblox that serve the community as support and interest-based clubs based on religion, politics, LGBT, etc. The social dimension of Roblox is incredibly important.
My group, The Robloxian Christians, that has had immense success on Roblox, over the last seven years, cannot exist without protection built into the terms of service. The proposed article 8, would have directly taken a stab at my group and my good friend Alex’s group, True Colors. We ask that you please defend diverse groups on your platform and allow for us to continue to serve the community as we have for the last seven years.
Thank you again.
Hello Developers,
We updated our policies to comply with EU’s GDPR regulations. Please take a look at the latest version of the policies and you will see that the section that referenced sensitive data has been removed.
Please continue your normal conversations.
Good question! You should continue to use the UserID. If there comes a time where that changes we’ll let you know.
For your game on Roblox, you do not need a separate Privacy Policy.
Starting to feel less like a creative platform and more like a “do exactly what we tell you or you’re going to get smacked” type of platform… At least the bit about mental health and all that was removed, because that would have been a major problem for many people.
This is all GDPR (EU regulations) and not Roblox.
Echo, the fact is that Roblox is adopting GDPR for all players of all nations. Why should players in the United States have to suffer under the same dumb regulations at the EU? There are other solutions. Though more challenging, I believe that protecting users creative agency is more important.
Every (?) website is adopting GDPR. It’s universal, not just Roblox that is updating their Privacy Policy in light of the GDPR. International websites are kind of obligated to respect the policies established by international organizations and/or nation unions. With that in mind, it goes into affect for all users. I’ve gotten messages like this from sites like Envato and Google where the policy affects all users. You can’t select a specific group of your users and then have the rules apply to them; the rules must apply to everyone.
GDPR doesnt allow collecting that data, Roblox got nothing to it.
From now on you will see every company be like that
I’ve done a little researched on GDPR, on what specifically it regulates and what it is trying to accomplish.
First and foremost, I believe that in terms of the “section eight” that Roblox created earlier today which basically banned discussion of religion, political opinion, and sexual orientation, it is addressed in Recital 75 of the GDPR which you can read here.
What it is mainly talking about is evaluation and analysis of large amounts of user data on topics such as religion or political identity, which may lead to discrimination, identity theft, and loss of confidential personal data. I do not think that it at all goes to say that users should be limited in what they can post, rather it should limit what kinds of data developers and the Roblox site can collect in terms of demographics, forms, etc.
It outlines it here:
However in Recital 4, which reads somewhat like a preamble, (read it here), talks about how the regulations apply to the basic rights of mankind. Which I would assume would guarantee users, in this case players, the ability to practice their religion, culture, and linguistic diversity.
So Roblox, I hope that if you want to limit developers in terms of what data they can collect from their own intellectual property, that it will be tied directly to Recital 75, allowing developers as much freedom as possible. Please recognize that the GDPR’s purpose is not to limit consumers but to protect how their data is being used.
Also it would be very helpful if you could create a more definite list of what is considered personally identifiable information.
Thank you.
Unless for some silly reason we directly ask the user for personal information (which would beagainst the ToS I think) we shouldn’t have any access to any personally identifiable information anyway, no?
So unless tracking the system language of individual players constitutes as collecting PII the developers shouldn’t be affected by these changes, though if I am wrong about this feel free to correct me.